Segmantics Cyber Security Reporting and Incident Management

54
Cyber Attack Reporting and Incident Response Co-starring Blockchain Product Launch 28 th September 2016 Segmantics Ltd 2016 1

Transcript of Segmantics Cyber Security Reporting and Incident Management

Page 1: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 1

Cyber Attack Reporting and

Incident Response Co-starring Blockchain

Product Launch 28th September 2016

Page 2: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 2

Agenda1. Cyber Attacks• Examples, statistics, Cyber Store

2. Demonstration• Simplified example

3. Blockchain Use Case• Security by Segmantics

Page 3: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 3

Page 4: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 4

Page 5: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 5

Page 6: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 6

Page 7: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 7

Page 8: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 8

Page 9: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 9

Page 10: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 10

Page 11: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 11

Page 12: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 12

Video - Bruce Schneier on CyberReality, feelings and models See Video 8.47 to 10.47 - https://youtu.be/1F5XuO0DtrQ

Page 13: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 13

Page 14: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 14

Page 15: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 15

Page 16: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 16

Page 17: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 17

Page 18: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 18

Page 19: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 19

Page 20: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 20

Page 21: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 21

Page 22: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 22

Page 23: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 23

Page 24: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 24

Page 25: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 25

Page 26: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 26

Page 27: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 27

Page 28: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 28

Page 29: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 29

Segmantics Cyber StoreStandards, Best Practice, Frameworks, Analysis Methods, Research

Page 30: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 30

Page 31: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 31

Page 32: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 32

Video - Reporting and Incident ResponseClick here - https://youtu.be/1F5XuO0DtrQ

Page 33: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 33

Simplified Example of Platform

Page 34: Segmantics Cyber Security Reporting and Incident Management

© Segmantics Ltd 2016 34

Cyber Attack Reporting and

Incident Response

Co-starring Blockchain

Page 35: Segmantics Cyber Security Reporting and Incident Management

© Segmantics Ltd 2016 35

RMI

ReporterIncident ManagerInvestigator

Page 36: Segmantics Cyber Security Reporting and Incident Management

© Segmantics Ltd 2016 36

Reporter RReported by People Reported by IT Systems

Page 37: Segmantics Cyber Security Reporting and Incident Management

© Segmantics Ltd 2016 37

Incident Manager – Assess ReportsM

Page 38: Segmantics Cyber Security Reporting and Incident Management

© Segmantics Ltd 2016 38

Incident Manager – Add ReportsM

Page 39: Segmantics Cyber Security Reporting and Incident Management

© Segmantics Ltd 2016 39

Incident Manager – Understand AttacksM

Cyber Store

Page 40: Segmantics Cyber Security Reporting and Incident Management

© Segmantics Ltd 2016 40

Incident Manager – Analyse CausesM

Page 41: Segmantics Cyber Security Reporting and Incident Management

© Segmantics Ltd 2016 41

Incident Manager – Plan ResponseM

Page 42: Segmantics Cyber Security Reporting and Incident Management

© Segmantics Ltd 2016 42

Incident Manager – Manage Process M

Page 43: Segmantics Cyber Security Reporting and Incident Management

© Segmantics Ltd 2016 43

Investigator – Carry out WorkI

Page 44: Segmantics Cyber Security Reporting and Incident Management

© Segmantics Ltd 2016 44

Investigator – Identify VulnerabilityI

Page 45: Segmantics Cyber Security Reporting and Incident Management

© Segmantics Ltd 2016 45

Investigator – Mitigate AttackI

Page 46: Segmantics Cyber Security Reporting and Incident Management

© Segmantics Ltd 2016 46

Incident Manager – Complete ProcessM

Page 47: Segmantics Cyber Security Reporting and Incident Management

© Segmantics Ltd 2016 47

RMI

Key ReportsCritical Processes Key Investigations

Communicate to Management

Page 48: Segmantics Cyber Security Reporting and Incident Management

© Segmantics Ltd 2016 48

Blockchain Example

Page 49: Segmantics Cyber Security Reporting and Incident Management

© Segmantics Ltd 2016 49

Ethereum

Blockchain

Solidity Contracts

Development Environment

Blockchain Security by Segmantics

Use Case

Investigations

Reporting

Incident Management

Analyse Inherent Risk

Assure Implementation Risk

Manage Operations Risk

Risk Assessment

Reporting & Incident M

anagement

Review Security Policy, Configuration, Errata,

Standards, Best Practice, Vulnerabilities & Controls

Page 50: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 50

Blockchain Use Case & SecuritySee video - https://vimeo.com/184829003

Page 51: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 51

Page 52: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 52

Ethereum

Blockchain

Solidity Contracts

Development Environment

Blockchain Security by Segmantics

Use Case

Investigations

Reporting

Incident Management

Analyse Inherent Risk

Accredit Implementation Risk

Manage Operations Risk

Page 53: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 53

Pack

ages

for r

esilie

nce

Page 54: Segmantics Cyber Security Reporting and Incident Management

Segmantics Ltd 2016 54

EndEmail [email protected] for more information