Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
Data Security @ the personal level
Search
Sponsored
·
Your Podcast. Everywhere. Effortlessly.
Share. Educate. Inspire. Entertain. You do you. We'll handle the rest.
→
Arnon Rotem-Gal-Oz
PRO
April 20, 2017
Technology
0
32
Data Security @ the personal level
personal security briefing to employees (e.g for ISO 27001 compliance)
Arnon Rotem-Gal-Oz
PRO
April 20, 2017
Tweet
Share
More Decks by Arnon Rotem-Gal-Oz
See All by Arnon Rotem-Gal-Oz
Coding with AI
arnonrgo
PRO
0
13
Brownfield Architecture transformations
arnonrgo
PRO
0
140
Software architecture 101
arnonrgo
PRO
0
1.8k
Apache Spark - Overview
arnonrgo
PRO
0
51
Taking ML to production - a journey
arnonrgo
PRO
0
130
Topics in Distributed Systems
arnonrgo
PRO
0
38
Docker & Kubernetes
arnonrgo
PRO
0
32
Microservices it's deja vu all over again
arnonrgo
PRO
0
30
Big Data in the Cloud - Welcome to cost oriented design
arnonrgo
PRO
0
30
Other Decks in Technology
See All in Technology
Phase04_ターミナル基礎
overflowinc
0
2.1k
CloudFrontのHost Header転送設定でパケットの中身はどう変わるのか?
nagisa53
1
140
建設DXを支えるANDPAD: 2025年のセキュリティの取り組みと卒業したいセキュリティ
andpad
0
170
Phase02_AI座学_応用
overflowinc
0
2.6k
Phase03_ドキュメント管理
overflowinc
0
2.3k
Agent Skill 是什麼?對軟體產業帶來的變化
appleboy
0
220
_Architecture_Modernization_から学ぶ現状理解から設計への道のり.pdf
satohjohn
2
740
コンテキスト・ハーネスエンジニアリングの現在
hirosatogamo
PRO
6
770
「お金で解決」が全てではない!大規模WebアプリのCI高速化 #phperkaigi
stefafafan
5
2.2k
イベントで大活躍する電子ペーパー名札を作る(その2) 〜 M5PaperとM5PaperS3 〜 / IoTLT @ JLCPCB オープンハードカンファレンス
you
PRO
0
200
BFCacheを活用して無限スクロールのUX を改善した話
apple_yagi
0
110
テストプロセスにおけるAI活用 :人間とAIの共存
hacomono
PRO
0
160
Featured
See All Featured
Dominate Local Search Results - an insider guide to GBP, reviews, and Local SEO
greggifford
PRO
0
110
Hiding What from Whom? A Critical Review of the History of Programming languages for Music
tomoyanonymous
2
590
How To Speak Unicorn (iThemes Webinar)
marktimemedia
1
410
Impact Scores and Hybrid Strategies: The future of link building
tamaranovitovic
0
240
From Legacy to Launchpad: Building Startup-Ready Communities
dugsong
0
180
Jess Joyce - The Pitfalls of Following Frameworks
techseoconnect
PRO
1
110
State of Search Keynote: SEO is Dead Long Live SEO
ryanjones
0
160
Kristin Tynski - Automating Marketing Tasks With AI
techseoconnect
PRO
0
200
The Web Performance Landscape in 2024 [PerfNow 2024]
tammyeverts
12
1.1k
Measuring & Analyzing Core Web Vitals
bluesmoon
9
790
The Cost Of JavaScript in 2023
addyosmani
55
9.8k
Navigating Weather and Climate Data
rabernat
0
140
Transcript
Data Security (@ the personal level) Arnon Rotem-Gal-Oz
So what’s so important about “information security”?
Security is a real problem www.informationisbeautiful.net/visualizations/worlds-biggest-data-breaches-hacks/
Information security? Not MY problem - IT should figure
it out
We’ve met the enemy and he is us
• Hardware • Software • People • Procedur es •
Data
Formal threat analysis The STRIDE model
Also see • OWASP https://www.owasp.org/ • https://www.owasp.org/index.php/Threat_Risk_Modeling#STRIDE • Common Criteria https://www.commoncriteriaportal.org/
Spoofing (of user identity) Tampering Repudiation Information
disclosure Denial of service Elevation of privilege
None
None
On the other hand…
None
None
Passwords
None
2016 is just as bad
None
None
Physical theft/loss
Protect your assets
Pay attention to email/text recipient address
Malware
It is up to you!
•Be mindful •Be careful who you trust •Secure your devices
•Report problems