Data Breach Lessons from 2013 - Eric Vanderburg - CodeMash 2014

11
Data Breach Lessons from 2013 CodeMash 2014 January 9, 2014 © 2014 Property of JurInnov Ltd. All Rights Reserved Eric A. Vanderburg, MBA, CISSP Director, Information Systems and Security Computer Forensic and Investigation Services

description

Eric Vanderburg, Director of Information Systems and Security at JurInnov, presents "Data Breach Lessons from 2013"at CodeMash 2014.

Transcript of Data Breach Lessons from 2013 - Eric Vanderburg - CodeMash 2014

Page 1: Data Breach Lessons from 2013 -  Eric Vanderburg  - CodeMash 2014

Data Breach Lessons from 2013

CodeMash 2014

January 9, 2014

© 2014 Property of JurInnov Ltd. All Rights Reserved

Eric A. Vanderburg, MBA, CISSP Director, Information Systems and SecurityComputer Forensic and Investigation Services

Page 2: Data Breach Lessons from 2013 -  Eric Vanderburg  - CodeMash 2014

© 2014 Property of JurInnov Ltd. All Rights Reserved© 2014 Property of JurInnov Ltd. All Rights Reserved

Average breach costs $194 per record -Ponemon Institute

Financial impact of cybercrime expected to grow 10% per year through 2016 -Gartner

10% of companies experienced a data breach -Hiscox small business research

Facts and Figures

Page 3: Data Breach Lessons from 2013 -  Eric Vanderburg  - CodeMash 2014

© 2014 Property of JurInnov Ltd. All Rights Reserved© 2014 Property of JurInnov Ltd. All Rights Reserved

Types of breaches

• Insider–Accidental– Intentional

• Social Engineering• Malware• Hacking

Page 4: Data Breach Lessons from 2013 -  Eric Vanderburg  - CodeMash 2014

© 2014 Property of JurInnov Ltd. All Rights Reserved© 2014 Property of JurInnov Ltd. All Rights Reserved

2013 Breaches• Living Social

– Breach overview– Impact– Lessons learned

• Virginia Polytechnic Institute and State University– Breach overview– Impact– Lessons learned

Page 5: Data Breach Lessons from 2013 -  Eric Vanderburg  - CodeMash 2014

© 2014 Property of JurInnov Ltd. All Rights Reserved© 2014 Property of JurInnov Ltd. All Rights Reserved

2013 Breaches• University of Delaware

– Breach overview– Impact– Lessons learned

• Northrop Grumman– Breach overview– Impact– Lessons learned

Page 6: Data Breach Lessons from 2013 -  Eric Vanderburg  - CodeMash 2014

© 2014 Property of JurInnov Ltd. All Rights Reserved© 2014 Property of JurInnov Ltd. All Rights Reserved

2013 Breaches• Internal Revenue Service

– Breach overview– Impact– Lessons learned

• St. Mary’s Bank– Breach overview– Impact– Lessons learned

Page 7: Data Breach Lessons from 2013 -  Eric Vanderburg  - CodeMash 2014

© 2014 Property of JurInnov Ltd. All Rights Reserved© 2014 Property of JurInnov Ltd. All Rights Reserved

2013 Breaches• U.S. Department of Energy

– Breach overview– Impact– Lessons learned

• Michigan Department of Community Health– Breach overview– Impact– Lessons learned

Page 8: Data Breach Lessons from 2013 -  Eric Vanderburg  - CodeMash 2014

© 2014 Property of JurInnov Ltd. All Rights Reserved© 2014 Property of JurInnov Ltd. All Rights Reserved

2013 Breaches• Evernote

– Breach overview– Impact– Lessons learned

• Drupal– Breach overview– Impact– Lessons learned

Page 9: Data Breach Lessons from 2013 -  Eric Vanderburg  - CodeMash 2014

© 2014 Property of JurInnov Ltd. All Rights Reserved© 2014 Property of JurInnov Ltd. All Rights Reserved

2013 Breaches• Cogent Healthcare

– Breach overview– Impact– Lessons learned

• New York Office of the Medicaid Inspector General – Breach overview– Impact– Lessons learned

Page 10: Data Breach Lessons from 2013 -  Eric Vanderburg  - CodeMash 2014

© 2014 Property of JurInnov Ltd. All Rights Reserved© 2014 Property of JurInnov Ltd. All Rights Reserved

2013 Breaches• Republic Services

– Breach overview– Impact– Lessons learned

• Federal Reserve– Breach overview– Impact– Lessons learned

Page 11: Data Breach Lessons from 2013 -  Eric Vanderburg  - CodeMash 2014

© 2014 Property of JurInnov Ltd. All Rights Reserved© 2014 Property of JurInnov Ltd. All Rights Reserved

For assistance or additional information

• Phone: 216-664-1100• Web: www.jurinnov.com• Email: [email protected]• Twitter: @evanderburg• Facebook: www.facebook.com/VanderburgE• Linkedin: www.linkedin.com/in/evanderburg• Youtube: www.youtube.com/user/evanderburg

JurInnov Ltd.The Idea Center

1375 Euclid Avenue, Suite 400

Cleveland, Ohio 44115

Enjoy CodeMash!