Countering Cybercrime through International Collaboration & Private-Public Partnerships

19
August 22-23, 2014 Kochi, India Cyber Security and Policing Conference Countering Cybercrime through International Collaboration & Private-Public Partnerships Manu Zacharia MVP (Enterprise Security), C|EH, ISLA-2010 (ISC)², C|HFI, CCNA, MCP Certified ISO 27001:2005 Lead Auditor President – Information Security Research Association

description

Countering Cybercrime through International Collaboration & Private-Public Partnerships. Manu Zacharia MVP (Enterprise Security), C|EH, ISLA-2010 (ISC)², C|HFI, CCNA, MCP Certified ISO 27001:2005 Lead Auditor President – Information Security Research Association. MAKING SECURITY HAPPEN. - PowerPoint PPT Presentation

Transcript of Countering Cybercrime through International Collaboration & Private-Public Partnerships

Page 1: Countering Cybercrime through International Collaboration  &  Private-Public Partnerships

August 22-23, 2014 Kochi, IndiaCyber Security and Policing Conference

Countering Cybercrime through International Collaboration & Private-Public Partnerships

Manu ZachariaMVP (Enterprise Security), C|EH,

ISLA-2010 (ISC)², C|HFI, CCNA, MCPCertified ISO 27001:2005 Lead Auditor

President – Information Security Research Association

Page 2: Countering Cybercrime through International Collaboration  &  Private-Public Partnerships

August 22-23, 2014 Kochi, IndiaCyber Security and Policing Conference

MAKING SECURITY HAPPEN

Page 3: Countering Cybercrime through International Collaboration  &  Private-Public Partnerships

August 22-23, 2014 Kochi, IndiaCyber Security and Policing Conference

QUICK INTRO

• ISRA – Information Security Research Association– www.is-ra.org

• Non-profit Research Organization• Specializing in Information and Cyber Security• Operates through Projects, Chapters and

Members

Page 4: Countering Cybercrime through International Collaboration  &  Private-Public Partnerships

August 22-23, 2014 Kochi, IndiaCyber Security and Policing Conference

CHAPTERS

• Argentina• Brazil• Brunei• Côte d'Ivoire• India • Mauritius• US

Page 5: Countering Cybercrime through International Collaboration  &  Private-Public Partnerships

August 22-23, 2014 Kochi, IndiaCyber Security and Policing Conference

SPECIAL INTEREST GROUPS - SIG

• 001 - Information Security Management Systems

• 002 - Security awareness• 003 - Risk Management• 004 - Business Continuity Planning / DR

Planning• 005 - Cryptography and PKI Systems• 006 - Digital Forensics and Investigations

Page 6: Countering Cybercrime through International Collaboration  &  Private-Public Partnerships

August 22-23, 2014 Kochi, IndiaCyber Security and Policing Conference

SPECIAL INTEREST GROUPS - SIG

• 007 - Penetration / Security Testing & EH• 008 - Offensive Security and Malwares• 009 - Web Application Security• 010 - Wireless Security• 011 - VoIP Security• 012 - SCADA Systems

Page 7: Countering Cybercrime through International Collaboration  &  Private-Public Partnerships

August 22-23, 2014 Kochi, IndiaCyber Security and Policing Conference

RESEARCH PARTNERSHIP

• Academic Research Partnership• Corporate Research Partnership• Government / CERT Research Partnership– Capacity Building– Vulnerability Reporting– Research Studies– Training & Operational Support

Page 8: Countering Cybercrime through International Collaboration  &  Private-Public Partnerships

August 22-23, 2014 Kochi, IndiaCyber Security and Policing Conference

RESEARCH PARTNERSHIP

• Academic Research Partnership• Corporate Research Partnership• Government / CERT Research Partnership– Capacity Building– Vulnerability Reporting– Research Studies– Training & Operational Support

Page 9: Countering Cybercrime through International Collaboration  &  Private-Public Partnerships

August 22-23, 2014 Kochi, IndiaCyber Security and Policing Conference

PPP and ISRA

• 2010 New Year Gift – 262 govt websites under the control of ….

• 2012 Dec– Child Pornography in Govt websites

• Vulnerability Reporting – Websites• Capacity building

Page 10: Countering Cybercrime through International Collaboration  &  Private-Public Partnerships

August 22-23, 2014 Kochi, IndiaCyber Security and Policing Conference

PPP – Challenges

• Regulatory environment• Lack of information• Project development and Management – Just

ignore that• Lack of institutional capacity• Financing availabilitySource E&Y Reporthttp://www.ey.com/IN/en/Industries/Government---Public-Sector/Accelerating-public-private-partnerships-in-India

Page 11: Countering Cybercrime through International Collaboration  &  Private-Public Partnerships

August 22-23, 2014 Kochi, IndiaCyber Security and Policing Conference

c0c0n

• c0c0n – cyOps c0nference• Conceptualized in 2007• c0c0n 2014 – 7th year• ISLA Awards (ISC2)• Special Recognition Awards by InfoSec

Maestros Award• Nullcon BlackShield Award - Governator

Page 12: Countering Cybercrime through International Collaboration  &  Private-Public Partnerships

August 22-23, 2014 Kochi, IndiaCyber Security and Policing Conference

c0c0n

• To provide platform for the:– Government– Industry– Researchers and Hacker Community– Academia

Page 13: Countering Cybercrime through International Collaboration  &  Private-Public Partnerships

August 22-23, 2014 Kochi, IndiaCyber Security and Policing Conference

C0c0n - 2014

• Participation from more than 14 countries• More than 30 speakers and panelist• Two tracks• 7 Panels• 16 Technical / Research talk• 4 Technical Hands-on Workshop• Workshop on Cyber Security for Women

Page 14: Countering Cybercrime through International Collaboration  &  Private-Public Partnerships

August 22-23, 2014 Kochi, IndiaCyber Security and Policing Conference

c0c0n – what next?

• IS-RA and c0c0n - Indian InfoSec Consortium• Ground Zero Summit – Srilanka (Sep 2014)• Ground Zero Summit – New Delhi (Nov 2014)• c0c0n for African Region - Initial talks with an

UN-ITU Agency

Page 15: Countering Cybercrime through International Collaboration  &  Private-Public Partnerships

August 22-23, 2014 Kochi, IndiaCyber Security and Policing Conference

Common Question

• Why do we need security conferences like this?

• What are we trying to achieve?

Page 16: Countering Cybercrime through International Collaboration  &  Private-Public Partnerships

August 22-23, 2014 Kochi, IndiaCyber Security and Policing Conference

My Answer…

“A technology that can give you everything you want is a technology that can take away everything that you have.” – Daniel Geer, CISO, In-Q-Tel

Page 17: Countering Cybercrime through International Collaboration  &  Private-Public Partnerships

August 22-23, 2014 Kochi, IndiaCyber Security and Policing Conference

TOGETHER LET’S MAKE SECURITY HAPPEN

Page 18: Countering Cybercrime through International Collaboration  &  Private-Public Partnerships

August 22-23, 2014 Kochi, IndiaCyber Security and Policing Conference

Thank You For Supporting Us

• Kerala Police• Kerala IT Department• CERT-Kerala• POLCYB• Information Security Consortium• And all of you.

Page 19: Countering Cybercrime through International Collaboration  &  Private-Public Partnerships

August 22-23, 2014 Kochi, IndiaCyber Security and Policing Conference

Thank You

• www.is-ra.org– Twitter• @I_S_R_A• @_c0c0n_

• Manu Zacharia– [email protected]