The Structure of Information Protection

The Great Wall

The Maginot Line

Iraq’s dug in armies

Why Defenses Fail

How Cyber-Defenses Fail

Viruses in TCBs

Minimum firewall costs

E-commerce Holes

The Christma, Mellisa, LoveBug

Why Cyber Defenses Fail

Threat mis-assessment

Winning example

The Challenge

Threats Vulnerabilities &Consequences

The threats are real

What/Who Causes Harm?

We are vulnerable+

Examples: corruption

Examples: denial of services

Examples: information leaks

50 Ways and 40 attacks/month

Mechanisms (94 classes)

Some more facts and figures

Personal consequences

Business Consequences

Social Consequences

Global Consequences

T&V&C=> Risk

We manage risk

Approaches to Managing Risks+

An Analytical Approach

Limiting Complexity

A Feedback Control Model

An organizational approach

Organizational change process

A risk staging approach

Risk handling can be staged as

A Gaming Approach

The Network Game

Risk Analysis Approaches


Risk Management Summary

Author: Fred Cohen


