information security overview ba483 – may 15 th, 2006 presented by kris rosenberg, cissp, mcse,...

7
Information Information Security Security Overview Overview BA483 – May 15 BA483 – May 15 th th , 2006 , 2006 Presented By Presented By Kris Rosenberg, CISSP, MCSE, CCNA Kris Rosenberg, CISSP, MCSE, CCNA CTO Oregon State University College of CTO Oregon State University College of Business Business

Post on 19-Dec-2015

213 views

Category:

Documents


0 download

TRANSCRIPT

Information SecurityInformation SecurityOverviewOverview

BA483 – May 15BA483 – May 15thth, 2006, 2006

Presented ByPresented ByKris Rosenberg, CISSP, MCSE, CCNAKris Rosenberg, CISSP, MCSE, CCNA

CTO Oregon State University College of BusinessCTO Oregon State University College of Business

Increasingly Hostile Public NetworkIncreasingly Hostile Public Network

intruders are prepared and organizedInternet attacks are easy, low risk, and hard to traceintruder tools are- increasingly sophisticated- easy to use, especially by novice intruders- designed to support large-scale attackssource code is not required to find vulnerabilitiesthe complexity of the Internet, protocols, and applications are all increasing along with our reliance on them

Increasingly Hostile Public NetworkIncreasingly Hostile Public Network

Increasingly Hostile Public NetworkIncreasingly Hostile Public Network

Cost of DowntimeCost of Downtime

Basic CategoriesBasic Categories

PolicyPolicy Require Complex PasswordsRequire Complex Passwords Restrict WebsitesRestrict Websites

PhysicalPhysical Restricted AccessRestricted Access BiometricsBiometrics

Network SecurityNetwork Security FirewallFirewall IDSIDS

Host Based SecurityHost Based Security Anti-Virus SoftwareAnti-Virus Software Patches / UpdatesPatches / Updates

Holistic Approach Holistic Approach

Host

PhysicalNetwork

SecurityPolicy