SlideShare une entreprise Scribd logo
1  sur  16
OMG Cyber!
About Me
• Robert M. Lee (@RobertMLee)
• AF Cyber Warfare Operations Officer
– My views/comments definitely only represent me
• Adjunct Lecturer at Utica College
• PhD Student at Kings College London
• SANS Course Author/Instructor (ICS/SCADA track)
• Author of:
– SCADA and Me: A Book for Children and Management
– Little Bobby
The Argument
“OMG Cyber:
Thirteen Reasons Why Hype
Makes for Bad Policy”
• Published in the RUSI Journal with Thomas Rid
• Draws from my background in IC and USAF
• Draws from his background in Academia
• Written in formal Buzzfeed/Gawker Style
The 13 Points
• Hype creates confusion
• Hype limits results
• Hype betrays purpose
• Hype erodes talent
• Hype creates friction
• Hype breeds cynicism
• Hype degrades quality
• Hype weakens products
• Hype clouds analysis
• Hype kills nuance
• Hype escalates conflict
• Hype creates hypocrisy
• Hype undermines trust
Case Studies
Militaries and
the Intelligence Community
• Strategic visions and grab bag scenarios
• The cult of popular opinion and internal biases
• The push for metrics over substance
• PowerPoints and “facts”
• Robert Hale: “‘we tried to capture it all, but I’d say there’s a
gray area here in what counts as cyber”
• General Welsh: “When you come to educate us, don't
come in using cyber talk”
• NATO: “to put pressure on smaller countries to spend more
money on their cyber-defence capabilities”
Sony –
Somewhere North of Wrong
• Sony Pictures Entertainment – security staff size
• Discussions around and likely investment in hack-back
• Victims shaming in real life vs. industry
Oil Pipelines and Russians
• Chief of Staff – avoid cyber talk
One Solution:
A Little More
and a Little Less
(Conclusion)
A Little More
Focus on Doing
• A lot of people talk about security – not many actually do it
• Tons of excuses – some pretty legitimate – but more focus
on security as a process, while supporting the mission, and
an emphasis on people over boxes will help
• Stop over hyping it – leadership will either not believe you
(analyst who cried wolf) or believe you (maybe worse)
A Little Less
Self Licking Ice Cream Cones
• Government – Wants that cyber-stuff
• Vendors – Sure can make some cyber-stuff
• Journalism – Needs that cyber-goodness scoop
• Academia – Loves to be quoted as a cyber-expert
Questions?

Contenu connexe

En vedette

I Jornada Gastronómica Orihuela Costa 2011
I Jornada Gastronómica Orihuela Costa 2011I Jornada Gastronómica Orihuela Costa 2011
I Jornada Gastronómica Orihuela Costa 2011esterferrandez
 
Comparison of Sweden and EU data
Comparison of Sweden and EU dataComparison of Sweden and EU data
Comparison of Sweden and EU dataErik Borälv
 
25 años 3ª Parte Jornadas
25 años 3ª Parte Jornadas25 años 3ª Parte Jornadas
25 años 3ª Parte Jornadasjosefermin
 
Web 2.0: Making Email a Useful Web App
Web 2.0: Making Email a Useful Web AppWeb 2.0: Making Email a Useful Web App
Web 2.0: Making Email a Useful Web AppAndy Denmark
 
Manual Pegaso Expander Esp2
Manual Pegaso Expander Esp2Manual Pegaso Expander Esp2
Manual Pegaso Expander Esp2JAVIER j
 
Packers And Movers In Kolkata
Packers And Movers In KolkataPackers And Movers In Kolkata
Packers And Movers In KolkataEuro Movers
 
English summer camp_2011_llamado[1]
English summer camp_2011_llamado[1]English summer camp_2011_llamado[1]
English summer camp_2011_llamado[1]Graciela Bilat
 
Scheiner + tignanelli elaboración de trabajos de fc
Scheiner + tignanelli   elaboración de trabajos de fcScheiner + tignanelli   elaboración de trabajos de fc
Scheiner + tignanelli elaboración de trabajos de fcelizabeth guanuco
 
Endeavor rosario 120627
Endeavor rosario 120627Endeavor rosario 120627
Endeavor rosario 120627Ariel Muslera
 
Euphoria Media present new
Euphoria Media present newEuphoria Media present new
Euphoria Media present newYuriy Ryzhkov
 
Blueberry Field Day (parte 3)
Blueberry Field Day (parte 3)Blueberry Field Day (parte 3)
Blueberry Field Day (parte 3)Cooprinsem
 
Sem 1 -_4.03_ppt
Sem 1 -_4.03_pptSem 1 -_4.03_ppt
Sem 1 -_4.03_pptgrantdeaton
 
J&P Building Systems Ltd - Effective Sealing Technology
J&P Building Systems Ltd - Effective Sealing TechnologyJ&P Building Systems Ltd - Effective Sealing Technology
J&P Building Systems Ltd - Effective Sealing TechnologyJ and P Building Systems
 
BUSINESS MODEL OPEN SOURCE
BUSINESS MODEL OPEN SOURCEBUSINESS MODEL OPEN SOURCE
BUSINESS MODEL OPEN SOURCEgillesmu
 
Feasibility study 2015
Feasibility study 2015Feasibility study 2015
Feasibility study 2015Rihel Calma
 
Selenium 2 - PyCon 2011
Selenium 2 - PyCon 2011Selenium 2 - PyCon 2011
Selenium 2 - PyCon 2011hugs
 

En vedette (20)

I Jornada Gastronómica Orihuela Costa 2011
I Jornada Gastronómica Orihuela Costa 2011I Jornada Gastronómica Orihuela Costa 2011
I Jornada Gastronómica Orihuela Costa 2011
 
Comparison of Sweden and EU data
Comparison of Sweden and EU dataComparison of Sweden and EU data
Comparison of Sweden and EU data
 
25 años 3ª Parte Jornadas
25 años 3ª Parte Jornadas25 años 3ª Parte Jornadas
25 años 3ª Parte Jornadas
 
Jornal dos Comerciários (Novembro 2014) - Nº 162
Jornal dos Comerciários (Novembro 2014) - Nº 162Jornal dos Comerciários (Novembro 2014) - Nº 162
Jornal dos Comerciários (Novembro 2014) - Nº 162
 
Bosque da Aldeia.
Bosque da Aldeia.Bosque da Aldeia.
Bosque da Aldeia.
 
Web 2.0: Making Email a Useful Web App
Web 2.0: Making Email a Useful Web AppWeb 2.0: Making Email a Useful Web App
Web 2.0: Making Email a Useful Web App
 
Manual Pegaso Expander Esp2
Manual Pegaso Expander Esp2Manual Pegaso Expander Esp2
Manual Pegaso Expander Esp2
 
Packers And Movers In Kolkata
Packers And Movers In KolkataPackers And Movers In Kolkata
Packers And Movers In Kolkata
 
English summer camp_2011_llamado[1]
English summer camp_2011_llamado[1]English summer camp_2011_llamado[1]
English summer camp_2011_llamado[1]
 
Scheiner + tignanelli elaboración de trabajos de fc
Scheiner + tignanelli   elaboración de trabajos de fcScheiner + tignanelli   elaboración de trabajos de fc
Scheiner + tignanelli elaboración de trabajos de fc
 
Endeavor rosario 120627
Endeavor rosario 120627Endeavor rosario 120627
Endeavor rosario 120627
 
Euphoria Media present new
Euphoria Media present newEuphoria Media present new
Euphoria Media present new
 
Blueberry Field Day (parte 3)
Blueberry Field Day (parte 3)Blueberry Field Day (parte 3)
Blueberry Field Day (parte 3)
 
Sem 1 -_4.03_ppt
Sem 1 -_4.03_pptSem 1 -_4.03_ppt
Sem 1 -_4.03_ppt
 
J&P Building Systems Ltd - Effective Sealing Technology
J&P Building Systems Ltd - Effective Sealing TechnologyJ&P Building Systems Ltd - Effective Sealing Technology
J&P Building Systems Ltd - Effective Sealing Technology
 
Facts and details
Facts and detailsFacts and details
Facts and details
 
BUSINESS MODEL OPEN SOURCE
BUSINESS MODEL OPEN SOURCEBUSINESS MODEL OPEN SOURCE
BUSINESS MODEL OPEN SOURCE
 
Feasibility study 2015
Feasibility study 2015Feasibility study 2015
Feasibility study 2015
 
Selenium 2 - PyCon 2011
Selenium 2 - PyCon 2011Selenium 2 - PyCon 2011
Selenium 2 - PyCon 2011
 
Video game Localisation and Testing
Video game Localisation and TestingVideo game Localisation and Testing
Video game Localisation and Testing
 

Similaire à OMG Cyber!

Corp Web Risks and Concerns
Corp Web Risks and ConcernsCorp Web Risks and Concerns
Corp Web Risks and ConcernsPINT Inc
 
Enterprise SEO and AI - Houston IMA Interactive Strategies 17
Enterprise SEO and AI - Houston IMA Interactive Strategies 17Enterprise SEO and AI - Houston IMA Interactive Strategies 17
Enterprise SEO and AI - Houston IMA Interactive Strategies 17Keith Goode
 
Content Is Still King: Providing Ongoing Value to Customers
Content Is Still King: Providing Ongoing Value to CustomersContent Is Still King: Providing Ongoing Value to Customers
Content Is Still King: Providing Ongoing Value to CustomersVivastream
 
Content Is Still King: Providing Ongoing Value to Customers
Content Is Still King: Providing Ongoing Value to CustomersContent Is Still King: Providing Ongoing Value to Customers
Content Is Still King: Providing Ongoing Value to CustomersVivastream
 
Content Is Still King: Providing Ongoing Value to Customers
Content Is Still King: Providing Ongoing Value to CustomersContent Is Still King: Providing Ongoing Value to Customers
Content Is Still King: Providing Ongoing Value to CustomersVivastream
 
Content Is Still King: Providing Ongoing Value to Customers
Content Is Still King: Providing Ongoing Value to CustomersContent Is Still King: Providing Ongoing Value to Customers
Content Is Still King: Providing Ongoing Value to CustomersVivastream
 
Content Is Still King: Providing Ongoing Value to Customers
Content Is Still King: Providing Ongoing Value to CustomersContent Is Still King: Providing Ongoing Value to Customers
Content Is Still King: Providing Ongoing Value to CustomersVivastream
 
Content Is Still King: Providing Ongoing Value to Customers
Content Is Still King: Providing Ongoing Value to CustomersContent Is Still King: Providing Ongoing Value to Customers
Content Is Still King: Providing Ongoing Value to CustomersVivastream
 
Product Launches with Zero Budgets
Product Launches with Zero BudgetsProduct Launches with Zero Budgets
Product Launches with Zero BudgetsAIPMM Administration
 
Ethics and UX IxDA Berlin 2018
Ethics and UX IxDA Berlin 2018Ethics and UX IxDA Berlin 2018
Ethics and UX IxDA Berlin 2018Eric Reiss
 
Predicting the Present
Predicting the PresentPredicting the Present
Predicting the Presentbcantrill
 
Habits of Highly Effective Teams
Habits of Highly Effective TeamsHabits of Highly Effective Teams
Habits of Highly Effective TeamsjClarity
 
Ethics and ux ux sofia nov 2018
Ethics and ux ux sofia nov 2018Ethics and ux ux sofia nov 2018
Ethics and ux ux sofia nov 2018Eric Reiss
 
Habits of Highly Effective Technical Teams - Martijn Verburg
Habits of Highly Effective Technical Teams - Martijn VerburgHabits of Highly Effective Technical Teams - Martijn Verburg
Habits of Highly Effective Technical Teams - Martijn VerburgJAXLondon2014
 
Cybercrime and the Developer: How to Start Defending Against the Darker Side...
 Cybercrime and the Developer: How to Start Defending Against the Darker Side... Cybercrime and the Developer: How to Start Defending Against the Darker Side...
Cybercrime and the Developer: How to Start Defending Against the Darker Side...Steve Poole
 
Present to-nmmu-propella
Present to-nmmu-propellaPresent to-nmmu-propella
Present to-nmmu-propellaExo Futures
 

Similaire à OMG Cyber! (20)

Corp Web Risks and Concerns
Corp Web Risks and ConcernsCorp Web Risks and Concerns
Corp Web Risks and Concerns
 
Enterprise SEO and AI - Houston IMA Interactive Strategies 17
Enterprise SEO and AI - Houston IMA Interactive Strategies 17Enterprise SEO and AI - Houston IMA Interactive Strategies 17
Enterprise SEO and AI - Houston IMA Interactive Strategies 17
 
Content Is Still King: Providing Ongoing Value to Customers
Content Is Still King: Providing Ongoing Value to CustomersContent Is Still King: Providing Ongoing Value to Customers
Content Is Still King: Providing Ongoing Value to Customers
 
Content Is Still King: Providing Ongoing Value to Customers
Content Is Still King: Providing Ongoing Value to CustomersContent Is Still King: Providing Ongoing Value to Customers
Content Is Still King: Providing Ongoing Value to Customers
 
Content Is Still King: Providing Ongoing Value to Customers
Content Is Still King: Providing Ongoing Value to CustomersContent Is Still King: Providing Ongoing Value to Customers
Content Is Still King: Providing Ongoing Value to Customers
 
Content Is Still King: Providing Ongoing Value to Customers
Content Is Still King: Providing Ongoing Value to CustomersContent Is Still King: Providing Ongoing Value to Customers
Content Is Still King: Providing Ongoing Value to Customers
 
Content Is Still King: Providing Ongoing Value to Customers
Content Is Still King: Providing Ongoing Value to CustomersContent Is Still King: Providing Ongoing Value to Customers
Content Is Still King: Providing Ongoing Value to Customers
 
Content Is Still King: Providing Ongoing Value to Customers
Content Is Still King: Providing Ongoing Value to CustomersContent Is Still King: Providing Ongoing Value to Customers
Content Is Still King: Providing Ongoing Value to Customers
 
Product Launches with Zero Budgets
Product Launches with Zero BudgetsProduct Launches with Zero Budgets
Product Launches with Zero Budgets
 
SX
SXSX
SX
 
Sx sw 2012
Sx sw 2012Sx sw 2012
Sx sw 2012
 
Ethics and UX IxDA Berlin 2018
Ethics and UX IxDA Berlin 2018Ethics and UX IxDA Berlin 2018
Ethics and UX IxDA Berlin 2018
 
Predicting the Present
Predicting the PresentPredicting the Present
Predicting the Present
 
Habits of Highly Effective Teams
Habits of Highly Effective TeamsHabits of Highly Effective Teams
Habits of Highly Effective Teams
 
Ethics and ux ux sofia nov 2018
Ethics and ux ux sofia nov 2018Ethics and ux ux sofia nov 2018
Ethics and ux ux sofia nov 2018
 
Habits of Highly Effective Technical Teams - Martijn Verburg
Habits of Highly Effective Technical Teams - Martijn VerburgHabits of Highly Effective Technical Teams - Martijn Verburg
Habits of Highly Effective Technical Teams - Martijn Verburg
 
Cybercrime and the Developer: How to Start Defending Against the Darker Side...
 Cybercrime and the Developer: How to Start Defending Against the Darker Side... Cybercrime and the Developer: How to Start Defending Against the Darker Side...
Cybercrime and the Developer: How to Start Defending Against the Darker Side...
 
Information symposium
Information symposiumInformation symposium
Information symposium
 
Present to-nmmu-propella
Present to-nmmu-propellaPresent to-nmmu-propella
Present to-nmmu-propella
 
Beyond the paper CV and developing a scientific profile through social media,...
Beyond the paper CV and developing a scientific profile through social media,...Beyond the paper CV and developing a scientific profile through social media,...
Beyond the paper CV and developing a scientific profile through social media,...
 

Dernier

[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdfhans926745
 
Exploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone ProcessorsExploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone Processorsdebabhi2
 
Developing An App To Navigate The Roads of Brazil
Developing An App To Navigate The Roads of BrazilDeveloping An App To Navigate The Roads of Brazil
Developing An App To Navigate The Roads of BrazilV3cube
 
A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?Igalia
 
GenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdfGenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdflior mazor
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationRadu Cotescu
 
Data Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonData Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonAnna Loughnan Colquhoun
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...apidays
 
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfsudhanshuwaghmare1
 
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...DianaGray10
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityPrincipled Technologies
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slidevu2urc
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerThousandEyes
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...Martijn de Jong
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc
 
🐬 The future of MySQL is Postgres 🐘
🐬  The future of MySQL is Postgres   🐘🐬  The future of MySQL is Postgres   🐘
🐬 The future of MySQL is Postgres 🐘RTylerCroy
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024The Digital Insurer
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProduct Anonymous
 
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...Neo4j
 

Dernier (20)

[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf
 
Exploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone ProcessorsExploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone Processors
 
Developing An App To Navigate The Roads of Brazil
Developing An App To Navigate The Roads of BrazilDeveloping An App To Navigate The Roads of Brazil
Developing An App To Navigate The Roads of Brazil
 
A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?
 
GenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdfGenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdf
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organization
 
Data Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonData Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt Robison
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
 
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivity
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slide
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
 
🐬 The future of MySQL is Postgres 🐘
🐬  The future of MySQL is Postgres   🐘🐬  The future of MySQL is Postgres   🐘
🐬 The future of MySQL is Postgres 🐘
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
 

OMG Cyber!

  • 2. About Me • Robert M. Lee (@RobertMLee) • AF Cyber Warfare Operations Officer – My views/comments definitely only represent me • Adjunct Lecturer at Utica College • PhD Student at Kings College London • SANS Course Author/Instructor (ICS/SCADA track) • Author of: – SCADA and Me: A Book for Children and Management – Little Bobby
  • 4. “OMG Cyber: Thirteen Reasons Why Hype Makes for Bad Policy” • Published in the RUSI Journal with Thomas Rid • Draws from my background in IC and USAF • Draws from his background in Academia • Written in formal Buzzfeed/Gawker Style
  • 5. The 13 Points • Hype creates confusion • Hype limits results • Hype betrays purpose • Hype erodes talent • Hype creates friction • Hype breeds cynicism • Hype degrades quality • Hype weakens products • Hype clouds analysis • Hype kills nuance • Hype escalates conflict • Hype creates hypocrisy • Hype undermines trust
  • 7. Militaries and the Intelligence Community • Strategic visions and grab bag scenarios • The cult of popular opinion and internal biases • The push for metrics over substance • PowerPoints and “facts” • Robert Hale: “‘we tried to capture it all, but I’d say there’s a gray area here in what counts as cyber” • General Welsh: “When you come to educate us, don't come in using cyber talk” • NATO: “to put pressure on smaller countries to spend more money on their cyber-defence capabilities”
  • 8.
  • 9. Sony – Somewhere North of Wrong • Sony Pictures Entertainment – security staff size • Discussions around and likely investment in hack-back • Victims shaming in real life vs. industry
  • 10.
  • 11. Oil Pipelines and Russians • Chief of Staff – avoid cyber talk
  • 12. One Solution: A Little More and a Little Less (Conclusion)
  • 13.
  • 14. A Little More Focus on Doing • A lot of people talk about security – not many actually do it • Tons of excuses – some pretty legitimate – but more focus on security as a process, while supporting the mission, and an emphasis on people over boxes will help • Stop over hyping it – leadership will either not believe you (analyst who cried wolf) or believe you (maybe worse)
  • 15. A Little Less Self Licking Ice Cream Cones • Government – Wants that cyber-stuff • Vendors – Sure can make some cyber-stuff • Journalism – Needs that cyber-goodness scoop • Academia – Loves to be quoted as a cyber-expert

Notes de l'éditeur

  1. The *almost lunch* fun-presentation
  2. The *almost lunch* fun-presentation