Identity, Access and Information Management 2008 part II

20-Nov-2008

Satisfied with the way you access your systems and information ?

Earlier this year our IDM / IAM conference was directed toward Solutions based upon eID and Identity Management from a best practices and use case approach on a management perspective. During this seminar the objective was to focus more on the technical and implementation approaches, integration issues, products and solutions that allow for a successful result. User provisioning, user federation, directory services with a centralized command and control, what are limitations and expectations. How easily does the current technology allow to integrate with distributed systems and diversified user population.

Final Program

8.30 : Registration & Welcome Coffee

9.00 : Opening Notes

by Ulrich Seldeslachts, CEO of LSEC
Introducing the Identity Management Conference 2008 part II

9.10 : Keynote : How Identity Management is evolving from actual business requirements

“ A Unique approach to IAM projects”
by Jordi Cuesta, Evidian Director Presales Support and Training

About : , 46 years old is graduated from the University of Physics of Barcelona. He started his carrier in Bull Spain in the technical department. He moved to the Headquarters in France in 1993 to developed international business with vertical solutions dedicated to the Retail sector first and then in the Manufacturing sector with SAP and Baan. Joined Evidian in 2000 in his current function.

10.10 : Practical considerations from major integration cases

“The Identity Management Rollercoaster”
by Jan Vanhaecht, IAM Architect, Deloitte Enterprise Risk Services

Lots of Identity and Access Management (IAM) projects are being suspended or even halted.  Is IAM another bubble in the IT space that exploded?  Is IAM still relevant for your organization?  Do you still need “Single Sign On”?  At the same time, a renewed demand for IAM-functionality emerges.  The business requires IAM-functions to support their business. The risks of unauthorized access become ever clearer.  Demonstration of compliance to multiple regulations is needed. Etc.  Is the IAM hype finally over and is the real added value of IAM becoming clear?  During this presentation we will share with you some experience and thoughts and present to you the critical succesfactors to build your organisation’s working IAM-environment.

About : Jan Vanhaecht is a leading IAM-architect at Deloitte Enterprise Risk Services and has an extensive practical experience in Identity, Access and Privilege management projects. During the past years, he had a leading role with an integrator in Identity, Access and Privilege management, where he build a team of experienced Identity, Access and Privilege Management engineers delivering multiple successful IAM Projects. Before joining Deloitte, Jan Vanhaecht regularly worked as consultant with most major IDM deployments, and is widely recognized for his knowledge and experience. In this role he was and still is in close contact with the product development teams.

11.00 : Coffee Break & Networking

11.30 : Technical and implementation approaches

Single Sign On (SSO) project with an large Broadband, Telco and Cable TV Service Operator : challenges, opportunities and key learnings
by Stefan Mampaey, Telenet and Stijn van Den Enden, ACA IT-Solutions

Learn how a large broadband operator (Telenet) required a fine grained access control mechanism for all their internal users that could act as a service towards existing and new business applications.
Access control to applications and data based on roles and related entitlements had to be administered centrally according to business rules instead for each application separately. A solution where
policies – access rights to applications and data (a.k.a. entitlements) – are created and managed centrally has been developed.  How this came about and what the key learnings were, was demonstrated.

12.20 : Keynote : Overview of results of European Identity & Access Management Survey

“Insights and trends from over 200 European companies in different countries and sectors”
by Benny Bogaerts, KPMG Advisory Services

What is the status and maturity of identity and access management projects in European organizations.
Find out the recent findings and benchmark some of the results with your own company’s objectives. From this survey it
is clear that Identity Management is here to stay : there are (seperate) budgets, all participants started one or more IAM projects
over the last three years, with main driver being process improvement.

13.10 : Lunch Break

14.00 : Limitations to implemenations

From the experiences in several Identity and Access Management projects and some of the experienced problems a best practice methodology has been developed. Through a series of complementary expertise and joint competencies, typical problems encountered when getting involved in IAM projects range from unrealistic budgets over no business support to the delivered solution not solving the actual problem at hand, need to be overcome in order to achieve a successful IAM project. Through a rigourous methodology and a different approach some pittfalls can be overcome. We will indicate why the tools are ‘just’ the enablers for solving the problems, but that focus should initially be on correctly identifying problems.

by Sven Pauwels, Partner IS4U and Nicolas Delcroix, DelITad

Nicolas’ background is pure IT Audit and IS Governance. Experienced in several frameworks such as Cobit, ITIL, several ISO standards, Prince2,… he set up several audit plans for different companies in a diversity of sectors. Nicolas audited most of the existing IT processes, starting from Risk Management over Security Management till Problem and Incident management. Nicolas also teaches IT Audit at the Hogeschool Antwerpen.

Sven has a pure IT background and experienced engineering into project management.  Sven started the IAM competence center within the Cronos group, today responsible for the daily management, strategy and vision of IS4U, but still hand-on involved in the IS4U projects. Sven has IAM and project management experience in Healthcare, process manufacturing, government and telecom.

14.45 : Solutions Overview Part II

Practical use cases of eID-based authentication and federated identity of the Belgian’s citizen card in accounting cards and aid organizations.

by Hugues Dorchy, MD eIDCompany

The latest developments of eID card readers in combination with advanced authentication mechanisms

by Eddy Cormon, Vasco Data Security

15.30 : Coffee Break

16.00 : Best practices : use case

Why IAM is indispensible. Even when looking into other verticals such as healthcare, and social care parallels can be drawn towards
business environments and government applications.

by John Van Westenen, Senior Consultant - Partner Traxion

16.45 : Keynote : Implications to the future of identity management

by Rob van der Staaij, Principal Consultant Everett - Author of the book
“Identiteitsmanagement - Beheersen van identiteiten”, oktober 2008 (Identity Management, Managing Identities)

17.30 : Panel discussion
18.15 : Reception & Networking
19.30 : Close of Seminar

Practical Details

LSEC & EEMA Identity, Access and Information Management Conference 2008 part II

- Thursday November 20th, Leuven

For more information about this event or registration, please email to idm2008 @ lsec.be.

Looking forward seeing you there.

Are you a leader in Security ? Do you want to share your expertise and join the Leaders in Security as a Core Expert Member ?
Contact us via email! Or call +32.16.32.85.41 for a direct contact and more information.
An information set and your Membership Welcome Pack awaits you.

 

Copyright LSEC vzw 2007-2008 with the support of the IWT.

LSEC vzw Kasteelpark 10 - 3001 Heverlee - VAT BE BE 478 045 395 - fax. +32.16.32.19.69 - info @ lsec.be

<< September 2010 >>

S M T W T F S
29 30 31 1 2 3 4
5 6 7 8 9 10 11
12 13 14 15 16 17 18
19 20 21 22 23 24 25
26 27 28 29 30 1 2

Expert: Atos Origin Belgium & Luxemburg

A leading IT services provider. Ranks 1 in telecom outsourcing. Via Atos Worldline specialized in financial transactions.

Expert: Websense

Leading provider of unified content security

Expert: CA Technologies

Protect your critical IT assets, achieve sustainable regulatory compliance, reduce IT administration costs and enable new business opportunities with our security management products.

Expert: CA Technologies

Protect your critical IT assets, achieve sustainable regulatory compliance, reduce IT administration costs and enable new business opportunities with our security management products.

Expert: Axl-Trax

axl & trax are highly qualified experts in providing leading edge GRC services for SAP

Expert: VintiQ

VintiQ - Security Management Services

Expert: T-Systems Belgium

T-Systems is Deutsche Telekom's corporate customer arm.

Expert: LIN.K nv - LINKID

LIN.K is a provider of online user authentication, identification with the system LINKID

Expert: Devoteam Belgium

Devoteam Belgium, one of the major European ICT consultancy specialists with offices in 23 countries

Expert: CHB Technologies - Celadon Hailstone Biometrics

Celadon Bailstone Biometrics

Expert: Barracuda Networks

Worldwide supplier of email and internet security

Expert: Bluekrypt

Security Expert in Crypto, Information Security and Training

Expert: Sophos

Sophos is the Utimaco is a leading global provider of data security solutions, enabling mid- to large-size organizations to safeguard their data assets against intentional or unintentional data loss, and to comply with privacy laws.

Expert: arrowUp

arrowUp - member of the Lykos Group

Expert: Research In Motion - RIM - Blackberry

Research In Motion - RIM - Blackberry

Expert: Dimension Data

Dimension Data

Expert: Bull

Bull

Expert: Check Point Software Technologies

Check Point Software Technologies

Expert: Traxion

Traxion - Identity Management - cornerstone for your company

Expert: MMS-Secure

MMS-Secure nv, a distributor with a specific focus on network and systems security

Expert: F-Secure Corporation

F-Secure - Fastest Focused Anti-Virus Protection

Expert: C-Cure

C-Cure are Information Security architects already since 1998

Expert: IS4U

IS4U - Cronos specializes in Identity and Access Management

Expert: UCL Crypto Group

The Crypto Group of UCL, the UC of Louvain-la-Neuve is a research group specialized in cryptography and information security.

Expert: eID Company

eID company provides a flexible easy to integrate eID in any web application. Access to eID as a webservice.

Expert: Approach

Approach specializes in Application Security, Identity Management and financial transactions.

Expert: Global Knowledge

Global Knowledge is the worldwide leader in IT and business training.

Expert: ACA IT-Solutions

ACA IT-Solutions, end to end IT solutions and IDM Expert. Probably the largest and most successful independent J2EE solution provider.

Expert: RSA - Security Division of EMC

RSA - The Security Division of RSA. One of the leading companies in the world in IT Security. Enterprise wide Data Security solutions, suites and Services.

Expert: Novell

Comprehensive Identity, Security and Systems Management Solutions.

Expert: Exclusive Networks

Value added Distributor specialized in information security. Operational in Belgium, France, Switzerland and Luxemburg.

Expert: Unisys

Security Unleashed – At Unisys, we’re looking at security in an entirely new way.Security is no longer a defensive measure. It’s an enabling catalyst for achievement.Unisys Secure Business Operations help to unleash your full potential.

Expert: D Soft

D Soft is an expert in electronic distribution of digital documents.

Expert: Scanit

Scanit is an IT security boutique specializing in ethical hacking, penetration testing, vulnerability assessments and security configuration reviews.

Expert: Zion Security

ZION SECURITY is the leading European application security company. Our mission is to secure your business value by securing your business applications.

Expert: Zetes

For those who want to see the difference!

Expert: Vasco

VASCO designs, develops, markets and supports patented User Authentication products for e-business and e-commerce.

Expert: SUN Microsystems

Everyone and everywhere connected to the network.

Expert: Security4Biz

Security4Biz offers ICT security consultancy services.

Expert: SecurIT

The value proposition to our customers is the competence and experience of highly qualified people, combined with best-in-class solutions from leading suppliers, and our entire focus on Identity and Access Management.

Expert: Sealed

Expert in implementation of e-Security, e-Proofs and e-ID within the management of business & document flows & processes, or within the management of your enterprise content in the broad sense.

Expert: McAfee

McAfee is the world largest dedicated security companY;

Expert: NXP (founded by Philips)

Sense & simplicity. Help customers to transform initial ideas into competitive products and cost-efficient manufacturing solutions within healthcare, lifestyle and technology.

Expert: Microsoft

At Microsoft, we're motivated and inspired every day by how our customers use our software to find creative solutions to business problems.

Expert: KPMG

PMG Information Risk Management (IRM) focuses on inherent risks in technology systems used to support your business objectives and grow your business.

Expert: Intesi

Intesi Belgium is the R&D competence center of Intesi Group, focusing on Internet Security, using state-of-the-art ICT technologies.

Expert: EMC2

EMC Corporation is the world's leading developer and provider of information infrastructure technology and solutions.

Expert: Deloitte

In addition to the qualities of a leading Belgian audit and consulting firm, Deloitte is different through the values it shares daily with clients and employees.

Expert: Cisco

Cisco Internet Protocol (IP)-based networking solutions are the foundation of the Internet.

Expert: Certipost

Specialist in secured electronic document exchange for companies, the state, and for residential customers.

Expert: BT - British Telecom

One of the world's leading providers of communications solutions.

Expert: Alcatel Lucent

Alcatel provides communications solutions to telecommunication carriers, Internet service providers and enterprises for voice, data and video.

Expert: Verizon Business

Verizon Business is now the leading provider of managed security services worldwide with acquisition of Cybertrust.

Expert: IBM

A world leader in Information Technology with a large professional organization in Belgium and a series of security experts.

Expert: Norkom Technologies

Norkom is a market-leading provider of innovative financial crime and compliance solutions to the global financial services industry.

Expert: Telindus

Telindus has expertise in all aspects of modern telecommunications technology, including LAN, WAN, Internet and e-networking, network access and security, VOIP (Voice over Internet Protocol), VPN, fixed and mobile communications.

Expert: K.U. Leuven

Computer Security and Industrial Cryptography (COSIC): Cryptography to protect data against passive and active fraud.

Expert: ATOS Worldline nv

Specialist in end-to-end secure payment systems.

Expertise: UTM

UTM - Unified Threat Management

Expertise: End Point Security

End Point Security

Expertise: DLP - Data Leakage, Data Loss Prevention and Protection

DLP - Data Leakage, Data Loss Prevention and Protection

Expertise: SOA - Service Oriented Architectures

Expertise: Identity Management

Identity Management (IdM) enables organizations to facilitate and control their users' access to critical online applications and resources — while protecting confidential personal and business information from unauthorized access

Expertise: Crypto

Cryptography - Cryptografie - Cryptographie

Expertise: Secure Application Development

Secure Application Development. Security does not only start at user name and password login, from the first entry of a software security needs to be integrated.

Expertise: RFID

passive and active low-cost wireless tags

Expertise: Application Security

encompasses measures taken to prevent exceptions in the security policy of an application or the underlying system

Expertise: Wireless Security

Expertise: Appliances

protect computer networks from unwanted data traffic, intruders, email spam, enforce policies, and may also be used to create and manage VPNs.

Expertise: Access Control

the ability to permit or deny the use of something by someone.

Expertise: Risk and Vulnerability Assessment

process of identifying and quantifying vulnerabilities in a system..Cataloging assets and capabilities (resources) in a system

Expertise: Penetration Testing

A method of evaluating the security of a computer system or network by simulating an attack by a malicious user, commonly known as a hacker.

Expertise: Physical Security

describes measures that prevent or deter attackers from accessing a facility, resource, or information stored on physical media. It can be as simple as a locked door or as elaborate as multiple layers of armed guardposts.

Expertise: Remote Access

computer program that lets you access your PC from another PC via the Internet, LAN, or phone connection and work on your computer ...

Expertise: Security Policy

security policy is a definition of what it means to be secure for a system, organization or other entity. For systems, the security policy addresses constraints on functions and flow among them, constraints on access by external systems and adversaries

Expertise: Anti-Virus

Software that detects, repairs, cleans, or removes virus-infected files from a computer.

Expertise: Spyware

Software that covertly gathers user information through the user's Internet connection without his or her knowledge, usually for advertising purposes.

Expertise: Authorization

The process of enforcing policies: determining what types or qualities of activities, resources, or services a user is permitted. Usually, authorization occurs within the context of authentication.

Expertise: Authentication

Provides a way of identifying a user, typically by having the user enter a valid user name and valid password before access is granted. The process of authentication is based on each user having a unique set of criteria for gaining access.

Expertise: Computer Virus

Program or programming code that replicates by being copied or initiating its copying to another program, computer boot sector or document.

Expertise: Smart Cards

smart card or chip card, is defined as any pocket-sized card with embedded integrated circuits which can process information such as a SIM for a mobile phone or an eID card

Expertise: UTM and Appliances

Unified threat management (UTM) is a term which is used to describe network firewalls that have many features in one box, for example junk e-mail filtering,or anti-virus capability, along with the traditional activities of a firewall.

Expertise: NAC

Network access control (NAC) is a method by which hardware and software grant access to enterprise network resources after first authorizing the user and device and verifying the device's compliance with the enterprise's security policy.

Expertise: Biometrics

Biometrics (ancient Greek: bios ="life", metron ="measure") is the study of methods for uniquely recognizing humans based upon one or more intrinsic physical or behavioral traits.

Expertise: DRM

Expertise: eID - Electronic Identity Cards

The electronic identity card (eID) is an official electronic proof of one's identity. It also enables the possibility to sign electronic documents with a legal signature.