Information Technology Information Sharing and Analysis Center. First Symposium Barcelona, Spain Feb. 2, 2011

Similar documents
Data Collection and Incident Analysis: IT-ISAC Perspective. ENISA Workshop March 17, 2010

NATIONAL DEFENSE INDUSTRIAL ASSOCIATION Homeland Security Symposium

Greg Garcia President, Garcia Cyber Partners Former Assistant Secretary for Cyber Security and Communications, U.S. Department of Homeland Security

Department of Homeland Security Updates

Global Resilience Federation Trust. Collaboration. Community. Cindy Donaldson President, Global Resilience Federation October 2017

2 nd Cybersecurity Workshop Test and Evaluation to Meet the Advanced Persistent Threat

Industry role moving forward

Panelists. Moderator: Dr. John H. Saunders, MITRE Corporation

The Role of ISACs in Protecting Critical Infrastructure. Denise Anderson Chair National Council of ISACs. Agenda

Critical Infrastructure Sectors and DHS ICS CERT Overview

U.S. Department of Homeland Security Office of Cybersecurity & Communications

GPS Vulnerability and DHS Mitigation Efforts. David Wulf Acting Deputy Assistant Secretary Infrastructure Protection Department of Homeland Security

December 10, Statement of the Securities Industry and Financial Markets Association. Senate Committee on Banking, Housing, and Urban Development

Critical Infrastructure Partnership

National Cyber Security Strategy - Qatar. Michael Lewis, Deputy Director

Overview of NIPP 2013: Partnering for Critical Infrastructure Security and Resilience October 2013

Advanced Cyber Risk Management Threat Modeling & Cyber Wargaming April 23, 2018

Cyber Partnership Blueprint: An Outline

HPH SCC CYBERSECURITY WORKING GROUP

Regional Resilience: Prerequisite for Defense Industry Base Resilience

Briefing to National Association of Regulatory Utility Commissioners

Election Infrastructure Security: The How and Why of It

Global Response Centre (GRC) & CIRT Lite. Regional Cyber security Forum 2009, Hyderabad, India 23 rd to 25 th September 2009

DHS Election Task Force Updates. Geoff Hale, Elections Task Force

PIPELINE SECURITY An Overview of TSA Programs

Status Update from the Department of Transportation

Critical Infrastructure Protection (CIP) as example of a multi-stakeholder approach.

CALIFORNIA CYBERSECURITY TASK FORCE

Testimony. Christopher Krebs Director Cybersecurity and Infrastructure Security Agency U.S. Department of Homeland Security FOR A HEARING ON

Texas Reliability Entity, Inc. Strategic Plan for 2017 TEXAS RE STRATEGIC PLAN FOR 2017 PAGE 1 OF 13

2016 Nationwide Cyber Security Review: Summary Report. Nationwide Cyber Security Review: Summary Report

Cyber Security & Homeland Security:

IMPACT Global Response Centre. Technical Note GLOBAL RESPONSE CENTRE

The Office of Infrastructure Protection

RCISC_11014 Prospect Brochure_V3.indd 1

The Office of Infrastructure Protection

DHS Cybersecurity: Services for State and Local Officials. February 2017

Security Monitoring Engineer / (NY or NC) Director, Information Security. New York, NY or Winston-Salem, NC. Location:

The Office of Infrastructure Protection

The Office of Infrastructure Protection

Cyber Resilience. Think18. Felicity March IBM Corporation

ICS-CERT Year in Review. Industrial Control Systems Cyber Emergency Response Team

Sharing Best Security Practices with your Peers - on an International Level

GridEx IV Initial Lessons Learned and Resilience Initiatives

RICK RAMPOLLA WHO WE ARE. ITDM Security Operations, Publix Super Markets Inc.

Cybersecurity Overview

Center for Internet Security Confidence in the Connected World

The Role of the ISACs in Critical Infrastructure Resilience Presented by Steve Lines Executive Director Defense Industrial Base Information Sharing

June 5, 2018 Independence, Ohio

Electric Sector Security & Privacy Plans for 2011

Grid Security & NERC

About. Established 1 September 2016 Engagement platform for cross-sector interaction and collaboration. Cybersecurity Consortium

CyberSecurity Internships The Path to Meeting Industry Need

Compliance Monitoring and Enforcement Program Technology Project Update

Water Information Sharing and Analysis Center

Implementation Strategy for Cybersecurity Workshop ITU 2016

FAA Cybersecurity Test Facility (CyTF) By: Enterprise Information Security Team ANG-B31 Patrick Hyle, William J Hughes Technical Center

Overview. Objectives. Components. Information and Communication Technologies Sector Development Project. Project

DATA SHEET RSA NETWITNESS PLATFORM PROFESSIONAL SERVICES ACCELERATE TIME-TO-VALUE & MAXIMIZE ROI

Federal Information Sharing Resources for Small and Midsize Businesses

2011 North American SCADA & Process Control Summit March 1, 2011 Orlando, Fl

CIRT: Requirements and implementation

The National Medical Device Information Sharing & Analysis Organization (MD-ISAO) Initiative Session 2, February 19, 2017 Moderator: Suzanne

OAS Cybersecurity Capacity Building Efforts

NERC Staff Organization Chart

Critical Infrastructure Mission Implementation by State, Local, Tribal, and Territorial Agencies and Public-Private Partnerships.

ERO Enterprise IT Projects Update

Awareness as a Cyber Security Vulnerability. Jack Whitsitt Team Lead, Cyber Security Awareness and Outreach TSA Office of Information Technology

Standing Together for Financial Industry Resilience Quantum Dawn 3 After-Action Report. November 19, 2015

Information Technology Branch Organization of Cyber Security Technical Standard

RFD. for ICERT ( ) RESULTS-FRAMEWORK DOCUMENT. Department of Information Technology. Results-Framework Document (RFD) for CERT-In ( )

UNCLASSIFIED. National and Cyber Security Branch. Presentation for Gridseccon. Quebec City, October 18-21

The Cyber Threat. Bob Gourley, Partner, Cognitio June 22, How we think. 1

Designing and Building a Cybersecurity Program

Cybersecurity A Regulatory Perspective Sara Nielsen IT Manager Federal Reserve Bank of Kansas City

Statement for the Record

California Cybersecurity Integration Center (Cal-CSIC)

Regional Cyber security Forum for Africa and Arab States, Tunis, Tunisia 4 th -5 th June 2009

Critical Infrastructure Protection and Suspicious Activity Reporting. Texas Department of Public Safety Intelligence & Counterterrorism Division

Strengthening the Cybersecurity of Federal Networks and Critical Infrastructure

Building the Disaster Resilience of the NSW Community. Disaster Ready Councils Regional Forum October-November 2017

S&T Stakeholders Conference

INTERNATIONAL TELECOMMUNICATION UNION

The challenges of the NIS directive from the viewpoint of the Vienna Hospital Association

RESILIENT UTILITY COALITION OF SOUTH FLORIDA

INFORMATION SHARING / CYBER SECURITY BREAKOUT SESSION RECAP

Department of Homeland Security Geospatial Management Office (GMO) NSGIC Midyear Update

The Center of Innovation: Creating an Innovation

Cybersecurity-Related Information Sharing Guidelines Draft Document Request For Comment

ISAO SO Product Outline

Transport and ICT Global Practice Smart Connections for All Sandra Sargent, Senior Operations Officer, Transport & ICT GP, The World Bank

Mike Spear, Ops Leader Greg Maciel, Cyber Director INDUSTRIAL CYBER SECURITY PROGRAMS

October 19, pm ET. What s in a (Domain) Name? UA, IPv6, DNSSEC & the Future of Global Business

PA TechCon. Cyber Wargaming: You ve been breached: Now what? April 26, 2016

Critical Infrastructure Protection Committee Strategic Plan

Re: McAfee s comments in response to NIST s Solicitation for Comments on Draft 2 of Cybersecurity Framework Version 1.1

Apr. 10, Vulnerability disclosure and handling processes strengthen security programs

Homeland Security Perspectives: Oregon Fire District Directors Association October 25, 2018

The Australian Government s Approach to Critical Infrastructure Resilience

National Infrastructure Resilience

Transcription:

Information Technology Information Sharing and Analysis Center First Symposium Barcelona, Spain Feb. 2, 2011

About Us Non Profit, US Corporation established in 2000 and operational in 2001 Fully funded by members, not part of and fully independent of DHS Governed by a Board, managed by an Executive Director, with 4 members of the Operations Team NDA for member companies One stop point to other Critical Infrastructures Looking to expand our relationships with non us based organizations

Members (as of Dec. 31, 2010) Foundation Members BAE Systems, IT CA, Inc. Cargill, Inc. CSC ebay EWA, IIT IBM Intel Corporation Microsoft Corp. Oracle USA, Inc. SRA International Symantec Corp. VeriSign, Inc. Silver Members Afilias, USA Cisco Systems, Inc. Juniper Networks HP McAfee, Inc. NeuStar Bronze Members Lockheed Martin Corporation Prescient Solutions USi

IT-ISAC Capabilities 24x7 Response Operations Center Technical Committee for facilitating information sharing among members Special Interest Groups (such as the Emerging Threat SIG) to focus on specific member defined issues Training and Education initiative Secure member portal

Tech Committee Analytical Groups Product Emerging Threat Network Technical Committee

IT-ISAC Organizational Goals Incident Response: Be a trusted forum for relevant and timely situational awareness-related information sharing on incidents affecting IT-ISAC Members. Analytics and Trends: Provide analytics on cyber threat and vulnerability trends and activities Provide a trusted forum to work on IT Enterprise and Operations-level cyber security issues ( hard problems) R&D: Identify R&D requirements and opportunities focusing on solutions to achieve IT-ISAC objectives Training and Education: Leverage member expertise and resources to provide best practices, awareness and training to industry and government community.

New Operations Construct Refine analytical reports to better provide members with the steady state information they need to manage risks; Facilitate the sharing of information among members on attacks, threats and trends; Program manage specific initiatives, such as the Technical Committee, focused analytical groups, training and education initiative, and other member led and defined initiatives; Maintain our traditional incident response coordination functions; Enhance collaborative analysis with and among members and other partners

Cross Sector Collaboration Ops Center NCCIC National Council of ISACs

Specific Operational Initiatives Analysis and Incident Response Enhance Technical Committee value Drive Focused Analytical Groups Collaboration with the NCCIC and NICC Cross Sector Information Sharing and Analysis Joint Coordination Center Information Sharing Pilot National Council of ISACs Exercise Capabilities National Level Exercise (NLE) 11 IT-ISAC Drills Expand Reach within Sector FIRST, ICASI, International Collaboration

Select 2010 Accomplishments Implemented new operations construct Embed an analyst at the NCCIC Participated in Cyber Storm III Conducted a pilot program to enhance cross sector collaboration Provided thought at key conferences and workshops Initiated the Training and Education initiative

Potential Focus Areas for 2011 Identify opportunities for additional operational relationships at the international level Work within the US to build a national cross sector information sharing and analysis capability Identify partners to build similar international capabilities Implement lessons learned from CS III Finalize and publish Emerging Threat SIG paper

Contact Information: Scott C. Algeier salgeier@it-isac.org; 001-703-385-4969--Direct www.it-isac.org