Kevinmhenry@msn.com
CISA CISM CRISC CISSP
Information Systems Asset Protection: Monitoring SYSTEM ATTACKS - - PowerPoint PPT Presentation
Information Systems Asset Protection: Monitoring SYSTEM ATTACKS Kevin Henry CISA CISM CRISC CISSP Kevinmhenry@msn.com Asset Protection Monitoring Agenda: Security Testing Investigating Systems Attacks and Monitoring Incidents
Kevinmhenry@msn.com
CISA CISM CRISC CISSP
Agenda:
§ Botnets and zombies
Malware Denial of Service
A computer crime is a crime against a computer or network
Prevention, detection, investigation
Unpatched and misconfigured
Causal factors that affect computer crime
§ Employees § Customers § Criminals
§ Hackers
Natural events
Storms, earthquake, flood
Circumstantial
Neighboring building
Utility Supply chain
Defective products
Stealth
Operational
Controls may be
s h s s h s
§ Network segmentation
Baseline configurations
Hardening
Review for: Software management
§ Meltdown, Specter
§ Unpatched, unmaintained
§ Reliance on a single dependency
§ Flooding § Broken water pipes, leaky roof
Adequate backup power
UPS Generators
Review for
The auditor should assess the risk of fraud or irregular acts during every audit
s h s s h s
Worm Logic Bomb Ransomware Virus Trojan Horse Spyware
Malware
Events affecting similar organizations Honeypots IDS / IPS
Prevent, detect, respond
t h s