57
Dean Frye Cisco’s Technical Director, Security Asia Pacific & Japan Jatin Sachdeva Security Architect Cisco Australia & New Zealand

Cisco’s Technical Director, Security Security Architect · epic-hack-of-credit-card-data ... •Developed Specialisation Early in Device Management, Billing, Availability

Embed Size (px)

Citation preview

Dean Frye

Cisco’s Technical Director, Security

Asia Pacific & Japan

Jatin Sachdeva

Security Architect

Cisco Australia & New Zealand

© 2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 2

• Why Cyber?

• What Roles Are Available

• Some Personal Journeys

• How To Build A Career From A Job

• Q+A

© 2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 3

Securityshortage of workers over

next 5 years

1 million

ICTunfilled jobs

globally by 2022

2 million

Data scienceincrease in demand

from 2011 to 2013

40%

© 2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 4

• Cyber Resilience Underpins Brand Trust

• Quality in Engineering – Why does cyber security exist?

• Many SecOps Challenges:

Pervasive Encryption,

Software Datapath Insertion,

Making Security Non-Intrusive,

Security “Dumb” Devices

© 2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 5

• Hard to establish, easy to destroy

• Most trusted brands?

• Least trusted brands?

© 2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 6

© 2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 7

© 2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 8

• What is the difference in those failures?

• In the OT Space, Cyber Operations Failures Have Safety Impact

• No-one really cares about your iPhotos or your Facebook from last Friday night

© 2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 9

• SecOps Failed to Break the Kill Chain

• http://www.bloomberg.com/news/articles/2014-03-13/target-missed-warnings-in-epic-hack-of-credit-card-data

• Others in 2016:

Ukraine Power Grid

ICS Credentials Hack Denies Power Services

Bangladesh Central Bank

$81M USD

SWIFT Credentials Attack

© 2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 10

© 2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 11

• Why do you think?

Capital vs Operational Spending

Speed of App Development

Posture Drift

SecOps vs NetOps

Skills Gaps

Untested Workflows

• Why are we still trying to solve this problem after 20 years?

• Technology Failures vs People Failures

© 2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 12

• What is Security Operations:

co-ordinate technical controls, intelligence etc

Respond, measure … art vs science

human resourcing management including training and staffing

Defining Roles in security operations teams - analysts, operators, responders

• Outsourcing secops. You can outsource business functions/tasks, and you can associate KPIs with that, but you cannot outsource risk

© 2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 13

• Security Engineer/Admin (could be technology specific)

• Intrusion Analyst

• Penetration Tester, Ethical Hacker, Vulnerability Assessor

• (Information) Security Auditor/Analyst

• Security Architect (could be technology specific or cross technology)

• Incident Responder/Handler, Forensics Engineer

• Crypto-grapher/analyst

• Security Sales Account Manager, Security Pre-sales Engineer, Security Post-sales engineer

• Security Software Developer, Source Code Auditor

• Security Researcher

• Privacy Officer

• Security Manager

• Disaster Recovery Specialist

• Chief Information Security Officer

© 2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 14

• Dedicated Security Team in large orgs

• Shared responsibilities in small orgs

• Reporting Lines – direct or dotted, project based

• Moving from other IT roles (network, systems, etc.) into security

• Contractor

• Security Vendors vs System Integrators vs Consulting Orgs

© 2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 15

• Certifications/Trainings

Vendor vs vendor neutral?

SANS Roadmaps

Secure Coding Practices

Cisco Security track – Intro to Cybersecurity, Cybersecurity Essentials. CCNA Security

• Conferences

Participate/attend

Speaking at events

• Stay on top with – rss feeds, email subscriptions, podcasts, etc.

• To secure IT, you need to understand IT!

© 2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 16

Cisco Networking Academy

• IT Essentials

• NDG Linux Essentials

• Cybersecurity Essentials

• Networking Essentials

Foundational Prepare for a Technology Career

IoT Fundamentals:

• Connecting Things*

• Big Data and Analytics*

• Hackathon Playbook*

• CPA: Programming Essentials in C++

• Mobility Fundamentals

• Entrepreneurship

CCNA Routing & Switching:

• Introduction to Networks

• Routing & Switching Essentials

• Scaling Networks

• Connecting Networks

Career-Ready Step into Your Technology Career

CCNP Routing & Switching:• ROUTE

• SWITCH

• TSHOOT

CCNA Security

CCNA Cyber Ops**

NDG Linux:

• Linux I

• Linux II

Collaborate for

ImpactSynthesize

your skills

• Packet Tracer

• Cisco NetRiders

Competition

• Internships

• Regional IT Competitions

• Regional Hackathons

Exploratory Consider a Career in Technology

• Introduction to IoT

• Introduction to Cybersecurity

• Get Connected

Series:

• Be Your Own Boss

• Career & Technical Webinars

• Packet Tracer Know How

• Linux Unhatched

* Available within 6 months

**Available second half 2017

© 2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 17

• SOC Engineer

• Security Engineer/Admin

• Vulnerability Assessor

• Security Auditor

• Security Architect

• Post Sales Engineer

• Pre-Sales Engineer/Architect

• Certs along the way – CISSP, CISA, CCSA/CCSE, RHCE, CEH, GWAPT, GSEC, GCIH, GCIA, SFCP/SFCE

© 2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 18

• Developed Specialisation Early in Device Management, Billing, Availability

• Worked on Fixed Wireless

• Built a Services Business Offering Security Operations Consulting and Software

• 5 Years at Sourcefire/Cisco

© 2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 19

• Landing the role

• Learning Outside Work:

APJ Conferences

Professional Bodies

Professional Education

Personal Research

Open Source/Coding Projects

• Building A Personal Brand

© 2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 20

• There will always be holes and hence hackers and hence defenders

• Security is Board level concern these days

• Wide range of opportunities and roles

• Explore and Enjoy

• Future of Cyber Roles

Thank you.

Jatin Sachdeva: http://www.linkedin.com/in/jatinps, http://twitter.com/jatinps

Dean Frye: https://au.linkedin.com/in/deanrye

Mathew Zele

National Enterprise Partner Manager

NetApp, Australia & New Zealand Virtual Career Fair

© 2016 NetApp, Inc. All rights reserved. --- NETAPP CONFIDENTIAL ---23

Agenda

NetApp at-a-glance

Data management

Your opportunity

Taking the next step

© 2016 NetApp, Inc. All rights reserved. --- NETAPP CONFIDENTIAL ---24

NetApp at-a-glance

© 2016 NetApp, Inc. All rights reserved. --- NETAPP CONFIDENTIAL ---25

1. From FORTUNE Magazine, June 15, 2016 © 2016 Time Inc. FORTUNE and FORTUNE 500 are registered trademarks of Time Inc. and are used under l icense. FORTUNE and Time Inc. are not affiliated with, and do not

endorse products or services of, NetApp.IDC Worldwide Quarterly Enterprise Storage Systems Tracker 2016 Q1, June 2016 (Open Networked Enterprise Storage Systems revenue)

in Converged

Infrastructure

capacity shipped

FY’16 revenue:

$6.1

billion

Recognized as a

FORTUNE 500® Company

20161

Creator of ONTAP, the world’s

branded storage operating

system2

in data replication software

#6Great Place to

Work Institute’s “Best Companies

to Work for in APAC”

#1

#1

#1Leader in oil &

gas, media &

entertainment,

financial

services,

healthcare

Market recognition for NetApp in Flash solutions

© 2016 NetApp, Inc. All rights reserved. --- NETAPP CONFIDENTIAL ---26

Market recognition for NetApp

is #2 with 22.8% revenue

market share ahead of Pure,

HPE and IBM

0%

5%

10%

15%

20%

25%

30%

35%

1 2 3 4 5

#2

25 years of increased innovation to solve your problems

© 2016 NetApp, Inc. All rights reserved. --- NETAPP CONFIDENTIAL ---27

Enabling control and choice

in hybrid cloud

Protecting data across the

lifecycle

Accelerating enterprise

applications

Driving next generation

Data Centers

Innovation areas

0

500

1000

1500

2000

2500

3000

3500

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24

Patent Asset Portfolio Growth

NetApp’s partner ecosystem

© 2016 NetApp, Inc. All rights reserved. --- NETAPP CONFIDENTIAL ---28

Distributors

globally50+

Technology Alliance

and Global System

Integrator partners200+

Active

resellers3500Serving 30,000

customers globally

A few of our customers from around the world

© 2016 NetApp, Inc. All rights reserved. --- NETAPP CONFIDENTIAL ---29

© 2016 NetApp, Inc. All rights reserved. --- NETAPP CONFIDENTIAL ---30

Our Vision for Data Management

From the industry’s data management leader

Getting to seamless data

✓Digital transformations can only be

achieved when data is unleashed to

provide impact

✓Critical data needs to come from any

device or endpoint

✓Data needs consistency regardless of

being on premises, off premises

✓Data needs cloud independence

✓Data security and availability must

remain intact regardless of where the

data goes

Where the future of data management is headed

© 2016 NetApp, Inc. All rights reserved. --- NETAPP CONFIDENTIAL ---31

Digitizationof business increases

role of data

Managing data

becomes core to

transforming business

Investment shifts in IT

This requires a Data Fabric

© 2016 NetApp, Inc. All rights reserved. --- NETAPP CONFIDENTIAL ---32

Data

Management

for:

Endpoints

Connections

Data services

Private Cloud

Cloud Service

Providers

Hyperscale Cloud

Providers

© 2016 NetApp, Inc. All rights reserved. --- NETAPP CONFIDENTIAL ---33

Your Opportunity

Career Opportunities

© 2016 NetApp, Inc. All rights reserved. --- NETAPP CONFIDENTIAL ---34 © 2016 NetApp, Inc. All rights reserved. --- NETAPP CONFIDENTIAL ---34

NetApp Roles & Internships

Roles at NetApp include

Software Engineer

QA Engineer

Technical Support Engineer

Information Systems Engineer

Professional Services Consultant

… and many more

NetApp Internships goal are to:

Give you understanding about the

NetApp® business

Provide knowledge about the specific role

and organization in which you will work

Have the opportunity to engage and

socialize with the community of interns and

employees in various events at NetApp

sites and off-site

Opportunities

Go to the NetApp Career Portal and register for

a Job Seeker Account

Search for positions that interest you

Attend NetApp Recruitment days in your region

– typically held in India, China & Singapore.

Please reach out to Vijay Linus

([email protected]) for more information

Next round of Internships are in Indonesia

For all NetApp University Program questions,

please email [email protected]

NetApp Academic Alliances ProgramInnovative industry-academic partnership to support faculty and student learning

35

Comprehensive library of interactive, professionally developed web-based courses

Virtual simulators for a real-world, hands-on learning experience with industry-leading storage management tools

Rich library of current, highly relevant teaching materials including white papers, industry and analyst reports, case studies and technical papers

Curriculum development consultation and support

Industry certification track and curriculum

© 2016 NetApp, Inc. All rights reserved. --- NETAPP CONFIDENTIAL ---

NCSA – Hybrid Cloud Certification

© 2016 NetApp, Inc. All rights reserved. --- NETAPP CONFIDENTIAL ---36 © 2016 NetApp, Inc. All rights reserved. --- NETAPP CONFIDENTIAL ---36

Training Opportunity

NetApp Certified Storage Associate – Hybrid Cloud Certification

100 NCSA – HCC Scholarships available to the attendees on this call!

NCSA – Hybrid Cloud Certification

This curriculum is designed to introduce you to the foundational technologies in

storage and data management, both on the premises and in a hybrid cloud

environment.

For college and university students, NetApp certification provides industry-

recognized validation of their skills and knowledge in this rapidly emerging area, and

it can help differentiate them in a job search.

© 2016 NetApp, Inc. All rights reserved. --- NETAPP CONFIDENTIAL ---37

Taking the Next Step

How to engage when you get back home

Check out the NetApp Careers website

Have an updated resume & internet presence

Get skilled up on NetApp

100 NCSA – Hybrid Cloud Certification scholarships available

How to Apply:

1. Email [email protected] with “Cisco APAC Careers” in the

subject line

2. State your name, college/university and degree name

3. Provide 2 sentences on how getting a NetApp cert fits with your

education or career goals

Good luck!

© 2016 NetApp, Inc. All rights reserved. --- NETAPP CONFIDENTIAL ---38

*To be eligible for a certification scholarship, you must be enrolled in or teaching at a degree -granting institution.

Cisco – the Company

About us - CSAP

The Program Experience

Your Impact in CSAP

Join Us!

Agenda

Smart Cities

Crisis Response

Safer Jobs

Connected Sports Conservation

Smart HighwaysSimple Security

Our Impact

Cisco Sales Associates Program

CSAP is an industry award-winning

development program designed for top university graduates who aspire to

become our next generation of sales leaders at Cisco.

Business, sales, and

technical curriculum

delivered virtually

in state-of-the-art

classrooms located at

CSAP training hubs

leveraging Cisco

technologies.

Virtual

Learning

Experience

Phase 1

Program / Career Roadmap

Cisco Sales Associates Program

.

When reaching field

readiness Associates

may apply for

available Sales and

Engineering positions

in Cisco

Worldwide Sales

Organization

Phase 4

On-the-Job

Experience

Enhance knowledge

and skills through

interaction with

customers and

partners, mentored and

coached by seasoned

sales and engineering

professionals.

Phase 2

After successfully

completing the CSAP

program, Associates

are promoted into

Virtual Sales and

Engineering roles.

Global Virtual

Sales

Organization

Phase 3

CSAP - 14 Global Training Hub Locations

Amsterdam – Eschborn – Stockholm – Prague – Paris – London – Shanghai

Beijing – Singapore – Bangalore – Sydney – Raleigh – Toronto – San Jose

Determined to

succeedWilling to relocate

A team player

Comfortable with

change

A problem solver

Professional

Sales Driven

A good

communicator

Open to constructive

feedback

A Cisco culture

advocate

If you are…

Strong Collaborator

Enjoy Solving Customer

Challenges

Passionate about Cutting Edge

Technology

Motivated to Earn Technical

Certifications

Programmability aware.

The Role - Associate Systems Engineer (ASE)

Thrive on Building New Relationships

Self-Motivated/Self-Confident

Persistent/Persuasive

Strong communicator

Good Listener

Eager to learn

Flexible

The Role - Associate Sales Representative (ASR)

Industry award winning program

More than1600 CSAP / PSA alumni around the world

Top performers

Broad variety of career opportunities

Be a part of the Success Chairman’s Club 2015

Hawaii

What does it take to be a part of the Cisco Team?

Undergraduate or graduate degree (minimum BS/BA)

Graduate before Program start

Graduates within 27 months prior to the program start date

• Graduated after May 1st , 2017 for July 31st, 2019 start

Cumulative GPA of 3.0 or higher or equivalent in your academic program

Fluent in English, written and verbal

Willing to relocate to a CSAP training hub

ASRs: Sales experience preferred (including retail sales, corporate internships, or entrepreneurial programs)

ASEs: Technical support, pre-sales support, software programing skills, or sales experience in the technology industry preferred

CSAP - Eligibility Criteria

Resume Screening

Video Resume

Submission

WebEx Interview

Assessment Center

Up to 3 months

Interview Selection Process(may vary by region)

Cisco Benefits

5 Days of PTO for volunteer work & matching program

Birthday PTO

Health InsuranceDental Insurance

Eye Insurance

FUN Fund!

• Apply at

http://www.cisco.com/go/universitycsap

• Apply for China Position:

http://campus.51job.com/cisco/about.htm

• Join us on Facebook

https://www.facebook.com/groups/118323348204503/

How to Apply

JoinUs

Join Us!