copyright | disclaimer | privacy | contact  
Australia's National Computer Emergency Response Team
World Class Conference: Be Part of It Search:
 

AusCERT2005

AusCERT Asia Pacific
Information Technology Security Conference
Secure by design - the only choice

22nd - 26th May 2005 - Royal Pines Resort - Gold Coast, Australia


Day Zero: Sunday, 22nd May 2005


From 1300

Golf (two tee start from 1200 through 1300)

1500 - 2100

Conference registration

1800 - 2000

Welcome Reception


Day One: Monday, 23rd May 2005


0800 - 1730

Registration desk open

0820 - 0850

Coffee Break

0850 - 0900

Opening remarks
Nick Tate, Director, AusCERT
Graham Ingram , General Manager, AusCERT

0900 - 0950

Keynote address

Security Design: What Works, What Doesn't, and Why
Bruce Schneier, CTO, Counterpane Internet Security

0950 - 1025

Panel: Ask the experts

The Internet - 10 years from now - Utopia or dystopia?
Kc Claffy, (Director, Cooperative Association for Internet Data Analysis)
Bruce Schneier (CTO, Counterpane Internet Security)
Richard Thieme (Professional speaking, writing, consulting, ThiemeWorks)
Facilitator: Mark McPherson, Manager, Training and Education, AusCERT

1025 - 1105

The Cracking of the Cipher Challenge
Simon Singh, Author, Journalist and TV Producer

1105 - 1135

Morning Break

Technical Stream

Business Stream

Sponsors Stream

Sponsors Stream

1135 - 1215

Artifact Analysis - Methodologies and Trends
Kevin J. Houle
Artifact Analysis Team Leader
CERT Coordination Center
2005 Australian Computer Crime and Security Survey
Jamie Gillespie
Senior Security Analyst,
AusCERT
Kevin Zuccato
Director,
Australian High Tech Crime Centre
How to securely deliver Access to your organisation. Why Access is Strategic to Security and your Success
Phil Montgomery
Citrix Systems
The DNA of IT Security
Oscar Marquez
Tier-3

1220 - 1300

Building an Enterprise E-mail Filtering Gateway
Bojan Zdrnja
The University of Auckland
10 New Year's Resolutions for 2005 - A Mid-Year Review --- How are we doing?
William Pelgrin
Director, NYS Office of Cyber Security and Critical Infrastructure
Security Myths
Jesper Johansson
Microsoft
Integrate or bust: Why spyware isn't the only internet security threat
Charles Heunemann
SurfControl

1300 - 1420

Lunch

1330 - 1410
(during lunch)

No Presenation Scheduled

Application Security - Why conventional firewalls, IPS, HIDS and antivirus are not enough
Mark Verbloot
F5 Networks

Corporation Patterns, Best Practices & Standards for Deploying Federated Identity Management Solutions in a Web Services world
Venkat Raghavan
IBM, USA
Are your valuable data assets secure?
Nicko van Someren
nCipher Australia

1420 - 1500

Spyware - a Microsoft perspective
Jason Garms
Anti-Malware Product Team, Microsoft

Forensics, Privacy and ISP Liability - Weaving and Dodging Risk
Phillip Hourigan
Partner, Deacons
Strong Authentication for the Internet
Nicolas Popp
VeriSign
Preparing for Tomorrow's Threats, Today
Vincent Gullotto
McAfee

1505 - 1545

Bots and Botnets - The Automation of Computer Network Attack
David Dittrich
Senior Security Engineer, Washington University
Writing Practical Information Security Policies
Charles Cresson Wood
(CISA, CISM, CISSP) Independent Information Security Consultant, Sausalito, California
The New Reality in Security Management: Effective Security means Business Alignment
Malcolm Lister
Computer Associates
Technology to Support Incident Management & Response
Scott Mann
Dimension Data

1545 - 1615

Afternoon Break

1615 - 1655

The Active Response Continuum to Cyber Attacks
David Dittrich
Senior Security Engineer, Washington
Web Application Security - The next BIG challenge
Oliver Binz
General Manager, b-sec
From Chaos to Control: Assuring Service by Securing the Enterprise
Chris Pick
NetIQ
X-posing Emerging Internet Security Threats and Protecting the Enterprise
Graham Connolly
Websense

1655 - 1705

Coffee Break

BOF Sessions

1705 - 1745

Bots Q&A session
David Dittrich
Senior Security Engineer, Washington
Nicolas Fischbach
Senior Manager, Network Engineering Security, COLT Telecom
AusCERT member only session
AusCERT
Seeing is Believing
Paul Ducklin
Sophos
Aspects of a secure and assured infrastructure using a 'layered' approach to security
Greg Bunt
Juniper Networks

1800 - 2000

Sponsors Cocktail Party


Day Two: Tuesday, 24th May 2005


0800 - 1730

Registration desk open

0820 - 0850

Coffee Break

0850 - 0900

Opening remarks
Nick Tate, Director, AusCERT
Graham Ingram , General Manager, AusCERT

0900 - 0950

Keynote address

Top problems of the Internet and what we can do to help
Kc Claffy, Director, Cooperative Association for Internet Data Analysis

0950 - 1030

Getting Clear About Information Security Roles & Responsibilities
Charles Cresson Wood, (CISA, CISM, CISSP) Independent Information Security Consultant, Sausalito, California

1030 - 1100

Morning Break

Technical Stream

Business Stream

Sponsors Stream

Sponsors Stream

R&D Stream

1100 - 1140

I am not a target
Ron Brandis
Principle Information Security Consultant, Electronic Warfare Associates-Australia
Threats to the Net: an overview of the U.S. perspective of the changing nature of computer crime illustrated by selected case studies
Christopher M.E. Painter
Deputy Chief, Computer Crime and Intellectual Property Section at the Department of Justice USA
Architecting a Secure Future??
Stephen MacDonald
Check Point Software Technologies
Introducing Next Generation Prevention Technologies that Keep YOU Ahead of the Threat
Steve Reddock
Internet Security Systems
Reverse Engineering of Network Signatures
Darren Mutz
University of California, Santa Barbara

1145 - 1225

Exploits . The past, the present and the future
Paul Ducklin
Head of Technology, Asia Pacific, Sophos ANZ
Threats to the Net: an overview of the U.S. perspective of the changing nature of computer crime illustrated by selected case studies (cont.)
Christopher M.E. Painter
Combining the best in antispam with the best in antivirus
Saeed Hagh
Symantec Australia
VoIP Security: What are the real issues?
Phillip Yialeloglou
Cisco Systems
Detecting Network-based Obfuscated Code Injection Attacks Using Sandboxing
Stig Andersson
Queensland University of Technology

1225 - 1345

Lunch

1255 - 1335
(during lunch)

No Presenation Scheduled

Protecting Networks against Content Based Attacks
Philip Kwan
Fortinet
Cost effective defence in-depth, providing application and content security
Christo Simeonoff
Blue Sky Industries
Borderless Security
Andrew Younger
SafeNet Australia

No Presenation Scheduled

1345 - 1425

Experience in fighting DDoS attacks
Nicolas Fischbach
Senior Manager, Network Engineering Security, COLT Telecom
Intelligent proactive network monitoring
Jacques Schuurman
Chair, SURFnet-CERT
Single Sign-On: Fact or Fiction?
Geoff Noble
RSA Security
Australian Launch of the Business Application Security Assurance Program (BASAP)
Oliver Binz
b-sec
Passive Techniques for Detecting Session Hijacking Attacks in IEEE 802.11 Wireless Networks
Rupinder Gill
Queensland University of Technology

1430 - 1510

Security's quantum future - quantum cryptography and quantum computation
Geoff Pryde
Research Fellow, Centre for Quantum Computer Technology and Physics Department, The University of Queensland
Key Guidelines in Determining Which Systems to Address First in the Battle Against Risks, Vulnerabilities & Regulatory Non-Compliance
Chris Pick
Vice-President Security Management, NetIQ
Spyware, The Rising Impact
Adam Biviano
Trend Micro
Protecting Windows from the Next Worm -- Reactive Security Solutions Are No Longer Enough
Thor Larholm
PivX Solutions
IEEE 802.11i WLAN Security Protocol - A Software Engineer's Model
Elankayer Sithirasenan
Griffith University

1510 - 1530

Afternoon Break

1530 - 1610

WarBussing: The State of Wireless Security in a cross section of a major Australian City
David Conran
Security Specialist, WebCentral
Security contracts: The devil is in the detail
Gretchen Golik
Security Architect, QANTAS Airways
Challenges we face in today's cyber world
Eugene Kaspersky
Kaspersky Lab
Protecting Your Network Perimeter Through Effective Patch & Vulnerability Management
Neal Gemassmer
PatchLink Asia Pacific

No Presentation Scheduled

1615 - 1655

Spyware - is it here to stay?
David Ahmad, Manager
Development, Symantec Corporation
AFP Case Studies - Absent Security
Darrell Betts
Team Leader, Computer Forensic Team, Australian Federal Police Matthew Thomson
Computer Examiner, Australian Federal Police
Detecting Intrusion Attacks
Eric Krieger
Secure Computing Corporation
The Importance of End Point Security in a Remote Access Environment
Chris Hopen
Aventail
The Security of Wireless Computing Technologies
David Ross
Queensland University of Technology

1655 - 1705

Coffee Break

BOF Sessions

1705 - 1745

Q&A with AFP session
Darrell Betts
Team Leader, Computer Forensic Team, Australian Federal Police
Matthew Thomson
Computer Examiner, Australian Federal Police
ISSPCS feedback forum
Mark McPherson
ISSPCS Academic Board Member, AusCERT
Nick Tate, Director, AusCERT
President ISSPCS Academic Board, The University of Queensland
Panel: Ask the experts
Malware trends
Panelists:

David Ahmad, Symantec
Paul Ducklin, Sophos
Jason Garms, Microsoft
Eugene Kaspersky, Kaspersky Lab
Vern Paxson, ICSI
Chris Pick, NetIQ

Facilitator: Eric Halil, Senior Security Analyst, The University of Queensland
Professional Association; why is it relevant for me? How can it assist me with my professional challenges and career in Australia-New Zealand?
ISSA Meeting chaired by Guy Lupo
Professional Certification; Who Wants It, Who Needs It?
ISIG meeting chaired by Mark Ames

From 1830

Board Buses for Gala Dinner


Day Three: Wednesday, 25th May 2005


0800 - 1730

Registration desk open

0820 - 0850

Coffee Break

0850 - 0900

Opening remarks
Nick Tate, Director, AusCERT
Graham Ingram , General Manager, AusCERT

0900 - 0950

Keynote address

The Zen of Network Security: Seeing Mountains, Moving Mountains
Richard Thieme , professional speaking, writing, consulting ThiemeWorks

0950 - 1030

Future Security of VoIP and SCADA
Robert Graham , Chief Scientist, Internet Security Systems (ISS)

1030 - 1100

Morning Break

Technical Stream

Business Stream

Sponsors Stream

Sponsors Stream

R&D Stream

1100 - 1140

The Threat of Internet Worms
Vern Paxson
Senior Scientist, International Computer Science Institute (ICSI) in Berkeley and Lawrence Berkeley National Laboratory
Information Security Governance
Rupert Dodds
Director of information risk management team, KPMG
Spamware, Spyware, Malware, Grayware: Do you want to "wear" the high costs?
Michael Grace
Imagineering Security Services
Next Generation Application Firewalls: IPS Replacing Current Firewalls
Amir Peles
Radware Australia
A novel application of PKI smartcards to anonymise Health Identifiers
Stephen Wilson
Lockstep Consulting

1145 - 1225

The Threat of Internet Worms (cont.)
Vern Paxson
National Laboratory
Security Management: How to implement?
Joo Soo Lim
Security Consultant, Telstra Corporation
Advances in stopping email viruses, phishing attacks and spam
Mike Bessey
IronPort Systems
Should you outsource your messaging? Managed messaging and security in a hosted environment
Greg Dickason
WebCentral
User Centric Identity Management
Simon Pope
DSTC

1225 - 1345

Lunch

1255 - 1335
(during lunch)

No Presenation Scheduled

No Presenation Scheduled

The Tipping Point - E-mail Threat Convergence
Mark Sunner
MessageLabs
Enabling Automated Policy Enforcement with Real-time Network Discovery
William Young
Sourcefire

No Presenation Scheduled

1345 - 1425

Online ID theft - the next revolution in military affairs
Graham Ingram , General Manager, AusCERT

1430 - 1520

Close note address

Why do hackers hack?
Steven Branigan, President of CyanLine, LLC, a wireless network security company

1520 - 1535

Conference Close


Day Three: Wednesday, 25th May 2005


Tutorials

1545 - 1625

Artifact Analysis Tutorial
Kevin J. Houle
Artifact Analysis Team Leader, CERT Coordination Center

Return on Investment for Information Security
David Lynas
President, David Lynas Consulting Group

1625 - 1645

Coffee Break

1645 - 1925

Artifact Analysis Tutorial (cont.)
Kevin J. Houle
Return on Investment for Information Security (cont.)
David Lynas
ISSPCS What's in it for me?
Mark McPherson,
Training Manager, AusCERT

1545 - 1805

Free Information Session


Day Four: Thursday, 26th May 2005


Tutorials

0900 - 1030

Running a high-tech investigation: it ain't just forensics...
Steven Branigan
President of CyanLine, LLC, a wireless network security company

IPV6 security threats
Darrin J. Miller
Cisco Systems

Presenting IT evidence in the Courtroom
Ajoy Ghosh
Consultant

Unix Security Audit & Control
Gary Gaskell
Security Architect, Infosec Services Pty Ltd and ISI, QUT

1030 - 1050

Morning Break

1050 - 1230

Running a high-tech investigation: it ain't just forensics... (cont.)
Steven Branigan

IPV6 security threats (cont.)
Darrin J. Miller
Cisco Systems

Presenting IT evidence in the Courtroom (cont.)
Ajoy Ghosh

Unix Security Audit & Control (cont.)
Gary Gaskell

1230 - 1330

Lunch

1330 - 1500

Identifying Weak Applications
Justin Derry
Senior Security Consultant, b-sec

Fighting Internet diseases: DDoS, worms and miscreants
Nicolas Fischbach
Senior Manager, Network Engineering Security, COLT Telecom

A 'Standards' approach to the development of system security plans
Dr Sue Dudley
Information Security Group Manager, Victoria Police

Honeynets
Lance Spitzner
President, Honeynet Project

1500 - 1520

Afternoon Break

1520 - 1700

Identifying Weak Applications (cont.)
Justin Derry

Fighting Internet diseases: DDoS, worms and miscreants (cont.)
Nicolas Fischbach

A 'Standards' approach to the development of system security plans (cont.)
Dr Sue Dudley

Honeynets (cont.)
Lance Spitzner


Conference program subject to change


feedback