A Framework to Effectively Develop Insider Threat Controls

Опубликовано: 29 Сентябрь 2024
на канале: RSA Conference
8,824
91

Daniel Costa, Technical Lead – Insider Threat Technical Solutions, CERT Division at Software Engineering Institute, Carnegie Mellon University
Randall Trzeciak, Director – National Insider Threat Center, CERT Division at Software Engineering Institute, Carnegie Mellon University

The CERT Insider Threat Center will present a framework for organizations to consider as they first attempt to identify insider threats to critical assets and second as they develop, implement and measure the effectiveness of technical and nontechnical controls and detection capabilities. Actual incidents of insider harm will be presented to demonstrate control development using the framework.
Learning Objectives:
1: Learn the importance of using an empirically based framework for threat mitigation.
2: Receive an overview of technical and nontechncial data sources for anomoly detection.
3: Learn to implement management, operational and techncial controls to mitigate threats.

https://www.rsaconference.com/events/...