Title: www'CASES'lu
1(No Transcript)
2www.CASES.lu (Cyberworld Awareness and Security
Enhancement Structure) Raise awareness and foster
cooperation in network and information
security 14.12.2005
3- Agenda
- Introduction
- CASES The approach
- CASES The deliverables
- CASES The results
- The aim
4- Introduction
- The situation in 2003
- The situation in Luxembourg in 2003
- IT penetration high
- however
- Stagnation in e-commerce
- e-government services available but only rarely
used - why
- Lack of trust and confidence
5- Introduction
- The strategy
- CASES is part of pillar one of the national
strategy - Awareness and prevention
- Incident handling
- investigation and repression
- legislation and standardisation
- Strategy defined by the Ministry of the Economy
and Foreign Trade
6- Permanent structures
- CASES
- technological survey
- standardisation survey
- PKI
- OLAS
- Certification Bodies
-
- Deliverables
- know-how transfer
- guidelines for SME and citizens
- e-commerce certified
- e-infrastructure certified
- ILNAS
-
-
- Necessary actions
- awareness and prevention
- culture of security OCDE
- give sense of responsibility
- certification vs. regulation
- Strategic interest
- become proactive (best defence)
- protect investments
- international constraints
- foster trust
7- Introduction
- The aim of pillar one
- The aim of the national strategy is
- Promote e-commerce
- Promote e-government services
- Promote e-health, e-education,
- Take advantage of the opportunities minimise
risks - Build a culture of security (OECD guidelines for
the security of information systems and networks) - Establish trust and confidence
- Make aware of responsibilities
- Reduce digital divide
- Security ? governmental monitoring
82. CASES The approach The approach we chose
- What we believe is important
- Speaker must be trusted
- Use layman language (most difficult)
- Teach interdependencies not only singularities
- (learn the language, not the voc.)
- Structure the knowledge you want to set forth
- Educate in global approaches
- Stay positive
- Be honest dont get populist
92. CASES The approach The scenario we use
increase security reduce Risks
Risk Vulnerability Threat Impact
102. CASES The approach The scenario we use
Why is this important ?
The incentive Reason why somebody should do
something
The problem Indicates upon what somebody should
concentrate
The catalyst Unpredictable event that forces us
to do something
Exploits a vulnerability
Causes an impact
112. CASES The approach The scenario we use
Why is this important ?
- financial loss
- loss of reputation
- loss of time
- loss of know-how
-
- Human weaknesses
- lack of know-how
- lack of interest
- fatigue
- bribe
-
- Technical vulnerabil.
- un-patched OS
- un-patched Appl.
- open networks
- WiFi. Bluetooth
-
- intentional threats
- from inside
- from outside
- physical
- logical
-
- unintentional threats
- errors
- physical failure
-
Structure knowledge
122. CASES The approach A common approach
Targets are
not equal, but similar !!!!
132. CASES The approach A common approach
Topology
142. CASES The approach The re-usability of
material
The basic CASES-blocks are
Build re-usable blocks !
152. CASES The approach The re-use of material
Tools
Re-use the blocks to create new content.
behaviour rules
policies
dossiers
162. CASES The approach The CASES network
- Networking tools CASiX CASES in the box
173. CASES Deliverables The communication
channels
Channels Internet
183. CASES Deliverables The communication
channels
Channels presentations
Internet
In every secondary school , in collaboration
with the Ministry of Education
193. CASES Deliverables The communication
channels
- Channels Conferences
- with the professional chambers
- with NGOs (CSRRT-LU, CLUSSIL,)
- with research and University
203. CASES Deliverables The communication
channels
Channels Roadshows
(( ))
)))
(( ))
)))
Nokia 3360i
214. CASES - The results
- CASES the preliminary results
- Content
- A lot of content is available (in French and
German) - Several road-shows are available
- Several presentations are available
- Cooperation with
- Professional chambers
- Ministry of the Education Family and Youth
Health - Private sector (awareness in companies)
- We are opening a new market SMEs !!
- Private sector has developed new products
- Special IT security services for SMEs (Hotlines)
- Managed security services for micro structures
224. CASES - The results
- CASES the preliminary results
- Networking
- National
- Contacts to many NGOs working in IT security
- Contacts to all the governmental structures
- International
- Cooperation on ministerial level with Switzerland
- Cooperation with several countries CASES-idea
235. The goal
CASES contribution to a common future ?
24 Thank you for your attention François
Thill www.cases.lu