[1 CPE] Disrupting the Means to Prevent the End: A Guide to Detecting Ransomware

  Presented by Red Canary

Ransomware has been a dominant cybersecurity threat for the better part of the last decade. However, it doesn’t walk alone. It’s almost always the eventual payload delivered by earlier-stage malicious software or activity. Luckily, if you can detect the threats that deliver the ransomware, you can stop the ransomware before it arrives.

In this talk, we’ll extensively reference Red Canary’s 2022 Threat Detection Report, examining the malware and other malicious tools that adversaries often use to deliver ransomware. While the specific trojans and strains of ransomware may change from one attack to the next, adversary tactics, techniques, and procedures are often similar across campaigns and threats. By developing robust detection coverage for the techniques adversaries abuse most often, rather than focusing on individual threats, security teams can achieve defense-in-depth against the many threats that leverage those techniques and the broader trends that dominate the infosec landscape.

Want to learn more about the prevalent adversary techniques and threats that can lead to a ransomware infection? Attendees will leave with:

  • A better understanding of the threats and tools that commonly precede a ransomware infection
  • Guidance on relevant collection and data sources that offer visibility into the threats and techniques that adversaries use to deliver ransomware
  • Actionable information on how security teams can develop the capacity to detect, prevent, and mitigate ransomware and other threats
  • Strategies for testing their ability to observe and detect common threats with free and easy-to-use tools like Atomic Red Team

[1 CPE] Have We Reached the End of the “Internet Frontier”?

  Presented by Tonaquint Data Center

Join Carl Wilkins, Chief Technology Officer for Tonaquint Data Center, for a discussion on what’s left to conquer in our globally connected world.

Carl Wilkins’ passion for IT work began many years ago as a young teenager helping support PeachTree accounting software for family members on Windows 3.11 and MS-DOS. Since then, his computing “clouds” have only grown! Before joining Tonaquint in 2020, he wore the various “hats” of a systems integrator, administrator, architect, and engineer. He has worked in non-profit, higher education, and the financial service sectors. His most recent experience was managing the systems infrastructure, engineering, and operations team of a large, federally-chartered Credit Union. He has a BS in Computer Science from Utah Valley University.

[1 CPE] Visibility is Key: What You Need to Know About Cloud Migrations and Security

  Presented by ReliaQuest

The pace of cloud technologies adoption has left security operations teams scrambling to keep up with the change. Many teams are unsure how best to protect their business as sensitive data and assets move beyond the traditional enterprise perimeter.

Is cloud security different from traditional on-premises security and if so, what should you be aware of? How best should you approach it?

We address these questions and more on how best to secure your cloud environment. We will explore recommendations on how best to secure the world’s top cloud platforms and providers including Amazon Web Services (AWS), Google Cloud Platform (GCP), Microsoft Azure, and multi-cloud environments.

[1 CPE] Immutable Storage: Level-Up Ransomware Readiness

  Presented by Arcserve

Data is expected to grow to 200 ZB by the end of 2025. More data to manage, more data to protect. IDC recommends a 3-2-1-1 best practice as a mid-market data protection strategy. The addition of the new “1” is a copy of the data on immutable storage. Backup data is a key tool in business continuity & disaster recovery planning. Securing this backup data and maintaining multiple copies of it allow for a resilient recovery plan. Your cyber security plan is incomplete without a reliable recovery plan. In the event of any disaster, natural or man-made, like a ransomware attack, getting your IT systems and workloads back on their feet as fast as possible is essential. Join us as we share best practices to help keep your data protected and secure with multiple layers of defenses. We will share our perspective on how organizations can simplify the approach of incorporating guidance from NIST’s Cybersecurity Framework into their own environments.

[1 CPE] Zero-Trust Architectures

  Presented by Rubrik

Organizations have invested heavily in IT security, attempting to fortify their perimeter, network, endpoint, and application protections. Despite these investments, hackers are successfully penetrating these defenses and targeting enterprise data, including backup data. Ransomware is starting to specifically target online backups by encrypting or deleting them. If your organization was the target of an attack today, how do you know what data was impacted and where? Manually sifting through millions of files and comparing each snapshot consumes FTE time and prolongs recovery exponentially. Mass restores of the entire environment could mean high data loss and weeks’ worth of work down the drain. In this session, we will discuss how to protect your last line of defense, the backups. We will walk through the anatomy of a recovery, the best practices, and advanced tools to ensure you will not have to pay a ransom, and how to quickly recover your data to continue business operations.

[1 CPE] Accidentally Zero Trust

  Presented by Zscaler

Zero Trust is the latest buzz phrase in the industry that promises to be the panacea for the malware and ransomware challenges faced by enterprises today. Shifting to a Zero Trust Architecture strategy, however, can have major business operations benefits that go far beyond information security.

Join Brett James, Director of Transformation Strategy at Zscaler, as he recalls “accidentally” delivering a Zero Trust Architecture strategy for a global engineering and construction company that started life simply as a way to reduce capital expenditure and start using cloud.

[1 CPE] The Future of Object Storage: Where Do We Go from Here?

  Presented by Hitachi Vantara

While object storage has surged in popularity as an alternative to NAS due to the technological limitations of NAS, customers are now pushing the limits of object storage as well. Where do we take the technology from here to remain relevant and continue to address the needs of modern AI and ML workloads? We will look at the roots of object storage and what needs to happen to the technology to continue forward with today’s modern workloads. Using flash technology and highly parallelized workloads, we will take an in-depth look at some of the directions we expect the unstructured data storage landscape to take. Do we see a world of all flash storage leading the pack or will we continue to utilize hybrid technologies to optimize the economics of storage? Join us for an in-depth look at the current landscape of unstructured data storage and where we go from here to address modern data workloads.

[1 CPE] Unlearning Leadership

  Presented by Ken Knapton • Chief Information Officer, Progrexion

In this session, Dr. Knapton shares lessons that he has learned in multiple decades in the CIO seat. He will share his 10 operating principles that have formed the foundation of his leadership style. Whether you are starting your IT career or are a seasoned professional, you will be able to pick up several tips that will help you be a better leader. Leadership is constantly evolving, especially over the last couple of years. Join Dr. Knapton for insights about what leadership looks like now and how you can grow your technology career.

Dr. Knapton is a veteran technology leader with broad experience in IT operations, software development, enterprise architecture, software design, program management, project management, analytics, infrastructure, quality assurance, and user interaction. He applies his vast experience in his role as CIO to improve under-performing IT organizations and specializes in teaching IT organizations how to be agile and how to establish a service-oriented IT culture. He has worked in various industries, including healthcare, high tech, nonprofit, and financial services. Dr. Knapton holds 3 patents for his early work on enterprise security and anti-virus technology and has published a book on family safety and technology. Dr. Knapton earned his doctorate in IT with his dissertation on big data governance. He also holds a Master of Business Administration from Brigham Young University, a Master of Science with a focus on Strategic IT Leadership from Walden University, and a Bachelor of Science in Computer Science and Information Systems from Utah Valley University.

[1 CPE] Leveraging Actionable Threat Intelligence to Improve Your Security Posture

  Presented by Fortinet

Dealing with advanced threats requires a strategic, proactive approach, and every network security strategy is only as good as the threat intelligence it is based on. Learn how actionable global threat intelligence data can enable your organization to move toward a proactive security posture. Strategically leveraging local traffic data analyzed with AI and Machine Learning, coupled with other key cybersecurity tools is essential for building a proactive approach. Join us to learn why organizations of all sizes require an integrated security architecture, to reduce the very real risks to business continuity, brand reputation, and operational disruption.

[1 CPE] DevSecOps: Revolutionize Your Security

  Presented by Check Point

DevOps and continuous delivery models result in faster time-to-market. However, development, QA, and operations teams face challenges when it comes to incorporating security into the product life cycle. They are afraid of slowing things down, necessitating integrated DevSecOps best practices. Security approaches that worked in the past do not work with modern DevOps models. These outdated processes involve manual review processes of security risks at the end of product development and QA. This approach causes significant delays and does not scale with modern-day applications.

Organizations need to “shift security left” by including security and compliance controls as an integral part of the DevOps processes that manage the code being developed through to production.

Marlon is a Cloud Security Architect for Check Point Software Technologies. He is a specialist in DevSecOps and Emerging Technologies for the enterprise with over 25 years of progressive experience in Information Technology with a solid background in Cybersecurity. With his wealth of experience in Architecting and Designing solutions using Cloud (Azure, AWS & GCP), in this session, he is going to share “the challenges with DevOps Services and DevSecOps Strategy” as the enterprise adopts the modern cloud.