Cyber Security Education 2.0: Minding the Gap for Computational Sovereignty in Norway and the Nordic s Professor Dr. Stewart Kowalski Information Security Vice Dean of Education Faculty of Computer and Media Technology Norwegian Information Security Lab (NISlab) Center for Cyber and Information Security
Education your Stairway to Heavenly Security 2 (2016/2017) Information Security Management Group Cisco Lab & Cyber range PhD in Information Security Bachelor in IT-Operations and Information Security (BITSEC) Master in Information Security (MIS) - Cybersecurity - Forensics - Information Security Management Experienced Based Master in Information Security (MISEB) Biometris Lab Forensic Lab
3 NISLAB STUDY PROGRAMS 160 140 120 100 142 108 Bachelor IT-Operations and Security (BISTSEC merged Program 2016/17)* Master Information Security (MIS) * Experienced Based Master Information Security (MISEB) ** PhD Information Security (PhD-IS)* 80 Number of Students 60 40 20 16 22 0 BITSEC MIS MISEB PIS (PhD-IS * Status intake 2015 ** 1 st /2 nd year only
Norwegian Information Security Laboratory
(Practical Models vs Theoretical Models for Education Systems) Find NTNU in the school of Athens? Find HIG, NISlab, MTL, CCIS in the School of Athens https://www.youtube.com/watch?v=uorg6jfbzeu
A Systemic Gap
WHY IS THERE SUCH A GAP AS CHANGE IN QUANTITY = CHANGE IN KIND COMPUTATION AS A COMMODITY A NEW GAP 7
PROBLEM 1 CYBER SECURITY AND COMPUTATIONAL SOVEREIGNTY 8 Computation and IT Technology research and development, adoption and implementation is driven to a large extent by hype and security and privacy issues and legal constraints are neither thought about or taught correctly!
EXAMPLE GARTNERS SECURITY HYPE CURVES 2003 9
PROBLEM 1 CYBER SECURITY AND COMPUTATIONAL SOVEREIGNTY 10 Computation and IT Technology research and development, adoption and implementation is driven to a large extent by hype and security and privacy issues and legal constraints are neither thought about or taught correctly! Do you want to buy a parachute? What??????? We need to make this thing a light as possiblle!
11 PROBLEM 1 Computer and Media Technology research and development, adoption and implementation is driven to a large extent by hype and security issue and other constraints are neither thought about or taught correctly correctly! http://ca.news.yahoo.com/blogs/good-news/airplane-recovery-parachute-saves-three-livesconnecticut-crash-171749029.html
:Problem: A GAP in our Society between Hypothesis: It is Systemic There is always a control GAP with new technology!
The idea of these lunch seminars is to create an informal setting, where a 13 topic is presented A 100,000,000 during Reason the first to 15-20 propose minutes, a and where the remaining time is set aside Nordic for discussion. Executive Masters in Business Administration Security & Privacy Technology and Law? Computer World May 8 th 2015
The idea of these lunch seminars is to create an informal setting, where a 14 Conceptual Socio-Technical Model of topic is presented Nordic Executive during the MBA first in 15-20 minutes, and where the remaining time is set aside Security for discussion. Technology, Privacy and Law
THE FIRST SWEDISH DOT 15 Swedish information security university education begain with the forming of IFIP TC 11 in 1983. 15
DETAILS OF THE FRAMEWORK 16 Design/architecture Context, geographical/space and time bound "system point" Theory/model Physical construction Process-Store- Communicate- Collect-Display Operational Administrative Managerial Legal Ethical Technical Aspects Non-Technical Aspects Content subject areas Systemic module - an epistemological device, - meta-science, and - criteria for control 16
Cyber Security Education 1.0 https://oldplay.dsv.su.se/hypercaster/3762/width=640/height=360/link.js
Mapping to NIST NICE 20
Sept 2015 21
22
MIND THE GAP IS IT A THREE BODY PROBLEM? 23 EXECUTIVE MBA SECURITY & PRIVACY TECHNOLOGY AND LAW Business Security and Privacy Management Governance Public & Private Sectors Technologies and Innovation Legal Informatics
24 FUTURE COMMON PROJECTS: EDUCATION Dual Degree with Concordia University, Canada (Autumn 2016) Nordic Master: InfoSec Mgmt & Privacy (Spring 2017) NordSecMob: Nordic Master in Security & Mobile Computing Bachelor/Master Information Security Introduction Courses Bachelor in IT- Operations and Security PhD in Information Security Master in Information Security Norwegian MOOC Common Body of Knowledge Cyber Security and Privacy Experience Based Masters Police/Cyber Defense
NISlab hosts COINS: Norway s Security PhD Student Network Networking (Security Divas, SWITS, NordSec, NISK) Support students with travel grants Finse winter school (FRISC/COINS); Metochi summer school Ph.D. student seminar (autumn): Ca. 30%-40% of students plus Swedish/European partner network and invited speaker Capture the flag team: International visibility of Norwegian applied IT security Increased visibility: Attract more and better candidates for positions 25
26 END-TO-END SECURITY RESEARCH AND EDUCATION NTNU NISlab CCIS NORSIS http://www.ndia.org/divisions Divisions/Divisions/Scienc eandengineeringtechnology/documents/coyl e%20ndia.pdf NORSIS
NISlab hosts CCIS: Norway s most important Partner Network in Security 27
PLEASE JOIN US 28