Update on ETSI Security work Charles Brookson OCG Security Chairman DOCUMENT #:GSC13-PLEN-57 FOR:Information SOURCE:Charles Brookson AGENDA ITEM:6.3

Slides:



Advertisements
Similar presentations
Fostering worldwide interoperabilityGeneva, July 2009 Lawful Interception and Data Retention Presenter: Mike Sharpe, VP ETSI ESP Source: Peter van.
Advertisements

Fostering worldwide interoperabilityGeneva, July 2009 Overview of Security work in ETSI Presenter: Mike Sharpe, VP ETSI ESP Source: Charles Brookson,
World Class Standards Osservatorio Sicurezza ANFOV - Milano, 14 Novembre 2007 What is ETSI? Osservatorio Sicurezza Anfov Dionisio Zumerle Technical Officer.
Vehicle-infrastructure integration: creating co-operative mobility systems and services Hearing EU Parliament, 22 January 2009 Hermann Meyer, CEO.
EAP AKA Jari Arkko, Ericsson Henry Haverinen, Nokia.
Geneva, Switzerland, September 2014 ETSI TC Cyber Charles Brookson Chairman ETSI TC Cyber Zeata Security Ltd and Azenby Ltd ITU.
Summary of ETSI/ESI activities Andrea Caccia ETSI/ESI TB member Note: This document expresses only the views of its author.
Halifax, 31 Oct – 3 Nov 2011ICT Accessibility For All ETSI Standardization Activities on M2M communications Joachim Koss, ETSI Board Member Document No:
ETSI Security activities Charles Brookson Chairman OCG Security Source: ETSI GTSC-1 Agenda item For: Information GSC
DOCUMENT #:GSC15-PLEN-25r1 FOR:Presentation SOURCE:TIA AGENDA ITEM:6.3 CONTACT(S):Cheryl Blum Betsy Covell
IETF ECRIT WG workshop 1 ETSI EMTEL (Special Committee on Emergency Communications) Producing and maintaining Standards for Emergency Communications Presented.
GLOBAL ICT STANDARDISATION FORUM FOR INDIA (GISFI) Prof. Dr. Ramjee Prasad, CTiF, Aalborg University Fellow IEEE, FIET, FIETE, FWWRF - Founding Chairman,
NCHU AI LAB Implications of Unlicensed Mobile Access for GSM security From : Proceeding of the First International Conference on Security and Privacy for.
World Class Standards © ETSI 2007 All rights reserved ETSI Tomorrow’s World Today.
IT security seminar Copenhagen, April 4th 2002 M. Jean-Michel HUBERT Chairman of the French Regulation Authority IRG Chairman.
European Regulatory Environment (just a part!) Mark Thomas, ECO Director CEPT Workshop on European Spectrum Management and Numbering 4 th June 2014.
Efficient broadband deployment & multi-service implementation European home networking platform Dominique Roche (ATTM chairman) DOCUMENT #:GSC13-GTSC6-19.
ETSI Home Networking activities Rainer Münch ETSI TISPAN Chairman Presenter: Ian Spiers DOCUMENT #:GSC13-GTSC6-20r1 FOR:Presentation SOURCE:Rainer Münch,
27/08/2015 Intelligent Transport Services ETSI activities 1GSC-9, Seoul SOURCE:ETSI (ERM TG#37) TITLE:Intelligent Transport Services – ETSI activities.
Security and LI; ETSI’s role in standards
PRESENTATION OF ETSI © ETSI All rights reserved Sophia Antipolis, 22 May 2014 Luis Jorge Romero Director General, ETSI.
BITS Proprietary and Confidential © BITS Security and Technology Risks: Risk Mitigation Activities of US Financial Institutions John Carlson Senior.
Cdma2000 Card Environments and Provisioning Doug Dunn TSG-C WG 1 Chair
DOCUMENT #:GSC15-PLEN-53 FOR:Presentation SOURCE:ETSI AGENDA ITEM:PLEN 6.11 CONTACT(S):Emmanuel Darmois, Board Member Marylin Arndt, TC M2M chair Smart.
World Class Standards CCIF New York - April Grids, Clouds and Service Infrastructures ETSI Strategy & New Initiatives.
Jeju, 13 – 16 May 2013Standards for Shared ICT Cybersecurity Activities in ETSI Presenter: Adrian Scrase ETSI Chief Technical Officer (CTO) Document No:
Parlay Emergency Telecommunications Service (ETS) Working Group Ravi Jain, John-Luc Bakker, Ken Erney Frank Suraci & Vernon Mosley
What is ETSI EMTEL all about Claire d’Esclercs Technical Officer for EMTEL European Telecommunications Standards Institute.
DOCUMENT #:GSC15-PLEN-06 FOR:Presentation SOURCE:CCSA AGENDA ITEM:4.3 Recent Progress of CCSA ’s Standardization Activities.
© NOKIADEFAULT.PPT / / AO page: 1 USIM requirements and structure NOKIA Mobile Phones TSGT3#3(99)082.
2003/12/291 Security Aspects of 3G-WLAN Interworking 組別: 2 組員: 陳俊文 , 李奇勇 , 黃弘光 , 林柏均
Third TETRA World Congress A Report on ‘TETRA Release 2’ Brian Oliver Chairman, ETSI Project TETRA.
Riccardo Genghini - Ws E-Sign Chairman – IETF PKIX San Francisco March Electronic Signature infrastructure for Europe Riccardo Genghini Cen/Isss.
International Telecommunication Union Committed to connecting the world ITU/EBU Workshop Accessibility to Broadcasting and IPTV ACCESS for ALL, 23 – 24.
DOCUMENT #:GSC15-PLEN-36 FOR:Presentation SOURCE:ETSI AGENDA ITEM:PLEN 6.6 CONTACT(S):Soeren Hess, TC ITS Chair Intelligent Transport Systems Presenter:
Halifax, 31 Oct – 3 Nov 2011ICT Accessibility For All Security activities in ETSI Presenter: Mike Sharpe, ETSI VP ESP (ETSI Standardization Projects) Document.
Halifax, 31 Oct – 3 Nov 2011ICT Accessibility For All ETSI Conformance and Interoperability Testing Jørgen Friis VP ETSI SES (Standards Enabling Services)
On Requirements for Mobile Commerce By Aj.Pongthep Termsnguanwong.
Fostering worldwide interoperabilityGeneva, July 2009 Intelligent Transport Systems Presenter: Soeren Hess Chairman TC ITS Global Standards Collaboration.
Cybersecurity Presented by Charles Brookson OBE CEng FIET FRSA
International Telecommunication Union ETSI Security Standardization Dr. Carmine Rizzo CISA, CISM, CISSP, ITIL, PRINCE2 ITU-T Workshop on “New challenges.
International Telecommunication Union ITU-T Cybersecurity Symposium - Florianópolis, Brazil, 4 October 2004 Infrastructure Security: The impact on Telecommunications.
Doc.: IEEE ban Submission May 2007 John Farserotu Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission.
ETSI Technical Committee TCCE TETRA and Critical Communications Evolution Seminar "Education about Standartisation for SMEs Sofia, 14th March 2016.
Update on ETSI Cyber Security work Charles Brookson OCG Security Chairman Largely based on presentations given by Judith E. Y. Rossebø ETSI TISPAN WG7.
ANSI – ESOs meeting Washington February 2017
Security Activities in ETSI
ETSI - HGI – PUBLICLY AVAILABLE SPECIFICATION (PAS)
ETSI Emergency Communications
Technical Organization and approval procedures
Dirk Weiler, chairman of the board, ETSI
Glenn Parsons, GTSC-9 Chair, ISACC
Update on Security and LI activities in ETSI
Security Activities in ETSI
Cybersecurity Presented by Charles Brookson OBE CEng FIET FRSA
E-Commerce for Developing Countries (EC-DC)
Intelligent Transport Systems
EMTEL OCG Adhoc Group GSC9_joint_xxx 06/12/2018 GSC-9, Seoul 1 SOURCE:
How your R&I projects can benefit from ETSI
ETSI role in Identity Management and Identification Systems
ETSI Activities Related to IP and Multimedia
Cybersecurity Activities in ETSI
ETSI Technical Committee TCCE
Didier Chauveau ETSI OCG ECN&S Chairman ETSI Board Vice Chairman
PPSO (GRSC) Update: Standards Work on Lawful Interception
ESO response to EU RFID Mandate M/436
ETSI EMTEL (Special Committee on Emergency Communications)
Security and Lawful Intercept - Summary
Glenn Parsons, GTSC-9 Chair, ISACC
LM 7. Cellular Network Security
Presentation transcript:

Update on ETSI Security work Charles Brookson OCG Security Chairman DOCUMENT #:GSC13-PLEN-57 FOR:Information SOURCE:Charles Brookson AGENDA ITEM:6.3 Submission Date: June 27, 2008

2 OCG Security (1) Operational Co-ordination Sub-Group on Security Horizontal co-ordination structure for security issues –Ensuring security is properly considered in each ETSI Technical Body (TB) –Detecting any conflicting or duplicate work Participation: –TBs are free to nominate Members to participate in the work of the group Working methods: –Via –When necessary co-sited “joint security” technical working meetings –Issues sent to –Mailing list:

3 OCG Security (2) Security Workshop ETSI holds an annual security workshop. The 3rd Workshop held in January this year was well attended, and details can be found on many security issues at The next workshop is scheduled for 13th and 14th January 2009 in Sophia Antipolis, and contributions are welcome. White Papers The latest edition of our Security White and Product Proofing papers giving information and all security activities can be found at: The Security White paper is in the process of being updated and a new edition will be published later this year.

4 ETSI Committees per Security Areas Mobile/WirelessAlgorithms Information Technology Infrastructure Fixed and Convergent Networks 2G/3G Mobile 3GPP* Electronic Signatures (ESI) Next Generation Networks (TISPAN) Lawful Interception (LI) SmartCard Platform (SCP) Security Algorithms Group of Experts (SAGE) TETRA MESA* EMTEL Emergency Telecommunications Smart Cards Mobile Commerce** * ETSI is a founding partner for this partnership project ** Closed Committee DECT AT SES

5 TETRA TErrestrial Trunked Radio Mobile radio communications –Used for public safety services Security features include: –Mutual Authentication –Encryption –Anonymity

6 Mobile Security IMEI (International Mobile Equipment Identity) –Protection against theft –Physical marking of the terminal –Blacklisted by operator if stolen FIGS (Fraud Information Gathering System) –Monitors activities of roaming subscribers –Home network informed –Fraudulent calls identified terminated Priority –Public safety service –Allows for high priority access Location

7 Algorithms ETSI is a world leader in creating cryptographic algorithms and protocols to prevent fraud and unauthorised access to ICT and broadcast networks, and to protect customers’ privacy ETSI SAGE (Security Algorithm Group of Experts) –Centre of competence for algorithms in ETSI Algorithms for: –DECT –GSM, GPRS, EDGE –TETRA –UMTS –…

8 Smart Card Standardization ETSI Smart Card Standardization –ETSI Technical Committee Smart Card Platform (TC SCP) –GSM SIM Cards: among most widely deployed smart cards ever –Work extended with UMTS USIM Card and UICC Platform Current challenges –Expand the smart card platform –Implement Extensible Authentication Protocol (EAP) in Smart Cards –Allow users access to global roaming –UICC platform in secure financial transactions over mobile communications systems

9 Lawful Interception Delivery of intercepted communications to Law Enforcement Authorities –To support criminal investigation –To counter terrorism Applies to any data in transit ETSI Technical Committee LI –defines the Handover interface –from the Operator to the Law Enforcement Authorities

10 Data Retention Data generated/processed in electronic communications services need to be retained –Required by EC since 2006 (Directive 2006/24/EC) Retention of Data is similar to LI –Concerns stored traffic, rather than traffic in transit (LI) ETSI TC LI currently working on three deliverables –Requirements –Specification for Handover interface –Security framework in Lawful Interception and Retained Data environment

11 Electronic Signatures ETSI and CEN co-operation on the European Electronic Signature Goal: provide Europe with a reliable electronic signatures framework –Enabling electronic commerce –Supporting eSignature EC Directive Current challenges –eInvoicing –Registered (REM) International collaboration –Certificate Policy mapped and aligned with US policy –XML Signature Standard adopted in Japan

12 Future Challenges ETSI addressing a number of areas Issues on security are still open –Security Metrics –RFID Security and Privacy –… ETSI is ready to address these challenges –Supporting its Members –Following its Members’ requirements –Collaborating with other SDO’s