The not so Ominous Future of Computer System Defense Who am I PhD - - PowerPoint PPT Presentation

the not so ominous future of computer system defense who
SMART_READER_LITE
LIVE PREVIEW

The not so Ominous Future of Computer System Defense Who am I PhD - - PowerPoint PPT Presentation

The not so Ominous Future of Computer System Defense Who am I PhD Candidate at UNC Charlotte Defense Competition Enthusiast 49sd Director of Education Where are current advancements leading us? Traditional System Defense SEIM


slide-1
SLIDE 1

The not so Ominous Future of Computer System Defense

slide-2
SLIDE 2

Who am I

  • PhD Candidate at UNC Charlotte
  • Defense Competition Enthusiast
  • 49sd Director of Education
slide-3
SLIDE 3

Where are current advancements leading us?

slide-4
SLIDE 4

Traditional System Defense

  • SEIM
  • [NG] Firewall
  • Antivirus
  • Alerting
  • Threat Hunting
slide-5
SLIDE 5

The Optimal Goal

  • Respond at moment of detection
  • Respond Optimally
  • Increase cost of attacking network
  • Secure all the things
slide-6
SLIDE 6

Current Advancements

  • Robust MTD (also via SDN)
  • Active Cyber Defense
  • Automated Network Management
slide-7
SLIDE 7

How can we do better?

  • Machine/Deep Learning
  • The “Cloud”
  • Blockchain
  • Containers and Automation
slide-8
SLIDE 8

So what if we put it all together?

*Excluding blockchain of course

slide-9
SLIDE 9

Disclaimer

This may not fit your business model

slide-10
SLIDE 10

The Bleeding Edge

  • Software Defined Networks
  • SecOps/Automation
  • Immutable Infrastructure… or not
slide-11
SLIDE 11

Autonomic Systems

  • Nervous System
  • Self-(x)
  • IBM and DARPA 2001
  • IETF ANIMA
slide-12
SLIDE 12

Components of an Autonomic System

slide-13
SLIDE 13

Reactive Frameworks

  • OODA (Observer, Orient, Decide, Act)
  • MAPE (Monitor, Analyze, Plan, Execute)
  • FOCALE (Foundation, Observe, Compare,

Act, Learn, rEason)

slide-14
SLIDE 14

Current Challenges

  • Securing SDN
  • Creating intelligent feedback loops
  • Cool projects don’t last forever (runbook.io)
  • Self-awareness systems
slide-15
SLIDE 15

What does this mean?

slide-16
SLIDE 16

In Summary

  • Effective autonomic design is efficient and secure
  • Autonomic features are here
  • Reducing complexity at the cost of complexity
slide-17
SLIDE 17

Thanks for your Attention

Twitter: @trevonistrevon Website: trevon.dev

slide-18
SLIDE 18

References

  • D.I.E - Linkedin SlideShare
  • DARPA SARA - Paper
  • Network Fault Management - Paper
  • RFC 7575 - Work group