Is it time for a Cyber Olympics?
Whilst the closing ceremony of the 2024 Paris Olympics has already begun fading into history, the sporting achievements of the event should not be forgotten.
In the middle of a winter packed with an endless barrage of bad news, there was a shimmering ray of light for sports fans and the wider country when it was proclaimed that "New Zealand does really well" and had vaulted leaps and bounds up the medal table on a per capita basis .
Kiwi computer scientist Craig Nevill-Manning has been nurturing the analytics platform beloved by small nations since 2008 and the 'Olympic Glory in Proportion' chart was a reminder of NZ's sporting prowess:
What if this energy and drive could be harnessed for securing the nation too?
Back in June 2021, following the publication of the ITU's latest update to the Global Cybersecurity Index (GCI), we were told that New Zealand’s cyber-resilience was failing with our standing "plunging from 19 in 2017 down to 48 in 2021" and that "nations like Nigeria, Kazakhstan, Ghana, Tunisia and Azerbaijan" were rising up the rankings table.
The next (5th) Edition of the GCI is due out in mid-September and it will be interesting to see where NZ stands this time round.
If cyber was a team sport
Ahead of publication I asked my robot assistant/overlord ChatGPT for some ideas for sporting cyber events, something that could inspire a generation of STEM-hungry students to train for war in the 5th domain and see us take glory like we did in Paris.
For existing CTF fans, here are a few things to ponder this wet weekend as you practice your Python scripting, hone your risk assessments or ready some updated policies for the Cyber Olympics:
"The Cyber Olympics* could be an exciting and dynamic event that brings together companies from various industries to showcase their cybersecurity maturity and expertise. It would celebrate the achievements of organizations that have made significant strides in securing their digital assets, while also fostering a competitive and collaborative spirit."
Event Structure:
Competitions:
1. Capture the Flag (CTF)
2. Incident Response Challenge
3. Security Architecture Design
4. Penetration Testing Arena
5. Security Awareness Campaigns
6. Threat Hunting and Intelligence Analysis
7. Supply Chain Security Simulation
8. Cyber Defense Simulation
9. Compliance and Risk Management
10. Innovation in Security Technology
Not bad, eh?
I have to say my AI assistant did a beautiful job on the concept and I'll be looking for funding from the International Olympic Committe soon to progress the event. With breakdancing now bumped from 2028, why not a new tech-based event for the global audience?
There's no doubt for me that it could foster collaboration and innovation, potentially contributing to a more secure digital world. Yes there may be a few APT-led rivalries but that could certainly spice up some of the competitions listed out above and provide some much needed tension for desk-dwellers!
No sporting event is complete without an Awards Ceremony that recognises the top-performing teams and individuals across a range of categories. Think: Best Incident Response Team, Most Innovative Security Technology, Best Security Awareness Campaign and more.
For now, we have local security awards that may entice your entry: iSANZ. The closing date is 6th September so get going with your application and I hope to see you standing on the podium at the Gala Dinner soon!
Disclosure: *The Cyber Olympic categories were co-created with ChatGPT, there's something to be said for this AI stuff for ideating!
General Manager @ AUSCERT | Senior Lecturer @ The University of Queensland | Cybersecurity Management | Cyber GRC | Leadership | Design Thinking | Keynote speaker
2 个月Dirk Hodgson
Professor of Cyber Security at The University of Queensland
3 个月Yes, there is one in the International Cybersecurity Challenge, and you are welcome to support Team Oceania! We (Australia and NZ) got second last year and will be heading to Chile for this year’s finals.
cyber ? infosec ? cloud ? risk ? privacy | MBA + MSc + CITP MBCS
3 个月Wow! Either Olympics(TM), or maybe some kind of government selection process, as part of third-party due diligence before joining an elite cyber panel?
CISSP, Digital Safety, Global AppSec, SCA, SBOM and Threat Modeling Professional.
3 个月Love it. The Digital Safety team would be keen to submit a team. Let's do it. Side-note: few years back we had 31con in Auckland and found it rather easy to attract top talent/speakers simply by hosting here in NZ. Think same would go with Cyber Olympics.
Enabling business leaders to build and scale secure products and services for a thriving future.
3 个月Take my money! I thought of this a while ago. I’m in