Security Hardening 2012 - part 2

Become a member of the site to sign up for this event.

07-Jun-2012

Security Hardening 2012 - part 2

Sequel to the successful Security Hardening Events of October and February, LSEC and its partners are organizing the next quarterly Security Hardening seminar on June 7th, 2012.

“Security Hardening” means to explore the possibilities of improving the IT and Information Security architectures and systems.
During these seminars, it became obvious that most of the topics were very complementary and gave an interesting viewpoint on how to improve security measures within companies.

Outline

This seminar is mainly intended to companies and government departments already having a security environment, and interested in finding out about new solutions, new approaches and ways to improve their security infrastructure. Security Hardening in this case meant to increase the level of security on different aspects and components of your environment. This would have been be either from a network security perspective, a database and application perspective or increasing the granularity and scope of your data protection technologies. With the hardening was also understood ways and procedures to improve security management as a whole.

All together, we’ve explored how to grow from the typical 80% of managed IT and information security risks to upgrade to 90% or and to understand the complexities, costs and resources necessary to this upgrade path.

9.00h : welcome coffee & registrations

9.25h : Introduction, Security Hardening 2012 part 2 - an overview of hardening by Ulrich Seldeslachts, CEO LSEC

9.30h : Registered mail, certifying mail delivery in the Cloud, by Cham San Tek, Regify

10.00h :  How to overcome “blind spots” created by virtualization, by Bjorn de Jong; Net Optics International Business Development EMEA & LAM

Abstract : Virtualization is delivering many advantages to companies and datacenters. Along with the advantages, virtualization can also become a significant threat. The Phantom Virtual Tap software delivers total visibility of inter-VM traffic passing between virtual servers and reveals previously invisible traffic for superior security, regulatory compliance, and manageability.

About : Bjorn has been active in the IT business since 1998, primarily in network management and security solutions (Network General, NetIQ, Visual, Black Ice/ISS etc). Since 2004 his focus has been on Data Access solutions from Net Optics, Gigamon and Network Critical. Net Optics is the leading provider of Intelligent Access and Monitoring Architecture solutions that deliver real-time IT visibility, monitoring and control. More than 7,000 enterprises, service providers and government organizations—including 85 percent of the Fortune 100—trust Net Optics’ comprehensive solutions to plan, scale and future-proof their networks.

10.40h :  Data Leak, by Dominique Laigle Security Practice, Bull Services and Solutoins

Intellectual property thefts around the world have a cost of around 10 billion €/year to businesses as a whole, without counting the several more billion € /year losses for industrial espionage that businesses suffer. As a matter of fact, “Knowledge” thefts are among the most common attacks on companies from unscrupulous individuals. However, we need also to take into account that the most common data leaks occur from insiders who have no clue about the danger of their behaviour regarding their “art of communication” with the outside world. Organisations are therefore realizing that the risks associated with data leaks must be taken into account at the same security level as the overall enterprise security hardening.

To satisfy this growing business need, Bull has developed a “data leaks” solution whose main pillars are:
- Discover and reference the sensitive documents dynamically, based on rules specific to the organization (keywords, recipients ...)
- Establish a footprint that can be recognized even if they have been altered or camouflaged (copy and paste, capture ...)
- Monitor network flows to detect any improper output.

11.20h :  GSM network vulnerabilities, by Peter Cox, UM Labs

The need for data security is well understood, most data applications and services have at least some level of security protection.  In contrast, the security problems associated with voice communication is rarely considered. This presentation will examine the security threats relating to voice calls made on GSM networks and will include a demonstration of call interception on a GSM network. The presentation will then outline how these problems can be addressed using VoIP technology and sound data security principles.
An earlier version of this presentation was presented at the Federal Cyber Security Conference in Baltimore, October 2011.

12.10h : lunch break & networking

13.10h : 3 generations of access & identity management: technology overview, trends and future evolutions, by Rik Van Bruggen, Regional Sales Director Courion

Abstract : In the past 15 years, our industry has tried and tested multiple strategies to address the “identity problem”. Everyone seems aware of the fact that the “insider threat” is a clear and present vulnerability in our organisations’ IT infrastructure, but our strategies to mitigate the risks associated with this vulnerability have been all over the place. In this presentation, we would like to present an overview of the industry’s evolution, assess strengths, weaknesses and lessons learnt from the different attempts at solving the problem - and suggest a way forward.

Visit :  http://prezi.com/anzj7koibsbu/lsec-presentation

About : Rik Van Bruggen has been working in the Identity and Access Management industry since the end of the nineties, at companies like Novell, Imprivata, and now Courion. Having lived through the industry’s different generations of problem solving strategies, he is very well placed at presenting and discussing the latest challenges and solutions with the audience of this session.

13.50h :  Try before you buy : antivirus diverting not only signatures but also sandboxing, by Jerome Nokin, Security Consultant, Terremark (a Verizon Business Company)

Abstract : Malware recognition today is still mainly based upon the recognition of signatures from known malware. But the malicious code signatures are only effective if they haven’t been changed. Modern malware is changing the code (by polymorphism, metamorphism,) or by obfuscation of malicious codes. As a result most antivirus vendors’ were seen forced to supplement their traditional mechanisms of detection by heuristic approaches and emulation of code (sandboxing). But even these detection techniques should be should be tested, despite everything, We’ll take the test by carrying out some of our payloads Metasploit favourites.

About Jerôme is an expert in Ethical hacking (CEH certification), penetration testing (ECSA certification) and vulnerability assessment of Web-based applications, network infrastructures and operating systems. Source code reviewing (C/C++). Prior to joining Terremark (Verizon Business ), he was Security Consultant as System and security architect at Trasys, where he did Vulnerability assessments and penetration testing of web-based applications, network/security related devices and operating system.Part of his expertise he derived from being a Security and Linux engineer with Trasys.

14.30h :  Coffee Break

15.00h : Trusted Computing Technology – Moving security from software to hardware protection. By Nick Spekkels, Business Development Director (commercial) EMEA - & Boudewijn Kiljan, Business Development Director (technical) Global – Wave Systems Corp.

Abstract : Trusted Computing is not only a concept of ensuring information technologies that can be trusted, it is also referring to a standardized technology platform which is supported by many hardware, software and network vendors worldwide to facilitate securing the data on these devices.
Hardening your information security also mean utilizing your existing TPM (Trusted Platform Module), which you might not know you already had in your laptops and desktops.
Discover how you activate your TPM and use TPM to lower your TCO on security. Also find out how hardware based disk encryption can increase your security and compare it to software encryption. Increased security (secrets protected by special hardware) and lower costs (up to 10 times lower than software based full disk encryption technologies products)

About : Nick is an experienced security professional with a focus around Data Protection.
15 years ago Nick started his career at Unilever HQ running IT projects, after 5 years fulfilling various IT roles he made the switch to IT security, starting at SafeBoot, a Dutch Data Protection Software company.
When in 2008 SafeBoot got acquired by McAfee Nick took the role as Product Line Executive for Northern Europe at McAfee.
In that role Nick advised large enterprises on security strategies and how to comply to various local regulations.
Now Nick works as the Director of Business Development EMEA at Wave Systems focusing on security by design and advising organizations about the future of security and the open industry standards from the Trusted Computing Group.Wave Systems Corp. reduces the complexity, cost and uncertainty of data protection by starting inside the device. Unlike other vendors who try to secure information by adding layers of software for security, Wave leverages the security capabilities built directly into endpoint computing platforms themselves. Wave has been a foremost expert on this growing trend, leading the way with first-to-market solutions and helping shape standards through its work as a board member for the Trusted Computing Group.

15.40h : Security Hardening by Privileged User Access control, Johan Van Hove, Security Lead, CA Technologies

Federation is more than Web SSO, but it is the delivery of secured digital identities between autonomous domains, where companies or partner companies can get transparant access to applications made available over Internet. There is a shift happening in the federation concept, where they have to provide for a wider vision and strategy based upon Identity and Access Management.

16.20h : When business fully understands the challenges of security, an end to end security strategy can be considered. An example from laptop to datacenter, by Antonio Mata Gomez, Oracle

Abstract : The simple question was : what is Oracle doing on information security? There was a simple answer : many things. That has resulted in a series of activities for Oracle to demonstrate their security practice, from db hardening to an end to end perspective. Oracle’s identity management solutions, Oracle applications and the whole cloud offering are only a fragment of the security perspectives of Oracle. As a result, with this concept of an end to end approach, as a case study, it becomes clear what the concept of hardening is all about. It starts from the single data digit, but has to be carried throughout the chain of processing, at light speed or faster and secured.

Case:  Transparency, Accountability and Auditability of high privileged users access is mandatory.
Efficient and consistent User Administration of multiple Databases is becoming more and more important, and is a basic requirement in compliance and auditing discussions. Not only making sure that the right users have access to the right databases at any point in time, but also the traceability of the past and a full view of the lifecycle management and auditability of the high privileged users (eg DBAs) is a key basic compliance requirement in any organization Compliance is not only a matter of processes and applications, but also the place where the information is stored, is seen as a serious attention point for auditing the compliance, security and risk exposure. Ensuring that the right people at all times have only access to the information they are entitled to, has never been so important.  The user management across these multiple DB instances is often done individually, with manual interventions or using scripts, which is costly, not error free and not well accepted by auditors.
About : Antonio started his career as an Oracle database consultant. Back then IT was more interested in High Availability and Scalability but enterprises started showing a growing interest in protecting their key Business Assets persisted in database management systems. Antonio’s expertise was formed through many projects where protecting the database was key in order to guarantee the required security level.In his role of Database Security expert Antonio closely followed up on the Identity & Access Management market trends, which has enabled him to approach security projects from multiple angels.

17.00h : Closing Remarks & Networking Reception

18.00h : Close of Seminar

Specifically some topics we are aiming for :
- network monitoring, deep packet inspection
- embedded security
- IPv6 & impact on security
- Database security hardening
- Web application security - firewalling
- New developments in hardware security – TPG/CC-based
- Security as a service (in the cloud)
- Virtualization security
- Identity management – access management - authentication
- Vulnerability testing – intrusion detection
- Data Protection technologies & systems
- Critical Infrastructure Protection
- Cybersecurity & Malware protection
- Security Monitoring & Network Monitoring
- Governance & Compliance
- …

Practical Details

LSEC Security Hardening 2012 - part 2
June 7th, Kasteelpark Arenberg, Leuven - Department Computer Sciences - 200

Seminar : Auditoria N- Celestijnenlaan 200n, 3001 Heverlee - Lokaal 00.04 - 200N.00.0004
Registration : INKOMHAL 200S

Driving instructions :
http://wms.cs.kuleuven.be/cs/english/general-information/directions
Departement Computerwetenschappen
KU Leuven
Celestijnenlaan 200A
3001 Heverlee – België
Once inside Follow Signs to auditorium 200N 00.04 – or 200S 00.02 for reception and lunch break.
Following E40 or E314 to Leuven, exit Leuven centre (nr. 15) and turn at the 3rd traffic light right for Heverlee by entering Celestijnenlaan. You will find the signs to the Department on your right (200A).
Public transportation : follow instructions on the Computer Sciences website

Register already now, to ensure your seat at http://securityhardening2012part2.eventbrite.com

Free to participate to LSEC Members, LSEC partners and partner Members, Agoria Members, ECSA Members.
Free to participate to any others when subscribed before March 30th. After that date, subscription fee of 150 €.
Non-Cancellation fee of 150 €, upon no cancellation at least 1 day before the event and non-appearance.

This event was supported by CA Technologies, an LSEC platinum sponsor for our events. We are always open to other, additional interested parties.

About the organizers :
This event is organized by LSEC, a not-for-profit association focused on Information Security in Belgium. LSEC has been organizing over the last couple of years over 100 highly professional information security oriented activities. LSEC is a founding member of the European Security Innovation Network, a project supported by the European Commission through the INTERREG IVb program that supports innovative developments in the North Western European region in Security. With its partners Systematic Paris region in France, SITC in the UK and TeleTrusT in Germany, LSEC welcomes the active participation of companies to participate in the discussion of potential threats, challenges and opportunities for companies in the domain of Security, or to the enterprise market and government institutions.

Become a member of the site to sign up for this event.

Are you a leader in Security ? Do you want to share your expertise and join the Leaders in Security as a Core Expert Member ?
Contact us via email! Or call +32.16.32.85.41 for a direct contact and more information.
An information set and your Membership Welcome Pack awaits you.

 

Copyright LSEC vzw 2007-2008 with the support of the IWT.

LSEC vzw Kasteelpark 10 - 3001 Heverlee - VAT BE BE 478 045 395 - fax. +32.16.32.19.69 - info @ lsec.be

<< June 2013 >>

S M T W T F S
26 27 28 29 30 31 1
2 3 4 5 6 7 8
9 10 11 12 13 14 15
16 17 18 19 20 21 22
23 24 25 26 27 28 29
30 1 2 3 4 5 6

Expert: IBM Security Services Belgum

A world leader in Information Technology with a large professional organization in Belgium and a series of security experts.

Expert: Symantec

Symantec helps consumers and organizations secure and manage their information-driven world.

Expert: Symantec

Symantec helps consumers and organizations secure and manage their information-driven world.

Expert: Cognitive Security

Providing detailed intelligence against highly sophisticated network attacks.

Expert: Courion

Leader in IAM Solutions

Expert: Oracle

Oracle Belgium & Luxemburg

Expert: Option

Wireless data security enablers

Expert: TNO

TNO Research and Innovation

Expert: Control & Protection

Automatisering SCADA, PLC; Meettoestellen en brandbeveiliging

Expert: Thales Group

Thales Group

Expert: On2It

Smart IT Security We Are On To It

Expert: Mobco

Mobile Fleet Management

Expert: TITANS

TITANS ICT Consulting

Expert: G Data

G Data Anti Virus Solutions

Expert: Outpost 24 - Vulnerability Management Made Easy

Outpost 24 - Vulnerability Management Made Easy

Expert: Regify - Trusted and Binding Secure eMail

Regify - Trusted and Binding Secure eMail

Expert: Mobila - Mobile Enterprise Applications

Mobile Enterprise & Applicatinos

Expert: Lancelot Institute

Lancelot Institute - Training in Information Security, IT- Risk & IT - Auditing

Expert: CSI Tools

CSI tools is an expert software solution provider specialized in powerful tools for IT architects and auditors who are focused on maximizing GRC project development efficiency in SAP environments.

Expert: Intrinsic-ID

Content Protection, Unique Device Identification, Key Storage, PUF Physical Unclonable Functions

Expert: Belgacom ICT

Belgacom ICT Security Solutions for Large, Medium and Small Enterprises

Expert: Qualys

On Demand Vulnerability Management and Policy Compliance

Expert: Trend Micro

Securing your web world

Expert: Egemin

Egemin provides process and handling automation engineering and Secures Industry Automation

Expert: AEP Networks

More than 60 countries ... protected by AEP Networks

Expert: Palo Alto Networks

Next Generation Firewalls

Expert: Atos Origin Belgium & Luxemburg

A leading IT services provider. Ranks 1 in telecom outsourcing. Via Atos Worldline specialized in financial transactions.

Expert: Websense

Leading provider of unified content security

Expert: CA Technologies

Protect your critical IT assets, achieve sustainable regulatory compliance, reduce IT administration costs and enable new business opportunities with our security management products.

Expert: CA Technologies

Protect your critical IT assets, achieve sustainable regulatory compliance, reduce IT administration costs and enable new business opportunities with our security management products.

Expert: Axl-Trax

axl & trax are highly qualified experts in providing leading edge GRC services for SAP

Expert: VintiQ

VintiQ - Security Management Services

Expert: T-Systems Belgium

T-Systems is Deutsche Telekom's corporate customer arm.

Expert: LIN.K nv - LINKID

LIN.K is a provider of online user authentication, identification with the system LINKID

Expert: Devoteam Belgium

Devoteam Belgium, one of the major European ICT consultancy specialists with offices in 23 countries

Expert: CHB Technologies - Celadon Hailstone Biometrics

Celadon Bailstone Biometrics

Expert: Barracuda Networks

Worldwide supplier of email and internet security

Expert: Sophos

Sophos is the Utimaco is a leading global provider of data security solutions, enabling mid- to large-size organizations to safeguard their data assets against intentional or unintentional data loss, and to comply with privacy laws.

Expert: Dimension Data

Dimension Data

Expert: Bull

Bull

Expert: Check Point Software Technologies

Check Point Software Technologies

Expert: MMS-Secure

MMS-Secure nv, a distributor with a specific focus on network and systems security

Expert: F-Secure Corporation

F-Secure - Fastest Focused Anti-Virus Protection

Expert: C-Cure

C-Cure are Information Security architects already since 1998

Expert: IS4U

IS4U - Cronos specializes in Identity and Access Management

Expert: UCL Crypto Group

The Crypto Group of UCL, the UC of Louvain-la-Neuve is a research group specialized in cryptography and information security.

Expert: eID Company

eID company provides a flexible easy to integrate eID in any web application. Access to eID as a webservice.

Expert: ACA IT-Solutions

ACA IT-Solutions, end to end IT solutions and IDM Expert. Probably the largest and most successful independent J2EE solution provider.

Expert: RSA - Security Division of EMC

RSA - The Security Division of RSA. One of the leading companies in the world in IT Security. Enterprise wide Data Security solutions, suites and Services.

Expert: Unisys

Security Unleashed – At Unisys, we’re looking at security in an entirely new way.Security is no longer a defensive measure. It’s an enabling catalyst for achievement.Unisys Secure Business Operations help to unleash your full potential.

Expert: Zion Security

ZION SECURITY is the leading European application security company. Our mission is to secure your business value by securing your business applications.

Expert: Zetes

For those who want to see the difference!

Expert: Vasco

VASCO designs, develops, markets and supports patented User Authentication products for e-business and e-commerce.

Expert: SUN Microsystems

Everyone and everywhere connected to the network.

Expert: Security4Biz

Security4Biz offers ICT security consultancy services.

Expert: SecurIT

The value proposition to our customers is the competence and experience of highly qualified people, combined with best-in-class solutions from leading suppliers, and our entire focus on Identity and Access Management.

Expert: Sealed

Expert in implementation of e-Security, e-Proofs and e-ID within the management of business & document flows & processes, or within the management of your enterprise content in the broad sense.

Expert: McAfee

McAfee is the world largest dedicated security companY;

Expert: NXP (founded by Philips)

Sense & simplicity. Help customers to transform initial ideas into competitive products and cost-efficient manufacturing solutions within healthcare, lifestyle and technology.

Expert: KPMG

PMG Information Risk Management (IRM) focuses on inherent risks in technology systems used to support your business objectives and grow your business.

Expert: EMC2

EMC Corporation is the world's leading developer and provider of information infrastructure technology and solutions.

Expert: Deloitte

In addition to the qualities of a leading Belgian audit and consulting firm, Deloitte is different through the values it shares daily with clients and employees.

Expert: Certipost

Specialist in secured electronic document exchange for companies, the state, and for residential customers.

Expert: Ascure

World class information risk management services!

Expert: Verizon Business

Verizon Business is now the leading provider of managed security services worldwide with acquisition of Cybertrust.

Expert: IBM

A world leader in Information Technology with a large professional organization in Belgium and a series of security experts.

Expert: K.U. Leuven

Computer Security and Industrial Cryptography (COSIC): Cryptography to protect data against passive and active fraud.

Expert: ATOS Worldline nv

Specialist in end-to-end secure payment systems.

Expertise: UTM

UTM - Unified Threat Management

Expertise: End Point Security

End Point Security

Expertise: DLP - Data Leakage, Data Loss Prevention and Protection

DLP - Data Leakage, Data Loss Prevention and Protection

Expertise: SOA - Service Oriented Architectures

Expertise: Identity Management

Identity Management (IdM) enables organizations to facilitate and control their users' access to critical online applications and resources — while protecting confidential personal and business information from unauthorized access

Expertise: Crypto

Cryptography - Cryptografie - Cryptographie

Expertise: Secure Application Development

Secure Application Development. Security does not only start at user name and password login, from the first entry of a software security needs to be integrated.

Expertise: RFID

passive and active low-cost wireless tags

Expertise: Application Security

encompasses measures taken to prevent exceptions in the security policy of an application or the underlying system

Expertise: Wireless Security

Expertise: Appliances

protect computer networks from unwanted data traffic, intruders, email spam, enforce policies, and may also be used to create and manage VPNs.

Expertise: Access Control

the ability to permit or deny the use of something by someone.

Expertise: Risk and Vulnerability Assessment

process of identifying and quantifying vulnerabilities in a system..Cataloging assets and capabilities (resources) in a system

Expertise: Penetration Testing

A method of evaluating the security of a computer system or network by simulating an attack by a malicious user, commonly known as a hacker.

Expertise: Physical Security

describes measures that prevent or deter attackers from accessing a facility, resource, or information stored on physical media. It can be as simple as a locked door or as elaborate as multiple layers of armed guardposts.

Expertise: Remote Access

computer program that lets you access your PC from another PC via the Internet, LAN, or phone connection and work on your computer ...

Expertise: Security Policy

security policy is a definition of what it means to be secure for a system, organization or other entity. For systems, the security policy addresses constraints on functions and flow among them, constraints on access by external systems and adversaries

Expertise: Anti-Virus

Software that detects, repairs, cleans, or removes virus-infected files from a computer.

Expertise: Spyware

Software that covertly gathers user information through the user's Internet connection without his or her knowledge, usually for advertising purposes.

Expertise: Authorization

The process of enforcing policies: determining what types or qualities of activities, resources, or services a user is permitted. Usually, authorization occurs within the context of authentication.

Expertise: Authentication

Provides a way of identifying a user, typically by having the user enter a valid user name and valid password before access is granted. The process of authentication is based on each user having a unique set of criteria for gaining access.

Expertise: Computer Virus

Program or programming code that replicates by being copied or initiating its copying to another program, computer boot sector or document.

Expertise: Smart Cards

smart card or chip card, is defined as any pocket-sized card with embedded integrated circuits which can process information such as a SIM for a mobile phone or an eID card

Expertise: UTM and Appliances

Unified threat management (UTM) is a term which is used to describe network firewalls that have many features in one box, for example junk e-mail filtering,or anti-virus capability, along with the traditional activities of a firewall.

Expertise: NAC

Network access control (NAC) is a method by which hardware and software grant access to enterprise network resources after first authorizing the user and device and verifying the device's compliance with the enterprise's security policy.

Expertise: Biometrics

Biometrics (ancient Greek: bios ="life", metron ="measure") is the study of methods for uniquely recognizing humans based upon one or more intrinsic physical or behavioral traits.

Expertise: DRM

Expertise: eID - Electronic Identity Cards

The electronic identity card (eID) is an official electronic proof of one's identity. It also enables the possibility to sign electronic documents with a legal signature.