15
Global Cyberawakening with Jane Holl Lute & Rod Murchison SEPTEMBER 12, 2013

Implementing the SANS 20 Critical Security Controls

Embed Size (px)

DESCRIPTION

Federal government agencies are under immense pressure to improve cybersecurity performance by focusing on compliance and risk management initiatives. These agencies have begun using the SANS 20 Critical Security Controls (CSC) because it provides a framework for implementing continuous diagnostics and mitigation (CDM), sequence IT control implementations, and understand budgets and impacts of these implementations. In light of these challenges, Tripwire will be hosting a free web seminar on implementing the SANS 20 Critical Security Controls (20 CSC) which will cover recent changes in the oversight of the 20 CSC, and how they will affect cybersecurity in the public and private sectors. Join Jane Lute, former deputy secretary of Department of Homeland Security (DHS), and Rod Murchison, vice president of product management for Tripwire, for this informative webinar. Lute is currently President and CEO of the Council on Cybersecurity, a newly formed nonprofit focused on accelerating the widespread adoption of effective control measures to achieve and sustain cybersecurity. Murchison is an accomplished security strategist and the holder of several network security patents. The webinar, titled “Cybersecurity Awareness and the 20 CSC,” will discuss: - The Council on Cybersecurity’s plans to update and improve 20 CSC to ease adoption - Profiles of the current ‘threat actors’ and how the 20 CSC can help thwart the most common threats - What public and private sector organizations can gain from upcoming Council on Cybersecurity events The full webcast that accompanies this slide deck is available here: http://www.tripwire.com/register/cybersecurity-awareness-and-the-sans-20-cscs/

Citation preview

Page 1: Implementing the SANS 20 Critical Security Controls

Global Cyberawakening with Jane Holl Lute& Rod MurchisonSEPTEMBER 12, 2013

Page 2: Implementing the SANS 20 Critical Security Controls

GLOBAL CYBERAWAKENING WITH JANE HOLL LUTE& ROD MURCHISON

September 12, 2013

Page 3: Implementing the SANS 20 Critical Security Controls

3

Jane Holl Lute

The Council on CyberSecurity is an independent, expert, not-for-profit organization with a global scope committed to the security of an open Internet.

Dedicated to the dual goals of Preserving an open Internet Encouraging the adoption of best

practices to secure computer systems against cyberattacks

Former Deputy Secretary of the Department of Homeland Security

Now President and CEO of Council on Cybersecurity

Security strategist and technology leader in the industry for nearly 20 yrs

Tripwire, Boeing, Juniper Networks, Blue Coat Systems, Rod is currently Vice President of Product Management for Tripwire

Rod Murchison

Page 4: Implementing the SANS 20 Critical Security Controls

4

Global Cyberawakening

What is the global cyberawakening?

Page 5: Implementing the SANS 20 Critical Security Controls

5

Global Cyberawakening

What is the global cyberawakening?

Who are the powerful actors?

Page 6: Implementing the SANS 20 Critical Security Controls

6

Global Cyberawakening

What is the global cyberawakening?

Who are the powerful actors?

What is the role of government?

Page 7: Implementing the SANS 20 Critical Security Controls

7

Global Cyberawakening What power matters in cyberspace?

Page 8: Implementing the SANS 20 Critical Security Controls

8

Global Cyberawakening What power matters in cyberspace?

How should we understand threats and vulnerabilities?

Page 9: Implementing the SANS 20 Critical Security Controls

9

Global Cyberawakening What power matters in cyberspace?

How should we understand threats and vulnerabilities?

Who is responsible for our cybersecurity?

Page 10: Implementing the SANS 20 Critical Security Controls

10

Global Cyberawakening What power matters in cyberspace?

How should we understand threats and vulnerabilities?

Who is responsible for our cybersecurity? The Fog of “More”

Page 11: Implementing the SANS 20 Critical Security Controls

11

Global Cyberawakening What is the Council on Cybersecurity?

The cybersecurity ecosystem

Page 12: Implementing the SANS 20 Critical Security Controls

12

Global Cyberawakening What is the Council on Cybersecurity?

The cybersecurity ecosystem

Technology, Manpower, Policy

Page 13: Implementing the SANS 20 Critical Security Controls

13

Global Cyberawakening What is the Council on Cybersecurity?

The cybersecurity ecosystem

Technology, Manpower, Policy

Identify, validate, promote and sustain best practices

The 20 CSCs

www.counciloncybersecurity.org

Page 14: Implementing the SANS 20 Critical Security Controls

14

Q & A

http://www.counciloncybersecurity.org

Page 15: Implementing the SANS 20 Critical Security Controls

tripwire.com | @TripwireInc

WWW.TRIPWIRE.COM/BLOG

THANK YOU