May 2021 Webinar 4: Securing Cyber-Physical Systems

When:  May 27, 2021 from 18:00 to 19:00 (PT)
Associated with  Silicon Valley Chapter
May 2021 Webinar 4: Securing Cyber-Physical Systems
Summary:
The recent Florida water plant that was the subject of a cyber-attack in February 2021 may have been regarded as a "Near Miss", but it highlights the vulnerability of the Nation’s Critical Infrastructure and cyber-physical systems, especially Water and Wastewater System and will call for an urgent overhauling of cyber defense measures including "Defense-in-Depth" strategy. Although an investigation into the attack is ongoing, it appears that whoever hacked into a water plant in Oldsmar, Florida was an unsophisticated actor accessing a poorly secured system. While the recent Florida incident was caught before it could cause and EHS issue or Public Health and Safety, it highlights a potential threat that has been of growing concern in the industry and among regulators.

Florida Water System and other similar incidents in the past have actually brought up a new issue related to “Siloed Security” environment where two security functions, namely Cybersecurity and Physical (or Facility) security would not work in unison, leaving huge holes giving easy access to attackers to perpetrate or launch coordinated attack on such disjointed and highly vulnerable cyber-physical systems. This issue continues to exist even though almost all standards like ISO 27001, NIST CSF v1.1, NERC-CIP etc. have always been recommending a “Converged” or “Integrated” approach than such “Siloed” approach to securing cyber-physical systems.
Agenda:
6:00 - 6:05 - Welcome and Introduction
6:05 - 6:45 - Session: Securing Cyber-Physical Systems
6:45 - 6:55 - Q & A
6:55 - 7:00 - Wrap-up
Speaker: Ashit Dalal

An accomplished and well experienced Cybersecurity and Risk Management Professional and Achiever with more than 20 years of relevant and hands-on experience in successfully leading & managing intricate Cybersecurity (Pre-sales, Strategy and Architect), Application Security, Vulnerability Management, Compliance and IT / Business Risk Management & Assurance / Audit projects and engagements for Fortune 500 and Public sector clients across diverse Industry and Critical Infrastructure Sectors.

CISA, CISM, CRISC, CGEIT (ISACA, USA), CSSA, CPEA, CPSA (IIA /BEAC), TUV SUD Certified Functional Engineer (CFSE), ISO 27001, ISO 20000-1, ISO 9001, ISO 14001, ISO 45001

Responsible Care Lead Auditor and Assessor.

• Bachelor in Chemical Engineering

• MBA in Finance

• More than 25 years across different Industry Sectors including Oil and Gas, Food, Petrochemicals and Chemicals, Consulting Audit, Cybersecurity, Risk Management, Process and Functional Safety with Fortune 500 Companies like Shell, IBM, Unilever etc. in India and the USA.

• Member and regular speaker of Dept. of Homeland Security (DHS) now called CISA and ICS Joint Working Group, ISACA International, ISACA Mumbai and NJ Chapters, ISA and so on

Ashit is skilled and experienced in designing and implementing security strategy and architecture to meet data segregation and regulatory and compliance requirements including:

• PCI-DSS v 3.2, GLBA, FTC, FINRA & SB 1386 of California

• GDPR, California AB 375 and EU Data Protection Compliance

• NY DFS Cybersecurity (2016) & FFIEC Cybersecurity requirements

• NIST Cyber Security Framework (CSF)

• COBIT 5 and ISO 27001 Frameworks for Risk management and Cybersecurity

• HIPAA & Health Information Technology for Economic and Clinical Health Act (HITECH)

• SSAE 18, ISAE 3402, SOC1, SOC2 and SOC3 Attestation

• OWASP Top 10 (Application Security) and San's 20 Security Controls

• DoD Directive 8570 & FISMA

• Monetary Authority of Singapore (MAS) requirements for Security for Internet Banking

• Supply Chain Security based on ISO 28000

Get our mobile apps now
Interested in speaking at our event or know someone who is?
Suggest names of speakers and/or topics for our chapter events by sending email to theboard@isaca-sv.org
ISACA Silicon Valley Job Portal
Looking for your next career move?  (or) Do you have an opening in your company/team?
ISACA helps you reach 3000+ members and non-members including ISACA certified professionals working on Information Security/ Internal Audit/ Risk Management/Governance. Post your job opening at the ISACA Silicon Valley website.
Visit our Job Portal
New Self Service Portal 
ISACA would like to introduce a new Self Service Portal  for members and non members to sign-up for our newsletters, manage your personal profile, view attended events and CPE earned.
ISACA Membership & Certification Renewal
If you haven't done already, please log on to www.isaca.org to renew your ISACA annual membership.  To complete your certification renewal, visit www.isaca.org/reportCPE to submit CPEs.
Follow us on social media 
 


Location