Showing posts with label Cisco. Show all posts
Showing posts with label Cisco. Show all posts

Monday, January 16, 2012

New Year, New Changes in Security Training!

As the new year comes upon us, vendors are rolling out some new or updated courses for the beginning of 2012, but what type of training is right for you or what new courses are worth the time and money?  The answer depends on what area of security you want to pursue.  I always recommend having a very sound understanding of the basics in networking and operating systems if you are getting into security for 2012. As for those of you who already work in security, there are some new and updated courses coming out for 2012 that are very exciting.


One of the things you need to look at is does the course help me understand the security concepts and does the course provide a hands on example for reference.  Some courses discuss a concept but then nothing to really help solidify the concept such as an example.  Also, if you are looking for the latest and greatest in concepts and examples, most vendor classes are about  6 months to a year behind.  It is up to the instructor to provide up to date examples for current concepts.  The instructors background and experience play a major role in filling in the gaps.


So what are the up to date and new courses for 2012? 


Updated Courses


Network+ - 
CompTIA has update the Network+ for 2012 with a more of an emphasis on technologies and how they relate to the OSI model.  I like the fact that they have made more of an emphasis on the areas of SANS and WANS.  However I would say that the course still covers 85% of the previous objectives.  It is not really a huge upgrade, more of an incremental update.


CEH version 7.1


Eccouncil has brought out new revision from their version 7.0 of this class.  This is a major update with even more update labs and content than the previous version 7. 


New Courses


CSAP


This is a new course from CompTIA intended to focus on the 10 year security veteran.  It focuses a lot on Enterprise LAN and WAN security.  As of this writing not to much is known about the CSAP and it may be a while before we know anything more definitive.


Good luck in 2012 and hope you have a great year.

- Tom Pruett, Cisco & Security Expert; MCT, CTT+, CISSP, CWNA, CEH, CHFI, CCSI, CCNA, MCSE LinkIn with Tom

Bookmark and Share

Tuesday, January 3, 2012

Where is Security Headed in 2012?


2011 was a very difficult year for IT Security.  It seems as though everyone is now taking security very seriously and are now trying to make up for it.  Hackers have definitely gained the advantage and those in security are slowing losing ground.  The reasons for this are many, some are business, some are technology and some are the fact that a lot of companies are just now looking at security.  There is plenty of blame to go around; however hackers may be winning the battle now but are far from winning the war.   None of this was more real to me than after attending Hacker Halted 2011.  

After being exposed to so many new attack methodologies and threats in this cyber war, I came to the opinion that it is still in the reality that we can combat these new threats.   The realization from those on the front line, the trenches of IT security, is still upbeat and hopeful.  Most believe it will take a concerted effort by everyone to gain the upper hand because this is not a war that is won or lost but fought to gain or maintain the upper hand.
 
So what are the challenges for 2012?  This time of year everyone has put out a list of what to look for in the coming year.  I thought I might give a few thoughts on what I think are the main challenges going forward are for 2012.  You’ll see some are challenges we have had for a few years and some are new.
 
1.    Mobile technology threats
Smart phones are around 30% of the phone market.  Users use their phones from getting the latest sports news to paying bills.  The ability now for users to have portable technology almost like a computer, more than doubles the vulnerabilities on a network.  The number will increase over the year because smart phones are just about all that being introduced to the market.  The tablet market is growing by leaps and bounds.  Phones and tablets portability and complexity provide new challenges for securing data.  This is the new frontier of hacking victims.   
 
2.    Small businesses (SMBs) will enter the crosshairs of cyber attacks
SMB’s are the new large victims of hackers.   These types of businesses are the last ones to really start understanding security and its impact.  No more can they just focus on revenue.  What happens when you have no way in making revenue because of a security breach?  SMB’s are the most susceptible to a cyber-attack because of the lack of attention to security.  Although SMB’s are behind, they will be catching up in the coming year.
 
3.    Social media will increase in popularity as a conduit for social engineering attacks
Social media will continue to increase in popularity as the most effective way for social engineering attacks. Social media is fast being adopted by small and large businesses.  Companies can expect to see more social media profiles used as a way for social engineering tactics.  Hackers will use clever tactics to trick end-users into disclosing sensitive and private information and to downloading malware.  Facebook with its 850 million users are prime targets for data breaches.
 
4.    Companies will continue to overlook key vulnerabilities, hoping and waiting for governmental compliance to drive security. 
Governmental regulations remain the yardstick by which most company’s judge and conduct security.  Using a checklist that is developed for security initiatives is dangerous because a number of security regulations overlook basic IT security controls. Sure these regulations address the need for encryption or the development of an incident response plan but few require a wide range of best-practice controls such as up-to-date anti-virus software. More breaches occur as a result of security gaps.
 
5.    Cloud computing services, a storm is coming.
Cloud services continue to gain in popularity, so too will related security breaches will also flourish. Companies are smartly embracing the cloud for the associated cost savings and ease of use. These types of services have been around for years, it has only been in the last couple of years due to increased and stable bandwidth that companies are looking at cloud services.  Unfortunately, current reports indicate that companies are underestimating the importance of security due diligence when it comes to using these cloud providers.   

This is only a few of the security challenges we face in the future.  2012 will see more vulnerabilities, threats and exploits than in any time in the history of security.

- Tom Pruett, Cisco & Security Expert; MCT, CTT+, CISSP, CWNA, CEH, CHFI, CCSI, CCNA, MCSE LinkIn with Tom

Bookmark and Share

Friday, July 29, 2011

The 5 Biggest IT Security Mistakes

I was forwarded a very interesting article yesterday from Network World.

Number 4 on the list is "Not preparing for data breach".  Interesting to note, I would say this is number 1.  In my course of work as both a consultant and instructor, I am still amazed at how many companies are lacking in IT security preparedness.  What could be more important than protecting a companies assets?


I understand the need for a business to get revenue to pay the bills.  I also understand that one security breach can also cost a company revenue or even put a company under.  Being prepared for a breach and protecting from a breach are important so a company can continue to do business.  If there is an interruption in service or access to assets, it does not take long for a company to be out of business. 


Security is a hot topic right now in IT, lets hope more companies get on board....

- Tom Pruett, Cisco & Security Expert; MCT, CTT+, CISSP, CWNA, CEH, CHFI, CCSI, CCNA, MCSE LinkIn with Tom

Bookmark and Share

Wednesday, July 6, 2011

You Want To Be In Security?

As a consultant and instructor, one of the questions I get all the time is "I would like to move into the field of security, what do I need to do?" My answer is "What area of security?" That usually has the person pause and say "Security in general." I say "Well, we all are in security in general."

 

My point in making that statement is to help people understand that in IT we all practice security in some form, but there are a lot of different areas of security and those different areas require a different knowledge base. However there is a base knowledge of security that is needed no matter what area of security you go into. Once this base area of security knowledge is obtained then you can pursue a more distinct area of security.

One of the key components of getting into security is experience, which cannot be taught is must be learned. Experience in IT is crucial no matter what area of IT you currently work. Experience gives you a period of time in which you can learn from troubleshooting and implementation techniques that can you use in security. Lets say for example you have been working as an Exchange Server admin for 5 years. Well you probably have been exposed to email malicious code, smtp relay and spam which in turn will help you when you move into the areas of email security. I usually say at least 5 years of good admin experience with a any vendor is a good starting point for most people.

 

So lets say you have the experience, what type of training can help you get into security? I believe it starts with a good understanding of networking and security. There are three classes I always recommend:

1. Network+ - for a good understanding of all of the areas of networking

2. Security+ - for a good understanding of the basics of security

3. Cisco ICND1 and ICND2 - to understanding how network traffic is moved within different areas of the network. Cisco is not the only vendor, any vendor for routing and switching will due.

 

I would also take them in that order. The reason why is because they build upon each other. Each class provides the basis of information for the next class. It is not required, but recommended.

 

After that, I always encourage certification in these areas as well, but it is not required. Certification in these classes shows you took the time ensure you understand the basics of the areas, however it does not prove proficiency.

Next, then you can explore the different areas of security in which you want to specialize in such as:

1. Firewall

2. IDS/IPS

3. Penetration Testing

4. Vulnerability Testing

5. Auditing

I would also advise taking vendor specific training for these different areas such as VMWare, Cisco, Eccouncil and Microsoft. Finally after a you spend some time in security, you can go after the much coveted and difficult CISSP. The most heralded and sought after security certification.

 

I hope this outline of security areas and training helps you decide what area of security you would like to pursue. When you're ready, be sure to call us here at Centriq about getting the training you need.

 
If you have any questions or comments please feel free to email me.


- Tom Pruett, Cisco & Security Expert; MCT, CTT+, CISSP, CWNA, CEH, CHFI, CCSI, CCNA, MCSE LinkIn with Tom

Bookmark and Share

Thursday, July 22, 2010

#1 Security Rule - Assume You Have Been Hacked


If you start with this rule, you will have a better handle on your security.

http://tiny.cc/ou7vt


- Tom Pruett, Cisco & Security Expert; MCT, CTT+, CISSP, CWNA, CEH, CHFI, CCSI, CCNA, MCSE LinkIn with Tom


Bookmark and Share