crytek csirt

32
Computer Security Incident Response Team Dmitry Korzhevin

Upload: crytekcsirt

Post on 12-Jan-2017

167 views

Category:

Software


0 download

TRANSCRIPT

Page 1: Crytek CSIRT

Computer Security Incident Response Team

Dmitry Korzhevin

Page 2: Crytek CSIRT

COMPANY OVERVIEW

Page 3: Crytek CSIRT

FACTS

Crytek is a leading, internationally operating developer and publisher of video games

Known for world class IPs and products such as the original Far Cry, the Crysis franchise, Ryse: Son of Rome and game–service Warface

All Crytek games are built with the proprietary game development solution CRYENGINE®

CRYENGINE is perfect for rich VR worlds and the new hardware is now capable of bringing our ideas to life.

Over 700 employees at 7 locations worldwide

Page 4: Crytek CSIRT

Crytek Games

Page 5: Crytek CSIRT

CRYENGINE® is Crytek’s key differentiator for success

World leading game development software for sophisticated computer and video games

Highest graphics quality and unique Realtime-3D-Technology

Innovation leadership as a result of 15 years of development know-how

Licensed by numerous third-party game developers and publishers

Sole integrated all-in-one solution for games on platforms of the current and future generation:

CRYENGINE

Page 6: Crytek CSIRT

CRYENGINE

Page 7: Crytek CSIRT

CSIRT creation

Page 8: Crytek CSIRT

The decision to create CSIRT was made 20

May, 2015 on the basis of

NOC department in Crytek Kiev Studio

CSIRT creation

Page 9: Crytek CSIRT

CSIRT TEAM

Page 10: Crytek CSIRT

5 Core team members

Working 24x7x365

Direct subordination (Frankfurt and Kiev)

Located in Crytek Kiev Studio

CSIRT Team

Page 11: Crytek CSIRT

Dmitry Korzhevin (Head of CSIRT)

Evgeniy Evtushenko

Yaroslav Sidoruk

Andrey Golovchenko

Konstantin Kushlianskiy

CSIRT Core Team Members

Page 12: Crytek CSIRT

CSIRT constituency

Page 13: Crytek CSIRT

Crytek STUDIOS and CSIRT constituency

FRANKFURT HQ

BUDAPEST ISTANBUL KIEV

SEOUL SHANGHAI SOFIA

Page 14: Crytek CSIRT

MISSION

Page 15: Crytek CSIRT

The CSIRT protects the primary business

process, Crytek reputation and all supporting

processes.

Crytek CSIRT MISSION STATEMENT

Page 16: Crytek CSIRT

Charter (Organizational Framework)

Page 17: Crytek CSIRT

CERT CMU SEI

ENISA

TF-CSIRT

FIRST

NATO NCIRC

Crytek CSIRT Organizational Framework

Page 18: Crytek CSIRT

CSIRT Services

Page 19: Crytek CSIRT

Reactive Services

Proactive Services

Quality Management

Crytek CSIRT Services

Page 20: Crytek CSIRT

Involved projects

Page 21: Crytek CSIRT

Penetration testing

Cyber resilience and hardening

Incidents handling

Cross department cooperation

Data protection

Involved Projects (Internal)

Page 22: Crytek CSIRT

Pfsense

Cuckoo Sandbox

Lynis

Teampass

StrongSwan Ipsec

Others...

Involved Projects (External)

Page 23: Crytek CSIRT

Skillset Description

Page 24: Crytek CSIRT

Penetration testing

Network Defense

Web Defense

Reverse Engineering

Mobile Application Penetration Testing

250 + certs

Skillset Description (competence)

Page 25: Crytek CSIRT

Team education policy

Page 26: Crytek CSIRT

Appraisal for each team member

PDP (6 month and 1 year tasks)

Close interaction with HR department

Team education policy

Page 27: Crytek CSIRT

Training providers

Page 28: Crytek CSIRT

eLearnSecurity

Offensive Security

PentesterLab

Pentester Academy

Hacker Academy (Symantec)

CYBRARY

Training providers

Page 29: Crytek CSIRT

International co-operation

Page 30: Crytek CSIRT

CERT CMU SEI

National Cyber Security Alliance

International co-operation

Page 31: Crytek CSIRT

QUESTIONS?Dmitry Korzhevin

Head of Crytek CSIRT

[email protected]

Page 32: Crytek CSIRT

©2016 Crytek GmbH