
Preach it don´t breach it -Cyber Security and Data Protection as partner in crime

To build a rock-solid Cyber Security program, there is no way around data protection and privacy these days. Cyber attackers often target assets, which store personal data. Such kind of unlawful disclosure trigger multiple notification requirements - depending on applicable data protection laws. Cyber Security as partner in crime supports the technical stuff like root cause analysis, containment, and mitigation measures. So keep personal data safe, respect data protection and privacy: preach it - don´t breach it!
We would like to share how to build a proper incident response process including state of the art cyber security plus keeping data protection and privacy obligations close at heart. Working both at a big European Software company and incident response being our day-to-day job, we would be very happy to share our experience. Both fields of expertise have huge potential for complementing each other and quite frankly: it is a lot of fun to work collaboratively in this ever-changing, super dynamic and international environment.

Additional information

Type Vortrag (kurz)
Language English

More sessions

Tom Gries (TOMO)
Raum 208 (HFG)
Und? Heute schon über Deine Passwortsicherheit nachgedacht? Wie sicher ist denn Dein Passwort und warum muss nur das Passwort sicher sein? Gibt es überhaupt sichere Passwörter oder sind das nur Floskeln? Alles gute Fragen und vielleicht diskutieren wir die in einem anderen Talk. Aber wie gehen Angreifer vor? Wie cracken sie (clever) Passworthashe? Das ist die Frage, die wir in diesem Talk behandeln und auch beantworten werden. Dabei wirst Du selber Hand anlegen und auf einem speziell dafür ...
Kevin Heneka
Übersicht über gegenwärtige und zukünftige EU-Standards zur Cybersicherheit von IoT Produkten
ZKM Seminarraum
Programme gleichzeitig im selben Speicher ausführen: was könnte schon schiefgehen? Hier geht's um das wie und anschließend selber mal hands-on damit spielen. Wir schauen uns den Unterbau an, bauen eigene kleine Programme die dann gegenseitig versuchen sich zu überschreiben.
Elise Mansbridge
Attacking and gaining arbitrary code execution at the highest security level of the security coprocessor used on the Tegra X1
Let's break out of standard testing frameworks. In this talk, you'll learn about mobile app security, and where testing frameworks can help, and where security researchers have to come up with their own threat models and attacks.
Daniel Mende
Blauer Salon
In this talk we will give an overview of the structure in general and the security features in particular of 2G, 3G, 4G and 5G Telecommunication Networks and how they compare to each other. Further more we will show some successful attacks against the security of these networks from the past. With 5G this topic is important as never as, not only in the European Union, the new 5G infrastructure is considered critical infrastructure and therefore has an increased requirement for security. If you ...
Competitive hacking as a team sport? Physical flags are out of fashion, therefore this talk gives an introduction to virtual Capture the Flag (CTF). CTF is about finding and exploiting purposefully placed security vulnerabilities during usually weekend long events. The targets and vulnerabilities range from simple programs and websites with classical security issues to modern technologies requiring cutting edge exploitation techniques. To not just bore you with dry theory, we show you how to ...