Cyber Defence in the Corporate World

19
© 2010 Cisco Systems, Inc. All rights reserved. Cisco Public IP EXPO 2010 1

description

All organisations are making more and more use of technology and so their reliance on it is also increasing. With the increase in reliance comes a bigger impact if things were to go wrong. Organisations need to develop their cyber defence strategies to meet these threats and risks. However it has to be done in the environment of very tight cost control and it must be done to enable all of the benefits from technology. Security should be the enabling strategy for an organisation and not be seen as an inhibitor or expense item.

Transcript of Cyber Defence in the Corporate World

Page 1: Cyber Defence in the Corporate World

© 2010 Cisco Systems, Inc. All rights reserved. Cisco PublicIP EXPO 2010 1

Page 2: Cyber Defence in the Corporate World

2

Cyber Defence in the Corporate World

Paul King

Senior Security Advisor

Cisco System

[email protected]

Page 3: Cyber Defence in the Corporate World

© 2010 Cisco Systems, Inc. All rights reserved. Cisco PublicIP EXPO 2010 3

Risk

“How do we know what we know we don’t know?”

Page 4: Cyber Defence in the Corporate World

© 2010 Cisco Systems, Inc. All rights reserved. Cisco PublicIP EXPO 2010 4

The Network of 15 Years Ago

Closed Network

Remote Site

PSTN

Frame RelayX.25

Leased Line

PSTN

Page 5: Cyber Defence in the Corporate World

© 2010 Cisco Systems, Inc. All rights reserved. Cisco PublicIP EXPO 2010 5

The Network Today

Page 6: Cyber Defence in the Corporate World

© 2010 Cisco Systems, Inc. All rights reserved. Cisco PublicIP EXPO 2010 6

Impact Risk

Risk – What is it?

Vulnerability

Threat

Asset

Likelihood

Page 7: Cyber Defence in the Corporate World

© 2010 Cisco Systems, Inc. All rights reserved. Cisco PublicIP EXPO 2010 7

How is a Business Threatened?

VirusOutbreakDDoS

Theft

Loss of Information

WebsiteDefacement

WWW

Damage to reputation (CEO)

FinancialLoss(CFO)

DisruptionTo business(CIO)

Page 8: Cyber Defence in the Corporate World

© 2010 Cisco Systems, Inc. All rights reserved. Cisco PublicIP EXPO 2010 8

Leader-led, but Includes Everyone

“Security starts with me, the CEO, down to the individual contributor level… it’s mandatory.”

John ChambersChairman and CEO

Page 9: Cyber Defence in the Corporate World

© 2010 Cisco Systems, Inc. All rights reserved. Cisco PublicIP EXPO 2010 9

People

People: Your Greatest Security Asset

“Cisco's open culture facilitates a proactive, positive and rewarding approach to security awareness and education — one that empowers security champions across the company to do their part to keep Cisco secure.

– Mia Bradway Winter Cisco Sr. Security Awareness Program Manager– Mia Bradway Winter Cisco Sr. Security Awareness Program Manager

Page 10: Cyber Defence in the Corporate World

© 2010 Cisco Systems, Inc. All rights reserved. Cisco PublicIP EXPO 2010 10

Pervasive awareness and education programs

Cross-collaborative efforts of constituents

Policies, guidelines and essential practices

Rewards for exemplary security related behavior

Compelling set of marketing activities and communications

Training & Education

Be A Security Champion

Creative Communications

We Are The Targets

Marketing Collateral Award-winning Programs

Awareness and Education Driven

Page 11: Cyber Defence in the Corporate World

© 2010 Cisco Systems, Inc. All rights reserved. Cisco PublicIP EXPO 2010 11

…Our Process…

Signature-based How Anomaly-Based

Specialized Security Expertise

What Defense Automation

Use a Firewall! WhenUse technologies

pervasively

Internet Facing Where System-wide

Detect Attacks Who Find Attackers

ThenThen NowNow

Page 12: Cyber Defence in the Corporate World

© 2010 Cisco Systems, Inc. All rights reserved. Cisco PublicIP EXPO 2010 12

A Day in the Life of My Corporate Laptop

Cisco

INTERNET

Home Office

05:00

VPN

VPN

Firewall

Page 13: Cyber Defence in the Corporate World

© 2010 Cisco Systems, Inc. All rights reserved. Cisco PublicIP EXPO 2010 13

Cisco

INTERNET

07:00

A Day in the Life of My Corporate Laptop

Page 14: Cyber Defence in the Corporate World

© 2010 Cisco Systems, Inc. All rights reserved. Cisco PublicIP EXPO 2010 14

Cisco

INTERNET

08:00

VPN

Train Station

Public Hotspot

A Day in the Life of My Corporate Laptop

Page 15: Cyber Defence in the Corporate World

© 2010 Cisco Systems, Inc. All rights reserved. Cisco PublicIP EXPO 2010 15

Cisco

INTERNET

08:10

Train Station

A Day in the Life of My Corporate Laptop

Page 16: Cyber Defence in the Corporate World

© 2010 Cisco Systems, Inc. All rights reserved. Cisco PublicIP EXPO 2010 16

Cisco

INTERNET

12:00

A Day in the Life of My Corporate Laptop

Page 17: Cyber Defence in the Corporate World

© 2010 Cisco Systems, Inc. All rights reserved. Cisco PublicIP EXPO 2010 17

Cisco

INTERNET

Home Office

20:00

VPN

VPN

Firewall

A Day in the Life of My Corporate Laptop

Page 18: Cyber Defence in the Corporate World

© 2010 Cisco Systems, Inc. All rights reserved. Cisco PublicIP EXPO 2010 18

Concluding Thoughts

Page 19: Cyber Defence in the Corporate World

© 2010 Cisco Systems, Inc. All rights reserved. Cisco PublicIP EXPO 2010 20

FOR FURTHER QUESTIONS AND TO SEE OUR TECHNOLOGY DEMOS,

VISIT US AT STAND 660