2020 @ (ISC)2 - A Year in Review
Wrapping up the 2020 events at (ISC)2 Auckland

2020 @ (ISC)2 - A Year in Review

What a year! There's no doubt that dealing with the impacts of a global coronavirus pandemic has taken a toll on most Kiwis in 2020 with Aucklanders potentially suffering more disruptions and pain as the city has experienced not one but two lengthy COVID lockdowns and the bonus of a busted bridge to reinforce the cultural move to working from home.

It's undoubtedly been a strange start to a new decade and I write this sitting in the UK, not yet certain when I'll be back in NZ. But it's tradition to recap our (ISC)2 Chapter events ahead of our Christmas closing, and there are still two final free sessions you can come and enjoy.

On Thursday 26th November we welcome Peter Jackson to present on Security Operations for Industrial Control Systems. Peter is well known for his expertise in securing industrial environments, leads the NZ ICS Cyber Technical Network and will be highlighting best-practice advice.

And for our 'Xmas special' on Thursday 10th December, Faustin Roman will be discussing building a threat intelligence sharing platform for NZ's health sector organisations. Come learn about this dedicated Threat Intelligence Platform, why NZ specific threat intelligence is needed and gain insights on NZ-based malware and phishing over the last year. Both events are free to attend at Tabac bar from 5pm, get your tickets today.

A REVIEW OF 2020 EVENTS:

If you've not yet attended an (ISC)2 Auckland event, read on for our recap of a year that challenged all event organisers and we give thanks to all the presenters who volunteered their time and to Chapter Members and guests who showed up in person and online to take part in the activities.

It's the third year in a row we've managed to run 12 security events - you can review 2018 activities here and 2019 events here - and we're always on the look out for speakers on all kinds of topics so do reach out to me if you're keen to practice your presenting skills and earn some CPEs - we're a friendly bunch.

February: Creating a One Page Cyber Strategy that Works – Richard Harrison

No alt text provided for this image

A huge thank you to Richard Harrison CISM, MBA for a wonderful interactive presentation on “creating a one page cyber strategy that works”. Richard discussed how to understand and manage risks in a healthcare setting and there was a great turnout for our first (ISC)2 Auckland Chapter meeting for 2020.

March – IoT- The Pervasive Devil Within – John Martin

No alt text provided for this image

When the first lockdown struck in March, our President John Martin kindly volunteered to step into action and host a webinar on the subject of IoT security, a subject John is passionate about. Little did we know that pandemic Alert Levels would become embedded into ways of working in 2020 and it was several months before the next face to face session.

April - Defending .nz – InternetNZ

No alt text provided for this image

In April we welcomed David Morrison and Sebastián Castro from InternetNZ to talk about some of the ways the organisation helps keep New Zealanders safe online. With the increase in phishing attacks targeting NZ organisations during the pandemic and a proliferation of dodgy domains, this session dived deep into NZ security metrics including SSL certs, work to detect fake domains and information on Defenz, a tailored DNS protection service to help mitigate phishing and malware sites at the network level.

May – Future Threats Panel – Hosted by Philip Whitmore

No alt text provided for this image

Our session for May looked at the events of the last decade and explored what the 2020's could bring. Chapter Treasurer Philip Whitmore hosted an online panel event exploring future threats including machine learning cyber attacks, deepfakes, 5G, quantum computing, adversarial AI and much more. Gabriel T. Akindeju, Gaz Eves, Richard Harrison CISM, MBA and Rishit Shah discussed the evolving technology risk landscape and what the next decade could have in store for us.

June – Preparing for the new Privacy Act – Two Black Labs

No alt text provided for this image

New Zealand's long awaited new Privacy Act comes into effect on 1st December so for our June session we welcomed Caroline Carver to present on 'Preparing for the new Privacy Act' six months out from the start of the new regime. With OPC advising "The updated Act will allow the Human Rights Review Tribunal to award up to $350,000 to each member of a class action", this was one of our largest events in 2020 with 120 people signed up to listen in. Caroline provided a great summary of the changes, helping get attendees up to speed on notifiable privacy breaches, compliance notices and more.

July – Phishing susceptibility – Jacinda Murphy

No alt text provided for this image

In July it was great to gather at KPMG and see so many familiar and new faces at our first physical (ISC)2 Auckland Chapter meeting since February. Jacinda Murphy presented on her research with the University of Auckland into the psychology of phishing, including the efficacy of simulation training and standard learning modules and she provided some great takeaway points on the risks associated with task switching and the reliance on heuristics for decision making. Lots of discussion generated on such a key threat vector.

August – Isolation Tech – BUFFERZONE

No alt text provided for this image

For our August Chapter event we welcomed Greg Wyman who presented on isolation tech and the evolving world of endpoint security. Greg hosted the webinar from across the ditch in Australia and provided a great reminder on 94% of data breaches starting at the endpoint and the priority need for isolation, containment and elimination technologies as a key way to preventing attackers gaining a beachhead via malicious email and other tactics.

September – Make SIEM great again! – Nyuk Loong Kiw

No alt text provided for this image

In September a change in Alert Level saw us revert to online events. And we owe massive thanks to Nyuk Loong Kiw for his fantastic presentation on SIEM maturity and getting the most value from your SecOps investment. With over 100 people registered, Kiw's session on specific ways to improve your maturity score and optimise incident detection and response was well received as he explored common pitfalls and how to leverage the MITRE ATT&CK framework.

October – Forensic investigations – Campbell McKenzie

No alt text provided for this image

For our October Auckland (ISC)2 Chapter event we welcomed Campbell McKenzie to present on lessons learned from security incident response and take us through the kinds of events playing out in the NZ market. Campbell volunteered to give a talk back at the start of the year and his session at Tabac bar became only our fourth face to face session in 2020 and was well attended.

November (Privacy Week) –The issue of ‘consent’: barriers to safeguarding children’s data – Dr Caroline Keen

No alt text provided for this image

To mark New Zealand's #PrivacyWeek (ISC)2 Auckland was pleased to welcome Dr Caroline Keen to present a special session on her NZ research into the world of corporate data mining and surveillance, the apathy resulting from current privacy policies and the lack of interest among Kiwi families to manage their own data protection. This was an interesting online session for parents, fans of 'The Social Dilemma' on Netflix or readers of 'The Age of Surveillance Capitalism' and you can watch a recording online.

STILL TO COME...

Many thanks go again to all the presenters and attendees who helped make our Chapter events a success in the face of a global pandemic. We have two sessions left to go and welcome all comers to Tabac bar in the heart of the CBD. Come join us for a drink after work, say hello and hear two great speakers on subjects close to their hearts:

We'll be updated our 2021 event calendar soon and do get in touch if you're keen to present. Merry Xmas!

??Hilary (Hils) Walton

@HilsWalton | Tech Strategist at Microsoft | CISO | Board Member | Speaker | Author & Podcaster | Psychologist (non-practicing) | Passionate about Digital Culture, Metaverse and Web3

4 年

Great round up Chris, it’s appreciated.

Campbell McKenzie

Forensic Computing Expert Witness and Cyber Security Consultant

4 年

Congrats to you and the (ISC)2 committee for successfully running these through the year. Safe travels.

Faustin Laurentiu Roman

Founder and CEO AlterSec | Medical IT Advisors | PenTest.NZ | Pen-Test.com.AU | CyberScient.com | CyberShield.NZ | Cyber Threat Intelligence | vCISO

4 年

Hear hear Chris! Thanks for organising these events throughout the year, even from the other side! Take care!

David Morrison

Work with purpose - CEO, Business Owner | Tangata Tiriti

4 年

要查看或添加评论,请登录

Chris Hails的更多文章

  • Is a decade of security investment starting to pay off for Kiwi companies?

    Is a decade of security investment starting to pay off for Kiwi companies?

    Fresh from my former employer, NCSC, comes the latest annual Cyber Threat Report for New Zealand for 2023/2024…

  • ISC2 Auckland - A Year in Review

    ISC2 Auckland - A Year in Review

    For the seventh year in a row, the Auckland Chapter of ISC2 has successfully delivered 12 security sessions for members…

    11 条评论
  • Phishing, smishing, vishing and bribing?

    Phishing, smishing, vishing and bribing?

    Fifteen years ago this week I found myself standing in the middle of Auckland's Vulcan Lane trying to actively bribe…

    20 条评论
  • Is it time for a Cyber Olympics?

    Is it time for a Cyber Olympics?

    Whilst the closing ceremony of the 2024 Paris Olympics has already begun fading into history, the sporting achievements…

    12 条评论
  • The case for evidence-based cybersecurity

    The case for evidence-based cybersecurity

    Get a group of infosec people in a room and mention security frameworks and watch the fun begin! That was the scene at…

    10 条评论
  • Have you got a licence for that data?

    Have you got a licence for that data?

    On a recent stroll round London I noted numerous folks actively fishing in the Regent's Canal, a rather foreboding…

    19 条评论
  • How much security do I need?

    How much security do I need?

    Back in early 2018 I spent a lot of time mulling over the finer details of the EU's latest privacy manifesto, the…

    12 条评论
  • 2023: Making Money From Cybercrime (and AI)

    2023: Making Money From Cybercrime (and AI)

    Way back in 2020 - whilst spending 14 fun days in MIQ - I pondered how to make money from cybercrime whilst staying on…

    2 条评论
  • ISC2 AKL - A Year in Review

    ISC2 AKL - A Year in Review

    For the sixth year in a row, the Auckland Chapter of ISC2 has successfully arranged 12 security sessions for members…

    10 条评论
  • Idris Elba teaches cybersecurity (kind of...)

    Idris Elba teaches cybersecurity (kind of...)

    On Friday night, my plans for marking St Patrick's day were cancelled last minute. Settling down with Netflix for…

    4 条评论

社区洞察

其他会员也浏览了