Loading…
Friday, April 27 • 14:00 - 14:45
Patching: Show Me Where It Hurts

Sign up or log in to save this to your schedule, view media, leave feedback and see who's attending!

Feedback form is now closed.
Patching - it's complicated!  As much as we like to point fingers of blame and malign the processes in place, the fact is that one size does not fit all when security updates get issued.

What's the definition of insanity: doing the same thing over and over. Organizations at every level seem to be struggling with staying on top of patching, but it feels more like a necessary evil rather than a best practice.

Ignorance is not bliss when it comes to uncovering longstanding widespread vulnerabilities and attempting mitigation. As Meltddown and Spectre have painfully demonstrated, we're damned if we do and damned if we don't.

I've done some real life research into the issues to find new approaches to an old problem. We need to go beyond just finding the sweet spot between mitigating business risk with vulnerability exposure. Let's talk about how can we fix this process that seems inherently broken, especially as it now affects IoT, OT and medical devices. Because the cure isn't supposed to be worse than the disease.

Speakers
avatar for Cheryl Biswas

Cheryl Biswas

Threat Intel Specialist, TD Bank
Cheryl Biswas is a Threat Intel Specialist with TD Bank in Toronto, Canada. She gained initial access to InfoSec through a helpdesk backdoor, pivoted into roles for vendor and change management, jumped a gap into privacy and DR/BCP, then laterally moved into security audits and assessments... Read More →


Friday April 27, 2018 14:00 - 14:45 ADT
Track 1 - Ballroom B1/B2