cyber security week 2015: get involved and contribute
TRANSCRIPT
![Page 1: Cyber Security Week 2015: Get involved and contribute](https://reader033.vdocuments.mx/reader033/viewer/2022050614/58800f1c1a28ab421b8b68ed/html5/thumbnails/1.jpg)
Issue Date:
Revision:
Get Involved and Contribute! Adli Wahid
Security Specialist, APNIC
![Page 2: Cyber Security Week 2015: Get involved and contribute](https://reader033.vdocuments.mx/reader033/viewer/2022050614/58800f1c1a28ab421b8b68ed/html5/thumbnails/2.jpg)
2
About Adli
• Friend of Jacomo!
• Lets connect! – @adliwahid (Twitter, LInkedIn) – Blog: https://blog.apnic.net
• Security Specialist @ Asia Pacific Network Information Centre (APNIC) – www.apnic.net/security
• Board Member of the Forum of Incident Response & Security Teams (FIRST)
Jacomo!
![Page 3: Cyber Security Week 2015: Get involved and contribute](https://reader033.vdocuments.mx/reader033/viewer/2022050614/58800f1c1a28ab421b8b68ed/html5/thumbnails/3.jpg)
APNIC’s Vision:
A global, open, stable, and secure Internet that serves the entire Asia Pacific community.
How we achieve this:
• Serving Members
• Supporting the Asia Pacific Region
• Collaborating with the Internet Community
3
![Page 4: Cyber Security Week 2015: Get involved and contribute](https://reader033.vdocuments.mx/reader033/viewer/2022050614/58800f1c1a28ab421b8b68ed/html5/thumbnails/4.jpg)
Security Outreach
4
Craig Ng
Promoting security best practices in the
APNIC community
NOGs, CSIRTS and LEA events
PK, CN, HK, KR, JP, PH SG, MY, ID, AU, TW
Collaboration with JICA and KISA to deliver
regional CERT training
Geoff Huston member of ICANN SSAC
Adli Wahid member of FIRST Board
MoU with APCERT
Interpol Global Cyber Crime Group
Adli Wahid
www.apnic.net/security
![Page 5: Cyber Security Week 2015: Get involved and contribute](https://reader033.vdocuments.mx/reader033/viewer/2022050614/58800f1c1a28ab421b8b68ed/html5/thumbnails/5.jpg)
Security Response Community:
Are We There Yet?
![Page 6: Cyber Security Week 2015: Get involved and contribute](https://reader033.vdocuments.mx/reader033/viewer/2022050614/58800f1c1a28ab421b8b68ed/html5/thumbnails/6.jpg)
Responding to Security Incidents
6
National Cyber Security Agency
National CERT / CSIRTs
Enterprise CERTs/CSIRTs
End-Users
Critical Infrastructure, Network Providers, Hosting, Cloud, Government, Financial Services, SMEs =
![Page 7: Cyber Security Week 2015: Get involved and contribute](https://reader033.vdocuments.mx/reader033/viewer/2022050614/58800f1c1a28ab421b8b68ed/html5/thumbnails/7.jpg)
7
Thinking about the the problem
National Regional Global
![Page 8: Cyber Security Week 2015: Get involved and contribute](https://reader033.vdocuments.mx/reader033/viewer/2022050614/58800f1c1a28ab421b8b68ed/html5/thumbnails/8.jpg)
8
Challenge #X Human Resources
![Page 9: Cyber Security Week 2015: Get involved and contribute](https://reader033.vdocuments.mx/reader033/viewer/2022050614/58800f1c1a28ab421b8b68ed/html5/thumbnails/9.jpg)
9
Education
Technical
Soft skills
Formal
Informal
![Page 10: Cyber Security Week 2015: Get involved and contribute](https://reader033.vdocuments.mx/reader033/viewer/2022050614/58800f1c1a28ab421b8b68ed/html5/thumbnails/10.jpg)
10
Where or how do I start?
Breaking down • Knowledge & skills
• Access to threat intelligence – On to trusted communities
• Access to people, expertise – Mentoring, coaching– Sharing of experience & lessons learned
• Challenge – Trust – “Don’t know anyone”
![Page 11: Cyber Security Week 2015: Get involved and contribute](https://reader033.vdocuments.mx/reader033/viewer/2022050614/58800f1c1a28ab421b8b68ed/html5/thumbnails/11.jpg)
Can we teach this faster?
![Page 12: Cyber Security Week 2015: Get involved and contribute](https://reader033.vdocuments.mx/reader033/viewer/2022050614/58800f1c1a28ab421b8b68ed/html5/thumbnails/12.jpg)
12
The power of communities
![Page 13: Cyber Security Week 2015: Get involved and contribute](https://reader033.vdocuments.mx/reader033/viewer/2022050614/58800f1c1a28ab421b8b68ed/html5/thumbnails/13.jpg)
13
Different communities• Open Source projects
– Github!– Many security projects to join
• Local communities – Activities – Sharing ideas – Mentoring
• Special Interest Groups – FIRST (www.first.org) – Honeynet Project (www.honeynet.org) – OWASP (www.owasp.org)
• Examples – Network Operators Group (NOGs) – New Zealand Internet Task Force (NZITF)
![Page 14: Cyber Security Week 2015: Get involved and contribute](https://reader033.vdocuments.mx/reader033/viewer/2022050614/58800f1c1a28ab421b8b68ed/html5/thumbnails/14.jpg)
14
Can I trust you? Who are you?
• Certain security groups are not easy to get involved with
• What am I sharing? – Ongoing investigation – My data / access
• Solutions – Trusted introducers – Web of trust – Traffic light protocol
![Page 15: Cyber Security Week 2015: Get involved and contribute](https://reader033.vdocuments.mx/reader033/viewer/2022050614/58800f1c1a28ab421b8b68ed/html5/thumbnails/15.jpg)
15
Not this community!
![Page 16: Cyber Security Week 2015: Get involved and contribute](https://reader033.vdocuments.mx/reader033/viewer/2022050614/58800f1c1a28ab421b8b68ed/html5/thumbnails/16.jpg)
16
What can you do?
• Individual– Start now – Get together – Make introductions
• Leaders– Encourage & motivate
• Businesses & government – Support – Provide platform & resources
• Law Enforcement – Awareness
• Everyone has a role to play
![Page 17: Cyber Security Week 2015: Get involved and contribute](https://reader033.vdocuments.mx/reader033/viewer/2022050614/58800f1c1a28ab421b8b68ed/html5/thumbnails/17.jpg)
APNIC’s approach
• Capacity development – Internet Infrastructure – Cyber Security*
• Online training– http://training.apnic.net
• Strategic partnership – Various stakeholders– Regional & global – Shared goals
17
![Page 18: Cyber Security Week 2015: Get involved and contribute](https://reader033.vdocuments.mx/reader033/viewer/2022050614/58800f1c1a28ab421b8b68ed/html5/thumbnails/18.jpg)
18
Get involved & contribute!
![Page 19: Cyber Security Week 2015: Get involved and contribute](https://reader033.vdocuments.mx/reader033/viewer/2022050614/58800f1c1a28ab421b8b68ed/html5/thumbnails/19.jpg)
Internet Operational Research Grants
19
New fund supporting the Internet research community in the Asia Pacific
Research aiming to improve availability, reliability, and security of the Internet in the
Asia Pacific
Network measurement and analysis
IPv6 deployment BGP Routing Network Security