Multidimensional Security: People, Physical, Network,
Telecoms, Incident Response
Presented by Jeff Kalwerisky
Synopsis:
Physical security and network security are often considered to
be separate domains and different specialties, with separate methodologies
and different people. The clear weakness with that approach is
that differentiated security can never be fully effective –
it will, by definition, be fragmented and not cost-effective.
To be effective, security must be seen as an entity, covering
all areas of potential vulnerabilities. For example, no amount
of security technology can compensate for untrained or dishonest
personnel. Similarly, ineffective physical security will invalidate
the best network security technologies. This session will discuss
the holistic view of security, where physical security and network
security are just two facets of a single, multidimensional approach.
The other facets are people, telecommunications, and incident
response (or what to do when the Big One hits!) In this practical
session, we will discuss the speaker’s experiences of implementing
multidimensional security policies and procedures, and constructing
highly-secure facilities, in the USA and overseas, under the constraints
of different technological and legal environments.
Biography for Jeff Kalwerisky
Mr. Kalwerisky is an independent security consultant and investor
in information security companies, with over 20 years experience
in information security and computer auditing. He was most recently
responsible for computer security at VeriSign Inc.'s global affiliates
in 40 countries. As such, he designed and implemented highly secure
data centers and facilities in these countries, appropriate to
international Certification Authorities. He also authored VeriSign’s
public training courses training in cryptography, use of digital
certificates, and advanced security, courses which have been delivered
domestically and overseas. Prior to VeriSign, Mr. Kalwerisky was
VP of Consulting Services at SecureIT, a specialist company in
computer security, acquired by VeriSign for $80-million in 1997.
Mr. Kalwerisky was previously a Computer Assurance Services practice
leader at Coopers & Lybrand (now PricewaterhouseCoopers) in
Atlanta, Georgia, and Technology Consulting partner for a large
accounting and consulting firm in South Africa. Mr. Kalwerisky
is an authority on network and physical security and has co-authored
and edited several books on the subjects. He received his BS in
Physics and MS in Computer Science from the University of the
Witwatersrand, Johannesburg, South Africa, and his Masters in
Accounting Science from the University of South Africa. He holds
the professional designations of Chartered Accountant (CA) and
Certified Information Systems Auditor (CISA).
See
Jeff's presentation (PPT Format)
|