PROGRAMME Day 2 










DAY 1             DAY 3

Day 2 – Tuesday, 3 August 2010

07:30–08:10

Registration

 

Session chair:

08:10-08:20

Welcome address:

08:20-09:10

Observations on security in large-scale industrial landscapes

Keynote address: Dr Andreas Schaad

Dr Andreas Schaad’s research interests include workflow- and application-level security as well as distributed systems security in general. He is a member of several ACM and IEEE conference committees in these subject areas. As a Certified Information Systems Security Professional (CISSP) he (co)authored over 40 international security related publications. He used work for Ernst&Young, London as a systems auditor. Currently Dr Schaad is the Research Program Manager of the SAP Research Security & Trust Group, Germany.

09:10-09:50

Online privacy, the next battleground

Guest speaker: Dominic White

This talk will highlight the often-nefarious methods used to gain personal data and the richness of the resulting picture provided. Examples of privacy attacks will be demonstrated, with a focus on arguing a case for online privacy. Finally, recommended business, technical and legislative practices will be discussed to assist end-users, organisations and potential legislators in this field.

09:50-10:30

Trust in the Information Society - Trends, Challenges, Foresight, Research Topics

Guest speaker: Dr Barend Taute - CSIR  Meraka Institute

This talk about trust will focus on South Africa, with reference to international development.

10:30-11:00

 

 

 

Tea and

Poster Demonstrations

Poster 1: The Enemy within: Towards an Information Security Awareness Model for SME Engineering Firms

Tapiwa Gundu and Stephen Flowerday

Poster 2: Appraising User Knowledge on Governing Cyber and Wireless Security in South African’s Diminutive Organizations

Nsovo Manganyi and Kennedy Njenga

Poster 3: Pluggable Trust Model and Most Trusted Path Determiner System

Pedro De Souza, Michael Kohn, Martin Olivier and Kamil Reddy

Poster 4: The effectiveness of platform appropriate Web 2.0 tools on user security education

Zahra Bulbulia, Craig Blewett and Rosemary Quilling

Poster 5: Corporate Forensic Readiness As A Component Of The Information Security Good Practice

George Pangalos, Vasilis Kattos, Ioannis Pagkalos and Maria Hassapidou

Poster 6: Computer Forensics, the Microsoft way. Using Windows as a forensic tool

Etienne Stalmans

Poster 7: Security Deployment of VoIP

Hlaudi Daniel Masethe

 

Session chair:

11:00-11:40

Policy, process and mandate for a successful eCrime/eDiscovery unit in large corporate

Guest speaker: Jock Forrester- Information Security Analyst, Standard Bank

Large corporate networks are filled with sources of information that may be required to successfully defend or promote the organisations’ position in legal dispute. eCrime can affect an organisation from an internal threat perspective to external attackers attempting to breach the perimeter. In these cases, the organisation needs to able to extract all the information available to it to successfully prosecute offenders. In the case of eDiscovery, the organisation needs to locate information that is relevant to the issue at hand and not, as in the case of eCrime, of finding as much as possible.

11:40-12:30

Principles of Inference Control Applied to Controlled Query and Update Execution

Keynote address: Professor Dr Joachim Biskup

Professor Dr Joachim Biskup has joined the program committees of many international conferences, including ICDT, FoIKS, ER, ESORICS and IFIP WG 11.3 Conference on Database and Applications Security. He has been Professor of Computer Science since 1981, and is now at Technische Universität Dortmund, Germany.

 12:30-13:30

Lunch 

 

Stream 7 –  
(
Reviewed Papers)

Stream 8

(Reviewed Papers)

 

Organizational security

Session chair:

Network security

Session chair:

13:30-14:00

A Conceptual Operational Risk Model for SMEs: Impact on Organisational Information Technology

Anass Bayaga and Stephen Flowerday

A Novel Protocol to Allow Revocation of Votes in a Hybrid Voting System

Oliver Spycher and Rolf Haenni

14:00-14:30

A framework for evaluating IT security investments in a banking environment

Eugene Smith and Hennie Kruger

Agent-Based Host Enumeration and Vulnerability Scanning Using Dynamic Topology Information

Ziyad Al-Salloum and Stephen Wolthusen

14:30-15:00

Towards Security Effectiveness Measurement utilizing Risk-Based Security Assurance

Reijo Savola, Heimo Pentikäinen and Moussa Ouedraogo

Towards an Information Security Framework for Service-oriented Architecture

Jacqui Chetty and Marijke Coetzee

15:00-15:30

Tea and

Poster Demonstrations

Poster 1: The Enemy within: Towards an Information Security Awareness Model for SME Engineering Firms

Tapiwa Gundu and Stephen Flowerday

Poster 2: Appraising User Knowledge on Governing Cyber and Wireless Security in South African’s Diminutive Organizations

Nsovo Manganyi and Kennedy Njenga

Poster 3: Pluggable Trust Model and Most Trusted Path Determiner System

Pedro De Souza, Michael Kohn, Martin Olivier and Kamil Reddy

Poster 4: The effectiveness of platform appropriate Web 2.0 tools on user security education

Zahra Bulbulia, Craig Blewett and Rosemary Quilling

Poster 5: Corporate Forensic Readiness As A Component Of The Information Security Good Practice

George Pangalos, Vasilis Kattos, Ioannis Pagkalos and Maria Hassapidou

Poster 6: Computer Forensics, the Microsoft way. Using Windows as a forensic tool

Etienne Stalmans

Poster 7: Security Deployment of VoIP

Hlaudi Daniel Masethe

 

Stream 9 -
(
Reviewed Papers)

Stream 10 -
(
Reviewed Papers)

 

Cyber crime

Session chair:

 

Network security

Session chair:

15:30–16:00

Broadband broadens scope for cyber crime in Africa

Marthie Grobler and Joey Jansen van Vuuren

Deep Packet Inspection – Fear of the Unknown

Ryan Goss and Reinhardt Botha

16:00-16:30

Mobile Security from an Information Warfare Perspective

Brett van Niekerk and Manoj Maharaj

The Cost of Observation for Intrusion Detection: Performance Impact of Concurrent Host Observation

Mark M. Seeger, Stephen D. Wolthusen, Christoph Busch and Harald Baier

16:30-17:00

Common problems faced during the establishment of a CSIRT

Marthie Grobler and Harri Bryk

An investigation and survey of response options for Intrusion Response Systems (IRSs)

Nor Badrul Anuar, Maria Papadaki, Steve Furnell and Nathan Clarke

19:00-22:00

Gala Dinner: Lekgotla Restaurant, Sandton - Africa’s dining room on Nelson Mandela Square. For more information, please see http://www.lekgotla.com/