Security is No Longer Optional. Cheaper Higher Quality More Secure.

Post on 28-Dec-2015

215 views 0 download

Tags:

Transcript of Security is No Longer Optional. Cheaper Higher Quality More Secure.

Security is No Longer Optional.

Cheaper

HigherQuality

MoreSecure

Cheaper

HigherQuality

MoreSecure

Pick Only 2

Tech-Savvy Generation

Organized Crime Groups

‘H-Activism’

State Sponsored

Cyber-Crime

Th

reat

s

Tech-Savvy Generation

Organized Crime Groups

‘H-Activism’

State Sponsored

Cyber-Crime

Payment Card Information

Reliance on Service

Availability

Consumer Data

Intellectual Property

Th

reat

sTa

rgets

Tech-Savvy Generation

Organized Crime Groups

‘H-Activism’

State Sponsored

Cyber-Crime

Payment Card Information

Reliance on Service

Availability

Consumer Data

Intellectual Property

Threat Intelligence

Cloud Computing

Outsourcing Decentralized Technology

Th

reat

sEnable

rsTa

rgets

Recent Cyber Attacks

EstimatedImpact

(hard + soft)

Skill Set / Sophistication / ClevernessLow

Low

High

High

Sony PSN

EA Neverwinter Nights

EA Forums

HBGary Federal

EA Battlefield Hero (beta)

“Stuxnet- Iran Centrifuge”

RSA

Lockheed-Martin(Intrusion via

RSA trust)

Arizona DPS

US Chamber of Commerce

Epic Games

FBI – Infragard

Motorola

PBS.org

Sony Greece

Sony PicturesCodemasters

Bethesda SoftwareSquare Enix

Riot GamesNintendoSega

CitiGroup

Sony BMG

UnveillanceUS Senate

Northrop Grumman

Google

Malaysia Govm’t

CIA

IMFPayPal

Spanish Govm’t

DigiNotar CA

GlobalSign CAComodo CA

StartCom CA

“I divide the entire set of Fortune 2,000 firms into two categories…

…those that know they’ve been compromised

and those that don’t know it yet.” Dmitri Alperovitch

Vice President, Threat ResearchMcAfee

Proactive Protection:Content, Transactions, Uptime

Keep bad things from happening.

Proactive Protection:Content, Transactions, Uptime

Keep bad things from happening.

Reactive Protection:Logging, Forensics, Tracking

Know if happening, what exactly happened, and how.

Security is a Business Issue.

Put Security into a Business Context through

Risk Management

Risk Management

Business RiskBusiness ValueImpact

Probability

Cost

Impact

Probability

Cost

Informed Business Decision=

Modeling an alternative DVD distribution model

Differential = R5 Impact

Lower-Quality Cam, Better cam, US Retail Compromise wk 10 of Theatrical

R5

CamsRussian

DVD US Retail DVD

Cams

RussianDVD

US Retail DVD

R5 = 3.0 Million Downloads (49%)US Retail DVD = 0.7M Downloads (12%)

Estimated Loss to Piracy(unrealized revenue to Top 10 Mature Markets)

Estimated Russia 52 Wk HE Revenue: $1.05M

Estimated Net Result: Loss of $5.85M

Total ALL Piracy: $38.9M(incl R5)

Piracy without R5: $32.0M

R5 Only: $6.9M

Piracy impacts calculated to TOP 10 Mature Markets using the “Disney-developed Piracy Impact Model”, which has been freely shared with other studios.

Have the right people

at the table.

Cheaper

HigherQuality

MoreSecure

+

Revolutionary Business Models

+ Revolutionary

Security Models