{"id":116252,"date":"2018-08-30T16:12:47","date_gmt":"2018-08-30T20:12:47","guid":{"rendered":"https:\/\/www.bu.edu\/tech\/?page_id=116252"},"modified":"2018-08-30T16:38:17","modified_gmt":"2018-08-30T20:38:17","slug":"talk-descriptions-and-slides","status":"publish","type":"page","link":"https:\/\/www.bu.edu\/tech\/services\/security\/education\/camp\/archives\/sc2018\/talk-descriptions-and-slides\/","title":{"rendered":"Talk Descriptions and Slides"},"content":{"rendered":"<p><a href=\"https:\/\/www.bu.edu\/tech\/services\/security\/education\/awareness\/camp\/archives\/sc2018\/presenter-bios\/\">Chris Woods<\/a><span>\u00a0<\/span>\u2013\u00a0<span>Reliability Engineering in Information Security<\/span><\/p>\n<p>This session provides a general overview of the key techniques and will demonstrate their application to the selection of information security controls. Security professionals can adapt and use these methods to ensure effective deployment of control measures within the constraints of an organizational budget.\u00a0 You will learn how to\u00a0 evaluating controls with regards to the failure they are intended to prevent (i.e loss of confidentiality, integrity, or available).<\/p>\n<p><a href=\"\/tech\/files\/2018\/08\/C_WOODS-rcm-security-camp-presentation-2018.pdf\">Slides from the presentation<\/a><\/p>\n<p><a href=\"https:\/\/www.bu.edu\/tech\/services\/security\/education\/awareness\/camp\/archives\/sc2018\/presenter-bios\/\">Deborah Hemdal, J.D<\/a>\u00a0\u2013\u00a0<span>Electronic Search and Seizure in Higher Education<\/span><\/p>\n<p>Some topics covered in this presentation would be the difference between \u201cprivate\u201d searches and law enforcement searches; the Electronic Communications Privacy Act; and the difference between \u201cpublic\u201d and \u201cprivate\u201d spaces both in the work place and the residence (or dorm).<\/p>\n<p><a href=\"\/tech\/files\/2018\/08\/D_HEMDAL-2018-Security-Camp-final.pdf\">Slides from the presentation<\/a><\/p>\n<p><a href=\"https:\/\/www.bu.edu\/tech\/services\/security\/education\/awareness\/camp\/archives\/sc2018\/presenter-bios\/\">Erik Hemdal<\/a><span>\u00a0<\/span>\u2013\u00a0<span>Containerizing Linux Applications<\/span><\/p>\n<p>This session discusses topics such as namespaces, how Docker makes these technical features accessible, and what a containerized application looks like from inside and outside the container.<\/p>\n<p><a href=\"\/tech\/files\/2018\/08\/E_HEMDAL-Containerizing-Linux-Applications.pdf\">Slides from the presentation<\/a><\/p>\n<p><a href=\"https:\/\/www.bu.edu\/tech\/services\/security\/education\/awareness\/camp\/archives\/sc2018\/presenter-bios\/\">Sandy Silk<\/a>\u2013<span>\u00a0<\/span><span>A New Rubric for IT Recruiting and Retention.<\/span><\/p>\n<p>From lengthy vacancies in unfilled positions to a choice of strong candidates within weeks of job listings. Hear how Harvard Information Security and Harvard WIT (Women in Technology) are leading a culture shift in our IT community that extends from recruiting through promotion. Participants will explore useful resources and techniques to remove inadvertent biases in your processes so you can better attract, retain, and develop strong talent and inclusive teams in your organizations.<br \/>\n\u2013 Resist assumptions about degrees and certifications<br \/>\n\u2013 Choose your words carefully<br \/>\n\u2013 Network, network, network<br \/>\n\u2013 Question everything<br \/>\n\u2013 Prioritize your pain points and potentials<br \/>\n\u2013 Support ongoing professional development<\/p>\n<p><a href=\"\/tech\/files\/2018\/08\/S_SILK-NewRubricITHiringSecCamp.pdf\">Slides from the presentation<\/a><\/p>\n<p><a href=\"https:\/\/www.bu.edu\/tech\/services\/security\/education\/awareness\/camp\/archives\/sc2018\/presenter-bios\/\">Jeffrey Schiller<\/a>\u00a0\u00a0\u2013\u00a0<span>Encryption Backdoors: Irresistible Force Meeting Immovable Object.<\/span><\/p>\n<p>This presentation will provide an overview of the Internet Policy Research Initiative (IPRI) at MIT and will discuss issues related to key recovery, \u201cgoing dark\u201d and the risks of providing bad doors. It provides perspectives from various people in industry and law enforcement. It\u00a0includes issues like why key recovery is risky (in our modern context) and the \u201cstate of play\u201d.<\/p>\n<p><a href=\"https:\/\/www.bu.edu\/tech\/services\/security\/education\/awareness\/camp\/archives\/sc2018\/presenter-bios\/\">Dan Flynn<\/a>\u00a0\u2013<span>\u00a0<\/span><span>Secure Use of VDI in a PCI Compliant Environment.<\/span><\/p>\n<p>How to keep PCI devices secure when business requirements require open access to the internet? \u00a0When implementing a new VoIP auto calling system (Telefund) for the Boston University Development and Alumni Relations department a unique setup had to be conceived to maintain security. \u00a0The new BU Telefund system required callers to have open access to the internet to access documentation via Google Docs and look up information from any website that might come up during a call. \u00a0The system is also used to enter credit card numbers received over the phone (VoIP dialed from the Telefund computer) to receive donations as well. \u00a0To maintain security of the environment but allow for full business usability, a virtual desktop environment was used to isolate the PCI environment from the open internet access.<br \/>\nInternet Explorer, Java, open internet, and credit cards.<\/p>\n<p><a href=\"\/tech\/files\/2018\/08\/D_FLYNN-Security.Camp_.VDI_.PCI_.pdf\">Slides from the presentation<\/a><\/p>\n<p><a href=\"https:\/\/www.bu.edu\/tech\/services\/security\/education\/awareness\/camp\/archives\/sc2018\/presenter-bios\/\">Craig Vincent<\/a>\u00a0\u2013 \u00a0<span>Are you ready to SOAR?<\/span><\/p>\n<p><span>Struggling with alert fatigue? Can\u2019t find enough staff for your security team? If you are interested in reducing the burden on your staff and focusing resources on high value activities, come learn how to SOAR. Security Orchestration, Automation, and Response (SOAR) is an exciting new component of an organization\u2019s security strategy. In this session, you will learn about how to run a SOAR program. We will cover what organizations are good candidates for SOAR programs, what you need to get started and known challenges along the way. This is guaranteed to be an exciting introduction into a brand new technology space.<\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Chris Woods\u00a0\u2013\u00a0Reliability Engineering in Information Security This session provides a general overview of the key techniques and will demonstrate their application to the selection of information security controls. Security professionals can adapt and use these methods to ensure effective deployment of control measures within the constraints of an organizational budget.\u00a0 You will learn how to\u00a0&#8230;<\/p>\n","protected":false},"author":13352,"featured_media":0,"parent":116250,"menu_order":3,"comment_status":"closed","ping_status":"closed","template":"","meta":[],"_links":{"self":[{"href":"https:\/\/www.bu.edu\/tech\/wp-json\/wp\/v2\/pages\/116252"}],"collection":[{"href":"https:\/\/www.bu.edu\/tech\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/www.bu.edu\/tech\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/www.bu.edu\/tech\/wp-json\/wp\/v2\/users\/13352"}],"replies":[{"embeddable":true,"href":"https:\/\/www.bu.edu\/tech\/wp-json\/wp\/v2\/comments?post=116252"}],"version-history":[{"count":4,"href":"https:\/\/www.bu.edu\/tech\/wp-json\/wp\/v2\/pages\/116252\/revisions"}],"predecessor-version":[{"id":116268,"href":"https:\/\/www.bu.edu\/tech\/wp-json\/wp\/v2\/pages\/116252\/revisions\/116268"}],"up":[{"embeddable":true,"href":"https:\/\/www.bu.edu\/tech\/wp-json\/wp\/v2\/pages\/116250"}],"wp:attachment":[{"href":"https:\/\/www.bu.edu\/tech\/wp-json\/wp\/v2\/media?parent=116252"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}