SlideShare une entreprise Scribd logo
1  sur  30
Télécharger pour lire hors ligne
C Y B E R S E C U R I T Y:
D O S & D O N ’ T S
M A R T I N A F R A N C E S C A F E R R A C A N E
R E S E A R C H A S S O C I A T E A T E C I P E
Q E D
2 2 J U N E 2 0 1 7
O U T L I N E
1. G E T T I N G T H E T E R M I N O L O G Y R I G H T
2. D O N ’ T S
3. D O S
O U T L I N E
1. G E T T I N G T H E T E R M I N O L O G Y R I G H T
2. D O N ’ T S
3. D O S
C Y B E R S E C U R I T Y
Cybersecurity is the body of technologies, processes and
practices designed to protect networks, computers,
programs and data from attack, damage or unauthorized
access.
Elements of cybersecurity include:
Application security; Information security; Network
security; Disaster recovery / business continuity planning;
Operational security; End-user education.
Source: http://whatis.techtarget.com
C Y B E R S E C U R I T Y
Cyber threats can be grouped in 4 categories:
- Crime: fraud, extorsion, theft, DoS, etc
- Commercial espionage
- Nation-State espionage
- Warfare
Source: Information Technology Industry Council (2015)
A C C E S S T O D A TA F O R N A T I O N A L S E C U R I T Y
& L A W E N F O R C E M E N T
Different issues such as:
- Counter-terrorism measures
- MLATs
- Data sovereignty
D A TA P R I VA C Y
Data privacy concerns the
collection, protection and
dissemination of personal or
private information about
individuals or organisations.
Source: http://lexicon.ft.com/
F R E E D O M O F E X P R E S S I O N
Different issues such as:
- Fake news
- Censorship
- Hate speech
O U T L I N E
1. G E T T I N G T H E T E R M I N O L O G Y R I G H T
2. D O N ’ T S
3. D O S
F R A G M E N TA T I O N ( I )
“Member States have very different levels of
preparedness, which has led to fragmented approaches
across the Union. This results in an unequal level of
protection of consumers and businesses, and
undermines the overall level of security of network and
information systems within the Union.”
Recital (5) - NIS Directive
F R A G M E N TA T I O N ( I I )
“Each Member State shall adopt a national strategy on
the security of network and information systems defining
the strategic objectives and appropriate policy and
regulatory measures with a view to achieving and
maintaining a high level of security of network and
information systems (…)”
Article 7 - NIS Directive
F R A G M E N TA T I O N ( I I I )
“Member States shall lay down the rules on penalties
applicable to infringements of national provisions
adopted pursuant to this Directive and shall take all
measures necessary to ensure that they are
implemented (…)”
Article 21 - NIS Directive
N O T I F I C A T I O N O F I N C I D E N T S
Digital services: have to report those incidents that have
a ‘substantial impact on the provision of a service (…)
they offer in the EU’.
Operators of essential services have to report those
incidents ‘having significant impact on the continuity of
the essential services they provide’
Art. 14 & Art. 16 - NIS Directive
‘without undue delay’
C O M P U L S O RY S E C U R I T Y S TA N D A R D S ( I )
“Member States shall (…) encourage the use of
European or internationally accepted standards and
specifications relevant to the security of network and
information systems.”
Article 19 - NIS Directive
C O M P U L S O RY S E C U R I T Y S TA N D A R D S ( I I )
- Multi-Level Protection Scheme (MPLS) - China
- Preferential Market Access (PMA) - India
- Cybersecurity Law - China
‘The security reviews will not target any country or region,
they will not discriminate against foreign technology or
products, nor limit their access to the Chinese market. On
the contrary, they will boost consumer confidence in such
products and services, and expand their markets.’
CAC China
“We cannot allow [terrorism] the safe space it
needs to breed – yet that is precisely what the
internet, and the big companies that provide
internet-based services provide”
Theresa May
H O W S E C U R I T Y S TA N D A R D S C O U L D B E A B U S E D …
‘Personal information and important data collected and
generated by critical information infrastructure operators
in the PRC must be stored domestically’
Art. 37 - China Cybersecurity Law - June 2017
D A TA L O C A L I S A T I O N ( I )
‘Where due to business requirements it is truly necessary
to provide it [data] outside the mainland, they shall (…)
conduct a security assessment’
D A TA L O C A L I S A T I O N ( I I )
Source: Digital Trade Estimates Database - ECIPE
O U T L I N E
1. G E T T I N G T H E T E R M I N O L O G Y R I G H T
2. D O N ’ T S
3. D O S
- Focus on systems that are truly critical in nature
- Improve public agencies
- Improve coordination intra-EU and globally
- Develop national cybersecurity plans
- Involve the private sector in the development of
cybersecurity strategy
- Invest in R&D
- Increase PPP
- Participate in international fora and consortia
D O S
- Preserve interoperability and openness to the
global market
- Balance cybersecurity concerns with:
- civil liberties
- innovation
- trade
- other policy priorities
D O S
"It's no longer OK not to understand how the
Internet works.”
Aaron Swartz
R E F E R E N C E S
- Directive (EU) 2016/1148 of the European Parliament and of the Council of 6
July 2016 concerning measures for a high common level of security of network
and information systems across the Union: http://eur-lex.europa.eu/legal-
content/EN/TXT/?uri=CELEX%3A32016L1148
- English Sina (2017). China Internet regulator says cyber security law not a trade
barrier: http://english.sina.com/news/2017-05-31/detail-ifyfuvpm6886418.shtml
- FT (2017). Special Report on Cyber Security: https://www.ft.com/reports/cyber-
security
- Independent (2017). Theresa May says the internet must now be regulated
following London Bridge terror attack: http://www.independent.co.uk/news/
uk/politics/theresa-may-internet-regulated-london-bridge-terror-attack-
google-facebook-whatsapp-borough-security-a7771896.html
R E F E R E N C E S
- ITIC (2013). ITI Position Paper on the Proposed “Directive of the European
Parliament and of the Council Concerning Measures to Ensure a High
Common Level of Network and Information Security Across the Union”:
https://www.itic.org/dotAsset/a748f2f7-7d73-4d62-8ea0-b5ad35e3af27.pdf
- ITIC (2015). The IT Industry’s Cybersecurity Principles for Industry and
Government: https://www.itic.org/dotAsset/0e3b41c2-587a-48a8-
b376-9cb493be36ec.pdf
- NIST (2014): Framework for Improving Critical Infrastructure Cybersecurity:
https://www.nist.gov/sites/default/files/documents/cyberframework/
cybersecurity-framework-021214.pdf
- QUARTZ (2016). How countries like China and Russia are able to control the
internet: https://qz.com/780675/how-do-internet-censorship-and-surveillance-
actually-work/
R E F E R E N C E S
Websites:
- www.ecipe.org/dte
- http://whatis.techtarget.com
- http://lexicon.ft.com/
M A R T I N A F R A N C E S C A F E R R A C A N E
E M A I L : M A R T I N A . F E R R A C A N E @ E C I P E . O R G
THANK YOU!

Contenu connexe

Tendances

Cyber security for business
Cyber security for businessCyber security for business
Cyber security for businessDaniel Thomas
 
Computer & internet Security
Computer & internet SecurityComputer & internet Security
Computer & internet SecurityGerard Lamusse
 
Cyber security awareness
Cyber security awarenessCyber security awareness
Cyber security awarenessJason Murray
 
Employee Security Training[1]@
Employee Security Training[1]@Employee Security Training[1]@
Employee Security Training[1]@R_Yanus
 
Cybercrime and Security
Cybercrime and SecurityCybercrime and Security
Cybercrime and SecurityNoushad Hasan
 
Cyber Security 101: Training, awareness, strategies for small to medium sized...
Cyber Security 101: Training, awareness, strategies for small to medium sized...Cyber Security 101: Training, awareness, strategies for small to medium sized...
Cyber Security 101: Training, awareness, strategies for small to medium sized...Stephen Cobb
 
Introduction to cyber security
Introduction to cyber security Introduction to cyber security
Introduction to cyber security RaviPrashant5
 
Awareness Training on Information Security
Awareness Training on Information SecurityAwareness Training on Information Security
Awareness Training on Information SecurityKen Holmes
 
Information Security Awareness for everyone
Information Security Awareness for everyoneInformation Security Awareness for everyone
Information Security Awareness for everyoneYasir Nafees
 
Employee Security Awareness Training
Employee Security Awareness TrainingEmployee Security Awareness Training
Employee Security Awareness TrainingDenis kisina
 
Hyphenet Security Awareness Training
Hyphenet Security Awareness TrainingHyphenet Security Awareness Training
Hyphenet Security Awareness TrainingJen Ruhman
 
Information Security Awareness, Petronas Marketing Sudan
Information Security Awareness, Petronas Marketing SudanInformation Security Awareness, Petronas Marketing Sudan
Information Security Awareness, Petronas Marketing SudanAhmed Musaad
 
Cybersecurity Awareness Training Presentation v2021.08
Cybersecurity Awareness Training Presentation v2021.08Cybersecurity Awareness Training Presentation v2021.08
Cybersecurity Awareness Training Presentation v2021.08DallasHaselhorst
 
Cyber Security Presentation "It Will Never Happen To Me"
Cyber Security Presentation "It Will Never Happen To Me" Cyber Security Presentation "It Will Never Happen To Me"
Cyber Security Presentation "It Will Never Happen To Me" Simon Salter
 
Security Awareness Training
Security Awareness TrainingSecurity Awareness Training
Security Awareness TrainingDaniel P Wallace
 
Cybersecurity 1. intro to cybersecurity
Cybersecurity 1. intro to cybersecurityCybersecurity 1. intro to cybersecurity
Cybersecurity 1. intro to cybersecuritysommerville-videos
 

Tendances (20)

Cyber security for business
Cyber security for businessCyber security for business
Cyber security for business
 
Computer & internet Security
Computer & internet SecurityComputer & internet Security
Computer & internet Security
 
Cyber security awareness
Cyber security awarenessCyber security awareness
Cyber security awareness
 
Employee Security Training[1]@
Employee Security Training[1]@Employee Security Training[1]@
Employee Security Training[1]@
 
Cyber security training
Cyber security trainingCyber security training
Cyber security training
 
Cybercrime and Security
Cybercrime and SecurityCybercrime and Security
Cybercrime and Security
 
IT security
IT securityIT security
IT security
 
Information security
Information securityInformation security
Information security
 
Cyber Security 101: Training, awareness, strategies for small to medium sized...
Cyber Security 101: Training, awareness, strategies for small to medium sized...Cyber Security 101: Training, awareness, strategies for small to medium sized...
Cyber Security 101: Training, awareness, strategies for small to medium sized...
 
Security Awareness Training
Security Awareness TrainingSecurity Awareness Training
Security Awareness Training
 
Introduction to cyber security
Introduction to cyber security Introduction to cyber security
Introduction to cyber security
 
Awareness Training on Information Security
Awareness Training on Information SecurityAwareness Training on Information Security
Awareness Training on Information Security
 
Information Security Awareness for everyone
Information Security Awareness for everyoneInformation Security Awareness for everyone
Information Security Awareness for everyone
 
Employee Security Awareness Training
Employee Security Awareness TrainingEmployee Security Awareness Training
Employee Security Awareness Training
 
Hyphenet Security Awareness Training
Hyphenet Security Awareness TrainingHyphenet Security Awareness Training
Hyphenet Security Awareness Training
 
Information Security Awareness, Petronas Marketing Sudan
Information Security Awareness, Petronas Marketing SudanInformation Security Awareness, Petronas Marketing Sudan
Information Security Awareness, Petronas Marketing Sudan
 
Cybersecurity Awareness Training Presentation v2021.08
Cybersecurity Awareness Training Presentation v2021.08Cybersecurity Awareness Training Presentation v2021.08
Cybersecurity Awareness Training Presentation v2021.08
 
Cyber Security Presentation "It Will Never Happen To Me"
Cyber Security Presentation "It Will Never Happen To Me" Cyber Security Presentation "It Will Never Happen To Me"
Cyber Security Presentation "It Will Never Happen To Me"
 
Security Awareness Training
Security Awareness TrainingSecurity Awareness Training
Security Awareness Training
 
Cybersecurity 1. intro to cybersecurity
Cybersecurity 1. intro to cybersecurityCybersecurity 1. intro to cybersecurity
Cybersecurity 1. intro to cybersecurity
 

En vedette

Fab Labs: a global network for local entrepreneurship
Fab Labs: a global network for local entrepreneurshipFab Labs: a global network for local entrepreneurship
Fab Labs: a global network for local entrepreneurshipMartina F. Ferracane
 
Digital Trade Restrictions in South Africa
Digital Trade Restrictions in South AfricaDigital Trade Restrictions in South Africa
Digital Trade Restrictions in South AfricaMartina F. Ferracane
 
Designing regulation for the future
Designing regulation for the futureDesigning regulation for the future
Designing regulation for the futureMartina F. Ferracane
 
The Geopolitics of Internet Taxation: Is digitalisation eroding the corporate...
The Geopolitics of Internet Taxation: Is digitalisation eroding the corporate...The Geopolitics of Internet Taxation: Is digitalisation eroding the corporate...
The Geopolitics of Internet Taxation: Is digitalisation eroding the corporate...Martina F. Ferracane
 
ISDS: The European Proposal of an Investment Court System
ISDS: The European Proposal of an Investment Court SystemISDS: The European Proposal of an Investment Court System
ISDS: The European Proposal of an Investment Court SystemMartina F. Ferracane
 
Data localisation and data security
Data localisation and data securityData localisation and data security
Data localisation and data securityMartina F. Ferracane
 
Will 3D printing change everything?
Will 3D printing change everything?Will 3D printing change everything?
Will 3D printing change everything?Martina F. Ferracane
 
Trade and Growth in the Digital Era
Trade and Growth in the Digital EraTrade and Growth in the Digital Era
Trade and Growth in the Digital EraMartina F. Ferracane
 

En vedette (14)

Digital Trade Estimates Project
Digital Trade Estimates ProjectDigital Trade Estimates Project
Digital Trade Estimates Project
 
Digital Trade Estimates Project
Digital Trade Estimates ProjectDigital Trade Estimates Project
Digital Trade Estimates Project
 
ITA: What's next?
ITA: What's next?ITA: What's next?
ITA: What's next?
 
DIY microscope
DIY microscopeDIY microscope
DIY microscope
 
Data Localisation Trends
Data Localisation TrendsData Localisation Trends
Data Localisation Trends
 
Fab Labs: a global network for local entrepreneurship
Fab Labs: a global network for local entrepreneurshipFab Labs: a global network for local entrepreneurship
Fab Labs: a global network for local entrepreneurship
 
Digital Trade Restrictions in South Africa
Digital Trade Restrictions in South AfricaDigital Trade Restrictions in South Africa
Digital Trade Restrictions in South Africa
 
Designing regulation for the future
Designing regulation for the futureDesigning regulation for the future
Designing regulation for the future
 
The Geopolitics of Internet Taxation: Is digitalisation eroding the corporate...
The Geopolitics of Internet Taxation: Is digitalisation eroding the corporate...The Geopolitics of Internet Taxation: Is digitalisation eroding the corporate...
The Geopolitics of Internet Taxation: Is digitalisation eroding the corporate...
 
ISDS: The European Proposal of an Investment Court System
ISDS: The European Proposal of an Investment Court SystemISDS: The European Proposal of an Investment Court System
ISDS: The European Proposal of an Investment Court System
 
Digital Trade Estimates Project
Digital Trade Estimates Project Digital Trade Estimates Project
Digital Trade Estimates Project
 
Data localisation and data security
Data localisation and data securityData localisation and data security
Data localisation and data security
 
Will 3D printing change everything?
Will 3D printing change everything?Will 3D printing change everything?
Will 3D printing change everything?
 
Trade and Growth in the Digital Era
Trade and Growth in the Digital EraTrade and Growth in the Digital Era
Trade and Growth in the Digital Era
 

Similaire à Cybersecurity Dos and Don'ts Guide

Irjet v5 i1268
Irjet v5 i1268Irjet v5 i1268
Irjet v5 i1268xosap
 
Cyber Security Awareness Challenge: In India
Cyber Security Awareness Challenge:  In IndiaCyber Security Awareness Challenge:  In India
Cyber Security Awareness Challenge: In IndiaIRJET Journal
 
Rutkowski OASIS CTI F2F Cybersecurity Act Preso 20160115
Rutkowski OASIS CTI F2F Cybersecurity Act Preso 20160115Rutkowski OASIS CTI F2F Cybersecurity Act Preso 20160115
Rutkowski OASIS CTI F2F Cybersecurity Act Preso 20160115James Bryce Clark
 
Internet of Things - Introduction
Internet of Things - IntroductionInternet of Things - Introduction
Internet of Things - IntroductionMinhQuc9
 
HISTORICAL GENESIS AND EVOLUTION OF CYBER CRIME AND CYBER SECURITY LAWS IN INDIA
HISTORICAL GENESIS AND EVOLUTION OF CYBER CRIME AND CYBER SECURITY LAWS IN INDIAHISTORICAL GENESIS AND EVOLUTION OF CYBER CRIME AND CYBER SECURITY LAWS IN INDIA
HISTORICAL GENESIS AND EVOLUTION OF CYBER CRIME AND CYBER SECURITY LAWS IN INDIAIRJET Journal
 
IMPROVE SECURITY IN SMART CITIES BASED ON IOT, SOLVE CYBER ELECTRONIC ATTACKS...
IMPROVE SECURITY IN SMART CITIES BASED ON IOT, SOLVE CYBER ELECTRONIC ATTACKS...IMPROVE SECURITY IN SMART CITIES BASED ON IOT, SOLVE CYBER ELECTRONIC ATTACKS...
IMPROVE SECURITY IN SMART CITIES BASED ON IOT, SOLVE CYBER ELECTRONIC ATTACKS...IJNSA Journal
 
INFORMATION ASSURANCE AND SECURITY 1.pdf
INFORMATION ASSURANCE AND SECURITY 1.pdfINFORMATION ASSURANCE AND SECURITY 1.pdf
INFORMATION ASSURANCE AND SECURITY 1.pdfEarlvonDeiparine1
 
A Comprehensive Review of Cyber Security, Threats and Cyber Attacks
A Comprehensive Review of Cyber Security, Threats and Cyber AttacksA Comprehensive Review of Cyber Security, Threats and Cyber Attacks
A Comprehensive Review of Cyber Security, Threats and Cyber AttacksIRJET Journal
 
Critical Infrastructure and Cyber Security: trends and challenges
Critical Infrastructure and Cyber Security: trends and challengesCritical Infrastructure and Cyber Security: trends and challenges
Critical Infrastructure and Cyber Security: trends and challengesCommunity Protection Forum
 
Cyber Attacks and Crimes in Cyber Security: A Comparative Analysis
Cyber Attacks and Crimes in Cyber Security: A Comparative AnalysisCyber Attacks and Crimes in Cyber Security: A Comparative Analysis
Cyber Attacks and Crimes in Cyber Security: A Comparative AnalysisIRJET Journal
 
Addressing Cybersecurity and Cybercrime via a co-evolutionary approach to red...
Addressing Cybersecurity and Cybercrime via a co-evolutionary approach to red...Addressing Cybersecurity and Cybercrime via a co-evolutionary approach to red...
Addressing Cybersecurity and Cybercrime via a co-evolutionary approach to red...Anna Gomez
 
WSIS10 Action Line C5 Building Confidence and Security in the use of ICT's
WSIS10 Action Line C5 Building Confidence and Security in the use of ICT'sWSIS10 Action Line C5 Building Confidence and Security in the use of ICT's
WSIS10 Action Line C5 Building Confidence and Security in the use of ICT'sDr Lendy Spires
 
Dr Dev Kambhampati | Strategic Principles for Securing the Internet of Things...
Dr Dev Kambhampati | Strategic Principles for Securing the Internet of Things...Dr Dev Kambhampati | Strategic Principles for Securing the Internet of Things...
Dr Dev Kambhampati | Strategic Principles for Securing the Internet of Things...Dr Dev Kambhampati
 
National cyber security policy final
National cyber security policy finalNational cyber security policy final
National cyber security policy finalIndian Air Force
 
SECURITY ISSUES IN USING IOT ENABLED DEVICES AND THEIR IMPACT
SECURITY ISSUES IN USING IOT ENABLED DEVICES AND THEIR IMPACTSECURITY ISSUES IN USING IOT ENABLED DEVICES AND THEIR IMPACT
SECURITY ISSUES IN USING IOT ENABLED DEVICES AND THEIR IMPACTvishal dineshkumar soni
 

Similaire à Cybersecurity Dos and Don'ts Guide (20)

Irjet v5 i1268
Irjet v5 i1268Irjet v5 i1268
Irjet v5 i1268
 
Cyber Security Awareness Challenge: In India
Cyber Security Awareness Challenge:  In IndiaCyber Security Awareness Challenge:  In India
Cyber Security Awareness Challenge: In India
 
Rutkowski OASIS CTI F2F Cybersecurity Act Preso 20160115
Rutkowski OASIS CTI F2F Cybersecurity Act Preso 20160115Rutkowski OASIS CTI F2F Cybersecurity Act Preso 20160115
Rutkowski OASIS CTI F2F Cybersecurity Act Preso 20160115
 
Cybersecurity
CybersecurityCybersecurity
Cybersecurity
 
Internet of Things - Introduction
Internet of Things - IntroductionInternet of Things - Introduction
Internet of Things - Introduction
 
RESEARCH PAPER
RESEARCH PAPERRESEARCH PAPER
RESEARCH PAPER
 
HISTORICAL GENESIS AND EVOLUTION OF CYBER CRIME AND CYBER SECURITY LAWS IN INDIA
HISTORICAL GENESIS AND EVOLUTION OF CYBER CRIME AND CYBER SECURITY LAWS IN INDIAHISTORICAL GENESIS AND EVOLUTION OF CYBER CRIME AND CYBER SECURITY LAWS IN INDIA
HISTORICAL GENESIS AND EVOLUTION OF CYBER CRIME AND CYBER SECURITY LAWS IN INDIA
 
Io t whitepaper_5_15_17
Io t whitepaper_5_15_17Io t whitepaper_5_15_17
Io t whitepaper_5_15_17
 
IMPROVE SECURITY IN SMART CITIES BASED ON IOT, SOLVE CYBER ELECTRONIC ATTACKS...
IMPROVE SECURITY IN SMART CITIES BASED ON IOT, SOLVE CYBER ELECTRONIC ATTACKS...IMPROVE SECURITY IN SMART CITIES BASED ON IOT, SOLVE CYBER ELECTRONIC ATTACKS...
IMPROVE SECURITY IN SMART CITIES BASED ON IOT, SOLVE CYBER ELECTRONIC ATTACKS...
 
INFORMATION ASSURANCE AND SECURITY 1.pdf
INFORMATION ASSURANCE AND SECURITY 1.pdfINFORMATION ASSURANCE AND SECURITY 1.pdf
INFORMATION ASSURANCE AND SECURITY 1.pdf
 
A Comprehensive Review of Cyber Security, Threats and Cyber Attacks
A Comprehensive Review of Cyber Security, Threats and Cyber AttacksA Comprehensive Review of Cyber Security, Threats and Cyber Attacks
A Comprehensive Review of Cyber Security, Threats and Cyber Attacks
 
Critical Infrastructure and Cyber Security: trends and challenges
Critical Infrastructure and Cyber Security: trends and challengesCritical Infrastructure and Cyber Security: trends and challenges
Critical Infrastructure and Cyber Security: trends and challenges
 
Cyber Attacks and Crimes in Cyber Security: A Comparative Analysis
Cyber Attacks and Crimes in Cyber Security: A Comparative AnalysisCyber Attacks and Crimes in Cyber Security: A Comparative Analysis
Cyber Attacks and Crimes in Cyber Security: A Comparative Analysis
 
Addressing Cybersecurity and Cybercrime via a co-evolutionary approach to red...
Addressing Cybersecurity and Cybercrime via a co-evolutionary approach to red...Addressing Cybersecurity and Cybercrime via a co-evolutionary approach to red...
Addressing Cybersecurity and Cybercrime via a co-evolutionary approach to red...
 
WSIS10 Action Line C5 Building Confidence and Security in the use of ICT's
WSIS10 Action Line C5 Building Confidence and Security in the use of ICT'sWSIS10 Action Line C5 Building Confidence and Security in the use of ICT's
WSIS10 Action Line C5 Building Confidence and Security in the use of ICT's
 
Dr Dev Kambhampati | Strategic Principles for Securing the Internet of Things...
Dr Dev Kambhampati | Strategic Principles for Securing the Internet of Things...Dr Dev Kambhampati | Strategic Principles for Securing the Internet of Things...
Dr Dev Kambhampati | Strategic Principles for Securing the Internet of Things...
 
National cyber security policy final
National cyber security policy finalNational cyber security policy final
National cyber security policy final
 
SECURITY ISSUES IN USING IOT ENABLED DEVICES AND THEIR IMPACT
SECURITY ISSUES IN USING IOT ENABLED DEVICES AND THEIR IMPACTSECURITY ISSUES IN USING IOT ENABLED DEVICES AND THEIR IMPACT
SECURITY ISSUES IN USING IOT ENABLED DEVICES AND THEIR IMPACT
 
Module 7.pdf
Module 7.pdfModule 7.pdf
Module 7.pdf
 
Module 7 Cyber Laws and Forensic
Module 7 Cyber Laws and ForensicModule 7 Cyber Laws and Forensic
Module 7 Cyber Laws and Forensic
 

Plus de Martina F. Ferracane

Plus de Martina F. Ferracane (9)

Reglamento General de Protección de Datos
Reglamento General de Protección de DatosReglamento General de Protección de Datos
Reglamento General de Protección de Datos
 
DATA FLOWS & NATIONAL SECURITY
DATA FLOWS & NATIONAL SECURITYDATA FLOWS & NATIONAL SECURITY
DATA FLOWS & NATIONAL SECURITY
 
INCLUSIVE TRADE: THE RISE OF FAB LABS
INCLUSIVE TRADE: THE RISE OF FAB LABSINCLUSIVE TRADE: THE RISE OF FAB LABS
INCLUSIVE TRADE: THE RISE OF FAB LABS
 
South Africa & Data Flows
South Africa & Data FlowsSouth Africa & Data Flows
South Africa & Data Flows
 
ISDS in APEC region the record
ISDS in APEC region   the recordISDS in APEC region   the record
ISDS in APEC region the record
 
Experiencing a FabLab
Experiencing a FabLabExperiencing a FabLab
Experiencing a FabLab
 
Will 3D Printing change everything?
Will 3D Printing change everything?Will 3D Printing change everything?
Will 3D Printing change everything?
 
Manufacturing the future: Industry 4.0
Manufacturing the future: Industry 4.0Manufacturing the future: Industry 4.0
Manufacturing the future: Industry 4.0
 
Bio-hacking
Bio-hackingBio-hacking
Bio-hacking
 

Dernier

Hire↠Young Call Girls in Tilak nagar (Delhi) ☎️ 9205541914 ☎️ Independent Esc...
Hire↠Young Call Girls in Tilak nagar (Delhi) ☎️ 9205541914 ☎️ Independent Esc...Hire↠Young Call Girls in Tilak nagar (Delhi) ☎️ 9205541914 ☎️ Independent Esc...
Hire↠Young Call Girls in Tilak nagar (Delhi) ☎️ 9205541914 ☎️ Independent Esc...Delhi Call girls
 
'Future Evolution of the Internet' delivered by Geoff Huston at Everything Op...
'Future Evolution of the Internet' delivered by Geoff Huston at Everything Op...'Future Evolution of the Internet' delivered by Geoff Huston at Everything Op...
'Future Evolution of the Internet' delivered by Geoff Huston at Everything Op...APNIC
 
VIP Model Call Girls Hadapsar ( Pune ) Call ON 9905417584 Starting High Prof...
VIP Model Call Girls Hadapsar ( Pune ) Call ON 9905417584 Starting  High Prof...VIP Model Call Girls Hadapsar ( Pune ) Call ON 9905417584 Starting  High Prof...
VIP Model Call Girls Hadapsar ( Pune ) Call ON 9905417584 Starting High Prof...singhpriety023
 
Call Now ☎ 8264348440 !! Call Girls in Shahpur Jat Escort Service Delhi N.C.R.
Call Now ☎ 8264348440 !! Call Girls in Shahpur Jat Escort Service Delhi N.C.R.Call Now ☎ 8264348440 !! Call Girls in Shahpur Jat Escort Service Delhi N.C.R.
Call Now ☎ 8264348440 !! Call Girls in Shahpur Jat Escort Service Delhi N.C.R.soniya singh
 
INDIVIDUAL ASSIGNMENT #3 CBG, PRESENTATION.
INDIVIDUAL ASSIGNMENT #3 CBG, PRESENTATION.INDIVIDUAL ASSIGNMENT #3 CBG, PRESENTATION.
INDIVIDUAL ASSIGNMENT #3 CBG, PRESENTATION.CarlotaBedoya1
 
𓀤Call On 7877925207 𓀤 Ahmedguda Call Girls Hot Model With Sexy Bhabi Ready Fo...
𓀤Call On 7877925207 𓀤 Ahmedguda Call Girls Hot Model With Sexy Bhabi Ready Fo...𓀤Call On 7877925207 𓀤 Ahmedguda Call Girls Hot Model With Sexy Bhabi Ready Fo...
𓀤Call On 7877925207 𓀤 Ahmedguda Call Girls Hot Model With Sexy Bhabi Ready Fo...Neha Pandey
 
VIP 7001035870 Find & Meet Hyderabad Call Girls LB Nagar high-profile Call Girl
VIP 7001035870 Find & Meet Hyderabad Call Girls LB Nagar high-profile Call GirlVIP 7001035870 Find & Meet Hyderabad Call Girls LB Nagar high-profile Call Girl
VIP 7001035870 Find & Meet Hyderabad Call Girls LB Nagar high-profile Call Girladitipandeya
 
Pune Airport ( Call Girls ) Pune 6297143586 Hot Model With Sexy Bhabi Ready...
Pune Airport ( Call Girls ) Pune  6297143586  Hot Model With Sexy Bhabi Ready...Pune Airport ( Call Girls ) Pune  6297143586  Hot Model With Sexy Bhabi Ready...
Pune Airport ( Call Girls ) Pune 6297143586 Hot Model With Sexy Bhabi Ready...tanu pandey
 
GDG Cloud Southlake 32: Kyle Hettinger: Demystifying the Dark Web
GDG Cloud Southlake 32: Kyle Hettinger: Demystifying the Dark WebGDG Cloud Southlake 32: Kyle Hettinger: Demystifying the Dark Web
GDG Cloud Southlake 32: Kyle Hettinger: Demystifying the Dark WebJames Anderson
 
Hot Service (+9316020077 ) Goa Call Girls Real Photos and Genuine Service
Hot Service (+9316020077 ) Goa  Call Girls Real Photos and Genuine ServiceHot Service (+9316020077 ) Goa  Call Girls Real Photos and Genuine Service
Hot Service (+9316020077 ) Goa Call Girls Real Photos and Genuine Servicesexy call girls service in goa
 
Delhi Call Girls Rohini 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls Rohini 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip CallDelhi Call Girls Rohini 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls Rohini 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Callshivangimorya083
 
On Starlink, presented by Geoff Huston at NZNOG 2024
On Starlink, presented by Geoff Huston at NZNOG 2024On Starlink, presented by Geoff Huston at NZNOG 2024
On Starlink, presented by Geoff Huston at NZNOG 2024APNIC
 
Best VIP Call Girls Noida Sector 75 Call Me: 8448380779
Best VIP Call Girls Noida Sector 75 Call Me: 8448380779Best VIP Call Girls Noida Sector 75 Call Me: 8448380779
Best VIP Call Girls Noida Sector 75 Call Me: 8448380779Delhi Call girls
 
Call Girls In Defence Colony Delhi 💯Call Us 🔝8264348440🔝
Call Girls In Defence Colony Delhi 💯Call Us 🔝8264348440🔝Call Girls In Defence Colony Delhi 💯Call Us 🔝8264348440🔝
Call Girls In Defence Colony Delhi 💯Call Us 🔝8264348440🔝soniya singh
 
Call Girls Service Chandigarh Lucky ❤️ 7710465962 Independent Call Girls In C...
Call Girls Service Chandigarh Lucky ❤️ 7710465962 Independent Call Girls In C...Call Girls Service Chandigarh Lucky ❤️ 7710465962 Independent Call Girls In C...
Call Girls Service Chandigarh Lucky ❤️ 7710465962 Independent Call Girls In C...Sheetaleventcompany
 

Dernier (20)

Rohini Sector 22 Call Girls Delhi 9999965857 @Sabina Saikh No Advance
Rohini Sector 22 Call Girls Delhi 9999965857 @Sabina Saikh No AdvanceRohini Sector 22 Call Girls Delhi 9999965857 @Sabina Saikh No Advance
Rohini Sector 22 Call Girls Delhi 9999965857 @Sabina Saikh No Advance
 
Hire↠Young Call Girls in Tilak nagar (Delhi) ☎️ 9205541914 ☎️ Independent Esc...
Hire↠Young Call Girls in Tilak nagar (Delhi) ☎️ 9205541914 ☎️ Independent Esc...Hire↠Young Call Girls in Tilak nagar (Delhi) ☎️ 9205541914 ☎️ Independent Esc...
Hire↠Young Call Girls in Tilak nagar (Delhi) ☎️ 9205541914 ☎️ Independent Esc...
 
'Future Evolution of the Internet' delivered by Geoff Huston at Everything Op...
'Future Evolution of the Internet' delivered by Geoff Huston at Everything Op...'Future Evolution of the Internet' delivered by Geoff Huston at Everything Op...
'Future Evolution of the Internet' delivered by Geoff Huston at Everything Op...
 
VIP Model Call Girls Hadapsar ( Pune ) Call ON 9905417584 Starting High Prof...
VIP Model Call Girls Hadapsar ( Pune ) Call ON 9905417584 Starting  High Prof...VIP Model Call Girls Hadapsar ( Pune ) Call ON 9905417584 Starting  High Prof...
VIP Model Call Girls Hadapsar ( Pune ) Call ON 9905417584 Starting High Prof...
 
Call Now ☎ 8264348440 !! Call Girls in Shahpur Jat Escort Service Delhi N.C.R.
Call Now ☎ 8264348440 !! Call Girls in Shahpur Jat Escort Service Delhi N.C.R.Call Now ☎ 8264348440 !! Call Girls in Shahpur Jat Escort Service Delhi N.C.R.
Call Now ☎ 8264348440 !! Call Girls in Shahpur Jat Escort Service Delhi N.C.R.
 
INDIVIDUAL ASSIGNMENT #3 CBG, PRESENTATION.
INDIVIDUAL ASSIGNMENT #3 CBG, PRESENTATION.INDIVIDUAL ASSIGNMENT #3 CBG, PRESENTATION.
INDIVIDUAL ASSIGNMENT #3 CBG, PRESENTATION.
 
𓀤Call On 7877925207 𓀤 Ahmedguda Call Girls Hot Model With Sexy Bhabi Ready Fo...
𓀤Call On 7877925207 𓀤 Ahmedguda Call Girls Hot Model With Sexy Bhabi Ready Fo...𓀤Call On 7877925207 𓀤 Ahmedguda Call Girls Hot Model With Sexy Bhabi Ready Fo...
𓀤Call On 7877925207 𓀤 Ahmedguda Call Girls Hot Model With Sexy Bhabi Ready Fo...
 
VIP 7001035870 Find & Meet Hyderabad Call Girls LB Nagar high-profile Call Girl
VIP 7001035870 Find & Meet Hyderabad Call Girls LB Nagar high-profile Call GirlVIP 7001035870 Find & Meet Hyderabad Call Girls LB Nagar high-profile Call Girl
VIP 7001035870 Find & Meet Hyderabad Call Girls LB Nagar high-profile Call Girl
 
Pune Airport ( Call Girls ) Pune 6297143586 Hot Model With Sexy Bhabi Ready...
Pune Airport ( Call Girls ) Pune  6297143586  Hot Model With Sexy Bhabi Ready...Pune Airport ( Call Girls ) Pune  6297143586  Hot Model With Sexy Bhabi Ready...
Pune Airport ( Call Girls ) Pune 6297143586 Hot Model With Sexy Bhabi Ready...
 
GDG Cloud Southlake 32: Kyle Hettinger: Demystifying the Dark Web
GDG Cloud Southlake 32: Kyle Hettinger: Demystifying the Dark WebGDG Cloud Southlake 32: Kyle Hettinger: Demystifying the Dark Web
GDG Cloud Southlake 32: Kyle Hettinger: Demystifying the Dark Web
 
(INDIRA) Call Girl Pune Call Now 8250077686 Pune Escorts 24x7
(INDIRA) Call Girl Pune Call Now 8250077686 Pune Escorts 24x7(INDIRA) Call Girl Pune Call Now 8250077686 Pune Escorts 24x7
(INDIRA) Call Girl Pune Call Now 8250077686 Pune Escorts 24x7
 
Hot Service (+9316020077 ) Goa Call Girls Real Photos and Genuine Service
Hot Service (+9316020077 ) Goa  Call Girls Real Photos and Genuine ServiceHot Service (+9316020077 ) Goa  Call Girls Real Photos and Genuine Service
Hot Service (+9316020077 ) Goa Call Girls Real Photos and Genuine Service
 
@9999965857 🫦 Sexy Desi Call Girls Laxmi Nagar 💓 High Profile Escorts Delhi 🫶
@9999965857 🫦 Sexy Desi Call Girls Laxmi Nagar 💓 High Profile Escorts Delhi 🫶@9999965857 🫦 Sexy Desi Call Girls Laxmi Nagar 💓 High Profile Escorts Delhi 🫶
@9999965857 🫦 Sexy Desi Call Girls Laxmi Nagar 💓 High Profile Escorts Delhi 🫶
 
Russian Call Girls in %(+971524965298 )# Call Girls in Dubai
Russian Call Girls in %(+971524965298  )#  Call Girls in DubaiRussian Call Girls in %(+971524965298  )#  Call Girls in Dubai
Russian Call Girls in %(+971524965298 )# Call Girls in Dubai
 
Delhi Call Girls Rohini 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls Rohini 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip CallDelhi Call Girls Rohini 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls Rohini 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
 
On Starlink, presented by Geoff Huston at NZNOG 2024
On Starlink, presented by Geoff Huston at NZNOG 2024On Starlink, presented by Geoff Huston at NZNOG 2024
On Starlink, presented by Geoff Huston at NZNOG 2024
 
Best VIP Call Girls Noida Sector 75 Call Me: 8448380779
Best VIP Call Girls Noida Sector 75 Call Me: 8448380779Best VIP Call Girls Noida Sector 75 Call Me: 8448380779
Best VIP Call Girls Noida Sector 75 Call Me: 8448380779
 
Call Girls In Defence Colony Delhi 💯Call Us 🔝8264348440🔝
Call Girls In Defence Colony Delhi 💯Call Us 🔝8264348440🔝Call Girls In Defence Colony Delhi 💯Call Us 🔝8264348440🔝
Call Girls In Defence Colony Delhi 💯Call Us 🔝8264348440🔝
 
Rohini Sector 26 Call Girls Delhi 9999965857 @Sabina Saikh No Advance
Rohini Sector 26 Call Girls Delhi 9999965857 @Sabina Saikh No AdvanceRohini Sector 26 Call Girls Delhi 9999965857 @Sabina Saikh No Advance
Rohini Sector 26 Call Girls Delhi 9999965857 @Sabina Saikh No Advance
 
Call Girls Service Chandigarh Lucky ❤️ 7710465962 Independent Call Girls In C...
Call Girls Service Chandigarh Lucky ❤️ 7710465962 Independent Call Girls In C...Call Girls Service Chandigarh Lucky ❤️ 7710465962 Independent Call Girls In C...
Call Girls Service Chandigarh Lucky ❤️ 7710465962 Independent Call Girls In C...
 

Cybersecurity Dos and Don'ts Guide

  • 1. C Y B E R S E C U R I T Y: D O S & D O N ’ T S M A R T I N A F R A N C E S C A F E R R A C A N E R E S E A R C H A S S O C I A T E A T E C I P E Q E D 2 2 J U N E 2 0 1 7
  • 2. O U T L I N E 1. G E T T I N G T H E T E R M I N O L O G Y R I G H T 2. D O N ’ T S 3. D O S
  • 3. O U T L I N E 1. G E T T I N G T H E T E R M I N O L O G Y R I G H T 2. D O N ’ T S 3. D O S
  • 4. C Y B E R S E C U R I T Y Cybersecurity is the body of technologies, processes and practices designed to protect networks, computers, programs and data from attack, damage or unauthorized access. Elements of cybersecurity include: Application security; Information security; Network security; Disaster recovery / business continuity planning; Operational security; End-user education. Source: http://whatis.techtarget.com
  • 5. C Y B E R S E C U R I T Y Cyber threats can be grouped in 4 categories: - Crime: fraud, extorsion, theft, DoS, etc - Commercial espionage - Nation-State espionage - Warfare Source: Information Technology Industry Council (2015)
  • 6. A C C E S S T O D A TA F O R N A T I O N A L S E C U R I T Y & L A W E N F O R C E M E N T Different issues such as: - Counter-terrorism measures - MLATs - Data sovereignty
  • 7. D A TA P R I VA C Y Data privacy concerns the collection, protection and dissemination of personal or private information about individuals or organisations. Source: http://lexicon.ft.com/
  • 8. F R E E D O M O F E X P R E S S I O N Different issues such as: - Fake news - Censorship - Hate speech
  • 9.
  • 10.
  • 11. O U T L I N E 1. G E T T I N G T H E T E R M I N O L O G Y R I G H T 2. D O N ’ T S 3. D O S
  • 12. F R A G M E N TA T I O N ( I ) “Member States have very different levels of preparedness, which has led to fragmented approaches across the Union. This results in an unequal level of protection of consumers and businesses, and undermines the overall level of security of network and information systems within the Union.” Recital (5) - NIS Directive
  • 13. F R A G M E N TA T I O N ( I I ) “Each Member State shall adopt a national strategy on the security of network and information systems defining the strategic objectives and appropriate policy and regulatory measures with a view to achieving and maintaining a high level of security of network and information systems (…)” Article 7 - NIS Directive
  • 14. F R A G M E N TA T I O N ( I I I ) “Member States shall lay down the rules on penalties applicable to infringements of national provisions adopted pursuant to this Directive and shall take all measures necessary to ensure that they are implemented (…)” Article 21 - NIS Directive
  • 15. N O T I F I C A T I O N O F I N C I D E N T S Digital services: have to report those incidents that have a ‘substantial impact on the provision of a service (…) they offer in the EU’. Operators of essential services have to report those incidents ‘having significant impact on the continuity of the essential services they provide’ Art. 14 & Art. 16 - NIS Directive ‘without undue delay’
  • 16.
  • 17. C O M P U L S O RY S E C U R I T Y S TA N D A R D S ( I ) “Member States shall (…) encourage the use of European or internationally accepted standards and specifications relevant to the security of network and information systems.” Article 19 - NIS Directive
  • 18. C O M P U L S O RY S E C U R I T Y S TA N D A R D S ( I I ) - Multi-Level Protection Scheme (MPLS) - China - Preferential Market Access (PMA) - India - Cybersecurity Law - China ‘The security reviews will not target any country or region, they will not discriminate against foreign technology or products, nor limit their access to the Chinese market. On the contrary, they will boost consumer confidence in such products and services, and expand their markets.’ CAC China
  • 19. “We cannot allow [terrorism] the safe space it needs to breed – yet that is precisely what the internet, and the big companies that provide internet-based services provide” Theresa May H O W S E C U R I T Y S TA N D A R D S C O U L D B E A B U S E D …
  • 20. ‘Personal information and important data collected and generated by critical information infrastructure operators in the PRC must be stored domestically’ Art. 37 - China Cybersecurity Law - June 2017 D A TA L O C A L I S A T I O N ( I ) ‘Where due to business requirements it is truly necessary to provide it [data] outside the mainland, they shall (…) conduct a security assessment’
  • 21. D A TA L O C A L I S A T I O N ( I I ) Source: Digital Trade Estimates Database - ECIPE
  • 22. O U T L I N E 1. G E T T I N G T H E T E R M I N O L O G Y R I G H T 2. D O N ’ T S 3. D O S
  • 23. - Focus on systems that are truly critical in nature - Improve public agencies - Improve coordination intra-EU and globally - Develop national cybersecurity plans - Involve the private sector in the development of cybersecurity strategy - Invest in R&D - Increase PPP - Participate in international fora and consortia D O S
  • 24.
  • 25. - Preserve interoperability and openness to the global market - Balance cybersecurity concerns with: - civil liberties - innovation - trade - other policy priorities D O S
  • 26. "It's no longer OK not to understand how the Internet works.” Aaron Swartz
  • 27. R E F E R E N C E S - Directive (EU) 2016/1148 of the European Parliament and of the Council of 6 July 2016 concerning measures for a high common level of security of network and information systems across the Union: http://eur-lex.europa.eu/legal- content/EN/TXT/?uri=CELEX%3A32016L1148 - English Sina (2017). China Internet regulator says cyber security law not a trade barrier: http://english.sina.com/news/2017-05-31/detail-ifyfuvpm6886418.shtml - FT (2017). Special Report on Cyber Security: https://www.ft.com/reports/cyber- security - Independent (2017). Theresa May says the internet must now be regulated following London Bridge terror attack: http://www.independent.co.uk/news/ uk/politics/theresa-may-internet-regulated-london-bridge-terror-attack- google-facebook-whatsapp-borough-security-a7771896.html
  • 28. R E F E R E N C E S - ITIC (2013). ITI Position Paper on the Proposed “Directive of the European Parliament and of the Council Concerning Measures to Ensure a High Common Level of Network and Information Security Across the Union”: https://www.itic.org/dotAsset/a748f2f7-7d73-4d62-8ea0-b5ad35e3af27.pdf - ITIC (2015). The IT Industry’s Cybersecurity Principles for Industry and Government: https://www.itic.org/dotAsset/0e3b41c2-587a-48a8- b376-9cb493be36ec.pdf - NIST (2014): Framework for Improving Critical Infrastructure Cybersecurity: https://www.nist.gov/sites/default/files/documents/cyberframework/ cybersecurity-framework-021214.pdf - QUARTZ (2016). How countries like China and Russia are able to control the internet: https://qz.com/780675/how-do-internet-censorship-and-surveillance- actually-work/
  • 29. R E F E R E N C E S Websites: - www.ecipe.org/dte - http://whatis.techtarget.com - http://lexicon.ft.com/
  • 30. M A R T I N A F R A N C E S C A F E R R A C A N E E M A I L : M A R T I N A . F E R R A C A N E @ E C I P E . O R G THANK YOU!