(ISC)2 Security Congress 2012 – An Insider’s Look

Manage webcast
Brandon Dunlap. Brightfly (Moderator); David Wilson, CISSP, Attorney, Titan InfoSecurity Group; Dan Houser, Sr Security & I
(ISC)2 will have its 2nd Annual Security Congress at the Annual ASIS Conference this September in Philadelphia, PA. This conference brings together thought leaders in traditional and information security for three days of educational sessions and an exhibit floor featuring over 350 solution providers. Join (ISC)2 and several of the conference speakers who’ll be presenting at the Security Congress On August 23, 2012 at 1:00pm Eastern as we preview their sessions, get a preview of what will be discussed at the event and examine some of the “hot button” issues facing security practitioners today.
Aug 23 2012
29 mins
(ISC)2 Security Congress 2012 – An Insider’s Look
(ISC)2 Security
More from this community:

Health IT

  • Live 1 and recorded (1000)
  • Upcoming (21)
  • Date
  • Rating
  • Views
  • Email is #1 source of risk in today's enterprise, yet also the #1 digital communication channel for businesses today. The United States Postal Service sends more than thirteen million emails per day, which makes their email channel and brand a high-profile target for criminal email cyberattacks. In this case study webinar, hear from Michael Ray, Inspector in Change of Revenue, Product & Cyber Security at the United States Postal Inspection Service, as he shares their story of how they implemented Agari to protect their brand and their customers against fraudulent attacks by securing their email channel.
  • Achieving your ADME/Tox testing goals requires experience, quality data, and proper alignment with regulatory guidance. Failure to meet these important requirements can put your drug discovery and pre-clinical goals at risk.
    This presentation will provide an informative overview of how you can advance and reach your pre-clinical drug discovery goals. It will discuss the importance of core contract research capabilities, including enzyme induction, enzyme inhibition, and transporter interaction. In addition, we will review new capabilities and opportunities including CYP induction and SLC transporter assay services – all designed to align with regulatory agency guidance documents.

    Speaker Bio:
    David Stresser is the Program Manager of Corning® Gentest℠ Contract Research Services at Corning Life Sciences since 2001, having held prior positions of Product Manager and Study Director since joining Corning in 1998. Prior to this, he was a post-doctoral associate in the laboratory of David Kupfer at the University of Massachusetts Medical School in Worcester, Massachusetts. He did his graduate work in the laboratory of David E. Williams at Oregon State University in Corvallis, Oregon receiving a Ph.D. in toxicology in 1994. Dr. Stresser has authored or co-authored 40 articles or book chapters in the field of drug metabolism and has been an invited speaker at various national and international meetings, pharmaceutical companies, and universities.
  • By now you've probably heard about new ransomware threats like CryptoWall, which encrypts your data and demands payment to unlock it. These threats are delivered via malicious email attachments or websites, and once they execute and connect to an external command and control server, they start to encrypt files throughout your network. Therefore, spotting infections quickly can limit the damage.

    AlienVault USM uses several built-in security controls working in unison to detect ransomware like CryptoWall, usually as soon as it attempts to connect to the hackers’ command and control server. How does it all work? Join us for a live demo that will show how AlienVault USM detects these threats quickly, saving you valuable clean up time by limiting the damage from the attack.
    You'll learn:
    How AlienVault USM detects communications with the command and control server
    How the behavior is correlated with other signs of trouble to alert you of the threat
    Immediate steps you need to take to stop the threat and limit the damage
  • Cell therapy is the fastest growing segment of regenerative medicine. Cell therapy is comprised of immune cell therapy and stem cell therapy, with stem cell therapy making up the largest part of this market: it is estimated that the global stem cell therapy market will reach $40 billion by 2020 and $180 billion by 2030.

    Many factors determine the rate at which the stem cell therapy market advances. It is driven by the success of stem cell treatments in curing life-threatening diseases such as cancer, heart diseases and neuromuscular diseases in the worlds aging populations. In contrast, stem cell market growth rate is hindered by manufacturing and regulatory concerns. For example, if only 20% of the 318 global late stage clinical trials are approved for release on the market, there will not be enough stem cell therapy manufacturing facilities to produce the 64 resulting products. This is due, in part, to funding concerns, the high cost of build-out as well as cGMP compliance, standardization of production processes, and ever changing industry regulations.

    Join us as we discuss these and other key topics.
  • The role of the CISO is evolving - and fast. CISOs today must find innovative ways to align with the business and strategize security as a top business asset -- and those that ascend in their role will have the opportunity to play a bigger, more influential role in the years to come. In this webinar hosted by Agari, you will hear Jim Routh, Aetna CISO share real world insights into specific challenges and solutions to approach today's evolving email threats as well as key 2018 CISO research from Chris McClean, Forrester VP of Research.
  • There are many decisions when choosing a video conferencing solution. Free versus subscription? Cloud solution or not? What type of video system is best suited for your meeting rooms? Join Gagan Verma, Regional Director of Lifesize, in this webinar where he will breakdown the top five considerations of video conferencing for 2015. Gagan will also elaborate on the competitive landscape and which solutions best fit your company’s needs.

    For enquiry: apac-mktg@lifesize.com or +65 6303 8379
  • Next to performance and scalability, cost efficiency is one of the top three reasons most companies cite as their motivations for acquiring storage technology. Businesses are struggling to control the storage costs, and to reduce OPEX costs for administrative staff, infrastructure and data management, and environmental and energy. Every storage vendor, it seems, including most of the Software-defined Storage purveyors, are promising ROIs that require nothing short of a suspension of disbelief.

    In this presentation, Jon Toigo of the Data Management Institute digs out the root causes of high storage costs and sketches out a prescription for addressing them. He is joined by Ibrahim “Ibby” Rahmani of DataCore Software, who will address the specific cost efficiency advantages that are being realized by customers of Software-defined Storage.
  • Wie Sie sicher wissen, untersagt das deutsche Bundesdatenschutzgesetz in seiner Zweckbindungsklausel das Verwenden von sensitiven Echtdaten in Test-, Entwicklungs- und Schulungssystemen. Dennoch sehen wir, dass eine Vielzahl von Unternehmen dieses Risiko immer noch eingeht und sich davor scheut, die nötigen Anpassungen durchzuführen.

    Die deutsche Versicherungswirtschaft begegnet diesem Thema mit dem Code of Conduct über den GDV als Vorreiter nun offensiv.

    Der GDV (Gesamtverband der deutschen Versicherer) ist der erste Verband in Deutschland, der für eine freiwillige Selbstverpflichtung zum Schutz von personenbezogenen Versichertendaten die Zustimmung der Datenschutzbehörden erhalten hat.

    Sämtliche deutschen Versicherungsunternehmen die dem Code of Conduct (CoC) bis Ende 2014 beigetreten sind haben sich damit verpflichtet, dem Datenschutzkodex des GDV innerhalb von 3 Jahren gerecht zu werden.

    Mit den neuen Verhaltensregeln wird transparent, was von der Antragstellung bis zur Schadenregulierung mit personenbezogenen Daten geschieht.

    Lernen Sie wie Informatica die Anforderungen aus dem CoC (Anonymisierung für sensitive Daten in Produktion sowie Test & Entwicklung) umsetzt und gleichzeitig Ihr Testdatenmanagement modernisieren kann.

    Da gemäß BSDSG als auch neuester EU-Novelle Datenschutz ein branchenübergreifendes Thema ist, sind alle Interessenten herzlich zu diesem Webinar eingeladen, die direkt (z.B. Datenschützer) oder indirekt (z.B. Test-Manager, Enterprise Architekten) mit dem Thema konfrontiert werden.

    Unternehmensweiter Datenschutz vom Marktführer – seien sie dabei !
  • Large enterprises want to use all the data they can get to earn the trust and the dollars of their customers. At the same time, they must secure this data, which is increasingly the target of sophisticated cyber-attacks. Traditional triple A (access, authentication and audit) security solutions are no longer sufficient-data-centric security must be added to the mix. In this webinar, join Stratecast | Frost & Sullivan, HP Security Voltage and (ISC)2 on July 16, 2015 at 1:00PM Eastern for an examination of ICT technology trends and business policies that have brought us to this point and how format preserving encryption can be used to protect data at rest, in motion and in use.
  • Channel
  • Channel profile
  • Professionalizing the Cloud Security Workforce Aug 20 2015 5:00 pm UTC 60 mins
    Jim Reavis, CEO of Cloud Security Alliance and David Shearer, CEO, (ISC)²
    (ISC)² and CSA recently developed the Certified Cloud Security Professional (CCSP) credential to meet a critical market need to ensure that cloud security professionals have the required knowledge, skills and abilities to audit, assess and secure cloud infrastructures. Join Jim Reavis, CEO of Cloud Security Alliance and David Shearer, CEO, (ISC)² on August 20, 2015 at 1:00PM Eastern to learn more about the CCSP, the qualifications for it and the future of cloud security.
  • Part 3 - Protecting Your Enterprise: Keeping Email Secure and eDiscovery Easy Aug 13 2015 5:00 pm UTC 60 mins
    Madhu Reddy, Global Product Manager, HP Security Voltage; Michael Osterman, Principal, Osterman Research
    Enterprises receive, create and store enormous amounts of email data each year: roughly 30,000 emails for every information worker, a large proportion of which contains attachments that are often sensitive or confidential. Increasingly, this information must be encrypted to ensure that data breaches are prevented and that data protection obligations are satisfied. At the same time, information must be retained for long periods in compliance with corporate, legal and regulatory obligations.

    However, encryption and archiving are often at odds with one another: data that must be encrypted can be rendered difficult or impossible to access when archived. Data that is archived, but not encrypted, can be more susceptible to data breaches. As a result, the use of an integrated eDiscovery solution becomes more critical than ever. Join HP/Voltage Security and (ISC)2 on August 13, 2015 at 1:00PM Eastern to learn how to protect your enterprise communications with data-centric email encryption ands make it easy to access encrypted and archived content in support of eDiscovery, regulatory and other requirements.
  • Beat The Clock - Endpoint Detection & Response Aug 6 2015 5:00 pm UTC 75 mins
    Mitchell Bezzina, Sec Product Mktg Mgr, Guidance; Dr. Randy Burkhead, Sen. Sec Consultant: Rafel Los, Director, Optiv
    Due to the widespread adoption and use of cloud applications, a burgeoning mobile workforce and the rise in APTs, endpoint risks have become more prevalent and a challenge to manage. Indeed, endpoint penetrations and breaches take only minutes to occur. An effective endpoint detection & response solution is critical to a timely response, as is properly trained incident response team. Join Guidance Software and (ISC)2 on August 6, 2015 at 1:00PM Eastern for a discussion on EDR and the need for effective Incident Response and automation to hasten mitigation.
  • Career Sherpa: From Security Expert to Security Leader Recorded: Jul 30 2015 74 mins
    Michael Santarcangelo, Founder, Security Catalyst; Philip Casesa, CISSP, CSSLP, Dir of Service Ops, (ISC)2
    The biggest challenge in security is no longer technology. We need to rise from recognition as security experts and experts within security teams to leaders protecting information from a world of risk and vulnerabilities.

    Michael Santarcangelo cracked the code on the pathway to becoming an exceptional security leader. On July 30, 2015 at 1:00PM Eastern Michael will share the Exceptional IT Leadership Framework, including the 5 foundational elements, 9 competencies, and 5 essential habits. The webcast will explore the benefits of a framework-based, competency-driven approach to developing your leadership and how to assess where you really are in your leadership journey.
  • Briefings Part 2: Data-Centric Security: Why It's Necessary and How to Get It Recorded: Jul 16 2015 61 mins
    Sandy Borthick, Stratecast|Frost & Sullivan; Reiner Kappenberger, HP Security Voltage
    Large enterprises want to use all the data they can get to earn the trust and the dollars of their customers. At the same time, they must secure this data, which is increasingly the target of sophisticated cyber-attacks. Traditional triple A (access, authentication and audit) security solutions are no longer sufficient-data-centric security must be added to the mix. In this webinar, join Stratecast | Frost & Sullivan, HP Security Voltage and (ISC)2 on July 16, 2015 at 1:00PM Eastern for an examination of ICT technology trends and business policies that have brought us to this point and how format preserving encryption can be used to protect data at rest, in motion and in use.
  • Always On, Always Moving – Securing the Mobile Workforce Recorded: Jul 9 2015 61 mins
    Michael Shaulov, Head of Mobility Product Mgmt, CheckPoint; Frank Aiello, CISO, American Red Cross; Raj Goel, CTO, Brainlink;
    The rapid rise of mobile computing has caused more sleepless nights for security professionals than they would care to admit. Laptops, smart phones, tablets… most employees have one of each, and each needs to be protected. What are the best strategies to enable threat prevention for your mobile workforce? What exactly are the threats being seen today, and what could be around the corner tomorrow? Join Check Point Software and (ISC)2 on July 9, 2015 at 1:00PM Eastern for a roundtable discussion on tackling mobile security challenges to keep on-the-go employees productive and your enterprise secure.
  • A Practical Guide to Meeting Cybersecurity Requirements Recorded: Jul 1 2015 59 mins
    Adrian Davis, Managing Director (ISC)2 EMEA | Craig Isaacs, CEO Unified Compliance
    Cybersecurity is a mess. The number of guides, standards, laws, rules, and regulations grows every day, and most organisations don’t have the ability or the resources to handle the continuously changing (and expanding) set of requirement:

    In this webinar run jointly by (ISC)2 and Unified Compliance, you will learn

    · How to efficiently manage complex compliance requirements by creating customised control sets and compliance templates in seconds

    · What harmonisation of compliance across multiple regulations, standards & frameworks looks like—including Sarbanes Oxley to FFIEC, PCI, GLBA and HIPAA to CMS, NERC, NIST, and ISO among others

    · How to understand and clarify overlaps and conflicts between documents in your regulatory requirements

    · How to save time and eliminate duplicate efforts by asserting compliance across multiple authority documents simultaneously

    Taking this new approach will save organisations considerable time, effort, and resources when it comes to audit and cybersecurity compliance. More importantly, this will improve the efficiency and effectiveness of their overall Governance, Risk Management, and Compliance programs.
  • Turning the Human Firewall on Recorded: Jun 30 2015 59 mins
    Adrian Davis, Bruce Hallas, Lee Barney
    Securing change in employee behaviour, to ensure compliance with organisational policy and to reduce risk to an organisation, relies on employees making a discretionary effort with a positive security outcome. How can security leaders secure not just employee awareness but most importantly positive security behaviours to support embedding security into corporate culture?
    Adrian Davis, MD (ISC)2 EMEA
    Bruce Hallas, Founder, Analogies Project
    Lee Barney, Head of Information Security, Home Retail Group
  • Economies of Scale - Right Sizing Cloud Security Recorded: Jun 25 2015 59 mins
    Andrew Leeth, CISSP, Product Security Eng, SalesForce; Chuck Gaughf, (ISC)2; Brandon Dunlap: Rob Ayoub, NSS Labs
    While the economics of moving workloads to the cloud is well understood by small and medium sized businesses (SMBs), they often struggle with corresponding economics associated with these changes in security challenges. These SMBs often rely on service providers and suppliers for security, but how can they take control or have more of a hand in the security of the cloud services they are using? Join (ISC)2 and our sponsor Sophos on June 25, 2015 for our next From the Trenches where we’ll discuss cloud security and challenges SMBs face when leveraging cloud services.
  • 5 Key Steps to Enabling Secure Data Sharing & Analytics in Hadoop Recorded: Jun 11 2015 60 mins
    Reiner Kappenberger, Global Product Mgmt, HP Security Voltage; William Peterson, Director, Product Marketing, MapR Tech
    Security Briefings Part 1 - Big data analytics and Hadoop environments come with myriad benefits-but also new risks to enterprises. In the past, cyber-attackers had to search for high-value information across a wide range of systems. But with centralized data, hackers can focus on a known, single target. Even when key information is considered secure, there's still a high risk that sensitive information can be re-identified by utilizing multiple data sets. Join HP Security Voltage, MapR and (ISC)2 on June 11, 2015 at 1:00PM Eastern for 5 steps in protecting critical data and learn how to build a strategy and methodology to secure big data in Hadoop.
  • Ponemon Study: True Cost of a Data Breach Recorded: Jun 10 2015 59 mins
    Adrian Davis, Managing Director (ISC)2 EMEA | Gavin Kenny, Associate Partner IBM Security
    Join IBM and (ISC)2 to learn about the latest Cost of a Data Breach study and discuss the implications of the study for today's businesses.
    In this live webinar, you will learn the key findings of the Cost of a Data Breach study, including:
    -Major factors that affect the financial consequences of a data breach
    -How companies changed their operations and compliance following a breach
    -Most common cybersecurity governance challenges
    -Why companies failed to stop data breaches
  • Securing Your Open Source Assets Recorded: Jun 4 2015 59 mins
    Bill Weinberg, Senior Director, Black Duck Software, Dan Cornell, Founder-CTO, Denim Group; Opheliar Chan, Security Compass
    Open source software (OSS) has become pervasive in applications development and infrastructure alike. Indeed, enterprise deployment of OSS has doubled since 2010, and today 8 in 10 organizations report running their businesses on OSS. With broader deployment, both technology companies and enterprise IT have gained comfort with integrating and deploying OSS. At the same time, of the 8000-9000 IT security vulnerabilities catalogued annually, approximately 40% target open source code. The extent of this threat is underscored by critical vulnerabilities like Heartbleed, Poodle, Logjam and Venom. Join (ISC)2 and Black Duck Software on June 4, 2015 at 1:00PM Eastern for a discussion of the state of open source software security and the best ways keep your open-source based applications and infrastructure safe.
  • Inside (ISC)2 With David Shearer, Executive Director, (ISC)2 Recorded: May 28 2015 58 mins
    David Shearer, Executive Director (ISC)2
    As an (ISC)2 member or a practitioner considering certification or membership, wouldn't you like to have the ability to interact with an (ISC)2 Board Member, Director or Manager to ask questions or discover what's being worked on within the organization that will benefit the members or the industry in general? Our new webinar series, Inside (ISC)2 will feature various key personnel within the organization interacting with and answering questions from members and non-members alike in a moderated webcast setting. This is chance to find out, first hand, what's going at (ISC)2 and ask your questions of the key people making decisions at the organization. First up, join us on May 28, 2015 at 1:00PM as David Shearer, Executive Director, stops by to answer your questions.
  • From the Trenches - Leading Practices in Securing Electronic Healthcare Records Recorded: May 21 2015 58 mins
    Brian Rappach, IS Security Project Leader, TriHeath; Ray Potter, SafeLogic, CEO; Eric Walters, Dir & CISO U of Kansas Medical
    Electronic Healthcare Records (EHRs) and the information they contain have become the top target of cybercriminals around the world. Several high profile healthcare-related data breaches have made the headlines in recent months and more are sure to come. What is it about the information contained in EHRs that is so enticing and how can it be better secured? Join (ISC)2 and Sophos on May 21, 2015 at 1:00PM Eastern for a discussion of the security of healthcare data and approaches on how to better protect this type of information.
  • IBM X-Force: Insights from the 1Q 2015 X-Force Threat Intelligence Quarterly Recorded: May 20 2015 60 mins
    Simon Smith, Security Technical Specialist, IBM UK
    2014 brought significant change for the internet security industry. According to IBM's latest X-Force report:
    - Over 1 billion records of PII were leaked in 2014
    - Vulnerability disclosures rocketed to a record high in 2014, and designer vulns like Heartbleed and Shellshock revealed cracks in the foundation of underlying libraries on nearly every common web platform
    - Crowd-sourced malware continues to mutate, resulting in new variants with expanding targets
    - App designer apathy is negatively impacting security on mobile devices.
    Join (ISC)2 and IBM to learn more about the findings of the latest IBM X-Force report and X-Force Interactive Security Incident website, designed to help users gain in-depth understanding of security breaches publicly disclosed over time.
  • Briefings Part 3: Effective Identity & Access Mgmt for Today’s Modern Cloud Recorded: May 14 2015 62 mins
    Kurt Johnson, VP Corp. Development, Courion; Frank Aiello Exec Dir and CISO, American Red Cross
    Your users demand access everywhere, any time, via any device. Whether it’s cloud or traditional on-premise applications, it’s critical that organizations provide access to those who need it while mitigating access risk and maintaining compliance. Join (ISC)2, Courion and the American Red Cross on May 14, 2015 at 1:00PM Eastern for an informative session that will show how the American Red Cross is addressing this issue with a strategy around provisioning, governance, federation, and single sign-on via a seamless and integrated IAM solution for managing cloud and enterprise access.
  • Running Windows Server 2003 in a Post-Support World Recorded: May 14 2015 62 mins
    Christopher Strand, Sr. Global Director of Compliance - IT Governance, Risk, and Security Audit Programs, Bit9
    Even with the imminent end of support for Windows Server 2003 (W2K3), you may still be planning to continue running W2K3 in production. But with a never-ending stream of new exploits, vulnerabilities, and zero-day malware, how can you continue to maintain control and keep those systems safe and secure? (ISC)2 and Bit9 are hosting this webcast which will focus on looking at how to help prevent, detect and respond to advanced threats on endpoints and ensure continued compliance of W2K3 systems.
  • In Clouds We Trust: Making the transition to Office 365 Recorded: May 7 2015 61 mins
    Nate Fitzgerald, Intel Security: Chuck Gaughf, (ISC)2; Matt Gamgwar, Rook Security; Brandon Dunlap
    Moving to the cloud is always a difficult decision, but when you look at the impact of solutions as broad reaching as Office 365, chances are your primary concern is going to be about security. There are a number of facets and features (e-mail, OneDrive, Lync) to Office 365 and the security issues can be myriad. Join Intel Security and (ISC)2 on May 7, 2015 at 1:00PM Eastern for a discussion on how to overcome these challenges through critical protection and often overlooked best practices to build the confidence you need to securely deploy Office 365.
  • State of the Industry - (ISC)2's Global Workforce Study Recorded: Apr 30 2015 61 mins
    Julie Peeler, (ISC)2 Foundation Director; Mark Aiello, President, Cyber 360 Inc.; Elise Yacobellis, (ISC)2
    Every two years, (ISC)2 surveys infosecurity practitioners from around the world about the profile of the global information security workforce. This year, over 12,000 professionals from 135+ countries responded to the survey to provide invaluable insight about their careers, positions and organizations. Join Julie Peeler, (ISC)2 Foundation Director and other industry experts on April 30, 2015 at 1:00pm Eastern for an examination and discussion of the survey results, gain insight into what hiring managers and looking for in job candidates, the areas of expertise in demand and the challenges facing infosec pros around the world.
  • Briefings Part 2: Harvard Pilgrim Health Care Case Study Recorded: Apr 28 2015 61 mins
    Mark Teehan Manager IT Security, Harvard Pilgrim Health Care; Kurt Johnson, Courion
    Keeping Compliance in Check & Controlling Access Risk:

    Learn how one of the nation's largest health insurers provides access to users efficiently and effectively while also assuring that private constituent data is protected in compliance with HIPAA, HITECH and other federal and state privacy and security regulations. Join (ISC)2, Courion and Harvard Pilgrim Health Care on April 28, 2015 at 1:00pm Eastern to learn how the information security team is able to identify and remediate user access risks such as unnecessary privileged access, orphaned and abandoned accounts, and system or non-human accounts that call for administrative oversight.
(ISC)2 hosts a monthly panel discussion around different thought engaging topics within the information security sector.

Embed in website or blog

Successfully added emails: 0
Remove all
  • Title: (ISC)2 Security Congress 2012 – An Insider’s Look
  • Live at: Aug 23 2012 5:00 pm
  • Presented by: Brandon Dunlap. Brightfly (Moderator); David Wilson, CISSP, Attorney, Titan InfoSecurity Group; Dan Houser, Sr Security & I
  • From:
Your email has been sent.
or close
You must be logged in to email this