11

About Me · 2011. 2. 22. · About Me • Tony Flick • Principal at FYRM Associates • Eight years in the Informaon Security industry • Author of “Securing the Smart Grid”

  • Upload
    others

  • View
    1

  • Download
    0

Embed Size (px)

Citation preview

Page 1: About Me · 2011. 2. 22. · About Me • Tony Flick • Principal at FYRM Associates • Eight years in the Informaon Security industry • Author of “Securing the Smart Grid”
Page 2: About Me · 2011. 2. 22. · About Me • Tony Flick • Principal at FYRM Associates • Eight years in the Informaon Security industry • Author of “Securing the Smart Grid”

AboutMe

•  TonyFlick•  PrincipalatFYRMAssociates

•  EightyearsintheInforma>onSecurityindustry

•  Authorof“SecuringtheSmartGrid”

Page 3: About Me · 2011. 2. 22. · About Me • Tony Flick • Principal at FYRM Associates • Eight years in the Informaon Security industry • Author of “Securing the Smart Grid”

Why?

• Whyshouldsmartgridcompaniesbeconcernedaboutsecurity?– Justlikeanyotherindustry,weneedtothinkabouttherisks/consequencesbeforewestart

– Unlikemostotherindustries,lackofsecuritycancausephysicalharm

Page 4: About Me · 2011. 2. 22. · About Me • Tony Flick • Principal at FYRM Associates • Eight years in the Informaon Security industry • Author of “Securing the Smart Grid”

WhyNot?

• Whyarecompaniesnotimplemen>ngsecuritycontrols?– Timeconsuming– Costs– Compe>>on

– Someoneelse’sresponsibility

Page 5: About Me · 2011. 2. 22. · About Me • Tony Flick • Principal at FYRM Associates • Eight years in the Informaon Security industry • Author of “Securing the Smart Grid”

ShortTermImplica>ons

•  Gamblethatvulnerabili>eswillgounno>ced– Cheaper

•  Somecustomerswillrefusetodobusinesswithyou

Page 6: About Me · 2011. 2. 22. · About Me • Tony Flick • Principal at FYRM Associates • Eight years in the Informaon Security industry • Author of “Securing the Smart Grid”

LongTermImplica>ons

•  Eventually,youwillhavetoincorporatesecuritycontrols– AQacks– Regula>ons

•  Allcustomerswilleventuallyforceyou

Page 7: About Me · 2011. 2. 22. · About Me • Tony Flick • Principal at FYRM Associates • Eight years in the Informaon Security industry • Author of “Securing the Smart Grid”

Results

•  Securitywillbefarmorecomplextointegratelateron

•  Canbemoreexpensive

•  Canyourcompanysurvive?

Page 8: About Me · 2011. 2. 22. · About Me • Tony Flick • Principal at FYRM Associates • Eight years in the Informaon Security industry • Author of “Securing the Smart Grid”

SecurityControls

•  Integratesecuritycontrolsthroughoutthelifecycle

•  Individualvulnerabili>esandthreatscanbedistrac>ng

•  Focusonsecuritycontrols– Remediatetherootcauseissues

Page 9: About Me · 2011. 2. 22. · About Me • Tony Flick • Principal at FYRM Associates • Eight years in the Informaon Security industry • Author of “Securing the Smart Grid”

SecurityControls

•  Trainings•  Assessments– In‐house– ThirdParty– Scanvs.Assessment

Page 10: About Me · 2011. 2. 22. · About Me • Tony Flick • Principal at FYRM Associates • Eight years in the Informaon Security industry • Author of “Securing the Smart Grid”

SecurityMindset

•  Justbecauseyoucan,doesn’tmeanyoushould– MobileApplica>ons– SocialNetworking

Page 11: About Me · 2011. 2. 22. · About Me • Tony Flick • Principal at FYRM Associates • Eight years in the Informaon Security industry • Author of “Securing the Smart Grid”

Ques>ons?