GDPR an inherent part of the GDPR the human firewall because - - PowerPoint PPT Presentation

gdpr
SMART_READER_LITE
LIVE PREVIEW

GDPR an inherent part of the GDPR the human firewall because - - PowerPoint PPT Presentation

Rob May - CyberSecurity Briefing cybersecurity is GDPR an inherent part of the GDPR the human firewall because cybersecurity isnt just an IT problem rob.may@ramsac.com @robmay70 #humanfirewall rob.may@ramsac.com @robmay70 1 3


slide-1
SLIDE 1

Rob May - CyberSecurity Briefing (c) ramsac limited 2020 1

the human firewall

because cybersecurity isn’t just an IT problem

#humanfirewall rob.may@ramsac.com @robmay70

rob.may@ramsac.com @robmay70

cybersecurity is an inherent part

  • f the GDPR

GDPR

rob.may@ramsac.com @robmay70

£900k (£385k ICO) v £17m £100k £50k £400k

British Airways – fine?

15 Day Hack 380,000 Payments 75,000 passengers stranded 726 flights cancelled

  • ver 3 days

4% of global turnover, 2017 BA's total revenue was £12.2 billion Fine circa £500 million

rob.may@ramsac.com @robmay70

1 3 4 5

slide-2
SLIDE 2

Rob May - CyberSecurity Briefing (c) ramsac limited 2020 2

British Airways – fine?

15 Day Hack 380,000 Payments 75,000 passengers stranded 726 flights cancelled

  • ver 3 days

Actual: 1.5% of global turnover Total £183 million £4 per annual passenger Government get the money

rob.may@ramsac.com @robmay70

if you think compliance is expensive, try non- compliance.

rob.may@ramsac.com @robmay70

rob.may@ramsac.com @robmay70

royal wedding guest name Lord or Lady First - First pet’s name Surname – Mother’s maiden

name

  • f

Your favourite place

Just for fun …

6 7 8 9

slide-3
SLIDE 3

Rob May - CyberSecurity Briefing (c) ramsac limited 2020 3 Say no more!

Minion name??? What’s your

First name: your Mum’s 16 digit credit card number Middle name: the three digit number on the back Last name: the expiration month/year

WARNING this is serious!

rob.may@ramsac.com @robmay70

there are two types of organisation…

$2,000,000,000,000 $3,000,000,000,000 $4,000,000,000,000 $5,000,000,000,000 $6,000,000,000,000 $7,000,000,000,000 2015 2016 2017 2018 2019 2020

Photo by 401(K) 2013

THE COST

it’s BIG business

rob.may@ramsac.com @robmay70

10 11 13 14

slide-4
SLIDE 4

Rob May - CyberSecurity Briefing (c) ramsac limited 2020 4

cc: comedy_nose - https://www.flickr.com/photos/23408922@N07

what is the value of your security?

rob.may@ramsac.com @robmay70

3470

rob.may@ramsac.com @robmay70

Identityfraud.org.uk

rob.may@ramsac.com @robmay70

human behaviour

the human firewall

cc: Guillaume Brialon - https://www.flickr.com/photos/84639318@N00

the problem with policies…

rob.may@ramsac.com @robmay70

15 16 18 19

slide-5
SLIDE 5

Rob May - CyberSecurity Briefing (c) ramsac limited 2020 5

rob.may@ramsac.com @robmay70

the core threats

rob.may@ramsac.com @robmay70

MAL-icious soft-WARE

rob.may@ramsac.com @robmay70 rob.may@ramsac.com @robmay70

social engineering

rob.may@ramsac.com @robmay70

trust and scepticism are part

  • f the

answer

rob.may@ramsac.com @robmay70

20 21 22 23

slide-6
SLIDE 6

Rob May - CyberSecurity Briefing (c) ramsac limited 2020 6

rob.may@ramsac.com @robmay70

the top 25 passwords in the UK

rob.may@ramsac.com @robmay70

passwords should be like your toothbrush

don’t let anyone else use yours

rob.may@ramsac.com @robmay70

whatever you do, don’t buy one of these!

rob.may@ramsac.com @robmay70

Complimentary Free Premium Trial https://lastpass.com/f?41486472

personally I use LastPass (the NCSC agree)

this is for you  1 month

24 25 27 28

slide-7
SLIDE 7

Rob May - CyberSecurity Briefing (c) ramsac limited 2020 7

rob.may@ramsac.com @robmay70

software updates how do you know?

cc: akeii - https://www.flickr.com/photos/21675869@N03

phishing, whaling and ceo crime

rob.may@ramsac.com @robmay70

cc: Louis Abate - https://www.flickr.com/photos/25132305@N05

Don’t forget physical security

rob.may@ramsac.com @robmay70

cc: eGuidry - https://www.flickr.com/photos/40082898@N00

mobile security

rob.may@ramsac.com @robmay70

29 30 31 32

slide-8
SLIDE 8

Rob May - CyberSecurity Briefing (c) ramsac limited 2020 8

cc: robpatrick - https://www.flickr.com/photos/61775176@N00

the pay rise

  • r brexit

scams

rob.may@ramsac.com @robmay70

it takes so much more than 1 person

rob.may@ramsac.com @robmay70

the human firewall

rob.may@ramsac.com @robmay70

penetration test(s)

rob.may@ramsac.com @robmay70

drip feed education

remember, an intelligent person needs to hear something 6 times before they get it…

33 34 35 36

slide-9
SLIDE 9

Rob May - CyberSecurity Briefing (c) ramsac limited 2020 9

rob.may@ramsac.com @robmay70

both GDPR and cyber education are an on-going journey and not a destination

rob.may@ramsac.com @robmay70

please do contact me

rob.may@ramsac.com @robmay70 www.ramsac.com direct: +44 1483 412 043

rob.may@ramsac.com @robmay70

If you’ve enjoyed this session, then you might like one of my books which you can get on Amazon Don’t forget!

Thank you

#humanfirewall

rob.may@ramsac.com @robmay70 rob.may@ramsac.com @robmay70

37 41 42 43