2400 Baud of Technical Excitement Pretty Sure this begins to date - - PowerPoint PPT Presentation

2400 baud of technical excitement
SMART_READER_LITE
LIVE PREVIEW

2400 Baud of Technical Excitement Pretty Sure this begins to date - - PowerPoint PPT Presentation

Security Trends & Tactics AND Strategies of UETN The Quilt Winter Member Meeting 2018 Presented by Troy Jessup, UETN 2400 Baud of Technical Excitement Pretty Sure this begins to date me... DDoS Attacks on the Decline? Mitigation at


slide-1
SLIDE 1

Security Trends & Tactics


AND Strategies of UETN

The Quilt Winter Member Meeting 2018 Presented by Troy Jessup, UETN

slide-2
SLIDE 2

2400 Baud of Technical Excitement

Pretty Sure this begins to date me...

slide-3
SLIDE 3

DDoS Attacks on the Decline?

Mitigation at the ISP level is more effective, Fewer Attacks are

  • ccurring.

Threat is not entirely gone however.

SECURITY TRENDS...

slide-4
SLIDE 4

Cyber Liability Extending

Responsibility for data and data storage practices becoming more regulated.

SECURITY TRENDS...

slide-5
SLIDE 5

Internet of Things the brewing crisis.

IoT Devices are increasing risk, but much of the risk is not understood.

SECURITY TRENDS...

slide-6
SLIDE 6

Ransomware is changing.

Focus on Cryptocurrency mining is surfacing.

SECURITY TRENDS...

slide-7
SLIDE 7

Botnets Reign

More sophisticated malware is being used to C&C

SECURITY TRENDS...

slide-8
SLIDE 8

Network Scanning is faster, and more targeted

Scanning at the rate of 10,000,000 hosts/sec Its becoming easy and fast to catalog targets for new attacks.

SECURITY TRENDS...

slide-9
SLIDE 9

Timeframe for Action is quickly Shrinking.

Attacks are much more quickly following vulnerability announcements.

SECURITY TRENDS...

slide-10
SLIDE 10
slide-11
SLIDE 11

Companies Compromising Security for Business Models

Emerging more and more. The "Not so friendly Device"

SECURITY TRENDS...

slide-12
SLIDE 12

Cisco Issues
 "Smart Install"

Critical issues for Cisco device networks and services.

SECURITY TRENDS...

slide-13
SLIDE 13

Spectre / Meltdown
 The aftermath...

Critical Update for Tenant Networks, slightly less critical for public systems. Don't join the Panic!

SECURITY TRENDS...

slide-14
SLIDE 14

if A = true { } process this data if B = true { } process this data if all = false { END }

Speculative Evaluation

speculative processed data is managed 


  • utside protected memory.
slide-15
SLIDE 15

UETN STRATEGIES FOR SECURITY

AREAS OF FOCUS

slide-16
SLIDE 16

Deeper Monitoring Capabilities and Tools Development

Using better tools and monitoring options to catalog threats.

UETN STRATEGIES FOR SECURITY

slide-17
SLIDE 17
  • Dr. Ray Timothy


Executive Director of UETN

Gary Herbert


Governor of the State of Utah

slide-18
SLIDE 18

UETN OPERATIONS CENTER

slide-19
SLIDE 19

Penetration Testing Services for Connected Tenants

In-Depth Testing to Identify threats, and establish baseline effectiveness of security controls.

UETN STRATEGIES FOR SECURITY

slide-20
SLIDE 20

Supporting strategies for independent security personnel

Working with tenants to build better security support in connected networks.

UETN STRATEGIES FOR SECURITY

slide-21
SLIDE 21

Security Focused Organization

UtahSAINT Organization
 
 SAINTCON Conference

UETN STRATEGIES FOR SECURITY

slide-22
SLIDE 22

Security Briefings and Education

Security Briefing Calls
 Every 2 Weeks Includes Quilt Members

UETN STRATEGIES FOR SECURITY

slide-23
SLIDE 23

Mentoring / Intern
 Programs

Providing assistance to connected organizations to send IT/Security Professionals to UETN for internships.

UETN STRATEGIES FOR SECURITY

slide-24
SLIDE 24

UETN CHALLENGES FOR SECURITY

AREAS OF FOCUS

slide-25
SLIDE 25

Monitoring Security

  • n Large Pipes...

100Gbps Pipes


make Monitoring Difficult. 3rd Party Tools are not
 in the 100GB space yet.

CHALLENGES IN SECURITY

100+ Gbps

slide-26
SLIDE 26

Referenced Slides

https://tinyurl.com/QuiltSecurity