International Cyber Warfare and Security Conference Ankara, November 27 th, 2014.

23
International Cyber Warfare and Security Conference Ankara, November 27 th , 2014

Transcript of International Cyber Warfare and Security Conference Ankara, November 27 th, 2014.

International Cyber Warfareand Security Conference

Ankara, November 27th, 2014

2

Table of contents

• Finmeccanica overview

• Selex ES overview

• Main Military References - NATO and National

• Cyber, the Fifth Military Domain

• Cyber Intelligence Solutions

33

FINMECCANICA TODAY

Finmeccanica is a leader in the high technology sector and ranks among the top ten global players in Aerospace, Defence and Security.

AERONAUTICS

3

DEFENCE SYSTEMS TRANSPORTATION

With about 67,000 employees worldwide, Finmeccanica generated in 2012 revenues of approximately EUR 17.2 billion. We operate in:

DEFENCE AND SECURITYELECTRONICS

HELICOPTERS SPACE

44

2012 GROUP RESULTS

REVENUES 2012

€bil. 17.2NEW ORDERS 2012

€bil. 16.7

HELICOPTERS

DEFENCE AND SECURITY ELECTRONICS

AERONAUTICS

SPACE

DEFENCE SYSTEMS ENERGY *On December 23rd 2013 Finmeccanica has closed the sale of its 39.55% stake in Ansaldo Energia share capital to Fondo Strategico Italiano. The remaining 15% stake will be sold between June and December 2017. At the same time FSI has acquired also the 45% stake held by First Reserve.

TRANSPORTATION

RESULTS € MLN 2012

New Orders 16,703

Revenues 17,218

Order Backlog 44,908

4

10%

4%

7%6%

17%

32%24%

13%6%5%5%

18%

30%23%

5© 2014 Selex ES S.p.A. – All rights reserved

• 17,000 people• Revenues in excess of 3.2 billion Euros• More than 17.5% of investment in R&D• 70% engineers and personnel with technical

qualifications• Worldwide industrial footprint • Operating in Turkey since 1989 with its fully

owned subsidiary Selex ES Elektronik Turkey, headquartered in Gölbaşı, Ankara,

Selex ES - Key facts

6© 2014 Selex ES S.p.A. – All rights reserved

Airborne and Space Systems

• Radar and Advanced Targeting• Air Systems, Unmanned

Systems and Simulators• Electronic Warfare• Avionics• Space Systems• Support and Service Solutions

Land and Naval Systems

• Naval & Air Defence Systems• Land & Battlefield Systems • Optronics Systems• Defence Communications

Systems • Support & Service Solutions

Our Divisions

Security and Smart Systems

Homeland Security & Critical Infrastructures

Cyber Security & Information Assurance

Air & Vessel Traffic Management Systems

Automation Systems

ICT & Networking

Smart Solutions

7© 2014 Selex ES S.p.A. – All rights reserved

We are a systems integrator and manufacturer with a broad perspective of security requirements

OVERVIEW

Strong Managed Security experience

10+ SOC commissioned by Defense and CNI customers

30+ years at the forefront of cryptology

High Grade solutions

Multinational, multi-platform Electronic Key Management Systems

Galileo PRS Secure infrastructure and secure modules

Delivering NCIRC in 55 locations in 26 countries

• 500 Professional Staff

• 2 (+1) Security Operation Centres

• Working across Europe, NATO Nations, Middle East and Asia

OUR TEAM INCLUDES:

8© 2014 Selex ES S.p.A. – All rights reserved

IntelligenceProfessionalServices

Cyber Security

Solutions

Our Offering

Equipment and

Technologies

Compliance Consulting Disaster Recovery

Security Infrastructure

Security Operation Center & CERT

• Device Monitoring • Device Management • Incident Handling • Threat Management • Malware Analysis

Support Manage Implement DesignAnalyse &

Plan

Penetration Test

Forensic Analysis

Managed Security Services

9

• Military (NATO and National)

• Central and Local Government

• National Security Agencies

• Law Enforcement

• Health Care

• Telecommunications

• Transportation & Utilities

• Large Enterprises

• Banks and Insurances

Cyber Security - Main Customers

10

11

12

Selex ES, main partner of Lockheed Martin, is responsible for:

• Security Accreditation

• Testing Management

• Consultancy services on Cross-Domain Gateways

• Secure Communication Services

ANWI Active NetWork Infrastructure

13© 2014 Selex ES S.p.A. – All rights reserved

Cyber Security for the Italian Defence

- CERT for the Italian Army- Planning and Implementation of an Integrated Security

Monitoring System for the supervision of the Army Network through a Command Center.

- Italian Navy SOC- Planning and Implementation of an Integrated Security

Monitoring System for the supervision of the Navy Network.

- Operation Center for the Italian MoD- Operation Service for the SOC and CERT

- Cyber Defence Capabilities Program for the Italian MoD

- Planning and Implementation of a Cyber Defence Capabilitiy (CDC) through a Data Fusion System (Data Integration & Correlation) and a Command Center.

© C

op

yrig

ht

Sel

ex

ES

S.p

.A 2

01

4 A

ll ri

ghts

re

serv

ed

Cyber Space - The Fifth Domain

• All missions (Air, Land, Maritime, Space, C4ISR) depend on the Cyber Domain

• The Cyber Domain can be contested and/or denied

• Complexity and Interdependency are growing

Source: ADD 3-12 “ CYBERSPACE OPERATIONS”

Cyberspace

Full spectrum dominance

© C

op

yrig

ht

Sel

ex

ES

S.p

.A 2

01

4 A

ll ri

ghts

re

serv

ed

No one of the four domains can be controlled if Cyberspace is not. Cyberspace pervades all the other military domains and must be considered the essential key to achieve the full spectrum dominance

SpaceAir

Land Sea

C4ISR

Intelligence

© C

op

yrig

ht

Sel

ex

ES

S.p

.A 2

01

4 A

ll ri

ghts

re

serv

ed

Intelligence is the main capability necessary to control the Five military Domains.

• Strategic Intelligence

• Operational Intelligence

• Tactical Intelligence

Military intelligence diagram of defense positions during the Battle of Okinawa, 1945

Tactical Intelligence• Advanced detection• Compliance• Monitoring & reporting

Operational Intelligence (SOC/CIRT)(*)

• Centralized management• Response Coordination• Analysis• Continuity plan• Recovery plan• Service resiliency 

Strategic Intelligence • Social & political dynamics• Security trends• Predictive analysis• Early warning

Manage Incidents

Prevent actions and physical threats

© C

opyr

ight

Sel

ex E

S

2014

All

right

s re

serv

ed

(*) Security Operation Centre & Computer Incident Response Team

Fifth Domain Intelligence = Cyber Intelligence

19© 2014 Selex ES S.p.A. – All rights reserved

1.400It’s the average number of relevat attacks experienced by an organization within a week

35%

Are the attacks that exploit code vulnerabilities

88%It’s the share of company’s software that presents vulnerabilities

There is public information that is available on the internet

…but a lot of it cannot be accessible through the traditional web search engines…

…or we don’t even look for it, because we ignore that it even exists.

Situational Awareness and Early Warning capabilities are a priority

20© 2014 Selex ES S.p.A. – All rights reserved

Cyber Intelligence - XASMOS

• Defines problem oriented analysis to support the intelligence process

• Applies different mathematical algorithms and vertical applications to generate actionable intelligence

• Provides timely reports and suggests immediate actions for remediation

Selex ES XASMOS platform is based on a High Performance Computer, specialized in high speed processing of massive information on the internet.

Indexed Web

Dark Web

Deep Web

21© 2014 Selex ES S.p.A. – All rights reserved

High-Performance Computing +310 TFlops

Italian Technolgy - Eurotech Aurora High level Integration

Liquid cooled – unique technology “Free Cooling” technology with

low power consumption

Solid State Storage

High Perfomance Computer

22

Cyber Attack Identification & Prediction

• Identifies next target of Hackers, Hacktivist, etc.

• Identifies potential leaks/availability of information on the web

• Identifies attackers’ activities during the early stages prior to an attack;

Early Warning and Vulnerability Identification

• Analyses the information within social networks and from millions of sources, identifying anomalies related to new vulnerabilities;

• Provides the Analyst Team with alerts on threats that the Security Vendor community does not yet manage.

Open Source Intelligence Services

© 2014 Selex ES S.p.A. – All rights reserved

23

Attack against an Italian Government Agency, by Anonymous, foreseen 48 hours before initiated

Predictive Analysis – a real example

© 2014 Selex ES S.p.A. – All rights reserved

Aldo Pietro Paggi

Vice President

International Technical Sales Support

[email protected]

Thank you for your attention