Introduction To Security Cyberspace, Cybercrime And .

Transcription

Introduction to SecurityCyberspace, Cybercrime and Cybersecurity

OVERVIEW Brainstorming Definition Security Security Features Concept of Cyberspace Concept of Cybercrime Concept of Cybersecurity The way forward

Brainstorming

BrainstormingWhat is Security?Security according to two boys of 10 years old

BrainstormingWhat is Security?Security According to Junior High School ICT teacher

BrainstormingWhat is Security?

Definition Security

Definition SecurityThere is no clear cut definition

Definition SecuritySecurity is a process, not an end state.

Definition SecuritySecurity is the process of maintaining an acceptable level of perceived risk.

Definition SecurityNo organization can be considered "secure" for any time beyond the last verification of adherence to itssecurity policy.If your manager asks, "Are we secure?"you should answer, "Let me check."If he or she asks, "Will we be secure tomorrow?" you should answer, "I don't know."Such honesty will not be popular, but this mind-set will produce greater success for the organization inthe long run.

Security Features

Security has three features

Security FeaturesConfidentialityConfidentiality is roughly equivalent to privacy. Measures undertaken toensure confidentiality are designed to prevent sensitive information fromreaching the wrong people, while making sure that the right people can infact get it:ConfidentialityAssurance that information is shared only among authorized persons ororganizations.

Security FeaturesIntegrity.Assurance that the information is authentic and complete.IntegrityIn information security, data integrity means maintaining and assuring theaccuracy and consistency of data over its entire life-cycle.

Security FeaturesAvailabilityAssurance that the systems responsible for delivering, storing andprocessing information are accessible when needed, by those whoneed them.AvailabilityAvailability of information refers to ensuring that authorized parties areable to access the information when needed

Concept of Cyberspace

Concept of CyberspaceCyberspaceCyberspace is "the environment in which communicationover computer networks occurs.“And almost everybodyin one way or the otheris connected to it

Concept of CyberspaceLadies in the marketare connected to is torun their businesses

Concept of CyberspaceShepherds are connectedto locate their cattle

Concept of CyberspaceHunters are connected toit to locate their prey

Concept of CyberspaceOur friend, the farmer isconnected to it and“Facebooking” in the coconuttree

Concept of CyberspaceOur friends in the remoteareas are also connected to it

Concept of CyberspaceHuum! isn’t amazing?They are alsoconnected.

Concept of CyberspaceOn a more serious note, are connectedLaw makersGovernmentJudiciary

Concept of CyberspaceMilitaries

Concept of CyberspaceHealth SectorsBanksTransportation Sectors

Concept of Cyberspace

Concept of Cybercrime

Concept of CybercrimeCyber CrimeComputer crime, or cybercrime, is any crime that involves a computer and a network.The computer may have been used in the commission of a crime, or it may be the target.

Concept of CybercrimeKevin MitnickTsutomu Shimomura

Concept of CybercrimeCommonwealth Bank, Australia - March 2011:Automatic teller machines (ATMs) spat outtens of thousands of free dollars in SydneyTuesday after a computer glitch turned into anightmare for the Commonwealth Bank. ITSecurity Believe that it is a the consequence ofhacking.

Concept of CybercrimeUnderground Economy

Concept of Cybercrime

Concept of CybercrimePhishing

Concept of CybercrimeHacktivism

Concept of CybercrimeCyberwar: Estonia Case

Concept of CybercrimeTuuli Aug, an editor of the daily newspaper "Eesti Paevaleht," stated thefollowing:"I felt the country was under attack by an invisible enemy. . . . It wasextremely frightening and uncontrollable because we are used to havingInternet all the time and then suddenly it wasn't around anymore, . . .You couldn't get information; you couldn't do your job. You couldn'treach the bank; you couldn't check the bus schedule anymore. It was justconfusing and frightening, but we didn't realize it was a war becausenobody had seen anything like that before“.

Concept of CybercrimeStuxnet

Concept of CybersecurityThe threat is real

Concept of Cybersecurity

Concept of CybersecurityTentative DefinitionsCyber security, also referred to as information technology security, focuses onprotecting computers, networks, programs and data from unintended or unauthorizedaccess, change or destruction.University of Maryland University CollegeThe state of being protected against the criminal or unauthorized use of electronicdata, or the measures taken to achieve this.‘some people have argued that the threat to cybersecurity has been somewhatinflated’Oxford Dictionary

Concept of CybersecurityITU-T X.1205 Definition Cybersecurity is the collection of tools, policies, security concepts, security safeguards, guidelines, riskmanagement approaches, actions, training, best practices, assurance and technologies that can be used toprotect the cyber environment and organization and user’s assets. Organization and user’s assets includeconnected computing devices, personnel, infrastructure, applications, services, telecommunications systems,and the totality of transmitted and/or stored information in the cyber environment. Cybersecurity strives to ensure the attainment and maintenance of the security properties of the organizationand user’s assets against relevant security risks in the cyber environment. The general security objectives comprise the following:o Availabilityo Integrity, which may include authenticity and non-repudiationo Confidentiality

Assignment and discussion

AssignmentBased in the realities of your organization, rank the three features of securitywith respect to your information system.

The way forward ICT is a single point of failure to Businesses. IS Security is Achilles heels of ICT Your security depends on mine and mine depends on yours, Let us come together and protect our cyberspace is creating and managing a CSIRTHOW?CSIRT

Introduction to Security . Cyber security, also referred to as information technology security, focuses on protecting computers, networks, programs and data from unintended or unauthorized . and the totality of transmitted and/or stor