Information Security and Privacy for Small Enterprises

Preview:

DESCRIPTION

 

Citation preview

Philly NetSquared Info Security and Privacy

Joe RaimondoOctober 1, 2013

"If you have something that you don't want anyone to know, maybe you shouldn't be doing it in the first place…But if you really need that kind of privacy, the reality is that search engines, including Google, do retain this information for some time...We're all subject, in the United States, to the Patriot Act. It is possible that that information could be made available to the authorities.“

~ Google Chairman Eric Schmidt

Welcome to the new world of info freedom

"As soon as you assume you're being watched, those who would watch you have already won.“

~John Perry Barlow

Who’s watching whom?

Personal Organizational

Levels of security

Lessig Yochai Benkler David Weinberger Et alia

Berkman Center @ Harvard

- Password- Vaults & crypts

- 2 key validation- Always when using phone

- Internet search agent-email alert- Yahoo & Google

- Go all open source- Duckduckgo.com

- Local company- Anonymous (to a point) search

5 Easy things to do

PGP Tor Air-gapping – computer never on Internet Software defined radio/darknet Go all open source

5 Hard things to do

See previous Physical security Industrial/foreign espionage

◦ More than you think

Organizational

Set up your own darknet◦ For the experience of it

Get into the NAP! ◦ Get the darkmesh in the cloudbone

root@netsec - /r/netsec Break the duopoly

◦ It is proving demonstrably dangerous to the US economy

Avenues for Activism

The right of the people to be secure in their persons, houses, papers, and effects, against unreasonable searches and seizures, shall not be violated, and no Warrants shall issue, but upon probable cause, supported by Oath or affirmation, and particularly describing the place to be searched, and the persons or things to be seized.

T H E B O T T O M L I N E

And There is This

Recommended