30
New Dimensions Of Cybersecurity Rod Beckstrom Director [email protected] Black Hat

Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Embed Size (px)

DESCRIPTION

Secure World Expo Washington DC Conference Cybersecurity by Rod Beckstrom, Director, National Cybersecurity Center (NCSC), Department of Homeland Security (DHS) cyber security

Citation preview

Page 1: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

NewDimensionsOfCybersecurity

Rod [email protected]

Black Hat

Page 2: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Black Hat

WIRED

NewDimensionsOfCybersecurity

Rod [email protected]

Page 3: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Presenter’s Name June 17, 2003

The Prisoners Dilemma

Page 4: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Presenter’s Name June 17, 2003

Page 5: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Presenter’s Name June 17, 2003

Insider threats and hackers…

Page 6: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Presenter’s Name June 17, 2003

Page 7: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Presenter’s Name June 17, 2003

Who reengineered the system?

Page 8: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Presenter’s Name June 17, 2003

Page 9: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Presenter’s Name June 17, 2003

Page 10: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Presenter’s Name June 17, 2003

Page 11: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Presenter’s Name June 17, 2003

Page 12: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Presenter’s Name June 17, 2003

Back to the Future

Page 13: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Presenter’s Name June 17, 2003

The Prisoners Dilemma

Page 14: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Presenter’s Name June 17, 2003

The Prisoners Dilemma

W/W

W/L

L/WW/W

L/L

Page 15: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Presenter’s Name June 17, 2003

Iterated Prisoners Dilemma

W/W

W/L

L/WW/W

L/L

200 X

Page 16: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Presenter’s Name June 17, 2003

Iterated Prisoners Dilemma

W/W

W/L

L/WW/W

L/L

200 X

Page 17: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

NCSC ROLES

Joint venture of DHS/DNI/DOD/DOJ HSC/NSC

Connecting six key network operation centers

Information sharing and situational awareness

Foster collaboration across Federal government

Report on “State of the Network” to White House

Page 18: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Presenter’s Name June 17, 2003

Page 19: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Presenter’s Name June 17, 2003

Slight problem…

What are the rules?What is risk management?

Page 20: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Presenter’s Name June 17, 2003

where SC = total security cost SI = security investment L = loss

Economics of Security

MINIMIZE SC = SI + L

Page 21: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Presenter’s Name June 17, 2003

Loss $

Security $

Economics of Security

Page 22: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Presenter’s Name June 17, 2003

Loss $

Security $

Economics of Security

Page 23: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Presenter’s Name June 17, 2003

Loss $

Security $

Economics of Protocols

Better Protocols Drive Loss Function Down

Page 24: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Presenter’s Name June 17, 2003

IPV6, BGP, DNS, SMS/IP, POTS …

Protocol Investments

Page 25: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Presenter’s Name June 17, 2003

Correlation of Losses

Correlations of losses due to IP failure (LIP) are trending towards 1.0

n

Page 26: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Presenter’s Name June 17, 2003

Info Sharing Incentives“information wants to be free”butStovepipe perception – “information is power”

Incentives against disclosure

OSINT/SIGINT/HUMINT

Benefits of collaboration and network effect…

Page 27: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Presenter’s Name June 17, 2003

Economics of NetworksCyber Diplomacy/Game Theory

Cloud ComputingCyber-kinetic WarsCyber quarantines

Secure ISP’s

New Dimensions

Page 28: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Presenter’s Name June 17, 2003

E Pluribus Unum

Page 29: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Presenter’s Name June 17, 2003

How can we best plant our flag in cyberspace?

[email protected]

Page 30: Secure World Expo DC, Rod Beckstrom, Director of the NCSC, National Cybersecurity Center, DHS, Department of Homeland Secuirty

Presenter’s Name June 17, 2003