13
Cyber Security Challenges in the World of Online Payments 14 June 2016 Ofir Eitan Cyber Security Team

Cyber Presentation - Lighthouse 14.6

Embed Size (px)

Citation preview

Page 1: Cyber Presentation - Lighthouse 14.6

Cyber Security Challenges

in the World of Online Payments

14 June 2016

Ofir EitanCyber Security Team LeaderInfoSec & CyberSec Unit

Page 2: Cyber Presentation - Lighthouse 14.6

2

Contents

1.Personal background

2.Leumi Card Ltd.

3.Threat Landscape

4.Challenges & Unique Needs

5.Tips to Start UP!

Page 3: Cyber Presentation - Lighthouse 14.6

3

Personal background

Cyber security team leader - new team, we’re hiring!

30 years old, married + dog

10 years of experience in the field of information security

Expertise: Cyber security strategy, intelligence, threat analysis,

risk assessment, training, IRP, supply chain risks, cloud security

Previous organizations: Military Intelligence Directorate, INCB

On my free time - wine enthusiast, traveling, certifications

Contacts: Find me on Linkedin - Ofir Eitan

Page 4: Cyber Presentation - Lighthouse 14.6

4

Leumi Card

Page 5: Cyber Presentation - Lighthouse 14.6

CONSUMERS

Digital wallet inc. Loyalty

P2P Payments

Online Statement

Online Loans

CUSTOMER SERVICE

WhatsApp

FaceBook

Visual IVR

Robotic Service (POC)

MERCHANTS

Digital On Boarding

Mobile Point of Sale

Real Time Analytics

Location Based

Advertisement

DIGITAL PLATFORMS

Page 6: Cyber Presentation - Lighthouse 14.6

2.6MILLION

ISSUED CARDS

40K

MERCHANTS

ACQUIRING

680K

1M MONTHLY WEBSITE VISITS

PART OF GLOBAL

LEUMI GROUP

INNOVATIVED.N.A

USE OUR APP

1600EMPLOYEES

LEUMI CARD OVERVIEW

Page 7: Cyber Presentation - Lighthouse 14.6

Source: Leumi Card Financial Statement, Dec. 2015

264M$

TOTAL REVENUE

415M$

EQUITY CAPITAL

2.9BN$

TOTAL BALANCE SHEET

45M$

PROFIT

17BN$

ISSUING VOLUME

COMPANY PROFILE

Page 8: Cyber Presentation - Lighthouse 14.6

8

Threat Landscape

1.Organized Crime (APT) - Bank in Bangladesh, Hospital in San

Francisco, European Central Bank and the list continues on…

Am I the next target worldwide?

2.Inside threat

3.Financial hacker

4.Skilled sensationalist

5.Cyber terrorist & political attacker (nation state or sponsored)

6.Political activist

7.Industrial espionage

Page 9: Cyber Presentation - Lighthouse 14.6

9

Challenges & Unique Needs

Finance - We are a target!

We need to be up-to-date

Variety of needs, solutions and products

Multiple regulations – sectorial (BOI), payments (PCI-DSS), stock

market (SOX), juridical (ILITA)

Page 10: Cyber Presentation - Lighthouse 14.6

10

Challenges & Unique Needs

Our data is our main asset

All network segments are considered highly sensitive -

containing credit and personal information

Large surface of supply-chains

Page 11: Cyber Presentation - Lighthouse 14.6

11

Tips to start UP!

Reduce your BPS rate!

Sales personnel are important. Bring your IT guy to meetings!

Give us what we need + your added value

One solution = multiple mitigations

Page 12: Cyber Presentation - Lighthouse 14.6

12

Tips to start UP!

Malware analysis isn’t everything. We also need: governance,

risk assessments, compliance, digital security, client/partners

anomaly detection, situation reports, network visibility, KM

IT Systems and integrations are everything!

KEEP IT SIMPLE!

Page 13: Cyber Presentation - Lighthouse 14.6

13

Thank you foryour time!

Any questions?