POST EVENT REPORT Co-organizers An (ISC)2 Security Leadership Event SecureAsia@Manila 2013 www.informationsecurityasia.com (ISC)2 SecureAsia@Manila: Building a Secure Cyber World SecureAsia is the region’s premiere event for information security professionals, part of (ISC)2’s Security Leadership Series. Since 2006, (ISC)2, along with SecureAsia’s co-organizers, bring together information security experts from the Americas, EMEA and the Asia-Pacific regions to discuss emerging threats, risks and strategies to mitigate them by evaluating new technologies and discussing best practises in information security management. Held in conjunction with the SecureAsia conference, (ISC)2’s Asia-Pacific Information Security Leadership Achievements (ISLA) Program recognizes professionals for their outstanding leadership and achievements in workforce improvement of IT security and management professionals throughout the Asia-Pacific region. Since 2007, the ISLA Program has recognized over 180 outstanding honorees in over 10 Asia-Pacific economies at gala dinners held during the annual SecureAsia Conference. Enterprises today face rapidly changing threats as never before. From combating viruses aimed at extorting money from individuals like the FBI virus to more sophisticated viruses like Stuxnet targeting infrastructure to perceived espionage related efforts in Flame and Red October, the task of the cyber security professional to protect an organizations information assets is more critical than ever. An increasingly sophisticated threat landscape coupled with the advancement of technology and connectivity requires security professionals to constantly keep abreast of latest trends and strategies to ensure their organizations infrastructure with orchestrated efforts. SecureAsia now it’s in 8th year, brings together leading information security experts from government, industry and academia to share their experiences and expertise to help address the challenges you face. Dates: 7-8 August, 2013 Location: Makati Shangri-La Host Economy: Manila No of Attendees : Over 350 Economies Represented: 15 Number of Sponsors: 6 Number Supporting Organisations 5 Media Partners 3 An (ISC)2 Security Leadership Event 1 SecureAsia@Manila 2013 www.informationsecurityasia.com Co-organizers (ISC)² is the largest not-for-profit membership body of certified information and software security professionals worldwide, with over 90,000 members in more than 135 countries. Globally recognized as the Gold Standard, (ISC)² issues the Certified Information Systems Security Professional (CISSP) and related concentrations, as well as the Certified Secure Software Lifecycle Professional (CSSLP), the Certified Cyber Forensics Professional (CCFPSM), Certified Authorization Professional (CAP), and Systems Security Certified Practitioner (SSCP) credentials to qualifying candidates. (ISC)²’s certifications are among the first information technology credentials to meet the stringent requirements of ISO/IEC Standard 17024, a global benchmark for assessing and certifying personnel. (ISC)² also offers education programs and services based on its CBK® , a compendium of information and software security topics. More information is available at www.isc2.org. National Defense College of the Philippines (NDCP) Founded on 12 August 1963, the National Defense College of the Philippines (NDCP) was established to be the country’s premier institution for education, training and research on defense and security. It is mandated to enhance the skills and competence of qualified military and civilian leaders at the strategic level working in a complex security environment. The Master in National Security Administration (MNSA) is the main training program of the NDCP. The NDCP is an accredited training institution by the Civil Service Commission per CSC Resolution No. 000409 s.1994. Visit the NDCP website at www.ndcp.edu.ph. National Defense College of the Philippines Alumni Association, Inc. (NDCPAAI) The National Defense College of the Philippines Alumni Association, Inc. (NDCPAAI) is the organization of all graduates of the Master in National Security Administration (MNSA) program of NDCP. As of date, NDCPAAI has strength of 1,957 MNSA graduates from the 47 Regular Classes (RC) so far conducted. The distinguished list of alumni is led by former President Fidel V. Ramos (RC-3) and Vice President Jejomar C. Binay (RC-24). NDCP alumni represent a diverse range of sectors including senior officials and chief executives of the government, private sector, academe, and civil society. Also, an increasing number of graduates from allied countries such as Australia, India, Malaysia, Nigeria, Pakistan, Sri Lanka, and Thailand comprise the alumni association. The NDCPAAI Board of Trustees and Officers for 2010-2011 is led by Vice President Jejomar C Binay as President and Chairman of the Board. Please visit NDCPAAI website at www.ndcpaai.com. An (ISC)2 Security Leadership Event 2 SecureAsia@Manila 2013 www.informationsecurityasia.com Sponsors Platinum Sponsors : Microsoft Trustwave Gold Sponsors : SYNETCOM: Embracing the Power of KG Digital Solutions (Kanematsu) Communication Samsung SECUI Silver Sponsors : HP Enterprise Security Netpoleon Solutions Pte Ltd MDI Systems Integration Group Lanyard Sponsors : Mitsui Bussan Secure Direction Inc An (ISC)2 Security Leadership Event 3 SecureAsia@Manila 2013 www.informationsecurityasia.com Sponsor Benefits: Listed on all speaker podiums Mentioned in the welcome address Offered speaking slot at Conference Featured on Conference PowerPoint template Company profile and advertisement in the conference program book Branding exposure and company profile on delegated website Branding exposure in all conference, signage, edm and press release Booth in coffee break space Brochure/Give-away distribution to attendees Complimentary seats Media exposure Supporting Organizations An (ISC)2 Security Leadership Event 4 SecureAsia@Manila 2013 www.informationsecurityasia.com Media Partners Number of Economies Represented (speakers and delegates): 15 Australia Canada Germany Hong Kong India Japan Malaysia Pakistan Republic of Philippines Singapore South Korea Taiwan Thailand United Arab Emirates United States of America An (ISC)2 Security Leadership Event 5 SecureAsia@Manila 2013 www.informationsecurityasia.com Agenda Day 1 – 7 August 2013 Time Session 08:00 – 09:00 Registration 09:00 – 09:15 Welcome Address W. Hord Tipton, CISSP-ISSEP, CAP, CISA, CNSS Executive Director, (ISC)² Former CIO, U.S. Department of the Interior, U.S.A. Remarks Rear Admiral Roberto Q. Estioko, AFP(Ret), Ph.D., MNSA Executive Vice President, NDCP Alumni Association, Inc. Message and Introduction of the Keynote Speaker Honorable Voltaire T. Gazmin Secretary of National Defense, Republic of the Philippines 09:15 – 09:30 Keynote Address and Opening Ceremony Honorable Jejomar C. Binay, MNSA Vice President of the Republic of the Philippines 09:30 – 10:00 Mind the Browser – Understanding and Defending Against User-Targeted Attacks Stuyvesant Lim Regional Sales Director, Trustwave 10:00 – 10:30 Why Security Environments Fail: The Path to Resilience Pierre Noel Chief Security Officer and Advisor, Asia Microsoft Corporation 10:30 – 11:00 Morning Coffee 11:00 – 11:45 State of Information Security and Developing a Sustainable Capacity Building Program (Adapting the US Experience) Prof. Corey Schou, Ph.D., Fellow of (ISC)², CSSLP Director, National Information Assurance Training and Education Center (NIATEC), U.S.A. University Professor of Informatics, Professor of Information Systems, Associate Dean College of Business, Idaho State University, U.S.A. Vice Chairperson, (ISC)² Board of Directors 11:45 – 12:30 Towards a Comprehensive and Effective Philippine ICT Research and Development Program Honorable Mario G. Montejo Secretary, Department of Science and Technology (DOST), Republic of the Philippines 12:30 – 14:00 Lunch An (ISC)2 Security Leadership Event 6 SecureAsia@Manila 2013 www.informationsecurityasia.com Management & Strategy Track Technical Track 14:00 – 14:45 Information Centric Protection with Security and BCP Haruto Kitano, CISSP, JGISP Senior Manager Deloitte Tohmatsu Risk Services Co., Ltd. Member, (ISC)² Asian Advisory Board Proactive and Collaborative Response to the Sophisticated Security Threats S.C. Leung, CISSP Senior Consultant, Hong Kong Computer Emergency Response Team Coordination Centre, Hong Kong 14:45 – 15:30 Criminal Education-Lessons from the Criminals and their Methods Gab Gennai ArcSight Solutions Evangelist APAC HP Enterprise Security Products Cyber Terror and Digital Forensics: A Case Study Arthur Woo, CISSP, CCSR General Manager, Samsung SECUI Global Business Development Unit, Korea (A Subsidiary of Samsung Group) 15:30 – 15:45 Afternoon Tea 15:45 – 16:30 Ipv6 Vulnerability Management Lito Averia ISOC Philippines Chapter 16:30 – 17:15 17:15 Responsive Security-Managing Cyber Security with Uncertainties Dr. Meng-Chow Kang, CISSP, CISA Director and CISO, APJC Region Cisco Systems, Inc., Singapore Member, (ISC)² Asian Advisory Board Malware Analysis / Reverse Engineering: Hands-on Practical Exercise Wim Remes, CISSP Managing Consultant, IOActive, Belgium Secretary, (ISC)² Board of Directors Closing Remarks An (ISC)2 Security Leadership Event 7 SecureAsia@Manila 2013 www.informationsecurityasia.com Day 2 - 8 August 2013 Time Session 08:00 – 09:00 Registration 09:00 – 09:15 Welcome Address Freddy Tan, CISSP Cyber Security Strategist, Public Safety and National Security, Microsoft Asia, Singapore Chairperson, (ISC)² Board of Directors Co-Chairperson, (ISC)² Asian Advisory Board Shirley Marie P. Plaza, MNSA Secretary-General, NDCPAAI Consultant, Office of the Vice President, Republic of the Philippines 09:15 – 10:00 Employee Privacy and Organizational Security: Addressing Employee's Personal Use of the Internet at Work David Melnick, CISSP, CIPP, CISA National Principal, Security, Privacy and Data Protection Practice, Deloitte & Touche LLP, U.S.A. Member, (ISC)² Board of Directors 10:00 – 10:30 Philippine Cyber Threat Landscape Director General Alan D.L. Purisima Chief, Philippine National Police 10:30 – 11:00 Morning Coffee Management & Strategy Track Technical Track 11:00 – 11:45 Next-Generation Managed Services for Better Business Value Dan Davis, CISSP Director, MSS Global Security Operations Trustwave Securing and Fortifying your Network Infrastructure Dennis C. Luyahan President and CEO SYNETCOM PHILIPPINES, INC. 11:45 – 12:30 Outsourcing and Security: A Financial Services Sector Perspective Greg Thompson, CISSP VP Enterprise Security Services Scotiabank Group, Canada Member, (ISC)² Board of Directors Defending Against Pass the Hash and Credential Theft Attacks Sachin Malik Senior Premier Field Engineer Microsoft Corporation India Pvt. Ltd. 12:30 – 13:45 Lunch An (ISC)2 Security Leadership Event 8 SecureAsia@Manila 2013 13:45 –14:30 www.informationsecurityasia.com Developing a Holistic Prevention Approach to Cyber Security: Getting the Board Involved Chuan-Wei Hoo, CISSP, CISA, CFE, BCCE Security Information Officer BT Advise Assure, BT Global Services Social Media Forensics – Hands-on Demo Prinya Hom-anek, CISSP, CSSLP, SSCP, SANS GIAC, GCFW, CGEIT, CRISC, CISA, CISM President & Founder, ACIS Professional Centre Thailand Member, (ISC)² Asian Advisory Board 14:30 – 15:15 Data Security Through Better Management Ryan Matias Pre-Sales Lead for Security MDI Systems Integration, Philippines 15:15 – 15:40 Afternoon Tea 15:40 – 16:25 Mobile Forensics Prof. Jill Slay AM, Ph.D., FACS, CP, Fellow (ISC)², CISSP, MIEEE Professor of Forensic Computing Dean: Research, Division IT, Engineering and the Environment, University of South Australia Executive Dean IT, Polytechnic of Namibia Member, (ISC)² Board of Directors 16:25 – 17:05 CIP Protection and SCADA Security – Addressing Recently Discovered SCADA Vulnerabilities Diana-Lynn Contesti, CISSP-ISSAP, ISSMP, SSCP, CSSLP ISO, ArcelorMittal Dofasco, Canada Member, (ISC)² Board of Directors 17:05 – 17:30 DOJ Response to the Challenges of Cybercrime Honorable Leila M. de Lima Secretary, Department of Justice, Republic of the Philippines An (ISC)2 Security Leadership Event 9 SecureAsia@Manila 2013 www.informationsecurityasia.com Keynote Speaker – Honorable Jejomar C. Banay Honorable Jejomar C. Binay, MNSA Vice President of the Republic of the Philippines VP Jejomar Binay was inaugurated as the 15th Vice President of the Philippines. He was born on 11 November 1942 to Diego Binay and Lourdes Cabauatan. A true man of the common people, he grew up in Makati and Pasay. Orphaned at an early age, he supported himself through law school, shunned the corporate world for the parliament of the streets, and stood tall at the barricades at EDSA during those glorious four days in February 1986. He is a product of the Philippine public school system. He graduated with honors from the Philippine Normal College Training Department, and the University of the Philippines Preparatory School. He graduated with a degree in political science and bachelor of law from the UP College of Law. He passed the bar exams in 1968, and took master courses in public administration and law at UP and the University of Sto Tomas, respectively. He also took up graduate studies at the National Defense College of the Philippines, the Command and General Staff College, the University of Asia and the Pacific, the Joint Services Command Staff College, and the UP School of Urban and Regional Planning. He was senior executive fellow of the John F. Kennedy School of Government at Harvard University. After the EDSA Revolution, President Corazon C. Aquino appointed him acting mayor of Makati. Jejomar was Mrs. Aquino’s first appointed local official. For 20 years, Jejomar presided over the phenomenal growth of his Makati, steering the once backward municipality into a vibrant and modern metropolis. Jejomar Binay has become an inspiration and a role model to other leaders of the nation. As Vice President of the Republic of the Philippines, he is ready to do his share in facing the new challenges in his career and in the life of the nation. SecureAsia Features Top-notch Speakers From the Industry (Partial): Honorable Jejomar C. Binay, MNSA Vice President of the Republic of the Philippines W. Hord Tipton, CISSP-ISSEP, CAP, CISA, CNSS Executive Director, (ISC)² Former CIO, U.S. Department of the Interior, U.S.A. An (ISC)2 Security Leadership Event 10 SecureAsia@Manila 2013 www.informationsecurityasia.com Honorable Voltaire T. Gazmin Secretary of National Defense, Republic of the Philippines Rear Admiral Roberto Q. Estioko, AFP(Ret), Ph.D., MNSA Executive Vice President, NDCP Alumni Association, Inc. Stuyvesant Lim Regional Sales Director, Trustwave Pierre Noel Chief Security Officer and Advisor, Asia Microsoft Corporation Prof. Corey Schou, Ph.D., Fellow of (ISC)², CSSLP Director, National Information Assurance Training and Education Center (NIATEC), U.S.A. University Professor of Informatics, Professor of Information Systems, Associate Dean College of Business, Idaho State University, U.S.A. Vice Chairperson, (ISC)² Board of Directors Honorable Mario G. Montejo Secretary, Department of Science and Technology (DOST), Republic of the Philippines Haruto Kitano, CISSP, JGISP Senior Manager Deloitte Tohmatsu Risk Services Co., Ltd. Member, (ISC)² Asian Advisory Board . S.C. Leung, CISSP Senior Consultant, Hong Kong Computer Emergency Response Team Coordination Centre, Hong Kong Gab Gennai ArcSight Solutions Evangelist - APAC HP Enterprise Security Products Arthur Woo, CISSP, CCSR General Manager, Samsung SECUI Global Business Development Unit, Korea (A Subsidiary of Samsung Group) An (ISC)2 Security Leadership Event 11 SecureAsia@Manila 2013 www.informationsecurityasia.com Wim Remes, CISSP Managing Consultant, IOActive, Belgium Secretary, (ISC)² Board of Directors Dr. Meng-Chow Kang, CISSP, CISA Director and CISO, APJC Region Cisco Systems, Inc., Singapore Member, (ISC)² Asian Advisory Board Freddy Tan, CISSP Cyber Security Strategist, Public Safety and National Security, Microsoft Asia, Singapore Chairperson, (ISC)² Board of Directors Co-Chairperson, (ISC)² Asian Advisory Board Shirley Marie P. Plaza, MNSA Secretary-General, NDCPAAI Consultant, Office of the Vice President, Republic of the Philippines David Melnick, CISSP, CIPP, CISA National Principal, Security, Privacy and Data Protection Practice, Deloitte & Touche LLP, U.S.A. Member, (ISC)² Board of Directors Director General Alan D.L. Purisima Chief, Philippine National Police Dan Davis, CISSP Director, MSS Global Security Operations Trustwave Dennis C. Luyahan President and CEO SYNETCOM PHILIPPINES, INC Greg Thompson, CISSP VP Enterprise Security Services Scotiabank Group, Canada Member, (ISC)² Board of Directors . Sachin Malik Senior Premier Field Engineer Microsoft Corporation India Pvt. Ltd. An (ISC)2 Security Leadership Event 12 SecureAsia@Manila 2013 www.informationsecurityasia.com Chuan-Wei Hoo, CISSP, CISA, CFE, BCCE Security Information Officer BT Advise Assure, BT Global Services Prinya Hom-anek, CISSP, CSSLP, SSCP, SANS GIAC, GCFW, CGEIT, CRISC, CISA, CISM President & Founder, ACIS Professional Centre Thailand Member, (ISC)² Asian Advisory Board Prof. Jill Slay AM, Ph.D., FACS, CP, Fellow (ISC)², CISSP, MIEEE Professor of Forensic Computing Dean: Research, Division IT, Engineering and the Environment, University of South Australia Executive Dean IT, Polytechnic of Namibia Member, (ISC)² Board of Directors Diana-Lynn Contesti, CISSP-ISSAP, ISSMP, SSCP, CSSLP ISO, ArcelorMittal Dofasco, Canada Member, (ISC)² Board of Directors Honorable Leila M. de Lima Secretary, Department of Justice, Republic of the Philippines Ryan Matias Pre-Sales Lead for Security MDI Systems Integration, Philippines Lito Averia ISOC Philippines Chapter An (ISC)2 Security Leadership Event 13 SecureAsia@Manila 2013 www.informationsecurityasia.com VIP Attendees, Ambassadors and DOST and AFP Generals: • Honorable Jejomar C. Binay, Vice President of the Republic of the Philippines • Rear Admiral Roberto Q. Estioko, Executive Vice President, NDCP Alumni Association, Inc, Republic of the Philippines • Honorable Voltaire T. Gazmin, Secretary of National Defense, Republic of the Philippines • Sanjay Bahl, National Computer Emergency Response Team (CERT), India • Ryan, Yong Nam Kang, Lenovo, South Korea • Dr. Jae-Woo Lee, Dongguk University, South Korea • Greg Mazzone, KPMG Canberra, Australia • Prof. Hiroshi Yasuda, Tokyo Denki University, Japan • Doug Andre, Federal Network Security Branch, U.S.A. • Flemming Faber, Danish Government, Denmark • Dan Houser, Global 100 healthcare organization, U.S.A. • Dave Lewis, Advanced Micro Devices, Canada • Richard Nealon, Irish bank, Europe An (ISC)2 Security Leadership Event 14 SecureAsia@Manila 2013 www.informationsecurityasia.com Delegate’s Comments 82% concluded their overall satisfaction with the conference from good to excellent 80% concluded their overall satisfaction with the program content presented from good to excellent 73% concluded their overall satisfaction with the management of the conference from good to excellent, items including - Registration: 87% from good to excellent. - Conference Venue: 90% from good to excellent. - Audio and Visual: 83% from good to excellent. - Food and Beverage : 85% from good to excellent. Over 88% of delegates are interested in participating in the next event An (ISC)2 Security Leadership Event 15 SecureAsia@Manila 2013 www.informationsecurityasia.com Testimonials from SecureAsia@Manila " The presenters and presented topics are essential subject matter and very useful to security practicing profession" "Great event! The conference was very well organized and truly educational" Emmanuel Bustamante Eperformax Alvin Matabang Global Business Power Corp "The conference orgnizers are very warm and friendly. Instructions on where to proceed and what to do next are very specific and clear." "The conference is very timely and crucial especially that the Philippines is emerging as one of the world's most networked and active people in computing environment." Añovuevo Melanie Commission on Audit Jose Perlas Ir AFP An (ISC)2 Security Leadership Event 16 SecureAsia@Manila 2013 www.informationsecurityasia.com Attendee Profile By Job Function: Chief Information officer (CIO) Chief Information Security Officer (CISO) Chief Security Officer (CSO) Chief Technology Officer (CTO) Chief Operation Officer (COO) Founder Vice-President/Director of Operations Professor Board Director / Executive Director Director of Security IT/MIS Director / Director of Operations General Manager Chief Coordination Designer Network Administrator / Engineer / Technology Strategist / IT Auditor Security Product Manager Security R&D Manager System Analysis / Auditor / Consultant / Specialist Undergraduate and graduate students from department of information security Those responsible for enterprise security Those who oversee the investigation of security breaches and assist with disciplinary and legal matters associated with such breaches Those interested in developing their information security career An (ISC)2 Security Leadership Event 17 SecureAsia@Manila 2013 www.informationsecurityasia.com By Size of Company By Primary Business An (ISC)2 Security Leadership Event 18 SecureAsia@Manila 2013 www.informationsecurityasia.com SecureAsia in the Aug 8, InterAksyon.com VP Binay calls for stronger national cybersecurity policy amid rising threats http://www.interaksyon.com/infotech/vp-binay-calls-for-stronger-national-cybersecuritypolicy-amid-rising-threats Aug 8, Office of Vice President, Philippines http://ovp.gov.ph/press_releases.php?id=1957 Aug 8, Inter Aksyon Tech News Philippines VP Binay calls for stronger national cybersecurity policy amid rising threats http://www.interaksyon.com/infotech/vp-binay-calls-for-stronger-national-cybersecuritypolicy-amid-rising-threats Aug 8, Election Philippines VP Binay calls for stronger national cybersecurity policy http://www.electionsphilippines.com/vp-binay-calls-for-stronger-national-cybersecuritypolicy-amid-rising-threats-interaksyon Aug 8, Metro News Philippines CYBER SECURITY http://mb.com.ph/News/Metro_News/26097/Metro_Newsbits_for_August_8,2013 Aug 7 GMA News Philippines VP Binay urges rejection of cyber warfare tactics in natl policies http://www.gmanetwork.com/news/story/321026/scitech/technology/vp-binay-urges-rej ection-of-cyber-warfare-tactics-in-natl-policies Aug 7, Yahoo Philippines VP Binay urges rejection of cyber warfare tactics in natl policies http://ph.news.yahoo.com/vp-binay-urges-rejection-cyber-warfare-tactics-natl-1011232 62.html July 26, SecurityMatters Philippines President of the Republic of the Philippines to Provide Keynote Address at (ISC)2’s SecureAsia@Manila http://securitymatters.com.ph/president-of-the-republic-of-the-philippines-to-provide-ke ynote-address-at-isc2s-secureasiamanila-9814/ An (ISC)2 Security Leadership Event 19 SecureAsia@Manila 2013 www.informationsecurityasia.com July 19, Solar News TV Freddy Tan, Chairperson (ISC)2 Board of Directors & Clayton Jones, Managing Director, AP (ISC)2 were interviewed on Solar News in Philippines about SecureAsia@Manila http://www.solarnews.ph/media/videos/#ajaxPlayer or http://www.solarnews.ph/media/videos/ June 4, Phil Star Philippines 'Phl growth vulnerable to cyber attacks' http://www.philstar.com/nation/2013/06/04/950082/phl-growth-vulnerable-cyber-attacks June 4 Delaware News Feed http://www.denewsfeed.com/clayton/phl-growth-vulnerable-to-cyber-attacks/ May 23, Security Matters, Philippines Building a Secure Cyber World http://securitymatters.com.ph/building-a-secure-cyber-world-aug-7-8-makati-shangri-lamanila-philippines-9219/ More information about SecureAsia@Manila is available at http://www.informationsecurityasia.com/ To receive more information on SecureAsia, please contact us on: Sponsorship: Clayton Jones, cjones@isc2.org Media: Kitty Chung, kchung@isc2.org All others: SecureAsia@isc2.org An (ISC)2 Security Leadership Event 20