about me · 2011. 2. 22. · about me • tony flick • principal at fyrm associates • eight...

11

Upload: others

Post on 19-Jan-2021

1 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: About Me · 2011. 2. 22. · About Me • Tony Flick • Principal at FYRM Associates • Eight years in the Informaon Security industry • Author of “Securing the Smart Grid”
Page 2: About Me · 2011. 2. 22. · About Me • Tony Flick • Principal at FYRM Associates • Eight years in the Informaon Security industry • Author of “Securing the Smart Grid”

AboutMe

•  TonyFlick•  PrincipalatFYRMAssociates

•  EightyearsintheInforma>onSecurityindustry

•  Authorof“SecuringtheSmartGrid”

Page 3: About Me · 2011. 2. 22. · About Me • Tony Flick • Principal at FYRM Associates • Eight years in the Informaon Security industry • Author of “Securing the Smart Grid”

Why?

• Whyshouldsmartgridcompaniesbeconcernedaboutsecurity?– Justlikeanyotherindustry,weneedtothinkabouttherisks/consequencesbeforewestart

– Unlikemostotherindustries,lackofsecuritycancausephysicalharm

Page 4: About Me · 2011. 2. 22. · About Me • Tony Flick • Principal at FYRM Associates • Eight years in the Informaon Security industry • Author of “Securing the Smart Grid”

WhyNot?

• Whyarecompaniesnotimplemen>ngsecuritycontrols?– Timeconsuming– Costs– Compe>>on

– Someoneelse’sresponsibility

Page 5: About Me · 2011. 2. 22. · About Me • Tony Flick • Principal at FYRM Associates • Eight years in the Informaon Security industry • Author of “Securing the Smart Grid”

ShortTermImplica>ons

•  Gamblethatvulnerabili>eswillgounno>ced– Cheaper

•  Somecustomerswillrefusetodobusinesswithyou

Page 6: About Me · 2011. 2. 22. · About Me • Tony Flick • Principal at FYRM Associates • Eight years in the Informaon Security industry • Author of “Securing the Smart Grid”

LongTermImplica>ons

•  Eventually,youwillhavetoincorporatesecuritycontrols– AQacks– Regula>ons

•  Allcustomerswilleventuallyforceyou

Page 7: About Me · 2011. 2. 22. · About Me • Tony Flick • Principal at FYRM Associates • Eight years in the Informaon Security industry • Author of “Securing the Smart Grid”

Results

•  Securitywillbefarmorecomplextointegratelateron

•  Canbemoreexpensive

•  Canyourcompanysurvive?

Page 8: About Me · 2011. 2. 22. · About Me • Tony Flick • Principal at FYRM Associates • Eight years in the Informaon Security industry • Author of “Securing the Smart Grid”

SecurityControls

•  Integratesecuritycontrolsthroughoutthelifecycle

•  Individualvulnerabili>esandthreatscanbedistrac>ng

•  Focusonsecuritycontrols– Remediatetherootcauseissues

Page 9: About Me · 2011. 2. 22. · About Me • Tony Flick • Principal at FYRM Associates • Eight years in the Informaon Security industry • Author of “Securing the Smart Grid”

SecurityControls

•  Trainings•  Assessments– In‐house– ThirdParty– Scanvs.Assessment

Page 10: About Me · 2011. 2. 22. · About Me • Tony Flick • Principal at FYRM Associates • Eight years in the Informaon Security industry • Author of “Securing the Smart Grid”

SecurityMindset

•  Justbecauseyoucan,doesn’tmeanyoushould– MobileApplica>ons– SocialNetworking

Page 11: About Me · 2011. 2. 22. · About Me • Tony Flick • Principal at FYRM Associates • Eight years in the Informaon Security industry • Author of “Securing the Smart Grid”

Ques>ons?