Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS,...

Preview:

DESCRIPTION

Secure World Expo Washington DC Conference Cybersecurity by Rod Beckstrom, Director, National Cybersecurity Center (NCSC), Department of Homeland Security (DHS) cyber security

Citation preview

NewDimensionsOfCybersecurity

Rod BeckstromDirectorrod.beckstrom@dhs.gov

Black Hat

Black Hat

WIRED

NewDimensionsOfCybersecurity

Rod BeckstromDirectorrod.beckstrom@dhs.gov

Presenter’s Name June 17, 2003

The Prisoners Dilemma

Presenter’s Name June 17, 2003

Presenter’s Name June 17, 2003

Insider threats and hackers…

Presenter’s Name June 17, 2003

Presenter’s Name June 17, 2003

Who reengineered the system?

Presenter’s Name June 17, 2003

Presenter’s Name June 17, 2003

Presenter’s Name June 17, 2003

Presenter’s Name June 17, 2003

Presenter’s Name June 17, 2003

Back to the Future

Presenter’s Name June 17, 2003

The Prisoners Dilemma

Presenter’s Name June 17, 2003

The Prisoners Dilemma

W/W

W/L

L/WW/W

L/L

Presenter’s Name June 17, 2003

Iterated Prisoners Dilemma

W/W

W/L

L/WW/W

L/L

200 X

Presenter’s Name June 17, 2003

Iterated Prisoners Dilemma

W/W

W/L

L/WW/W

L/L

200 X

NCSC ROLES

Joint venture of DHS/DNI/DOD/DOJ HSC/NSC

Connecting six key network operation centers

Information sharing and situational awareness

Foster collaboration across Federal government

Report on “State of the Network” to White House

Presenter’s Name June 17, 2003

Presenter’s Name June 17, 2003

Slight problem…

What are the rules?What is risk management?

Presenter’s Name June 17, 2003

where SC = total security cost SI = security investment L = loss

Economics of Security

MINIMIZE SC = SI + L

Presenter’s Name June 17, 2003

Loss $

Security $

Economics of Security

Presenter’s Name June 17, 2003

Loss $

Security $

Economics of Security

Presenter’s Name June 17, 2003

Loss $

Security $

Economics of Protocols

Better Protocols Drive Loss Function Down

Presenter’s Name June 17, 2003

IPV6, BGP, DNS, SMS/IP, POTS …

Protocol Investments

Presenter’s Name June 17, 2003

Correlation of Losses

Correlations of losses due to IP failure (LIP) are trending towards 1.0

n

Presenter’s Name June 17, 2003

Info Sharing Incentives“information wants to be free”butStovepipe perception – “information is power”

Incentives against disclosure

OSINT/SIGINT/HUMINT

Benefits of collaboration and network effect…

Presenter’s Name June 17, 2003

Economics of NetworksCyber Diplomacy/Game Theory

Cloud ComputingCyber-kinetic WarsCyber quarantines

Secure ISP’s

New Dimensions

Presenter’s Name June 17, 2003

E Pluribus Unum

Presenter’s Name June 17, 2003

How can we best plant our flag in cyberspace?

rod.beckstrom@dhs.gov

Presenter’s Name June 17, 2003