<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic May 2022 Meeting Minutes in Cleveland Chapter Discussion Forum</title>
    <link>https://community.isc2.org/t5/Cleveland-Chapter-Discussion/May-2022-Meeting-Minutes/m-p/52188#M13</link>
    <description>&lt;P&gt;&lt;STRONG&gt;Let’s get together &lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;(new location)&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;(ISC)2 Cleveland Chapter Meeting&amp;nbsp;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Office 365 Security and Zero Trust Concepts&lt;/P&gt;&lt;P&gt;Tuesday, May 31, 2022 at 5:30 PM.&lt;/P&gt;&lt;P&gt;Email - it's the vector for many a cyber security threat --- spam, malware infested attachments or links, phishing emails that still trip up naïve unsuspecting coworkers, ransomware and more. Of course, email is a major communication channel in this part of the 21st century. James Hopkins of Improving will present on Microsoft Office 365 Security (or lack thereof?) and Zero Trust concepts.&lt;/P&gt;&lt;P&gt;Register soon because space is limited.&lt;/P&gt;&lt;P&gt;We hope you’re able to join us!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Start: 17:43&lt;/P&gt;&lt;P&gt;Attendees: 40, 6 first time&lt;/P&gt;&lt;P&gt;Sponsor: Improving&lt;/P&gt;&lt;P&gt;Security Friends&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;CISA finds no evidence of Dominion voting machine exploited&lt;/LI&gt;&lt;LI&gt;Ransomware group forces victims to pick 5 children and buy KFC (Goodwill ransomware group)&lt;/LI&gt;&lt;LI&gt;VMware exploit released critical bypass vulnerability in multiple products&lt;/LI&gt;&lt;LI&gt;MS to force better security for all azure ad tenants&lt;/LI&gt;&lt;LI&gt;Intuit warns of QuickBooks phishing threating to suspend accounts&lt;/LI&gt;&lt;LI&gt;Verizon data breach contains personal data of employees&lt;/LI&gt;&lt;LI&gt;Saitama backdoor uses DNS tunnelling - breaks out of PC undetected&lt;/LI&gt;&lt;LI&gt;Critical Pantsdown QCT vulnerability baseboard management controller&lt;/LI&gt;&lt;LI&gt;Nearly 100k npm user creds stolen from GitHub breach&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Topic 1 - Chapter Business&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Sponsored and meeting place for the rest of the year and through Q1 2023&lt;/LI&gt;&lt;LI&gt;Virtual meetings will not be happening by the end of the year, per corporate&lt;/LI&gt;&lt;LI&gt;Maintaining chapter expenses and business&lt;/LI&gt;&lt;LI&gt;3 chapter meetings per year, minimum&lt;/LI&gt;&lt;LI&gt;Charging for meetings between sponsors, upwards of $25&lt;/LI&gt;&lt;LI&gt;Members appreciate the diversity of topics&lt;/LI&gt;&lt;LI&gt;Venue discussion - Improving, Brew Garden, Wild Eagle, David Kennedy&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Topic 2 - MS O365 Security / Zero Trust (slides available) by James Hopkins from Improving&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;MS is largest security provider in world, leader in 5 areas, per Gartner&lt;/LI&gt;&lt;LI&gt;Zero Trust Principles - verify Explicitly, Use Least privilege, assume everything is a breach, log everything&lt;/LI&gt;&lt;LI&gt;Zero Trust (ZT) applied - start with deny &amp;amp; no trust, use strong authentication with multifactor authentication, measure signals, monitor/report/alert/remediate, grant or adjust as appropriate&lt;/LI&gt;&lt;LI&gt;Prior to ZT, was VPN or physical access for connectivity&lt;/LI&gt;&lt;LI&gt;ZT need for change - interconnectivity, partners, remote work, data is multiple places&lt;/LI&gt;&lt;LI&gt;Evolving landscape - security landscape as people know where to attack, security goes across multiple clouds&lt;/LI&gt;&lt;LI&gt;ZT model - get signals from user/device/app feeds verify to apps/data&lt;/LI&gt;&lt;LI&gt;Protect assets anywhere with ZT - user, device&lt;/LI&gt;&lt;LI&gt;ZT architecture available from MS&lt;/LI&gt;&lt;LI&gt;ZT tools - conditional access,&lt;/LI&gt;&lt;LI&gt;ZT journey - identity, endpoints, data, apps, infrastructure, network&lt;/LI&gt;&lt;LI&gt;99.5% of compromises are through on-prem devices&lt;/LI&gt;&lt;LI&gt;ZT leads to user access, modern SecOps, OT &amp;amp; datacenter, increases security &amp;amp; productivity&lt;/LI&gt;&lt;LI&gt;Secure assets where they are instead of secure network&lt;/LI&gt;&lt;LI&gt;Fed gave mandate implement ZT by 2024&lt;/LI&gt;&lt;LI&gt;Conditional Access based on device risk - broken, enrolled, compliant&lt;/LI&gt;&lt;LI&gt;Microsoft virtual training days - become trained then take test for certification&lt;/LI&gt;&lt;LI&gt;Some states require reimbursement for users to use their own phone for MFA&lt;/LI&gt;&lt;LI&gt;New product (Entra) coming out for multi cloud enviros&lt;/LI&gt;&lt;LI&gt;Group policy wins over Intune&lt;/LI&gt;&lt;LI&gt;Speaker: James Hopkins, &lt;A href="mailto:James.Hopkins@Improving.com" target="_blank"&gt;James.Hopkins@Improving.com&lt;/A&gt;, or on LinkedIn&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Job Postings&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;C-Biz - Sr, Info Tech Analyst, 3rd party reviews, cbiz.com&lt;/LI&gt;&lt;LI&gt;Parkplace Technologies - Security Engineer low level&lt;/LI&gt;&lt;LI&gt;Baldwin Wallace Univ - Security Engineer&lt;/LI&gt;&lt;LI&gt;Cuyahoga County - InfoSec, interns, analyst, and other IT positions&lt;/LI&gt;&lt;LI&gt;Federal Reserve - various InfoSec in different districts&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;End: 19:44&lt;/P&gt;</description>
    <pubDate>Wed, 27 Jul 2022 23:27:01 GMT</pubDate>
    <dc:creator>TedKozenko</dc:creator>
    <dc:date>2022-07-27T23:27:01Z</dc:date>
    <item>
      <title>May 2022 Meeting Minutes</title>
      <link>https://community.isc2.org/t5/Cleveland-Chapter-Discussion/May-2022-Meeting-Minutes/m-p/52188#M13</link>
      <description>&lt;P&gt;&lt;STRONG&gt;Let’s get together &lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;(new location)&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;(ISC)2 Cleveland Chapter Meeting&amp;nbsp;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Office 365 Security and Zero Trust Concepts&lt;/P&gt;&lt;P&gt;Tuesday, May 31, 2022 at 5:30 PM.&lt;/P&gt;&lt;P&gt;Email - it's the vector for many a cyber security threat --- spam, malware infested attachments or links, phishing emails that still trip up naïve unsuspecting coworkers, ransomware and more. Of course, email is a major communication channel in this part of the 21st century. James Hopkins of Improving will present on Microsoft Office 365 Security (or lack thereof?) and Zero Trust concepts.&lt;/P&gt;&lt;P&gt;Register soon because space is limited.&lt;/P&gt;&lt;P&gt;We hope you’re able to join us!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Start: 17:43&lt;/P&gt;&lt;P&gt;Attendees: 40, 6 first time&lt;/P&gt;&lt;P&gt;Sponsor: Improving&lt;/P&gt;&lt;P&gt;Security Friends&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;CISA finds no evidence of Dominion voting machine exploited&lt;/LI&gt;&lt;LI&gt;Ransomware group forces victims to pick 5 children and buy KFC (Goodwill ransomware group)&lt;/LI&gt;&lt;LI&gt;VMware exploit released critical bypass vulnerability in multiple products&lt;/LI&gt;&lt;LI&gt;MS to force better security for all azure ad tenants&lt;/LI&gt;&lt;LI&gt;Intuit warns of QuickBooks phishing threating to suspend accounts&lt;/LI&gt;&lt;LI&gt;Verizon data breach contains personal data of employees&lt;/LI&gt;&lt;LI&gt;Saitama backdoor uses DNS tunnelling - breaks out of PC undetected&lt;/LI&gt;&lt;LI&gt;Critical Pantsdown QCT vulnerability baseboard management controller&lt;/LI&gt;&lt;LI&gt;Nearly 100k npm user creds stolen from GitHub breach&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Topic 1 - Chapter Business&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Sponsored and meeting place for the rest of the year and through Q1 2023&lt;/LI&gt;&lt;LI&gt;Virtual meetings will not be happening by the end of the year, per corporate&lt;/LI&gt;&lt;LI&gt;Maintaining chapter expenses and business&lt;/LI&gt;&lt;LI&gt;3 chapter meetings per year, minimum&lt;/LI&gt;&lt;LI&gt;Charging for meetings between sponsors, upwards of $25&lt;/LI&gt;&lt;LI&gt;Members appreciate the diversity of topics&lt;/LI&gt;&lt;LI&gt;Venue discussion - Improving, Brew Garden, Wild Eagle, David Kennedy&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Topic 2 - MS O365 Security / Zero Trust (slides available) by James Hopkins from Improving&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;MS is largest security provider in world, leader in 5 areas, per Gartner&lt;/LI&gt;&lt;LI&gt;Zero Trust Principles - verify Explicitly, Use Least privilege, assume everything is a breach, log everything&lt;/LI&gt;&lt;LI&gt;Zero Trust (ZT) applied - start with deny &amp;amp; no trust, use strong authentication with multifactor authentication, measure signals, monitor/report/alert/remediate, grant or adjust as appropriate&lt;/LI&gt;&lt;LI&gt;Prior to ZT, was VPN or physical access for connectivity&lt;/LI&gt;&lt;LI&gt;ZT need for change - interconnectivity, partners, remote work, data is multiple places&lt;/LI&gt;&lt;LI&gt;Evolving landscape - security landscape as people know where to attack, security goes across multiple clouds&lt;/LI&gt;&lt;LI&gt;ZT model - get signals from user/device/app feeds verify to apps/data&lt;/LI&gt;&lt;LI&gt;Protect assets anywhere with ZT - user, device&lt;/LI&gt;&lt;LI&gt;ZT architecture available from MS&lt;/LI&gt;&lt;LI&gt;ZT tools - conditional access,&lt;/LI&gt;&lt;LI&gt;ZT journey - identity, endpoints, data, apps, infrastructure, network&lt;/LI&gt;&lt;LI&gt;99.5% of compromises are through on-prem devices&lt;/LI&gt;&lt;LI&gt;ZT leads to user access, modern SecOps, OT &amp;amp; datacenter, increases security &amp;amp; productivity&lt;/LI&gt;&lt;LI&gt;Secure assets where they are instead of secure network&lt;/LI&gt;&lt;LI&gt;Fed gave mandate implement ZT by 2024&lt;/LI&gt;&lt;LI&gt;Conditional Access based on device risk - broken, enrolled, compliant&lt;/LI&gt;&lt;LI&gt;Microsoft virtual training days - become trained then take test for certification&lt;/LI&gt;&lt;LI&gt;Some states require reimbursement for users to use their own phone for MFA&lt;/LI&gt;&lt;LI&gt;New product (Entra) coming out for multi cloud enviros&lt;/LI&gt;&lt;LI&gt;Group policy wins over Intune&lt;/LI&gt;&lt;LI&gt;Speaker: James Hopkins, &lt;A href="mailto:James.Hopkins@Improving.com" target="_blank"&gt;James.Hopkins@Improving.com&lt;/A&gt;, or on LinkedIn&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Job Postings&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;C-Biz - Sr, Info Tech Analyst, 3rd party reviews, cbiz.com&lt;/LI&gt;&lt;LI&gt;Parkplace Technologies - Security Engineer low level&lt;/LI&gt;&lt;LI&gt;Baldwin Wallace Univ - Security Engineer&lt;/LI&gt;&lt;LI&gt;Cuyahoga County - InfoSec, interns, analyst, and other IT positions&lt;/LI&gt;&lt;LI&gt;Federal Reserve - various InfoSec in different districts&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;End: 19:44&lt;/P&gt;</description>
      <pubDate>Wed, 27 Jul 2022 23:27:01 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Cleveland-Chapter-Discussion/May-2022-Meeting-Minutes/m-p/52188#M13</guid>
      <dc:creator>TedKozenko</dc:creator>
      <dc:date>2022-07-27T23:27:01Z</dc:date>
    </item>
  </channel>
</rss>

