• Dear Members,We're pleased to introduce your new Board of Directors for the (ISC)2 National Capital Region (NCR) Chapter. In accordance with our bylaws, this board will serve for a period of one year, with their term starting on January 1, 2023 and running through the December 31, 2023 member meeting. ​This new board will hold its first board meeting in January 2023. If you have any input for us to consider when we focus on setting our annual goals. Our email addresses are listed below.​I am sure I speak for all board members when I say that we look forward to serving you in 2023.​Please visit and interact with our board members - https://web.isc2ncrchapter.org/officers/

    Jan 08,
  • October Cybersecurity Awareness Month Register TODAY for free, exciting, and engaging Cybersecurity Awareness Month Virtual Activities.Held every October, Cybersecurity Awareness Month is a collaborative effort between government and industry to raise awareness about the importance of cybersecurity and to ensure that all Americans have the resources they need to be safer and more secure online. University of Maryland Global Campus and the Center for Security Studies are proud to be champions in support of this essential online safety, awareness, and education initiative.Click here for more information.

    Oct 06,
  • Position: Cybersecurity Senior Specialist #5373 Department: Cybersecurity / Information Assurance / Governance, Risk and Compliance Position Description: Cybersecurity Senior Specialist Salary: $89,820 - $134,722 Link to Apply: https://sen.gov/729V Posting Date: Wednesday, September 30, 2020 Deadline Date: Until Filled

    Oct 01,
  • This white paper examines two recent case studies of criminal attacks against critical financial infrastructure and local government information. Both attacks had direct costs for the victim organizations, and second-order effects were felt by the organizations’ clients that suffered potential identity theft. This paper provides technical recommendations, including practices to mitigate future attacks, to organizational management and information security practitioners. These case studies are cautionary tales - of many in 2019 – that are informative lessons for examination by security professionals who want to improve their defenses, policies, practices and core capabilities. About the AuthorsTravis Howard, CISSP, and (ISC)2 National Capital Region chapter member is an active duty U.S. Naval officer specializing in information warfare, currently assigned to the Pentagon

    Oct 23,
  • This white paper examines two recent case studies of criminal attacks against critical financial infrastructure and local government information. Both attacks had direct costs for the victim organizations, and second-order effects were felt by the organizations’ clients that suffered potential identity theft. This paper provides technical recommendations, including practices to mitigate future attacks, to organizational management and information security practitioners. These case studies are cautionary tales - of many in 2019 – that are informative lessons for examination by security professionals who want to improve their defenses, policies, practices and core capabilities.​​​​About the AuthorsTravis Howard, CISSP, and (ISC)​ National Capital Region chapter member is an active duty U.S. Naval officer specializing in information warfare, currently assigned to the Pentagon in

    Oct 23,
  • We are pleased to introduce two new opportunities for members in good standing to receive tuition assistance or ISC2 exam registration fee assistance. We look forward to you taking advantage of these opportunities as outlined below. Submission instructions can be found in the online application.If you have additional questions, please forward them to bod@isc2ncrchapter.org; Attention: Dr. Loyce Best Pailen, CISSP, ISC2-NCR – Education Chair For Tuition Assistance applicants must submit the following documents: A complete Application Form (see link below)A well-written, one-page (double-spaced) ESSAY, in Section 3 of the application form, clearly articulating “WHY YOUR APPLICATION SHOUD BE CONSIDERED FOR THIS SCHOLARSHIP.”A current resume or curriculum vitae (CV).Copy of recent university transcripts with a 2.5 minimum GPA (official transcript may

    Sep 15,
  • Fellow (ISC)2 National Capital Region Chapter Members,Please join us as we celebrate another successful year and also to welcome our new Board of Directors. Who: All active (ISC)2 NCR Chapter members (sorry, guests aren't permitted)What: (ISC)2 NCR Chapter Post-Holiday PartyWhere: City Tap Penn Quarter (Fireplace Lounge), 901 9th St NW, Washington, DC 200014​This bar is a couple of blocks from Gallery Place Metro.​The Fireplace Lounge (see pic below) is an elevated, semi-private room behind the bar that can accommodate up tot 20 people. If have significantly more guests, we might choose a different venue. But, if we have less than 40 we should be okay because others can order a drink in the Fireplace Lounge and grab some hor d'ouerves

    Jan 15,
  • Dear members,I am pleased to introduce your new Board of Directors for the (ISC)2 National Capital Region (NCR) Chapter. In accordance with our bylaws, this board will serve for a period of one year, with their term starting on December 11, 2018 and running through the December 2019 member meeting. ​This new board will hold its first board meeting in January 2019. If you have any input for us to consider when we focus on setting our annual goals. Our email addresses are listed below.​I am sure I speak for all board members when I say that we look forward to serving you in 2019.​Happy Holidays and Happy New Year!​​PresidentKyle Hendrickson, CISSP, ISSAP, ISSMP, CCSP, PMPpresident@isc2ncrchapter.org Vice PresidentBruce deGrazia, CISSPvicepresident@isc2ncrchapter.orgTreasurerEdwin S.

    Dec 24,
  • President- Kyle Hendrickson, CISSP, CISSP-ISSAP, CISSP-ISSMP, CCSP Kyle Hendrickson is once again seeking the position of Chapter President. Having served as a member of the (ISC)2 National Capital Region Chapter board for the past three years, Mr. Hendrickson believes he has the experience and know-how required to lead the Chapter to greater levels of success in 2019.Mr. Hendrickson primary goals for 2019 (all of which will must be agreed to by the incoming board) are:​Host at least 11 member meetings – each with the opportunity to earn 2 CPEsHost at least 2 social eventsIncrease active membership by 10% (possibly through creation of a Meetup group) Implement a sponsorship program (currently in draft)Increase use of social media platforms, especially Facebook, Meetup and

    Dec 08,
  • Register to attend CyberMaryland 2018 to hear industry leaders—including UMUC faculty—talk about the job of a chief information security officer (CISO). At the UMUC-sponsored Education Track (What CISOs Worry About), you can hear insights from academic leaders and professionals in the public and private sectors as they discuss how the right certifications, training, and education can help prepare you to deal with threats and job concerns.At this event, you can:• Hear from industry thought leaders including UMUC's own Dr. Lawrence Awuah and Dr. Balakrishnan Dasarathy• Network with CISOs from the public and private sectors and find out how their education got them where they are• Talk to former and current students, including members of the UMUC Cyber Padawans - the

    Sep 13,
  • Dear (ISC)² National Capital Region Chapter member, As a member of the NCR Chapter, you are eligible to receive a 10% discount on (ISC)² Direct Training Seminars. The upcoming local (ISC)² Direct Training Seminars are: CCSP and CAP Stafford, Virginia July 16 – 20 HCISPP and CSSLP Stafford, Virginia July 23 – 27 While the focus is on classroom-based, instructor-led training, if you are only able to attend remotely, you can get a 10% discount on recorded sessions, which are available at www.isc2.org under the “Education & Training” tab. All (ISC)² Direct instructor-led training comes with an Education Guarantee. This means that if you attend an (ISC)² Direct instructor-led training seminar and happen to be unsuccessful in your exam attempt,

    Jun 27,
  • Greetings, As an active (ISC)2 NCR chapter member you are eligible for a 15% discount to the ISC2 Secure Summit DC event being held on May 7th and 8th. Just enter the coupon code ”Chapter18” when checking out.Here’s a link to the event:http://www.cvent.com/events/securesummitdc/event-summary-a73abe5f2a50473fa0f143415094cbb9.aspxIf you attend, please be sure to visit our Chapter’s vendor booth.We hope to see you there!

    Apr 13,
  • By Chinatu Uzuegbu, CISSP, CEO/Managing Cyber Security Consultant at RoseTech CyberCrime Solutions Ltd.  We kicked off the Identity and Access Management Processes from the Top-Level Management approach. The Identity and Access Management Security Steering Committee is a group of C-Suites leaders, also referred to as the respective Data and Asset Owners from the various Business Units of my organization. The group met and established the governing policy around the Identity and Access Management Processes. The governance covers the Mandatory Access Control Policy and Trust Policy of the organization which are automatically enforced as the baselines on default. The governance of our organization also mandates that the Identity and Access Management Framework, like other frameworks, align with local and international regulations

    Apr 11,
  • In the latest of several recent announcements, the U.S. body responsible for cybersecurity is making a clear shift towards pre-emptive over reactionary reporting, alerting and advice for organizations.  By John E. Dunn  A defining characteristic of ransomware attacks is the element of surprise. By the time the victim receives the ransom note, it is usually already too late to contain an incident. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has announced a new pilot project, the Pre-Ransomware Notification Initiative, which it hopes will be able to notify more victims before this happens.  The premise is that attackers often linger inside networks for some time before striking. This offers a window of opportunity, according to CISA:  “These early warnings can enable

    Mar 31,
  • KillNet is bad for your health, TikTok facing further bans, ransomware impacts cancer test results, Russia allegedly increasing its cyberwarfare efforts.   By Joe Fay  Microsoft Demonstrates How KillNet Is Bad for Our Healthcare Sector  Microsoft has highlighted a rise in DDoS attacks on healthcare organizations, mapping a three-fold increase in attacks over three months. It said it tracked 10 to 20 attacks per day on healthcare organizations on Azure in November but was seeing 40 to 60 per day in February. The attack mix changed over this time, it added, with over half of attacks now being UDP floods, with 44% being TCP-based. It said that pro-Russia hacktivist group KillNet has been launching “waves of attacks against Western countries, targeting

    Mar 21,
  • Cybercriminals pounce on SVB collapse, privacy concerns around ChatGPT and the FBI warns of a rise in crypto scams. Here are the latest threats and advisories for the week of March 17, 2023.    By John Weiler  Threat Advisories and Alerts  FBI Warning: Cryptocurrency Investment Schemes on the Rise  The U.S. Federal Bureau of Investigation (FBI) is warning internet users of an increase in cryptocurrency investment scam schemes, which defrauded victims of over $2 billion in 2022. Cybercriminals (usually located overseas) use social media platforms, dating apps, professional networking apps and other online means to connect with targets. The criminals then lure victims on to fraudulent cryptocurrency websites or apps to invest with the promise of financial success. However, once money

    Mar 17,
  • By John E. Dunn  Two arrests for alleged ransomware crimes and some useful intel. But will the latest Europol action make any difference?  Following an international operation encompassing law enforcement agencies in Germany, Ukraine, the Netherlands and the U.S., Europol announced the arrests in Germany and Ukraine of what it believes are two of the five core “masterminds” of the DoppelPaymer ransomware group.  The first suspect was described as a German national, the second as a Ukrainian, in raids that also involved searching properties in Kiev and Kharkiv.   Beyond that, details are scarce although Europol said the German suspect was “believed to have played a major role,” in the group’s activities. In addition to the suspects in custody, the authorities

    Mar 16,
1 2 3 15