24
innovateinfosec.c om Why Information Security is becoming the most important for Mid-size Business to Large size Business Ajay Porus Director & Principal Consultant Innovate InfoSec CISA, ITIL, ISO27001, CPISI, RSA certified Analyst, CCNA Security, Qualysguard certified specialist Digital forensics & Cyber crime expert- US DOD Cyber crime center

Why information security is becoming the most important for mid size business to large size business

Embed Size (px)

Citation preview

Page 1: Why information security is becoming the most important for mid size business to large size business

innovateinfosec.com

Why Information Security is becoming the most important for

Mid-size Business to Large size BusinessAjay Porus

Director & Principal Consultant Innovate InfoSecCISA, ITIL, ISO27001, CPISI, RSA certified Analyst, CCNA Security,

Qualysguard certified specialistDigital forensics & Cyber crime expert- US DOD Cyber crime center

Page 2: Why information security is becoming the most important for mid size business to large size business

innovateinfosec.com Disclaimer• Information used to create the training has been

taken from various sources and books. Credit for the information remains with the original authors and registered brands and trademarks belongs to their legitimate owners and does not violate any of Licenses and intellectual property rights

• This training material either in hard or soft forms contains my personal opinion and has nothing to do with my any current or past employers.

Page 3: Why information security is becoming the most important for mid size business to large size business

innovateinfosec.com My Profile

• I am an Information Security and technology Enthusiast.

• I do Consulting and training – A startup – Innovate InfoSec Pvt. Ltd.

• More Than 15 certification in Information security, cyber Security, Risk & Compliance

• Publications: Cloud Computing and its Security Benefits – Enterprise IT Security Magazine

Senior Cyber Leadership - Why a Technically Competent Cyber Workforce is Not Enough – Cyber Security Forum Initiative (CSFI) • Volunteer work: Honeynet Project India• Cloud Security Alliance – Founder

Hyderabad Chapter

Page 4: Why information security is becoming the most important for mid size business to large size business

innovateinfosec.com Agenda• Security industry history• Arrival of Information age & associated risks• Today’s world of information• Major attacks on corporates and aftermaths• Current Threat landscape Risk assessment• Major Issues• What we do?

Page 5: Why information security is becoming the most important for mid size business to large size business

innovateinfosec.com

Page 6: Why information security is becoming the most important for mid size business to large size business

innovateinfosec.com

Page 7: Why information security is becoming the most important for mid size business to large size business

innovateinfosec.com

Page 8: Why information security is becoming the most important for mid size business to large size business

innovateinfosec.com

Page 9: Why information security is becoming the most important for mid size business to large size business

innovateinfosec.com

Page 10: Why information security is becoming the most important for mid size business to large size business

innovateinfosec.com

Page 11: Why information security is becoming the most important for mid size business to large size business

innovateinfosec.com

Page 12: Why information security is becoming the most important for mid size business to large size business

innovateinfosec.com

Page 13: Why information security is becoming the most important for mid size business to large size business

innovateinfosec.com

Perfect Storm Approaching Welcome 2015

• Major victims countries in 2015

Page 14: Why information security is becoming the most important for mid size business to large size business

innovateinfosec.com Incident Vs Breaches

Page 15: Why information security is becoming the most important for mid size business to large size business

innovateinfosec.com Threat Actions

Page 16: Why information security is becoming the most important for mid size business to large size business

innovateinfosec.com Br

each

Disc

over

y

Page 17: Why information security is becoming the most important for mid size business to large size business

innovateinfosec.com

Threat Actors

Page 18: Why information security is becoming the most important for mid size business to large size business

innovateinfosec.com

Reasons of Successful Attacks

• Technical Vulnerabilities: Web App vulnerabilities Network Vulnerabilities OS Vulnerabilities Configuration Vulnerabilities Architectural Vulnerabilities Missed patches Miscellaneous Vulnerabilities

• Process Vulnerabilities No or Lack of Information Security Awareness Non Skilled Workforce Non-Standardization & Lack of well written Documentation Human Psychology Unorganized & unethical Organization culture Improper or no implementation of Security Controls Lack of Employee Satisfaction

Page 19: Why information security is becoming the most important for mid size business to large size business

innovateinfosec.com

What you Loose in a Breach

Page 20: Why information security is becoming the most important for mid size business to large size business

innovateinfosec.com InfoSec Industry Land Scape

Partners

Page 21: Why information security is becoming the most important for mid size business to large size business

innovateinfosec.com Solutions

Page 22: Why information security is becoming the most important for mid size business to large size business

innovateinfosec.com IIS Service Portfolio

• Information Security Architecture Assessment and Assurance Service

• Application Security Services• Data Security Services• Identity & Access Management Services• Network Security• Cloud Security• Security Reviews Services• Sustenance Services for Security Compliance• Physical Security

Page 23: Why information security is becoming the most important for mid size business to large size business

innovateinfosec.com IIS Service Portfolio

• Cyber Hygiene Services• Due Diligence Services• Digital Forensics & Investigation Services• Offensive Services: For Law Enforcement Only• Training Services• Web App & Mobile App development• Managed Security Services

Page 24: Why information security is becoming the most important for mid size business to large size business

innovateinfosec.com