TOGETHER, WE

RESPOND

FASTER

2019 臺灣資安大會

MAR. 19 – 21

臺北國際會議中心 & 世貿一館 2 樓

3月19日(二)
10:05 - 10:10
KEYNOTE
總統致詞
  • 3月19日
  • 10:05
  • TICC 大會堂 (3樓)

Keynote Speaker

總統 蔡英文
   
11:50 - 13:15
展覽攤位參觀 | 互動交流

Technology Briefing

13:15 - 13:45
The Enterprise Immune System: Using Machine Learning for Next-Generation Cyber Defense
  • 3月19日
  • 13:15
  • TICC 大會堂 (3樓)

Please see below the abstract of our speaking session:

The Enterprise Immune System: Using Machine Learning for Next-Generation Cyber Defense 

From insiders to sophisticated external attackers, the reality of cyber security today is that the threat is already inside. A fundamentally new approach to cyber defense is needed to detect and investigate these threats that are already inside the network - before they turn into a full-blown crisis. 

Based on unsupervised machine learning and probabilistic mathematics developed by specialists from the University of Cambridge, new ‘immune system’ technologies are capable of learning the ‘self’ of an organization. By analyzing every network, device, and user, and modeling them as they go about their day-to-day activity, the Enterprise Immune System can establish a highly accurate understanding of normal behavior. It can therefore spot abnormal activity as it emerges, and even take precise, measured actions to automatically curb the threat. 

Rules and signatures are not keeping pace with today’s rapidly evolving cyber attacks. The Enterprise Immune System represents a fundamental step-change in automated cyber defense,  is relied upon by organizations around the world, and can cover up to millions of devices.  

In this session, learn: 
•    How new machine learning and mathematics are automating advanced cyber defense 
•    Why 100% network visibility allows you to detect threats as they happen, or before they happen
•    How smart prioritization and visualization of threats allows for better resource allocation and lower risk 
•    Real-world examples of unknown threats detected by ‘immune system’ technology

  • Network Security
  • Threat Intelligence
  • Incident Response

Speaker

Michael Beck
Darktrace Global Head of Threat Analysis
14:05 - 14:35
14:55 - 15:25
16:15 - 16:45
17:05 - 17:35

Cyber Leadership Forum

 

IoT 與硬體安全論壇

資安 101

醫療資安論壇

14:55 - 15:25
16:15 - 16:45
3月20日(三)
12:00 - 13:10
展覽攤位參觀 | 互動交流
13:10 - 13:40

Technology Briefing

14:00 - 14:30
14:50 - 15:20
16:10 - 16:40

大師面對面

16:10 - 16:40

威脅與情資論壇

17:00 - 17:30

AI 資安論壇

17:00 - 17:30

GDPR 論壇

17:00 - 17:30
3月21日(四)

Technology Briefing

11:00 - 11:30
展覽攤位參觀 | 互動交流
11:30 - 12:00
強化安全營運暨對抗複雜網絡攻擊之新一代對策
  • 3月21日
  • 11:30
  • TICC 201 AF

Orchestrating Incident Response to battle complex cyberattacks 

觀察全球資安法規的新趨勢,要求「事後應變與通報」愈趨嚴格。也因此,資安事件回應 (Incident Response, 或稱 IR) 解決方案在市場上開始湧現,許多安全團隊正在應用這些協調自動化 (Orchestration and Automation) 的技術來簡化日常任務,例如事件分級分類和鑑識調查。通過自動執行重複或耗時的任務,例如查找威脅情報和從資訊安全事件管理 (SIEM) 平台上查詢相關資訊,資安團隊可以讓最珍貴的資安分析專員,更專注於具戰略性的任務。

但事件回應協調自動化 (IR Orchestration) 的價值可以遠遠超出最初的應變階段。若能正確應用,事件應變的協調自動化可以幫助資安營運中心 (SOC) 不僅在事件發生後才回應,更提升到得以協調自動化整個資安事件生命週期中的所有任務。這包括自動執行補救措施,例如重置憑據和應用修補程序,以及透過更新防火牆或 SIEM 規則來預防未來的攻擊。

講者除了將分享事件應變協調自動化的價值,更將透過真實案例的實際演示,幫助與會者認識新一代資安事件回應方法,如何將案件處理的協調、人工智能和專業人員的智慧、與工具技術自動化,整合到單一平台中,加快事件回應的速度,降低或控制企業可能因資安事件造成的損失。

  • Incident Response

Speaker

張嘉顯
IBM Security 產品研發實驗室 Resilient 部門 產品開發工程師
13:10 - 13:40
14:00 - 14:30
14:50 - 15:20
16:10 - 16:40

金融安全論壇

14:50 - 15:20

Cyber Leadership Forum

威脅與情資論壇

工業安全論壇

軟體安全論壇

*主辦單位保留活動議程與主講人變更之權利