|
Day 2 – Tuesday, 3 August 2010 |
|
07:30–08:10 |
Registration |
|
|
Session chair: |
|
08:10-08:20 |
Welcome address: |
|
08:20-09:10 |
Observations on security in large-scale industrial landscapes
Keynote address: Dr Andreas Schaad
Dr Andreas Schaad’s
research
interests include workflow- and application-level security as well
as distributed systems security in general. He is a member of
several ACM and IEEE conference committees in these subject areas.
As a Certified Information Systems Security Professional (CISSP) he
(co)authored over 40 international security related publications. He
used work for Ernst&Young, London as a systems auditor. Currently
Dr Schaad is the Research Program Manager of the SAP Research
Security & Trust Group, Germany. |
|
09:10-09:50 |
Online privacy, the next battleground
Guest speaker: Dominic White
This
talk will highlight the often-nefarious methods used to gain
personal data and the richness of the resulting picture provided.
Examples of privacy attacks will be demonstrated, with a focus on
arguing a case for online privacy. Finally, recommended business,
technical and legislative practices will be discussed to assist
end-users, organisations and potential legislators in this field. |
|
09:50-10:30 |
Trust in the Information Society - Trends, Challenges, Foresight,
Research Topics
Guest speaker: Dr Barend Taute - CSIR Meraka Institute
This talk about trust will focus on South Africa, with reference to
international development. |
|
10:30-11:00
|
Tea and
Poster Demonstrations |
|
Poster 1: The Enemy within: Towards an Information Security
Awareness Model for SME Engineering Firms
Tapiwa Gundu and
Stephen Flowerday
Poster 2: Appraising User Knowledge on Governing Cyber and Wireless
Security in South African’s Diminutive Organizations
Nsovo Manganyi and
Kennedy Njenga
Poster 3: Pluggable Trust Model and Most Trusted Path Determiner
System
Pedro De Souza,
Michael Kohn, Martin Olivier and Kamil Reddy
Poster 4: The effectiveness of platform appropriate Web 2.0 tools on
user security education
Zahra Bulbulia, Craig
Blewett and Rosemary Quilling
Poster 5: Corporate Forensic Readiness As A Component Of The
Information Security Good Practice
George Pangalos,
Vasilis Kattos, Ioannis Pagkalos and Maria Hassapidou
Poster 6: Computer Forensics, the Microsoft way. Using Windows as a
forensic tool
Etienne Stalmans
Poster 7: Security Deployment of VoIP
Hlaudi Daniel Masethe |
|
|
Session chair: |
|
11:00-11:40 |
Policy, process and mandate for a successful eCrime/eDiscovery unit
in large corporate
Guest
speaker: Jock Forrester-
Information Security Analyst, Standard Bank
Large
corporate networks are filled with sources of information that may
be required to successfully defend or promote the organisations’
position in legal dispute. eCrime can affect an organisation from an
internal threat perspective to external attackers attempting to
breach the perimeter. In these cases, the organisation needs to able
to extract all the information available to it to successfully
prosecute offenders. In the case of eDiscovery, the organisation
needs to locate information that is relevant to the issue at hand
and not, as in the case of eCrime, of finding as much as possible. |
|
11:40-12:30 |
Principles of Inference Control Applied to Controlled Query
and Update Execution
Keynote address:
Professor
Dr Joachim Biskup
Professor Dr Joachim Biskup has joined the program committees of
many international conferences, including ICDT, FoIKS, ER, ESORICS
and IFIP WG 11.3 Conference on Database and Applications Security.
He has been Professor of Computer Science since
1981, and is now at Technische Universität Dortmund, Germany. |
|
12:30-13:30 |
Lunch |
|
|
Stream
7 –
(Reviewed
Papers) |
Stream
8
–
(Reviewed
Papers) |
|
|
Organizational security
Session chair: |
Network security
Session chair: |
|
13:30-14:00 |
A Conceptual Operational Risk Model for SMEs: Impact on
Organisational Information Technology
Anass Bayaga and Stephen Flowerday |
A Novel Protocol to Allow Revocation of Votes in a Hybrid Voting
System
Oliver Spycher and Rolf Haenni |
|
14:00-14:30 |
A framework for evaluating IT security investments in a banking
environment
Eugene Smith and Hennie Kruger |
Agent-Based Host Enumeration and Vulnerability Scanning Using
Dynamic Topology Information
Ziyad Al-Salloum and Stephen
Wolthusen |
|
14:30-15:00 |
Towards Security Effectiveness Measurement utilizing Risk-Based
Security Assurance
Reijo Savola, Heimo Pentikäinen and
Moussa Ouedraogo |
Towards an Information Security Framework for Service-oriented
Architecture
Jacqui Chetty and Marijke Coetzee |
|
15:00-15:30 |
Tea and
Poster Demonstrations |
|
Poster 1: The Enemy within: Towards an Information Security
Awareness Model for SME Engineering Firms
Tapiwa Gundu and
Stephen Flowerday
Poster 2: Appraising User Knowledge on Governing Cyber and Wireless
Security in South African’s Diminutive Organizations
Nsovo Manganyi and
Kennedy Njenga
Poster 3: Pluggable Trust Model and Most Trusted Path Determiner
System
Pedro De Souza,
Michael Kohn, Martin Olivier and Kamil Reddy
Poster 4: The effectiveness of platform appropriate Web 2.0 tools on
user security education
Zahra Bulbulia, Craig
Blewett and Rosemary Quilling
Poster 5: Corporate Forensic Readiness As A Component Of The
Information Security Good Practice
George Pangalos,
Vasilis Kattos, Ioannis Pagkalos and Maria Hassapidou
Poster 6: Computer Forensics, the Microsoft way. Using Windows as a
forensic tool
Etienne Stalmans
Poster 7: Security Deployment of VoIP
Hlaudi Daniel Masethe |
|
|
Stream
9
-
(Reviewed
Papers) |
Stream
10
-
(Reviewed
Papers) |
|
|
Cyber crime
Session chair:
|
Network security
Session chair: |
|
15:30–16:00 |
Broadband broadens scope for cyber crime in Africa
Marthie Grobler and Joey Jansen van Vuuren |
Deep Packet Inspection – Fear of the Unknown
Ryan Goss and Reinhardt Botha |
|
16:00-16:30 |
Mobile Security from an Information Warfare Perspective
Brett van Niekerk and Manoj Maharaj |
The Cost of Observation for Intrusion Detection: Performance Impact
of Concurrent Host Observation
Mark M. Seeger, Stephen D. Wolthusen, Christoph Busch and Harald
Baier |
|
16:30-17:00 |
Common problems faced during the establishment of a CSIRT
Marthie Grobler and Harri Bryk |
An investigation and survey of response options for Intrusion
Response Systems (IRSs)
Nor Badrul Anuar, Maria Papadaki,
Steve Furnell and Nathan Clarke |
|
19:00-22:00 |
Gala Dinner: Lekgotla Restaurant, Sandton -
Africa’s dining room on
Nelson Mandela Square.
For more information, please see
http://www.lekgotla.com/ |