Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 43 guests and 1 member online
 
Advertisement

You are here: Home arrow EH-Netarrow Calendar Of Eventsarrow RSI 2009
EH-Net
May 24, 2013, 12:07:42 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Linked Events
  • RSI 2009: May 14, 2009
Pages: [1]   Go Down
  Print  
Author Topic: RSI 2009  (Read 3670 times)
0 Members and 1 Guest are viewing this topic.
don
Editor-In-Chief
Administrator
Hero Member
*****
Offline Offline

Posts: 4168


Editor-In-Chief


View Profile WWW
« on: May 13, 2009, 02:31:55 PM »

RSI 2009
May 14, 2009
Centre Mont-Royal in Montréal


The Information Security Association of Greater Montreal (ASIMM), in partnership with the Information Systems Audit and Control Association (ISACA), is pleased to announce the third Rendez-vous de la Sécurité de l’information (RSI 2009). This annual seminar, which is devoted entirely to the field of security, will be held at the Centre Mont-Royal in Montréal on May 14. Building on the success of the previous years, the theme of the event remains “The faces of Security – Beyond Appearances”. The focus will be on three major areas: Governance, Best Practices and Technical Issues. Eighteen expert speakers, including keynote speakers Roger Sullivan, Chairman of the Liberty Alliance Coalition, and Graham Whitehead, a well-known speaker on the European scene, will address trends and major issues in the field of Information Security.

Two new topics are being added to this year’s program: “Governance Issues”, which will address some of the challenges facing our technology and our Information Security leaders; and “Technical Issues”, which should be of interest to operations personnel, technical specialists, and solution developers

In addition to the regular conference program, participants will also have access to the exhibitors’ hall, where they will be able to meet and interact with the main suppliers of technologies and services. They will also have an opportunity to interact with various experts through the Express Rendez-vous service. A special room will be provided for these exchanges, which will last 15 minutes each. The event will end with a cocktail reception.

To register, or to obtain additional information concerning RSI 2009, please visit the event website: www.colloque-rsi.com

We look forward to seeing you all at RSI 2009!

http://www.colloque-rsi.com/launch-rsi2009.html

Don
Logged

CISSP, MCSE, CSTA, Security+ SME
CentVingt
Newbie
*
Offline Offline

Posts: 5


View Profile
« Reply #1 on: May 15, 2009, 10:27:01 AM »

I must confess that this year RSI show was one of the greatest to date. I send my felicitations to the organization team that, once again, did a great job.

I just wanted to present my though about the presentations I was able to attend. Please note that most, if not all, presentation should be released on the Tube shortly.

There was two (2) keynotes that's worth mentioning, the first presented by Roger Sullivan from Oracle about the Liberty Alliance (http://www.projectliberty.org) , concern about developing standards for secure inter-systems identity transfer. SAML 2.0 should prove to be an important standard that will help allot reaching SSO through a multi-level identity assurance. Although the technical part of the problem space seems to be real strong, the issues concerning the adoption of "inter-business" SSO are now relayed in at the business process level. There's a long way to go before we start seeing business trusting authentication from other business, or even seeing eGov identity... But interesting stuff never the less.

The other keynote was from Graham Whitehead, a magnificent orator, preaching before an already sold audience about the issues of the modern information age. I did learn a lot from his oratory skills. An interesting question that he threw at this audience was: Do you know your information footprint? How much information about you, your family, your habits, and your jobs did you throw into the cloud?

I attended Harold Côté’s, from Loto-Québec, presentation on daily risks management. It was really valuable experience he shared with the attendees. Developing a risk management service is hard work. And even with the best method of assessing risks (MEHARI, OCTAVE) you have to build maturity and credibility by starting small. Start with incidents and change requests risks assessments and control information you release to avoid unnecessary challenges from, for example, project management and such. Your audience should want to challenge the content of the analysis, not the method. If you do not control the method they will jump to the opportunity to invalidate your reports.

I then attended, Alexandre Major’s, from the famed Ubisoft Montreal studio, presentation on “target production, without being the target”. I’m a long time fan of Ubisoft, even worked there for some time. It’s really interesting to see that they are still so different from the rest of the planet. Their challenges are so different from the banking, retails or pharmaceutical industries I worked for. There’s a couple quote I’ve noted in my book that’s worth mentioning… First, security must be part of the team. If no one’s there, they do not exist. If the security guy is in the field of view of a person, the later would be less likely to breach security rules Tongue I might have a scoop, Ubisoft is now looking for staffing their anti-piracy department in Montreal, and are looking for another security analyst to assist production operations.

There was a set of vendor presentation that I must say I skipped. Well, mostly because I did already saw most of them, but I wanted to take some time to check the kiosk and meet some of the new comers there. As usual the main value to go to those events is really about networking. Meet people and chat with old friends…

I attended then a session on industrial spying. The speaker, Michel Juneau-Katsuya (ex-director of SCRS – Canadian’s secret services – don’t laugh) did a nice job at telling us there was issues about corporate industrial and government economic espionage. I must say I was left on my appetite as no avenue of resolution or ways to get intel on the impact for my current industry was presented. Well, it’s not his fault our government doesn’t produce or release metrics on the impact of such events… Was still an overall interesting session.

I’m sure the other presentations was quite interesting, if some EH reader did attends those not mentioned here, please give me your though…

Farewell,
Marc-André Bélanger, CISSP, C|EH
Logged
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.067 seconds with 23 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Free Business and Tech Magazines and eBooks

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.