Www.more.net | University of Missouri Copyright ©2006 MOREnet and The Curators of the University of Missouri Information sharing the MOREnet way: How not.

Slides:



Advertisements
Similar presentations
SIEM Based Intrusion Detection Jim Beechey May 2010 GSEC, GCIA, GCIH, GCFA, GCWN twitter: jim_beechey.
Advertisements

| University of Missouri Copyright ©2007 MOREnet and The Curators of the University of Missouri 1 Telehealth in Missouri Annual Meeting.
1 SANS Technology Institute - Candidate for Master of Science Degree 1 SIEM Based Intrusion Detection Jim Beechey March 2010 GSEC Gold, GCIA Gold, GCIH,
…Promoting a collaborative partnership among families, schools and communities to create positive educational outcomes for Virginia’s school children.
InfraGard Update SSA John V. Gillies SA Matthew E. Morin.
Know the Client Own the Problem Share the Solution The 2005 Case for Information Technology Security October 14, 2004.
FIREWALLS & NETWORK SECURITY with Intrusion Detection and VPNs, 2 nd ed. 6 Packet Filtering By Whitman, Mattord, & Austin© 2008 Course Technology.
Data Security in Local Networks using Distributed Firewalls
Hands-On Ethical Hacking and Network Defense Second Edition Chapter 6 Enumeration.
German Valdez Communications Area Manager Communications Area Report.
Information Technology Audit Process Business Practices Seminar Paul Toffenetti, CISA Internal Audit 29 February 2008.
University of Missouri System 1 Beyond the ISP: What is the Value of Your StateNet? StateNets Annual Meeting February, 2004.
Yes, Virginia – They Really are Working Remote Supervision of Employees LSC Technology Initiative Grant Conference Allyson 2 January, 2009.
Building a Campus Dshield Randy Marchany IT Security Lab VA Tech Blacksburg, VA 24060
| University of Missouri Copyright ©2007 MOREnet and The Curators of the University of Missouri Statenet Security on the cheap and easy Beth.
University of Missouri System 1 Security – Defending your Customers from Themselves StateNets Annual Meeting February, 2004.
Partners Bureau of Justice Assistance, Office of Justice Programs, U.S. Department of Justice National Sheriffs’ Association.
MOREnet Service Packages Overview MOREnet Service Packages Overview.
Viral Client Services: IT Support in a Distributed Environment University of Waterloo Stephen MarkanStephen Markan, Lisa TomaltyLisa Tomalty.
Packet Filtering. 2 Objectives Describe packets and packet filtering Explain the approaches to packet filtering Recommend specific filtering rules.
Online communications for development Nick Scott 26 November 2008.
Broad outreach objectives Increase and sustain funding Impact interventions, policy, and community action Impact research Increase awareness about CEHTP;
 State, Provincial, County, Municipal & Campus Law Enforcement Personnel  Sworn and non-sworn officers  Vested interest in liquor law enforcement matters.
How the K-12 Community can use Internet2 Video Conferencing Dr Bob Dixon Chief Research Engineer OARnet and Ohio State University Jonathan Tyman Manager,
2 Overview With active participation from individuals and chapters all over the world, the Information Systems Security Association (ISSA)
The EDUCAUSE Security Professionals Experience Brian Moeller, CISSP The Ohio State University.
BACKGROUND National Summit on Campus Public Safety, sponsored by the Office of Community Oriented Policing Services (COPS) and hosted by the Johns Hopkins.
Vulnerabilities in peer to peer communications Web Security Sravan Kunnuri.
Security Training & Awareness on a Budget Presented by: Calvin Weeks, (CISSP), CISM, EnCE.
NOWRA National Onsite Wastewater Recycling Association.
| University of Missouri Copyright ©2005 MOREnet and The Curators of the University of Missouri Fall 2007 MERC IR Meeting November 1, 2007.
| University of Missouri Copyright ©2005 MOREnet and The Curators of the University of Missouri MOREnet Impact Assessment Tempe, Arizona February.
Moodling in Ontario: A Professional Learning Approach Anita Drossis Nathalie Rudner ABEL Professional Learning Lead ABEL School Lead Science and Math Teacher.
CERT AM: Securing NREN in Armenia. Armenian NREN ASNET AM – Connecting more than 40 academic institutes of NAS RA and more than 10 other research, educational.
President: Christopher Brooks II Vice President: Ja’Sena R. Smith Technical Coordinator: LaShonda May Kid- nology “Where Knowledge and Technology is POWER!”
ISSA-BE Presentation Toon Mordijck Vice President ISSA-BE 14 September 2006.
© Copyright 2011 Elitecore Technologies Pvt. Ltd. All Rights Reserved. Securing You Centralized Security Management with Cyberoam Central.
Fundamentals of Proxying. Proxy Server Fundamentals  Proxy simply means acting on someone other’s behalf  A Proxy acts on behalf of the client or user.
Health Agenda Goal # 9f School Wellness Teams Progress to Date List activities in school year that were reflective of this goal as a priority.
Strategic Conversations Professional Advancement Chairs July 22, 2014.
Ronnie Manis, Seth Hagarty, and Megan Stephenson.
Dallas Independent School District Technology Plan Ronald R. Pugh ET8011 May 15, 2011.
Debriefing/Planning Presenter: Updated 6/21/2013.
Customers Security in Context Microsoft & Office 365 / Azure Cloud Security Engagement Framework & References Real World application Frameworks.
InfraGard A Government and Private Sector Alliance Information sharing begins with human relationships – people talking with people whom they trust. Information.
AGENDA NCSIP Mandate IT Security Threats Specific Action Items Additional Initiatives.
Advanced attack techniques Advanced attack techniques Increased by passing techniques against the existing detection methods such as IDS and anti- virus.
Pro-active Security Measures
Cold Fusion Hosting The 5 “S”s for Success July 29, 2000 Presentation by Christine Pascarella Virtualscape.
WINS Monthly Meeting www2.widener.edu/wins 10/12/2007 www2.widener.edu/wins
TRANSPORTATION RESEARCH BOARD WATER SCIENCE AND TECHNOLOGY BOARD TRANSPORTATION RESEARCH BOARD TRB’s Vision for Transportation Research.
IT SERVICES PRESENTED BY VERA MERKUSHEVA, SOFTWARE ANALYST SEPTEMBER 23, 2015.
| nectar.org.au NECTAR TRAINING Module 5 The Research Cloud Lifecycle.
Association for Institutional Research Association for Institutional Research IPEDS Training Enhancing knowledge. Expanding networks.
Information Security Services. Overview  Administrative Systems Security  Legislative Requirements  SUNet Security  Individual Security Awareness.
Missouri Research and Education Network (MOREnet) Filling the Space Between Internet2 and the Internet: The Need for a National K-20 Infrastructure Fall.
Role Of Network IDS in Network Perimeter Defense.
Resources for Meeting Internet Safety Requirements Cheryl Elliott James Madison University Bill Johnsen Virginia Beach City Public Schools Educational.
Technology and User Support Breakout Session SVRS Conference for Wisconsin County Clerks May 4, 2005 – May 5, 2005.
California Telehealth Network Annual Overview.
1 Web Technologies Website Publishing/Going Live! Copyright © Texas Education Agency, All rights reserved.
Servers in the Wild… …and the threats that lurk about. DePaul University Information Security Team TLT Presentation 08 May 2002.
Statewide network and technology services from the New Jersey State Library Connecting people with information through libraries 1.
MEASURE I CITIZEN’S OVERSIGHT COMMITTEE MEETING
AFRICAN UNION- 23RD-27TH July 2018 PRESENTER: Mr. Nawa J.T Samatebele
CEC’s Responsibilities to CAN Coordinators
Data Security in Local Networks using Distributed Firewalls
Cyber Security Gloria Stephenson
2018 GREAT LAKES- MIDWEST/ROCKY MOUNTAIN REGION LEADERSHIP CONFERENCE
Presentation transcript:

| University of Missouri Copyright ©2006 MOREnet and The Curators of the University of Missouri Information sharing the MOREnet way: How not to keep secrets Randy Raw Beth Young MOREnet Security

| University of Missouri Copyright ©2006 MOREnet and The Curators of the University of Missouri Objectives: Introductions What is MOREnet Communication options Conferences Expanding the security community

| University of Missouri Copyright ©2006 MOREnet and The Curators of the University of Missouri Introductions Randy Raw –CISSP - August 2005 –1.5 years with MOREnet –Former Director of Technology Services at Linn State Technical College –Former Technology Coordinator for the Osage County R- II schools Beth Young –CISSP - July 2003 –5 years with MOREnet –Former Network Analyst - University of Missouri Columbia

| University of Missouri Copyright ©2006 MOREnet and The Curators of the University of Missouri What is MOREnet The Missouri Research and Education Network (MOREnet) provides Internet connectivity, access to Internet2, technical support, videoconferencing services and training to Missouri's K-12 schools, colleges and universities, public libraries, health care, state government and other affiliated organizations.

| University of Missouri Copyright ©2006 MOREnet and The Curators of the University of Missouri What does the Security office do? Assist with incident response Liaison with law enforcement Gather information for dissemination Knowledge transfer

| University of Missouri Copyright ©2006 MOREnet and The Curators of the University of Missouri The “Old Days” We were the bad guys. Nobody talked to us because they were afraid we would use it against them. We were a “ticket numbers” group. Policy issues kept us from being proactive and helpful

| University of Missouri Copyright ©2006 MOREnet and The Curators of the University of Missouri What have we done to change? Change how we do what we do Communicate regularly to our members, not just when they have a problem Provide opportunities for members to learn and help them secure their networks, not just be their Internet police Establish goals to reduce ticket counts, especially nuisance tickets Create and communicate Security roadmap

| University of Missouri Copyright ©2006 MOREnet and The Curators of the University of Missouri The “kinder and gentler” security - changing what we do Good Net Neighbor configuration –Phase I – Microsoft NetBIOS port –Phase II – Outbound Port 25 spam block Self-scanning tool to self-evaluate hosts Blackhole DNS Server MOREnet network status indicator Town hall meetings to discover their needs and issues

| University of Missouri Copyright ©2006 MOREnet and The Curators of the University of Missouri Using our lists for proactive communication Security-l, MERC-security and State-security lists –One-way push for critical announcements Bot network C&C Virus alerts Vulnerability announcements –Two-way discussions for any topic members choose –Communication of important training opportunities

| University of Missouri Copyright ©2006 MOREnet and The Curators of the University of Missouri Monthly Web Seminars - communicate Phishing Schemes Bot networks Spyware/malware Nmap Ethereal Securing HP printers SecCheck and Active Ports Subpoena handling

| University of Missouri Copyright ©2006 MOREnet and The Curators of the University of Missouri Annual Security Symposium - education Mostly member presentations Advanced Technical topics K-12, Higher Education, Library and State Government attendees and presenters Attorney General’s Office keynote on dealing with law enforcement

| University of Missouri Copyright ©2006 MOREnet and The Curators of the University of Missouri Advanced Security Training - education Contracted with SANS and providing SANS Forensics course at steep discount for MOREnet members CISSP training for members using video conferencing technology

| University of Missouri Copyright ©2006 MOREnet and The Curators of the University of Missouri Conferences – education/communication Security policy generation Security Awareness emphasis Hands-on training sessions Hacking competitions Ethical hacking training

| University of Missouri Copyright ©2006 MOREnet and The Curators of the University of Missouri Other methods of communications and sharing of information Daily Security Newslinks on website Security offerings accessible through MyMOREnet login –RADAR (MRTG) statistics –NetFlow statistics –Ticket submission –Research requests

| University of Missouri Copyright ©2006 MOREnet and The Curators of the University of Missouri Fee-based Services Virus and Spam Filtering (EVSF) Remote Vulnerability Assessment

| University of Missouri Copyright ©2006 MOREnet and The Curators of the University of Missouri Expanding to the security community Security community meetings Security community list for announcements and discussion Infragard involvement State Information Technology Advisory Board (ITAB) involvement

| University of Missouri Copyright ©2006 MOREnet and The Curators of the University of Missouri On-going activities Participate in annual Security Awareness Month Annual advanced topic for training Nationally known Security Symposium keynote speaker Expand the security community reach beyond Columbia

| University of Missouri Copyright ©2006 MOREnet and The Curators of the University of Missouri Is there anything left to do? Blogging Darknet DShield log analysis server On-site Remote Vulnerability Assessment In-depth firewall assessment SMTP self-testing tool Managed firewall Managed security appliance

| University of Missouri Copyright ©2006 MOREnet and The Curators of the University of Missouri For more information Randy Raw – Beth Young –