Showing posts with label #RSA2016. Show all posts
Showing posts with label #RSA2016. Show all posts

Friday, April 20, 2018

RSA Conference 2018 attracted 42,000

The 27th annual RSA Conference, held last week in San Francisco's Moscone Center, attracted over 42,000 attendees.

"The goal of RSA Conference is to bring the best content the cybersecurity industry has to offer across numerous platforms," said Linda Gray Martin, Director & General Manager of RSA Conference. "We succeeded, in a week filled with knowledge sharing, collaboration and the exchange of innovative ideas among the industry’s elite. In the process, we’re beginning the journey to reach and educate a new audience through RSAC onDemand. We thank everyone for making it such a special event once again and we’re excited to further these conversations in the year ahead.”

RSAC Unplugged London will take place on June 7, 2018.

RSA Conference 2018 Asia Pacific & Japan takes place July 25-27, 2018 in Singapore.

RSAC Unplugged Abu Dhabi is set for November 14, 2018.

RSA Conference 2019 takes place March 4-8, 2019 in San Francisco.

Monday, March 7, 2016

Video: Apps, Virtualization, Security and the Cloud

Art Gilliland, CEO of Skyport Systems, discusses Application, Virtualization, Security and the Cloud at RSA 2016.

When you think about isolating applications or workloads, you want to be able to put security around them. Virtualization gives you a compartment to do that. But companies really need to think about how to manage those environments. Skyport addresses this challenge by bringing the new security perimeter all the way down to the application.

YouTube:  https://youtu.be/ULB7pmxJkRU

 



Video: Defending the Whole: IaaS, PaaS, and SaaS

Mark Nunnikhoven, VP of Cloud Research at Trend Micro, reflects on the Cloud Security Alliance Summit at #RSA2016.  Enterprises are using a lot of cloud services, each of which may have its own security implementation.  Taken together, implementing a consistent security stance becomes a challenge, which the industry is starting to address.  The roadmap is bright.

YouTube: https://youtu.be/uEKIG_CE77g





Video: Malware Attack Fan-out via Cloud Storage Converge! Network Digest Converge! Network Digest

Cloud storage services are popular but they are becoming a vector for the rapid spread of malware.  Krishna Narayanaswamy, Founder and Chief Scientist at Netskope, describes how malware is the start of a sophisticated attack cycle.

YouTube: https://youtu.be/Cy5Z9AbuHwI



Video: As Perimeter Defenses Fail, Harden the Interior

Almost all cyber intrusions involve a failure of perimeter defenses, says Leo Taddeo, Chief Security Officer at Cryptzone.  It's time to harden the interior of the corporate network.

YouTube: https://youtu.be/hCMYkMXVqyQ





Sunday, March 6, 2016

Video: The Intersection of IoT and Security

Jason Porter, VP of Security Solutions from AT&T, gives a 2-minute overview of the intersection of #IoT and security.  Not surprisingly, the top concern from enterprises deploying IoT technologies is ensuring end-to-end security for all elements in the ecosystem.

YouTube: https://youtu.be/p6doq-Jbbh0







Video: The State of Cloud Security

Jim Reavis, CEO of the Cloud Security Alliance, provides a 2-minute update on the state of the industry and highlights of the day-long Cloud Security Summit held at RSA 2016.

The current state of security in cloud computing is strong, but uneven. Many issues remain to be addressed, including as services transgress international boundaries or even go from one operator to another.

YouTube: https://youtu.be/-wAS1t7dl-8




Video: CSA Global Enterprise Board's Call to Action

Vinay Patel, Global Head of Information Security for Citi Enterprise Infrastructure, issues a call-to-action on behalf of the Cloud Security Alliance's Enterprise Advisory Board.

For enterprises, the stakes could not be higher in ensuring that cloud services are safe, secure, transparent and trusted platforms.

YouTube: https://youtu.be/TFQ7XovaCqs





Video: New Approaches to Cloud Security with Prevoty

Arpit Joshipura discusses New Approaches to Cloud Security at RSA 2016.

Conventional cyber solutions based on malware signatures, white-lists, black-lists, data flow analysis are no longer effective.  The focus needs to move to a layered approach that includes runtime application security within the applications themselves.

YouTube: https://youtu.be/fh20tTEj_XY





Tuesday, March 1, 2016

Splunk Leads Adaptive Response Initiative

Splunk is spearheading an Adaptive Response Initiative to connect with a community of best-of-breed security vendors to improve cyber defense strategies and security operations. The idea is to combine alert and threat information from multiple security domains and technologies.

Splunk said this collective insight enables security teams to make better-informed decisions across the entire kill chain, especially when validating threats and applying analytics-driven response directives to their security environment.

Founding participants of the Adaptive Response Initiative include Carbon Black, CyberArk, Fortinet, Palo Alto Networks, Phantom, Splunk, Tanium, ThreatConnect and Ziften.

“The mission of the Adaptive Response Initiative is to bring together the best technologies across the security industry to help organizations combat advanced attacks,” said Haiyan Song, senior vice president of security markets, Splunk. “Modern cyber threats are dynamic, and attackers are constantly finding new ways to get in and exploit networks and systems. This new challenge goes well beyond preventing individual stages of an attack. Adaptive Response aims to more effectively connect intelligence across best-of-breed technologies to help organizations improve their security posture, quickly validate threats, and systematically disrupt the kill chain.”

http://www.splunk.com

Monday, February 29, 2016

Top Twelve Cloud Computing Threats

The Cloud Security Alliance (CSA) Top Threats Working Group published a report listing The Treacherous 12: Cloud Computing Top Threats in 2016:

  • Data Breaches
  • Weak Identity, Credential and Access Management
  • Insecure APIs
  • System and Application Vulnerabilities
  • Account Hijacking
  • Malicious Insiders
  • Advanced Persistent Threats (APTs)
  • Data Loss
  • Insufficient Due Diligence
  • Abuse and Nefarious Use of Cloud Services
  • Denial of Service
  • Shared Technology Issues

"Our last Top Threats report highlighted developers and IT departments rolling out their own self-service Shadow IT projects, and the bypassing of organizational security requirements. A lot has changed since that time and what we are seeing in 2016 is that the cloud may be effectively aligned with the Executive strategies to maximize shareholder value," said Jon-Michael Brook, co-Chair of the Top Threats Working Group. "The 'always on' nature of cloud computing impacts factors that may skew external perceptions and, in turn, company valuations."

https://cloudsecurityalliance.org/

Gigamon Revs Metadata Engine for Contextual Security Analytics

Gigamon unveiled its Metadata Engine for their GigaSECURE Security Delivery Platform (SDP).

The solution centrally generates and aggregates contextual information about network traffic. It sends that metadata to the security analytics devices that can leverage the information.

The company said its Metadata Engine will ‘super-charge’ security information and event management systems (SIEMs), enabling forensics solutions and user behavioral analytics products to connect to its GigaSECURE Security Delivery Platform and receive output of the Metadata Engine, that includes:
  • NetFlow/IPFIX records
  • URL/URI information
  • SIP request information
  • HTTP response codes
  • DNS queries
  • DHCP queries (future)
  • Certificate information (future)
  • Custom data (future)
Gigamon also announced a number of ecosystem partners supporting this approach: FlowTraq, Lancope, now a Cisco company, LogRhythm, Niara, Plixer and SevOne.

“We want to enable our customers to drastically improve their security posture by taking advantage of the latest trends in security analytics,” said Shehzad Merchant, CTO, Gigamon. “By enabling both context and packet based security analytics, Gigamon’s customers benefit by improving their ability to uncover intruder threats faster.”

http://www.gigamon.com

Gigamon Launches Security Visibility Platform for Advanced Persistent Threats

Gigamon introduced its "GigaSECURE" Security Delivery Platform for providing pervasive visibility of network traffic, users, applications and suspicious activity, and then delivering it to multiple security devices simultaneously without impacting network availability.

The idea is to counter Advanced Persistent Threats (APTs) by leveraging a traffic visibility fabric to extract scalable metadata across a network, including cloud and virtual environments, and thereby empower third party security applications. This enables improved forensics and the isolation of applications for targeted inspection. The company also said its solution is also able to deliver visibility to encrypted traffic for threat detection.  The architecture supports inline and out-of-band security device deployments.

Gigamon's GigaSECURE is comprised of scalable hardware and software elements:

  • Infrastructure-wide reach via GigaVUE-VM and GigaVUE nodes;
  • High-fidelity, un-sampled Netflow/IPFIX generation;
  • Application Session Filtering;
  • SSL decryption; and
  • Inline bypass capabilities.
Gigamon also highlighted its Application Session Filtering (ASF), a new, patent-pending GigaSMART application that can identifies applications based on signature or patterns that appear within a packet or packets. Once positively identified, ASF extracts the entire session corresponding to the matched application flow from the initial packet to the last packet of the flow, even if the match occurs well after the first packet. This allows an administrator to forward specific “traffic of interest” to security appliances thereby optimizing their operational efficiency and improving overall performance.

The GigaSECURE platform already supports a broad ecosystem of security partners and their respective security functions, including:

Advanced Malware Protection: Check Point, Cisco, Cyphort, FireEye and Lastline;
Behavior Analytics: Damballa, Lancope, LightCyber and Niara;
Forensics/Analytics: ExtraHop, PinDrop, RSA and Savvius;
IPS: Check Point and Cisco;
NGFW: Check Point, Cisco, Fortinet and Palo Alto Networks;
Secure Email Gateways: Cisco;
SIEMs: LogRythm and RSA;
WAFs: Imperva.

https://www.gigamon.com/

Trend Micro Cloud App Security Integrates Box, Dropbox and Google Drive

Trend Micro has extended its Cloud App Security solution to Box, Dropbox and Google Drive.

Cloud App Security capabilities include:

  • Guards against advanced threats with sandbox malware analysis
  • Uses DLP to provide visibility into sensitive data use with cloud file sharing
  • Detects malware hidden in office files using document exploit detection
  • Supports all user functionality and devices with simple API integration in the cloud
  • Integrates with Trend Micro Control Manager for central visibility of threat and DLP events across hybrid Exchange environments as well as endpoint, web, mobile, and server security layers.
  • Cloud App Security has been integrated with a number of leading marketplaces and cloud commerce platforms to give partners and customers a complete end-to-end purchasing and provision experience.

http://www.trendmicro.com