27
The Lord of the Rings and Information Security in Your Open Source Project @amye -- [email protected] 1 of 17

The Lord of the Rings and Information Security in Your

  • Upload
    others

  • View
    1

  • Download
    0

Embed Size (px)

Citation preview

Page 1: The Lord of the Rings and Information Security in Your

The Lord of the Rings and Information Security in

Your Open Source Project

@amye -- [email protected] of 17

Page 2: The Lord of the Rings and Information Security in Your

Where’d this all come from?

2

Page 3: The Lord of the Rings and Information Security in Your

Lighting the Beacons

3

Page 4: The Lord of the Rings and Information Security in Your

Community Gardens as a reason to care about this

4w biscuits

Page 5: The Lord of the Rings and Information Security in Your

The forging of the ring

5

Page 6: The Lord of the Rings and Information Security in Your

6

Page 7: The Lord of the Rings and Information Security in Your

Gollum

7

Page 8: The Lord of the Rings and Information Security in Your

Frodo

8

Page 9: The Lord of the Rings and Information Security in Your

Gandalf

9

Page 10: The Lord of the Rings and Information Security in Your

Hobbits

10

Au Kirk

Page 11: The Lord of the Rings and Information Security in Your

Strider

11brickaholicproductions

Page 12: The Lord of the Rings and Information Security in Your

Discovery: Stay Calm

12

Page 13: The Lord of the Rings and Information Security in Your

Communication:We should do that!

Communicate with:

Your team around you

Your management structure

Information Security

Legal

Public Relations

13

Page 14: The Lord of the Rings and Information Security in Your

Keeping a running document of what’s going on where, roles and responsibilities

Secure unlisted IRC channel for key parties

Daily calls to confirm current status and next steps

Day to Day Coordination

14

Page 15: The Lord of the Rings and Information Security in Your

Week to Week Coordination

What does done look like here?

What does success look like here?

15

Page 16: The Lord of the Rings and Information Security in Your

Actual Remediation

Coordinate with all the people who might need to be involved

Make a checklist

Follow that checklist

16

Page 17: The Lord of the Rings and Information Security in Your

The Council of Elrond

What happens after discovery: who needs to be involved

17

Page 18: The Lord of the Rings and Information Security in Your

The Mines of Moria

https://www.flickr.com/photos/59263516@N08/15382035629 18

Page 19: The Lord of the Rings and Information Security in Your

A note on legal

19

Page 20: The Lord of the Rings and Information Security in Your

Galadriel

20

Page 21: The Lord of the Rings and Information Security in Your

Boromir21

Page 22: The Lord of the Rings and Information Security in Your

Good grief, Boromir.

22

Page 23: The Lord of the Rings and Information Security in Your

The Eye of Sauron

23http://geekologie.com/

Page 24: The Lord of the Rings and Information Security in Your

What success looks like in the Shire

24

Page 25: The Lord of the Rings and Information Security in Your

Congratulations! You’ve survived the shadow of the angel of infosec on your doorstep.

chaostrophy

25

Page 26: The Lord of the Rings and Information Security in Your

Real Advice26

Page 27: The Lord of the Rings and Information Security in Your

I wish you way more than luck.

27