ISCON2005 Logo Bell - Corporate Event Sponsor
HOME SECURITY CONFERENCE ABOUT US SECURITY TRAINING SPONSORSHIP INFORMATION PARTNERS CONTACT US
Conference Venue Conference Program Conference Reception Gala Dinner Tutorial Pricing and Registration

 Tutorial

Security 101 - Security issues you really should know about!

Presented by Cinnabar Networks
Cinnabar Networks Inc.

This tutorial discusses issues regarding information security, which are critical to the success of every organization. Topics include managing risk in a consistent manner; executing proper and efficient security and privacy audits; information technology and security update; going beyond a firewall for network security; and protecting your applications.

Date: May 31, 2005
Time: 9:00 A.M. - 4:30 P.M.
Location: Nortel – 255 Albert St, Room 700
Agenda:
9:00-10:00 Risk Management
10:00-10:45 Trends
10:45-11:00 Break (Coffee and muffins provided)
11:00-12:30 Application Security
12:30-1:30 Lunch (not provided)
1:30-3:00 Privacy and Security Audit
3:00-3:15 Break (Coffee and muffins provided)
3:15-4:30 Network Security

Why Attend?
Critical Infrastructure Protection (CIP) is, or should be, paramount to many organizations.. If you want to have your pulse on CIP, attend this tutorial and get a snapshot of the hot topics.

Session Overview

Managing Risk Consistently:

Using risk management methodologies and processes will reduce risk to your organization.
Surprisingly, the objective of risk management is not to reduce risk to zero; it is to reduce risk to an acceptable level while containing personnel, equipment, and operating costs.

Managing risk is not a one-time activity; it is a process. Organizations that don't manage risk in a structured manner invariably end up in one of three states: spending too much on security, investing in the wrong items, or leaving themselves vulnerable to unacceptable risk.

Security and Privacy Audit: Are we walking the walk or just talking?

Audit can mean different things to different people. In too many cases, auditors are feared and avoided, and in some cases audits may not achieve the positive outcomes intended. This presentation will describe how audit can be a vital information-gathering tool for senior management, resulting in process improvements, reduced liability, and ultimately, reduced risk.

IT Security Trends: Important changes to the IT Security industry

The IT security market has been likened to an arms race. Hot technologies from five years ago are old news. Cyber threats from two years ago are now seen as naïve and simplistic compared to the sophisticated attacks appearing today. This session will provide valuable intelligence about the evolving cyber battlefield.

Network Security: Why a firewall isn't enough

Internet-connected networks are increasingly becoming the core of Canada's critical infrastructure, serving as the central nervous system for purposes as diverse as controlling hydro electric dams, traffic lights, sewers, water supplies, and public transit in our cities, and of course, the virtual highways over which trillions of dollars of business is conducted.

The notion of maintaining impenetrable perimeter security with all of the "bad guys" on the outside and the "completely trusted users" on the inside is being eroded by the many customers, business partners and suppliers we allow through the gates, and the increased concerns about insider threats.

Application Security: The golden rule - protect your gold or lose it

Applications bear a heavy burden in securing information. Networks are generally blind to application events, so firewalls and network-level filtering can only provide limited protection. Responsibility for applying access control, permissions, logging, and other security services has to reside at the application layer.

Unfortunately, increasing complexity (including security complexity) has resulted in more vulnerabilities than ever in applications.


About Cinnabar Networks

Cinnabar Networks specializes in providing training that brings a clear business perspective to difficult technical issues and is dedicated to providing Risk Management professional services, including IT Security, Privacy, and Business Continuity Planning services.

Cinnabar has provided IT Security and Privacy training to a wide variety of audiences, including the Communications Security Establishment, many federal government departments, security product companies, the FBI, NATO, and several IT Security and health care symposia and conferences. Cinnabar has over 30 full time consultants, and another 120 Secret-cleared, government selected sub-contractors.

The company has provided instructors for, and has designed curriculum for, a variety of college and university programs. As well, Cinnabar regularly provides instructors and material for AFCEA's (Armed Forces Communications and Electronics Association) annual IT security workshops.

In the Branham Group's 2005 survey, Cinnabar was listed as the fourth largest IT Security firm in Canada. http://www.branhamgroup.com/branham300/2004/listings.php?listing=7

The Canadian Communications Security Establishment (CSE) and Public Works and Government Services Canada (PWGSC) recognize Cinnabar as a preferred supplier of Information Technology Infrastructure Security and Protection Services (ITISPS) to Federal Departments and Agencies.
http://www.cse-cst.gc.ca/en/services/industrial_services/itisps_program.html