Collaborating securely: Protecting Your Community and Yourself

14
Collaboratin g Securely Protecting Your Community and Yourself BEN WOELK, CISSP LEADERSHIP DAY STC SUMMIT 2016 [email protected] [email protected] 1

Transcript of Collaborating securely: Protecting Your Community and Yourself

[email protected] 1

Collaborating SecurelyProtecting Your Community and YourselfBE N WOE LK , C ISSPLE ADERSH IP DAYSTC SUMM IT 2016BE N .WOE LK@GMA IL .COM

CIA Confidentiality Integrity Availability

[email protected] 2

Top online safety practices?

3

http://googleonlinesecurity.blogspot.com/2015/07/new-research-comparing-how-security.html

[email protected]

[email protected] 4

Secure Your Computer AND Mobile Device• Anti-virus• Firewalls• Patching and updates• Passwords/

passphrases• Mobile Security Apps

Confidentiality Passwords

◦ Construct good passwords◦ Length> Complexity

◦ Single site, single password◦ Sharing passwords

◦ Password managers

Two-Factor Authentication◦ Google Authenticator◦ Tracking Logins

[email protected] 5

PassphrasesIt was a dark and stormy night

becomes ItwasaDark215&StormyNight

Length > complexity

[email protected]

Password Managers

[email protected]

[email protected] 8

Two-Factor Authentication

Availability Cloud services◦ Generic accounts

Cautions

[email protected] 9

Integrity Backups

◦ User error (sharing settings)◦ Cryptolocker◦ Cloud SLAs◦ Backup Options

Tracking Changes◦ Rights/Permissions (sharing settings)

[email protected] 10

Login Alerts

[email protected]

WordPress• KEEP EVERYTHING UP TO DATE!• Security Plugins• Certificates?• Manage Users• Change Admin account name• Use a site manager such as ManageWP• Hardening WordPress

http://codex.wordpress.org/Hardening_WordPress

[email protected] 12

Any Questions?

[email protected]