[1 CPE] The Insider Threat You Don’t See Coming

  Presented by INTERFACE Advisory Council

IT leaders spend countless hours focusing on security awareness training and safeguarding systems. End-users of all types have been thoroughly educated on what not to do and taught how to identify threats. Now with so many employees working remotely, this has only added to the challenges of good cyber hygiene.

In recent months, we have seen the “great resignation” as employees are quitting jobs at record numbers. Some of this is through job dissatisfaction while some are leaving to spend more time with family. The question to ask now is, have IT departments armed employees to be a new insider threat? Could a disgruntled employee now intentionally allow a threat to get through your systems? How can you tell malicious intent by an end-user vs. an innocent mistake?

Join the INTERFACE Advisory Council for a discussion about this threat. These challenges are nothing new but have quickly become more complex and common.

Panelists:

  • Aaron Baillio • Chief Information Security Officer, University of Oklahoma
  • Jonathan Kimmitt • Chief Information Security Officer, University of Tulsa
  • Daisha Pennie • Manager, IT Compliance, Oklahoma State University

[1 CPE] Ten Easy Things You Can Do Today to Secure Your Online Presence

  Presented by Pedro Serrano • Chief Information Security Officer, Grand River Dam Authority

In this presentation, Pedro Serrano will take a quick look at the most important security issues that every company should be educating its users on.

  1. You are the Target
    • Why you are the target – it’s all about Money!
    • How much data are you sharing?
  2. Social Media
    • You should check your settings, regularly!
  3. Protect your PC
    • Pedro’s 5 rules for home PC
  4. Passwords Sharing Devices
    • With so many passwords, let’s learn how to manage
    • Best password managers available today
  5. Protect your home network with a simple change in your router
    • OpenDNS – free and it works!
  6. Two Factor Authentication
    • Easy ways to implement it (This is now the new normal)
  7. Online purchases – we all do!
    • How to protect yourself – Debit vs. Credit card
  8. Backup your data (Work – Home – Phone)
    • Can you verify that it’s there?
  9. Microphones are always on! – Who is listening?
    • You carry and have them in your home
    • Your car is listening, and I know where you are
  10. Credit Freeze – It’s really easy now!

The main theme of this session could be summarized like this:

The Human element: I can add all the technical controls that I can get my hands on but if my employees (internal users) behave in a matter that is not safe (like clicking on a link that is malicious) the technical controls will not be able to stop an attack. Therefore, you are the first and last line of defense, you can make the difference!

[1 CPE] Cyber Attack Responder Viewpoints

  Presented by Jeremy Wilson • Deputy CISO, State of Texas

This session will cover lessons learned from the State of Texas’ Cybersecurity Program. We will focus on how to prepare for and respond to a cybersecurity attack. There are plenty of low and no-cost options and activities that can help your organization prepare. We will provide additional information and services specifically for governmental entities in the State of Texas, but other organizations will still find value in our approach and how we deal with different types of attacks from Nation-State Advanced Persistent Threat (APT) actors to opportunistic hacktivists.

[1 CPE] Stopping Ransomware with Autonomous Response

  Presented by Darktrace

Join Brianna Leddy, Darktrace’s Director of Analysis, as she unpacks some of today’s most advanced ransomware threats. Learn how Self-Learning AI understands the organization to reveal every stage of a ransomware attack – and takes targeted, autonomous action to stop the threat in its tracks.

[1 CPE] Stopping Zero-Day Ransomware with Autonomous Incident Response

  Presented by Airgap

New strains of ransomware are leaving organizations vulnerable and show no sign of slowing down; security teams are unable to respond proportionately to an attack, leading to cyber disruption across the organization. This can affect all industries including manufacturing, critical infrastructure, healthcare, or any organization like yours and mine.

Join this session to unpack some of 2022’s most advanced ransomware threats and their behavior. Also, you can learn how to fix network flaws from the core for connected OT/IT/IoT, and stop lateral threat movement in every stage of the Cyber Kill Chain. If you have concerns about Zero-Day exploits or are assigned with Zero Trust initiatives, don’t miss this opportunity to learn how you can take autonomous action with 24/7 availability to stop the threat on its track. We’ll discuss:

  • Recent ransomware threat trends, including double extortion and RDP attacks in OT and ICS
  • How Autonomous Response takes DEFCON action to contain an emerging zero-day attack unattended with Zero Trust policy enforcement
  • Real-world examples of ransomware detection through agentless segmentation and containment

[1 CPE] Automated Enforcement Advances: Protecting Against Ransomware

  Presented by Illumio

Attackers are continuing to successfully set off cyber disasters across the globe. Organizations that focus solely on detection and response find that they can’t detect or respond fast enough. Cyberattacks and ransomware break through perimeters and then leverage common ports to stay undetected until they have spread throughout an organization.

There are new advancements that allow organizations to protect their key assets from cyberattacks and ransomware in minutes – across multi cloud, containers, hybrid and on-premises environments.

We’ll discuss how these innovations can help you:

  • Immediately enforce security policy across your organization to protect high-value assets.
  • Dramatically reduce the risk of supply-chain attacks like the recent Kaseya ransomware.
  • Scale as needed to enforce more than 100,000 workloads in cloud, hybrid, and on-premises environments.
  • Get real-time visibility and insights to create, enforce, and test security policy.
  • Monitor workloads in and out of applications hosted in public clouds to simplify and secure cloud migrations and automate multi-cloud security.

[1 CPE] Security vs. Compliance: Turning InfoSec Success into Audit Wins

  Presented by Tripwire

Security and compliance teams both strive to design, establish, and enforce controls to protect an organization. But even with shared goals in place, security and compliance teams often manage business risk in relative isolation. So how can these teams set aside tension and work better together to create a winning alliance?

In this session, we explore the key differences between security and compliance initiatives. It’s crucial to understand that being fully compliant doesn’t necessarily mean an organization is fundamentally secure. We’ll cover how the two initiatives complement each other when it comes to minimizing risk and how both teams can collaborate to create efficiencies. Attendees will learn how to leverage compliance policies to set the foundation to a robust information security program, while providing true visibility and coverage, consolidating toolsets, and reducing costs. Lastly, we’ll discuss how to ensure that a successful security program can help organizations prepare for an upcoming audit to ultimately achieve and maintain continuous compliance.

[1 CPE] Zero Trust: From Theory to Reality in Five Steps

  Presented by Guardicore

Let’s be real. True to its name, there is zero trust about the term “zero trust.” It’s been used as marketecture since its inception. Cut through the fog with this presentation with practical insight and steps to take to ensure your organization makes the most out of ZTA.

[1 CPE] Shifting Cloud Architecture Left – Best Practices for Securing Cloud Deployments

  Presented by Trend Micro

As Infrastructure as Code becomes the norm for new cloud deployments, how can you accelerate your teams in building better? The AWS Well-Architected Framework is a great place to start for your planning but what if there was a way to continuously monitor how your deployment stacks up?

In this session, you’ll hear from Jason Dablow, a senior cloud security advisor with Trend Micro, on resources and tips to not only increase the security of your cloud deployments but also easy integration tips to move this implementation left into your teams using infrastructure as code. Automated. Integrated. Flexible.

[1 CPE] Lessons to Share: An Expert’s Guide to Ransomware Remediation

  Presented by Brian Miller • Co-Founder and CEO, FusionTek

If ransomware makes it past your front line of defense, what’s your next move?

Many businesses get caught in situations where they believe the classic line “this will never happen to me.” That may be true until it does happen to them. From there, a series of unfortunate events will unroll, leaving the business vulnerable to large ransoms which they may or may not be able to pay. Don’t be this business.

This past year, our incident response team has worked on several ransomware remediation projects, and through this effort learned more about how ransomware is deployed. During this presentation, we are going to walk you through how ransomware has changed over time, help you understand what a hacker looks for nowadays, and actionable protection steps to take.

In this presentation you will learn about:

  • The evolution of ransomware
  • Common characteristics of infection
  • A hacker’s typical timetable
  • Recommended actions for remediation

Brian Miller is the co-founder and CEO of FusionTek. He has over 20 years of IT service experience and co-founded FusionTek in 2007. He is focused on delivering advanced cybersecurity and productivity solutions to FusionTek’s clients.