Defending the Defenders: Case studies of success and failures from a security team

No ratings

Presented at BSidesLondon 2018 by

Defending an organisation from all threats, be they physical, personnel, or cyber, is not easy and every organisation has it's own challenges. MWR is a security company itself and is lucky to have large numbers of security experts, however, they are generally all busy and cannot give limitless time to internal causes. As such, like many organisations, the internal security team at MWR has had to work out how to push security out to other teams, make the absolute most of expert time that we can, automate as much as possible and bring the rest of the company along for the ride. This talk will cover lessons learnt, successes and failures and what other teams could be trying.Specifically the talk will cover:- Turning ad-hoc good efforts into a formal security programme using CPNI Passport to Good Security- Reducing the time to make security decisions - Managing the human side of security- Security communications- Making effective use of skilled time- Applying the NCSC end user device guidance and other patterns- A framework for remotely assessing SaaS providers- Getting the best out of SOC analysts