aecert Roadmap Eng. Mohammed Gheyath Director, Technical Affairs TRA



Similar documents
CERT.AZ description as per RfC 2350

Making our Cyber Space Safe

2. OVERVIEW OF THE PRIVATE INFRASTRUCTURE

Incident Management ITU Pillars & Qatar Case Study Michael Lewis, Deputy Director

National Cyber Security Strategy of Afghanistan (NCSA)

Qatar Computer Emergency Team

Cyber security Country Experience: Establishment of Information Security Projects.

Cyber security in an organization-transcending way

Supporting CSIRTs in the EU Marco Thorbruegge Head of Unit Operational Security European Union Agency for Network and Information Security

BUSINESS CONTINUITY PLANNING

US-CERT Year in Review. United States Computer Emergency Readiness Team

National Initiative for Cybersecurity Education

DHS, National Cyber Security Division Overview

Crosswalk of Model Standards and Key Points within the Three NPHPSP Instruments

Release of the Draft Cybersecurity Procurement Language for Energy Delivery Systems

EU Priorities in Cybersecurity. Steve Purser Head of Core Operations Department June 2013

SENATE STANDING COMMITTEE ON LEGAL AND CONSTITUTIONAL AFFAIRS AUSTRALIAN FEDERAL POLICE. Question No. 100

DOE CYBER SECURITY EBK: CORE COMPETENCY TRAINING REQUIREMENTS Key Cyber Security Role: Authorizing Official (AO)

National Cyber Security Policy -2013

Homeland Security: Information Assurance Challenges and Opportunities. Building the National Cyber Security Division

What legal aspects are needed to address specific ICT related issues?

Developing and Enhancing Cyber Security Capabilities in the Region. Khaled Gamo Technology Advisor Ministry of communication and informatics

RFC 2350 CSIRT-TEHTRIS [CERT-TEHTRIS]

Fujitsu Group s Information Security

I n t r o d u c t i o n

NATIONAL CYBERSECURITY STRATEGIES: AUSTRALIA AND CANADA

COMMUNIQUE. AFRICAN ICT MINISTERIAL ROUND-TABLE ON 42 nd MEETING OF ICANN. Hotel Méridien Dakar, SENEGAL. 21 Octobre 2011

CERT/CC Overview & CSIRT Development Team Activities

Lessons from Defending Cyberspace

Roadmap for new Cyber security education in ME

STATE OF NEW HAMPSHIRE STRATEGIC PLAN TO ADDRESS CYBER CRIME

The Policy Approaches to Strengthen Cyber Security in the Financial Sector (Summary) July 2, 2015 Financial Services Agency

Partnership for Cyber Resilience

ITU National Cybersecurity/CIIP Self-Assessment Tool

W H I T E P A P E R I m p a c t o f C y b e r s e c u r i t y A t t a c k s a n d N e w - A g e S e c u r i t y S t r a t e g i e s

Open Source Incident Management Tool for CSIRTs

Global Research Alliance Charter

Cyber security initiatives in European Union and Greece The role of the Regulators

Microsoft s cybersecurity commitment

NICE and Framework Overview

[ sponsor prospectus ]

Department of Homeland Security

Cybersecurity for ALL

Preventing and Defending Against Cyber Attacks November 2010

College Of. Technological Innovation COLLEGE OF TECHNOLOGICAL INNOVATION

GLOBAL BUSINESS DIALOGUE ON ELECTRONIC COMMERCE CYBER SECURITY AND CYBER CRIME SEPTEMBER 26, CEO EDS Corporation

Safety by trust: British model of cyber security. David Wallace, First Secretary, Head of of the Policy Delivery Group British Embassy in Warsaw

Commonwealth Approach to Cybergovernance and Cybersecurity. By the Commonwealth Telecommunications Organisation

OUTCOME OF PROCEEDINGS

How To Understand And Understand The European Priorities In Information Security

RECOMMENDATIONS OF JOINT WORKING GROUP ON ENGAGEMENT WITH PRIVATE SECTOR ON CYBER SECURITY

Water Critical Infrastructure and Key Resources Sector-Specific Plan as input to the National Infrastructure Protection Plan Executive Summary

El Camino College Homeland Security Spring 2016 Courses

III North America Consumer Product Safety Summit

(BDT) BDT/POL/CYB/Circular

Protecting Malaysia in the Connected world

ESKISP Direct security testing

Department of Homeland Security Federal Government Offerings, Products, and Services

A COMPREHENSIVE INTER-AMERICAN CYBERSECURITY STRATEGY: A MULTIDIMENSIONAL AND MULTIDISCIPLINARY APPROACH TO CREATING A CULTURE OF CYBERSECURITY

Overview TECHIS Carry out risk assessment and management activities

Legislative Language

C DIG COMMITTED TO EXCELLENCE IN CYBER DEFENCE. ONE MISSION. ONE GROUP. CSCSS / DEFENCE INTELLIGENCE GROUP

EU Cybersecurity Strategy and Proposal for Directive on network and information security (NIS) {JOIN(2013) 1 final} {COM(2013) 48 final}

DANCERT RFC2350 Description Date: Dissemination Level:

Romanian National Computer Security Incident Response Team CERT-RO.

APEC Telecommunications and Information Working Group Strategic Action Plan PREAMBLE

2 Gabi Siboni, 1 Senior Research Fellow and Director,

Cybersecurity Risk Management in the Telecom Sector. MUSTAPHA HUNEYD Corporate Information Security

International Chamber of Commerce The world business organization

National Initiative for Cyber Security Education

Creating and Managing Computer Security Incident Response Teams (CSIRTs)

Cyber security tackling the risks with new solutions and co-operation Miikka Pönniö

Executive Summary. Cybersecurity cannot be completely solved, and will remain a risk we must actively manage.

How To Write An Article On The European Cyberspace Policy And Security Strategy

Cooperation in Securing National Critical Infrastructure

19th Annual FIRST Conference

Building CSIRT Capabilities

Egyptian Best Practices Securing E-Services

Cyber Security ( Lao PDR )

COMPANY PROFILE REV 4.0

Assuring Telecom (Infrastructure and Services) An Operations Perspective

Regulatory Framework for Disaster Recovery Planning for the ICT Industry

Physical Security Services

DECLARATION STRENGTHENING CYBER-SECURITY IN THE AMERICAS

Into the cybersecurity breach

CSIRT Description for CERT OPL

Cyber Incident Annex. Cooperating Agencies: Coordinating Agencies:

The Importance of a Multistakeholder Approach to Cybersecurity Effectiveness

Integrating Cybersecurity with Emergency Operations Plans (EOPs) for Institutions of Higher Education (IHEs)

1. This report outlines the Force s current position in relation to the Policing of Cyber Crime.

RESPONSIBLE CARE SECURITY CODE OF MANAGEMENT PRACTICES

Reinvigorating National Telecommunication Training and Research Institutes for Innovation Topic: Models and Funding

State Agency Cyber Security Survey v October State Agency Cybersecurity Survey v 3.4

Fostering Information Security Awareness Among Responding Countries

Strategic Plan. Fiscal Year Julie L. Jones Executive Director. Goals Objectives Strategies Measures

Integrating Cybersecurity with Emergency Operations Plans (EOPs) for K-12 Education

Control Systems Security: Australian Government Activities. Dr. Jason Smith Asst. Director, Operations CERT Australia Attorney-General s Department

THE 411 ON CYBERSECURITY, INFORMATION SHARING AND PRIVACY

TEXAS HOMELAND SECURITY STRATEGIC PLAN : PRIORITY ACTIONS

Incident Management Process: Strategies, tools and techniques

Transcription:

aecert Roadmap Eng. Mohammed Gheyath Director, Technical Affairs TRA

Agenda Introduction aecert Vision & Mission The need to establish a UAE National CERT Constituent Framework & Service Catalog National Security Awareness Campaign Way Forward Summary

Introduction (1/2) aecert: United Arab Emirates Computer Emergency Response Team The national CERT in the UAE An initiative by the UAE Telecommunications Regulatory Authority (TRA)

Introduction (2/2) To detect, prevent and respond to the current and future cyber security incidents in the UAE To promote & help build a Safer Cyber Culture Consists of highly competent and innovative UAE Nationals

Vision & Mission Vision To be the leading trusted secure cyber coordination center in the region Mission To help build a secure and safer cyber culture in the UAE To sustain a resilient and vigilant ICT Infrastructure against the cyber security threats

Why build a UAE National CERT? (1/3) The future sustained development of the UAE & the region is heavily technology dependant. As vital as the technology is; so is the effective means to address technology-related threats that we as a nation will face. To help build, and promote a safer cyber culture in the UAE; To build a world class national structured and proactive approach to address current and future cyber security threats.

Why build a UAE National CERT? (2/3) To brainstorm ways on how to mitigate and reduce the potential impact on private and governmental sectors; To help further build and enhance the national response capability and security expertise in the country; To enhance the cyber security law and assist in creation of other cyber laws; To increase cooperation between government, business and global entities on matters relating to cyber security, and response.

Why build a UAE National CERT? (3/3) To establish a national early warning center that will disseminate information, alerts, advice regarding threats, vulnerabilities and cyber security incidents; To provide a central trusted point of coordination for cyber security incident reporting in the UAE; To foster the establishment of CSIRTs and provide trusted advisor assistance to constituents; To coordinate between and assist domestic, regional and international CERTs;

aecert s Constituent Framework Will serve UAE government, Telecoms, Utility, Law Enforcement and Financial Services sectors, key businesses and the GCC inter- CERT goals and objectives. Will include multiple levels of constituents customized according to their requirements via the constituent s charter and corresponding service catalog.

The National Security Awareness Campaign 1st Public Service: The first aecert unique and visionary public service. Why? To help promote a safer cyber culture in the UAE To educate business and general users on matters relating to Cyber-Safety. Addressing? General Users, Businesses, Youth and (in future) Children. Through? E-Learning Modules, Seminars, Workshops, National Outreach Program

E-Learning Modules The e-learning modules will target: Business Users Arabic Version Business Users English Version General Users Arabic Version General Users English Version All developed in the UAE, for the UAE

E-Learning.. Sample Snapshot (1/2)

E-Learning (2/2)

What s Next? Structured Early Warnings and Alerts National Incident Response Framework Digital Forensics Laboratory Bespoke Research and Development Projects Cyber Security Technical Center Of Excellence 24x7 Operations

Summary aecert (1/2) Is the National CERT in the UAE Aims to be the central trusted point of coordination in the UAE Realizes that the necessity to promote safer cyber culture in the UAE is as important as Security Technologies deployed within the UAE.

Summary aecert (2/2) Will follow a national, proactive structured approach to address current and future cyber security threats Will serve the UAE Government, Telecoms, Utility, Law Enforcement and Financial Services Sectors, and the country as a whole. A Centre of Excellence (CoE) within the GCC

Q & A Visit aecert @ www.aecert.ae