LSEC, ISSA Belgium European Spring Special Event : Information Security Challenges in 2011

Become a member of the site to sign up for this event.

28-Apr-2011

LSEC Special Spring Event : Information Security Challenges in 2011

On April 28th, in the evening, LSEC, ISSA Belgium European in co-operation with Isaca Belgium are organizing a special networking event, bringing together various people and insights fromt he Information Security Industry.
Besides the social activities, some drinks and the special location of the Coudenberghmuseum, we will be updating our partners and members with some insights in Information Security Challenges in 2011.

Managing mobiles and smartphones is one of the key topics identified by both the information security industry and the enterprise security management, as one of the key potential risks and threats in information management. Over the last five years, it has been identified as a major threat and due to the evolution of those smartphones, the potential risks became even greater. Some phones hold memory capacity of up to 64 GB, allowing for quite some data to leak from the enterprise. Most phones retain confidential information, both emails with confidential documents and discussions; as well as contacts and personal data of the relations of the person who’s using the smartphone on a daily basis. On top, most of the applications being developed, have not at all been strenghtened to today’s level of potential software threats. It’s all about convenience, user friendliness and downloading pieces of software that’s fun to share, please the kids or talk about over drinks.

At the end of 2010, ENISA published the ENISA Smartphone Security report, indicating some trends and challenges for companies to manage smartphones.

During our evening, ISSA invited ENISA to explain some of their findings in more detail and to discuss the issues with some other industry specialists.


This event is supported by our Partner Member BarracudaNetworks.

Barracuda Networks


Next to that, we have invited Raj Samani, McAfee’s EMEA CTO to give a view on some of the other Information Security Challenges we are facing in 2011.
Prior to McAfee, Raj was involved in the Public Administration Healthcare in the UK; having been part of the transformation from paper to digital and facing major security challenges in that process.
Today he’s supporting enterprise, government and McAfee in making the right choices when it comes to future challenges.
Raj is the European representative of the Cloud Security Alliance, is working on a Security management guideline, the global collaborative project used to evaluate objective measurement of IA maturity known as the Common Assurance Maturity Model (CAMM).

Finally, to close the program, we’ve invited some of the latest LSEC members to shortly present themselves and their companies in a 5 minute elevator pitch, which will bring us to the reception and a visit of the museum.

Learn more about Egemin, one of the latest LSEC members.


About the Location : Coudenberghmuseum and BELvue

The Coudenberghmuseum, an underground tour discovering the remains of the palace of Charles V
From the middle ages, a castle overlooked Brussels from Coudenberg hill. From the 12th century, the successive monarchs and their representatives transformed a small fortified castle into a sumptuous residential palace, one of the most beautiful palace of Europe and one of Charles V’s main residences.

This prestigious building is severely damaged by fire in 1731. Some forty years later, the ruins of the palace are pulled down and the ground flattened out for the construction of the new royal district. The remains of this palace make up the Coudenberg archaeological site.

During your visit, you will discover the Rue Isabelle and the old structures of the main buildings of the former palace of Brussels, which are now the foundations for today’s royal district and the Hoogstraeten House where the most interesting discoveries made during the various archaeological excavations conducted on the Coudenberg are displayed.

The BELvue museum provides a great overview of Belgian history. History has been written in the museum. In 9 halls and temporary exhibitions, this country surprises its inhabitants and visitors. Historic events uniquely documented, poignant film snippets and photos that you’ll never forget, moments in the past brought back to life to be relived as a memory for the elder and a discovery for the young…

You could also ‘just’ visit for the magnificent setting, the former 18th century Bellevue hotel – next to the royal palace, with a view of the gardens, beautifully renovated and one of a kind. A building that is more than just bricks and mortar, more than history, a building in which you can partake in our collective memory and that welcomes you with open arms – as a Belgian or a foreign visitor. BELvue has a story that it wants to share with you.

Program Outline

Part 1
16.45h : Welcome and Registration for the Coudenbergh visit

17.00h : Guided visit to the Coudenbergh museum (indepently from the BELvue. Limited spaces only, first come first serve.

Part 2
18.00h : registration & welcome drink

visit to the BELvue museum for those who are interested, until 20h.

18.15h : Opening address by Ulrich Seldeslachts, CEO LSEC; welcoming notes by ISSA Belux President and by ISACA Belgium President

18.20h : Security… is there an app for that? An overview of ENISA’s smartphone security report, by Marnix Dekker, ENISA

Abstract: Last year, together with a number of smartphone experts and security officers, we wrote a paper about smartphone security. The paper gives an overview of the top ten information security risks when using smartphones and also highlights important information security opportunities. To address the risks we make recommendations by giving pragmatic (risk-based) advise to end-users and IT (security) officers in businesses and governmental organisations for reducing the risks. In this presentation I will give an overview of the report, discuss the top ten risks, the opportunities, and look ahead to our future work in this area.

About : Marnix works in ENISA’s Secure applications program. He focuses on smartphone security, secure software engineering and cloud security. Previously he worked as an IT architect at KPMG, designing and auditing large identity management systems (for example the Dutch DigiD and the eRecognition framework). He has a PhD degree in Computer science and a Master degree in Theoretical physics.

19.00h : Auditing Mobile Apps and Mobile Forensics, by Aman Bahr, Training & Solutions Director, The Lancelot Institute

Abstract: Exponential growth in both apps for, and malware infections on, mobile devices, whole-sale theft of a developed nation’s Prime Minister’s email from her mobile device, and the continuing extension of corporate and government networks to include “smart” mobile end-points, are just some of the reasons for this seminar. “We will discuss and demonstrate policies needed to govern the use of apps on mobile devices, how to implement these policies as a secure, yet practical, baseline for current “smart” mobile devices, how to audit said apps and devices against the nominated baseline, and how to detect and dissect malware and other intrusion-based incidents via mobile forensics. We will do this by way of case studies and practical demonstrations.”

Bio: Aman works as training & solutions director in the Lancelot Institute. In addition to his management and consulting activities he regularly travels the globe on speaking and teaching engagements for enterprises to assist them in securing their information assets. Aman is academically qualified in Information Systems, and specializes in Information Systems Assurance, Auditing, Continuity, Recovery and Incidence Response. He is author and co- author of the Virtualization Audit Professional™, Cloud Audit Professional™ and Penetration Testing Professional™ training programs.

19.40h : mobile security panel discussion

Moderator : Ulrich Seldeslachts, CEO LSEC
Panellists :
- Marnix Dekker, ENISA
- Aman Bahr, The Lancelot Institute
- Jean-Luc Delvaux, Belgacom ICT
- Gert Vanhaeght, Mobila
- Raj Samani, McAfee

Snacks and drinks will be served during the presentations. There will be opportunity to network and have social discussions next to the speaker’s contributions.

20.00h : Information Security Challenges in 2011, by Raj Samani, McAfee CTO EMEA




About Raj Samani :
Raj is an active member of the Information Security industry, through involvement with numerous initiatives to improve the awareness and application of security.  He is currently working as the VP, Chief Technical Officer for Mcafee EMEA, having previously worked as the Chief Information Security Officer for a large public sector organisation in the UK.

In addition, Raj is currently the Vice President for Communications in the ISSA UK Chapter, having previously established the UK mentoring programme. He is also on the advisory council for the Infosecurity Europe show, Infosecurity Magazine, and expert on both searchsecurity.co.uk, and infosec portal. He has had numerous security papers published, and appeared on television (ITV and More4). As well as providing assistance in the 2006 RSA Wireless Security Survey and part of the consultation committee for the RIPA Bill (Part 3). He is also leading the global collaborative project used to evaluate objective measurement of IA maturity known as the Common Assurance Maturity Model (CAMM).

Next to his work Raj has also obtained;

CESG Listed Advisor Scheme, (CLAS), Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), Microsoft Certified Systems Engineer (MCSE – in NT4, Win2k, Win2003), Check Point Certified Security Administrator (CCSA in NG and 4.1), Check Point Certified Security Expert (CCSE - NG), Citrix Certified Administrator (CCA), QualysGuard Certified, RSA Certified Systems Engineer (SecurID), Cisco Certified Network Administrator (CCNA), as well as a BA (Hons), and MSc.

21.45h : close of evening

22.00h : close of Hoogstraeten Hotel Museum

Practical Details

April 28th, Coudenberghmusem, entrance until 20h via BELvue museum via the Warandepark entry. (official address Koningsplein 1000 Brussel)
From 20h onwards entrance via Hoogstraeten Hotel.

Free to attend, upon prior registration and confirmation.
You are welcome to join just for drinks, to freely visit the museum, participate in the talks or do all of the above combined.

Registration is easy, but mandatory, please visit Special LSEC, ISSA Spring event at the Eventbrite website.

Please register for
Part 1 : 16.30h and onwards visit to the Coudenberghmuseum
Part 2 : 18.00h and onwards evening activities and visit to the BELvue museum (until 20h)

Limited places available, seats granted on first come, first serve basis.
Please cancel your reservation at least 48 hours in advance, in order for us to proceed to a waiting list.
No cancellation 48 hours in advance and no show, will result in a cost of 150 € for our organizations, that we will invoice you.

For more information, suggestions and other, please contact lsecspring @ lsec.be.

Looking forward sharing Spring Blossoms and Flower ideas.

Become a member of the site to sign up for this event.

Are you a leader in Security ? Do you want to share your expertise and join the Leaders in Security as a Core Expert Member ?
Contact us via email! Or call +32.16.32.85.41 for a direct contact and more information.
An information set and your Membership Welcome Pack awaits you.

 

Copyright LSEC vzw 2007-2008 with the support of the IWT.

LSEC vzw Kasteelpark 10 - 3001 Heverlee - VAT BE BE 478 045 395 - fax. +32.16.32.19.69 - info @ lsec.be

<< April 2013 >>

S M T W T F S
31 1 2 3 4 5 6
7 8 9 10 11 12 13
14 15 16 17 18 19 20
21 22 23 24 25 26 27
28 29 30 1 2 3 4

Expert: IBM Security Services Belgum

A world leader in Information Technology with a large professional organization in Belgium and a series of security experts.

Expert: Symantec

Symantec helps consumers and organizations secure and manage their information-driven world.

Expert: Symantec

Symantec helps consumers and organizations secure and manage their information-driven world.

Expert: Cognitive Security

Providing detailed intelligence against highly sophisticated network attacks.

Expert: Courion

Leader in IAM Solutions

Expert: Oracle

Oracle Belgium & Luxemburg

Expert: Option

Wireless data security enablers

Expert: TNO

TNO Research and Innovation

Expert: Control & Protection

Automatisering SCADA, PLC; Meettoestellen en brandbeveiliging

Expert: Thales Group

Thales Group

Expert: On2It

Smart IT Security We Are On To It

Expert: Mobco

Mobile Fleet Management

Expert: TITANS

TITANS ICT Consulting

Expert: G Data

G Data Anti Virus Solutions

Expert: Outpost 24 - Vulnerability Management Made Easy

Outpost 24 - Vulnerability Management Made Easy

Expert: Regify - Trusted and Binding Secure eMail

Regify - Trusted and Binding Secure eMail

Expert: Mobila - Mobile Enterprise Applications

Mobile Enterprise & Applicatinos

Expert: Lancelot Institute

Lancelot Institute - Training in Information Security, IT- Risk & IT - Auditing

Expert: CSI Tools

CSI tools is an expert software solution provider specialized in powerful tools for IT architects and auditors who are focused on maximizing GRC project development efficiency in SAP environments.

Expert: Intrinsic-ID

Content Protection, Unique Device Identification, Key Storage, PUF Physical Unclonable Functions

Expert: Belgacom ICT

Belgacom ICT Security Solutions for Large, Medium and Small Enterprises

Expert: Qualys

On Demand Vulnerability Management and Policy Compliance

Expert: Trend Micro

Securing your web world

Expert: Egemin

Egemin provides process and handling automation engineering and Secures Industry Automation

Expert: AEP Networks

More than 60 countries ... protected by AEP Networks

Expert: Palo Alto Networks

Next Generation Firewalls

Expert: Atos Origin Belgium & Luxemburg

A leading IT services provider. Ranks 1 in telecom outsourcing. Via Atos Worldline specialized in financial transactions.

Expert: Websense

Leading provider of unified content security

Expert: CA Technologies

Protect your critical IT assets, achieve sustainable regulatory compliance, reduce IT administration costs and enable new business opportunities with our security management products.

Expert: CA Technologies

Protect your critical IT assets, achieve sustainable regulatory compliance, reduce IT administration costs and enable new business opportunities with our security management products.

Expert: Axl-Trax

axl & trax are highly qualified experts in providing leading edge GRC services for SAP

Expert: VintiQ

VintiQ - Security Management Services

Expert: T-Systems Belgium

T-Systems is Deutsche Telekom's corporate customer arm.

Expert: LIN.K nv - LINKID

LIN.K is a provider of online user authentication, identification with the system LINKID

Expert: Devoteam Belgium

Devoteam Belgium, one of the major European ICT consultancy specialists with offices in 23 countries

Expert: CHB Technologies - Celadon Hailstone Biometrics

Celadon Bailstone Biometrics

Expert: Barracuda Networks

Worldwide supplier of email and internet security

Expert: Sophos

Sophos is the Utimaco is a leading global provider of data security solutions, enabling mid- to large-size organizations to safeguard their data assets against intentional or unintentional data loss, and to comply with privacy laws.

Expert: Dimension Data

Dimension Data

Expert: Bull

Bull

Expert: Check Point Software Technologies

Check Point Software Technologies

Expert: MMS-Secure

MMS-Secure nv, a distributor with a specific focus on network and systems security

Expert: F-Secure Corporation

F-Secure - Fastest Focused Anti-Virus Protection

Expert: C-Cure

C-Cure are Information Security architects already since 1998

Expert: IS4U

IS4U - Cronos specializes in Identity and Access Management

Expert: UCL Crypto Group

The Crypto Group of UCL, the UC of Louvain-la-Neuve is a research group specialized in cryptography and information security.

Expert: eID Company

eID company provides a flexible easy to integrate eID in any web application. Access to eID as a webservice.

Expert: ACA IT-Solutions

ACA IT-Solutions, end to end IT solutions and IDM Expert. Probably the largest and most successful independent J2EE solution provider.

Expert: RSA - Security Division of EMC

RSA - The Security Division of RSA. One of the leading companies in the world in IT Security. Enterprise wide Data Security solutions, suites and Services.

Expert: Unisys

Security Unleashed – At Unisys, we’re looking at security in an entirely new way.Security is no longer a defensive measure. It’s an enabling catalyst for achievement.Unisys Secure Business Operations help to unleash your full potential.

Expert: Zion Security

ZION SECURITY is the leading European application security company. Our mission is to secure your business value by securing your business applications.

Expert: Zetes

For those who want to see the difference!

Expert: Vasco

VASCO designs, develops, markets and supports patented User Authentication products for e-business and e-commerce.

Expert: SUN Microsystems

Everyone and everywhere connected to the network.

Expert: Security4Biz

Security4Biz offers ICT security consultancy services.

Expert: SecurIT

The value proposition to our customers is the competence and experience of highly qualified people, combined with best-in-class solutions from leading suppliers, and our entire focus on Identity and Access Management.

Expert: Sealed

Expert in implementation of e-Security, e-Proofs and e-ID within the management of business & document flows & processes, or within the management of your enterprise content in the broad sense.

Expert: McAfee

McAfee is the world largest dedicated security companY;

Expert: NXP (founded by Philips)

Sense & simplicity. Help customers to transform initial ideas into competitive products and cost-efficient manufacturing solutions within healthcare, lifestyle and technology.

Expert: KPMG

PMG Information Risk Management (IRM) focuses on inherent risks in technology systems used to support your business objectives and grow your business.

Expert: EMC2

EMC Corporation is the world's leading developer and provider of information infrastructure technology and solutions.

Expert: Deloitte

In addition to the qualities of a leading Belgian audit and consulting firm, Deloitte is different through the values it shares daily with clients and employees.

Expert: Certipost

Specialist in secured electronic document exchange for companies, the state, and for residential customers.

Expert: Ascure

World class information risk management services!

Expert: Verizon Business

Verizon Business is now the leading provider of managed security services worldwide with acquisition of Cybertrust.

Expert: IBM

A world leader in Information Technology with a large professional organization in Belgium and a series of security experts.

Expert: K.U. Leuven

Computer Security and Industrial Cryptography (COSIC): Cryptography to protect data against passive and active fraud.

Expert: ATOS Worldline nv

Specialist in end-to-end secure payment systems.

Expertise: UTM

UTM - Unified Threat Management

Expertise: End Point Security

End Point Security

Expertise: DLP - Data Leakage, Data Loss Prevention and Protection

DLP - Data Leakage, Data Loss Prevention and Protection

Expertise: SOA - Service Oriented Architectures

Expertise: Identity Management

Identity Management (IdM) enables organizations to facilitate and control their users' access to critical online applications and resources — while protecting confidential personal and business information from unauthorized access

Expertise: Crypto

Cryptography - Cryptografie - Cryptographie

Expertise: Secure Application Development

Secure Application Development. Security does not only start at user name and password login, from the first entry of a software security needs to be integrated.

Expertise: RFID

passive and active low-cost wireless tags

Expertise: Application Security

encompasses measures taken to prevent exceptions in the security policy of an application or the underlying system

Expertise: Wireless Security

Expertise: Appliances

protect computer networks from unwanted data traffic, intruders, email spam, enforce policies, and may also be used to create and manage VPNs.

Expertise: Access Control

the ability to permit or deny the use of something by someone.

Expertise: Risk and Vulnerability Assessment

process of identifying and quantifying vulnerabilities in a system..Cataloging assets and capabilities (resources) in a system

Expertise: Penetration Testing

A method of evaluating the security of a computer system or network by simulating an attack by a malicious user, commonly known as a hacker.

Expertise: Physical Security

describes measures that prevent or deter attackers from accessing a facility, resource, or information stored on physical media. It can be as simple as a locked door or as elaborate as multiple layers of armed guardposts.

Expertise: Remote Access

computer program that lets you access your PC from another PC via the Internet, LAN, or phone connection and work on your computer ...

Expertise: Security Policy

security policy is a definition of what it means to be secure for a system, organization or other entity. For systems, the security policy addresses constraints on functions and flow among them, constraints on access by external systems and adversaries

Expertise: Anti-Virus

Software that detects, repairs, cleans, or removes virus-infected files from a computer.

Expertise: Spyware

Software that covertly gathers user information through the user's Internet connection without his or her knowledge, usually for advertising purposes.

Expertise: Authorization

The process of enforcing policies: determining what types or qualities of activities, resources, or services a user is permitted. Usually, authorization occurs within the context of authentication.

Expertise: Authentication

Provides a way of identifying a user, typically by having the user enter a valid user name and valid password before access is granted. The process of authentication is based on each user having a unique set of criteria for gaining access.

Expertise: Computer Virus

Program or programming code that replicates by being copied or initiating its copying to another program, computer boot sector or document.

Expertise: Smart Cards

smart card or chip card, is defined as any pocket-sized card with embedded integrated circuits which can process information such as a SIM for a mobile phone or an eID card

Expertise: UTM and Appliances

Unified threat management (UTM) is a term which is used to describe network firewalls that have many features in one box, for example junk e-mail filtering,or anti-virus capability, along with the traditional activities of a firewall.

Expertise: NAC

Network access control (NAC) is a method by which hardware and software grant access to enterprise network resources after first authorizing the user and device and verifying the device's compliance with the enterprise's security policy.

Expertise: Biometrics

Biometrics (ancient Greek: bios ="life", metron ="measure") is the study of methods for uniquely recognizing humans based upon one or more intrinsic physical or behavioral traits.

Expertise: DRM

Expertise: eID - Electronic Identity Cards

The electronic identity card (eID) is an official electronic proof of one's identity. It also enables the possibility to sign electronic documents with a legal signature.