Security CPE

308 readers
1 users here now

Video and audio media that count towards your CPE (Continuing Professional Education) requirements for GIAC, CISSP, CISM, CRISC, CCSP, CompTIA certs.

Mostly conference talks and podcasts.

FAQ

founded 1 year ago
MODERATORS
1
 
 

Will Machine Learning Replace The WAF? - John Graham-Cumming

Based on 20 years of experience using machine learning and keyword/pattern based systems this talk will look at the impact of machine learning on WAFs and how it can be used to effectively block malicious HTTP traffic.

John Graham-Cumming is CTO of Cloudflare and is a computer programmer and author. He studied mathematics and computation at Oxford and stayed for a doctorate in computer security. As a programmer, he has worked in Silicon Valley and New York, the UK, Germany, and France. His open source POPFile program won a Jolt Productivity Award in 2004

2
1
submitted 1 year ago* (last edited 4 months ago) by [email protected] to c/[email protected]
3
 
 

Schedule from the website

BSides PDX, Portland - Livestreams

BSides Portland is a tax-exempt charitable 501(c)(3) organization founded with the mission to cultivate the Pacific Northwest information security and hacking community by creating local inclusive opportunities for learning, networking, collaboration, and teaching.

BSides PDX on Mastodon

4
 
 

Utah’s Premiere Cyber Security Conference

October 22-25, 2024

Utah Valley Convention Center — Provo, Utah

SAINTCON 2024 Schedule

SAINTCON 2024 Livestreams

5
6
7
1
submitted 1 week ago* (last edited 6 days ago) by [email protected] to c/[email protected]
 
 

Schedule

Live Stream Track 1

The Track 2 audio is difficult to understand and the video shows the presentation very badly. Live Stream Track 2

Live Stream Track 3

8
9
 
 

For CPE purposes, this is a list of linked SANS webcasts from January 2022-2024 (up to October 10) primarily English language only. SANS Webcasts are useful if you are in a pinch time-wise in your current cycle as you can download the certificate and slides etc. without actually watching the webcast (SANS registration required). I am not advocating this as a general approach but it can be helpful if you are running on empty and need a last few CPEs.

I scraped these primarily by hand so please forgive aspects such as the lack of a space between titles and presenters. Hopefully not duplicative of other similar resources but sharing in any event. If anyone can direct me to similarly curated resources that I may have overlooked, please do.

https://docs.google.com/spreadsheets/d/1AdlvuxA6IMtFCJa5qAa-Krbl2P5sEeThwW3HO2S8EU8

10
 
 

This lecture given onsite at MIT Lincoln Laboratory on 25 April 1985 coveres many salient points still relevent today.

Rear Admiral Grace Hopper's famous MIT Lecture

Grace Brewster Hopper (née Murray; December 9, 1906 – January 1, 1992) was an American computer scientist, mathematician, and United States Navy rear admiral.[1] She was a pioneer of computer programming. Hopper was the first to devise the theory of machine-independent programming languages, and used this theory to develop the FLOW-MATIC programming language and COBOL, an early high-level programming language still in use today. She was also one of the first programmers on the Harvard Mark I computer. She is credited with writing the first computer manual, "A Manual of Operation for the Automatic Sequence Controlled Calculator."

Before joining the Navy, Hopper earned a Ph.D. in both mathematics and mathematical physics from Yale University and was a professor of mathematics at Vassar College. She left her position at Vassar to join the United States Navy Reserve during World War II. Hopper began her computing career in 1944 as a member of the Harvard Mark I team, led by Howard H. Aiken. In 1949, she joined the Eckert–Mauchly Computer Corporation and was part of the team that developed the UNIVAC I computer. At Eckert–Mauchly she managed the development of one of the first COBOL compilers.

11
1
HOU.SEC.CON. 2024 (www.houstonseccon.com)
submitted 3 weeks ago by [email protected] to c/[email protected]
12
1
submitted 3 weeks ago* (last edited 3 weeks ago) by [email protected] to c/[email protected]
13
 
 
14
 
 

Podcast

Why Aren't More Defenders Winning? Defender’s Advantage and How to Gain it!

Guest: Dan Nutting, Manager - Cyber Defense, Google Cloud

Topics:

What is the Defender’s Advantage and why did Mandiant decide to put this out there?

This is the second edition. What is different about DA-II?

Why do so few defenders actually realize their Defender’s Advantage?

The book talks about the importance of being "intelligence-led" in cyber defense. Can you elaborate on what this means and how organizations can practically implement this approach?

Detection engineering is presented as a continuous cycle of adaptation. How can organizations ensure their detection capabilities remain effective and avoid fatigue in their SOC?

Many organizations don’t seem to want to make detections at all, what do we tell them?

What is this thing called “Mission Control”- it sounds really cool, can you explain it?

Resources:

Defender’s Advantage book

The Defender's Advantage: Using Artificial Intelligence in Cyber Defense supplemental paper

15
 
 

Podcast

Transcript

Join G. Mark Hardy in Torremolinos, Spain, for a deep dive into the security of Generative AI. This episode of CISO Tradecraft explores the basics of generative AI, including large language models like ChatGPT, and discusses the key risks and mitigation strategies for securing AI tools in the workplace. G. Mark provides real-world examples, insights into the industry's major players, and practical steps for CISOs to balance innovation with security. Discover how to protect sensitive data, manage AI-driven hallucinations, and ensure compliance through effective governance and ethical guidelines. Plus, get a glimpse into the future of AI vulnerabilities and solutions in the ever-evolving tech landsc

16
17
18
1
SEC-T 2024 (infosec.pub)
submitted 1 month ago* (last edited 1 month ago) by [email protected] to c/[email protected]
19
20
1
submitted 1 month ago* (last edited 1 month ago) by [email protected] to c/[email protected]
21
 
 

Free and Open Source Software Conference.

Free Software and Open Source - these are the topics of FrOSCon (Free and Open Source Software Conference). Every year in August the computer science department of the University of Applied Sciences Bonn-Rhein-Sieg, supported by FrOSCon e.V., will organize an exciting program with talks and workshops for visitors of all ages

Schedule

Videos

22
23
24
1
Global AppSec 2024 Lisbon (lisbon.globalappsec.org)
submitted 2 months ago by [email protected] to c/[email protected]
25
 
 

SLEUTHCON is a forum for identifying and exploring cybercrime and financially-motivated threats. This conference will highlight the work done by cybersecurity researchers, defenders, academics, law enforcement, and others.

Speakers on the website

Sleuthcon 2023 videos

view more: next ›