data breach lessons from 2013 - eric vanderburg - codemash 2014

11
Data Breach Lessons from 2013 CodeMash 2014 January 9, 2014 © 2014 Property of JurInnov Ltd. All Rights Reserved Eric A. Vanderburg, MBA, CISSP Director, Information Systems and Security Computer Forensic and Investigation Services

Upload: eric-vanderburg

Post on 28-Jan-2015

113 views

Category:

Technology


1 download

DESCRIPTION

Eric Vanderburg, Director of Information Systems and Security at JurInnov, presents "Data Breach Lessons from 2013"at CodeMash 2014.

TRANSCRIPT

Page 1: Data Breach Lessons from 2013 -  Eric Vanderburg  - CodeMash 2014

Data Breach Lessons from 2013

CodeMash 2014

January 9, 2014

© 2014 Property of JurInnov Ltd. All Rights Reserved

Eric A. Vanderburg, MBA, CISSP Director, Information Systems and SecurityComputer Forensic and Investigation Services

Page 2: Data Breach Lessons from 2013 -  Eric Vanderburg  - CodeMash 2014

© 2014 Property of JurInnov Ltd. All Rights Reserved© 2014 Property of JurInnov Ltd. All Rights Reserved

Average breach costs $194 per record -Ponemon Institute

Financial impact of cybercrime expected to grow 10% per year through 2016 -Gartner

10% of companies experienced a data breach -Hiscox small business research

Facts and Figures

Page 3: Data Breach Lessons from 2013 -  Eric Vanderburg  - CodeMash 2014

© 2014 Property of JurInnov Ltd. All Rights Reserved© 2014 Property of JurInnov Ltd. All Rights Reserved

Types of breaches

• Insider–Accidental– Intentional

• Social Engineering• Malware• Hacking

Page 4: Data Breach Lessons from 2013 -  Eric Vanderburg  - CodeMash 2014

© 2014 Property of JurInnov Ltd. All Rights Reserved© 2014 Property of JurInnov Ltd. All Rights Reserved

2013 Breaches• Living Social

– Breach overview– Impact– Lessons learned

• Virginia Polytechnic Institute and State University– Breach overview– Impact– Lessons learned

Page 5: Data Breach Lessons from 2013 -  Eric Vanderburg  - CodeMash 2014

© 2014 Property of JurInnov Ltd. All Rights Reserved© 2014 Property of JurInnov Ltd. All Rights Reserved

2013 Breaches• University of Delaware

– Breach overview– Impact– Lessons learned

• Northrop Grumman– Breach overview– Impact– Lessons learned

Page 6: Data Breach Lessons from 2013 -  Eric Vanderburg  - CodeMash 2014

© 2014 Property of JurInnov Ltd. All Rights Reserved© 2014 Property of JurInnov Ltd. All Rights Reserved

2013 Breaches• Internal Revenue Service

– Breach overview– Impact– Lessons learned

• St. Mary’s Bank– Breach overview– Impact– Lessons learned

Page 7: Data Breach Lessons from 2013 -  Eric Vanderburg  - CodeMash 2014

© 2014 Property of JurInnov Ltd. All Rights Reserved© 2014 Property of JurInnov Ltd. All Rights Reserved

2013 Breaches• U.S. Department of Energy

– Breach overview– Impact– Lessons learned

• Michigan Department of Community Health– Breach overview– Impact– Lessons learned

Page 8: Data Breach Lessons from 2013 -  Eric Vanderburg  - CodeMash 2014

© 2014 Property of JurInnov Ltd. All Rights Reserved© 2014 Property of JurInnov Ltd. All Rights Reserved

2013 Breaches• Evernote

– Breach overview– Impact– Lessons learned

• Drupal– Breach overview– Impact– Lessons learned

Page 9: Data Breach Lessons from 2013 -  Eric Vanderburg  - CodeMash 2014

© 2014 Property of JurInnov Ltd. All Rights Reserved© 2014 Property of JurInnov Ltd. All Rights Reserved

2013 Breaches• Cogent Healthcare

– Breach overview– Impact– Lessons learned

• New York Office of the Medicaid Inspector General – Breach overview– Impact– Lessons learned

Page 10: Data Breach Lessons from 2013 -  Eric Vanderburg  - CodeMash 2014

© 2014 Property of JurInnov Ltd. All Rights Reserved© 2014 Property of JurInnov Ltd. All Rights Reserved

2013 Breaches• Republic Services

– Breach overview– Impact– Lessons learned

• Federal Reserve– Breach overview– Impact– Lessons learned

Page 11: Data Breach Lessons from 2013 -  Eric Vanderburg  - CodeMash 2014

© 2014 Property of JurInnov Ltd. All Rights Reserved© 2014 Property of JurInnov Ltd. All Rights Reserved

For assistance or additional information

• Phone: 216-664-1100• Web: www.jurinnov.com• Email: [email protected]• Twitter: @evanderburg• Facebook: www.facebook.com/VanderburgE• Linkedin: www.linkedin.com/in/evanderburg• Youtube: www.youtube.com/user/evanderburg

JurInnov Ltd.The Idea Center

1375 Euclid Avenue, Suite 400

Cleveland, Ohio 44115

Enjoy CodeMash!