CYBERSECURITY IS DYNAMIC SO LEARNING NEVER STOPS IN OUR AUTO COMMUNITY

 
 

 Community Calls

The Auto-ISAC holds monthly virtual community meetings for members and connected vehicle ecosystem stakeholders to stay informed of Auto-ISAC activities and share information on key vehicle cybersecurity topics.

Contact us to participate in our monthly community calls. The community calls are held on the first Wednesday of each month at 11am EST.

Elizabeth Cox Elizabeth Cox

December 2020 Community Call

When
December 2nd, 2020 11:00am

Who
Dr. Larry Ponemon: Chairman and Founder of the Ponemon Institute, Rocco Grillo: Managing Director at Alvarez & Marsal, Charlie Miller: Senior advisor at The Santa Fe Group

What
Shared Assessment / Ponemon report “A New Roadmap for Third Party IoT Risk Management – the Critical Need to Elevate Awareness, Authority and Engagement.”

Description

This presentation covered highlights of the Shared Assessment / Ponemon report “A New Roadmap for Third Party IoT Risk Management – the Critical Need to Elevate Awareness, Authority and Engagement.” Current IoT risk management programs are not keeping pace with the dramatic increase in IoT-related risks – a shortcoming that represents a clear and expanding threat to most organizations. To help practitioners focus resources, we examined the practices of high performers to identify gaps in IoT Third Party Risk Management.

Read More
Elizabeth Cox Elizabeth Cox

November 2020 Community Call

When
November 4th, 2020 11:00am

Who
Kiersten Todt, Cyber Readiness Institute (CRI), Managing Director

What
Helping Your Business Become Cyber Ready

Description

Kiersten Todt, Managing Director at Cyber Readiness Institute (CRI) discussed about practical and easy-to-use methods to help small and medium-sized businesses (SMBs) improve their cybersecurity by focusing on human behavior. The session highlighted the importance of creating a culture of cyber readiness in SMBs to improve the security of supply chains in the automotive industry, worldwide.

Read More
Elizabeth Cox Elizabeth Cox

October 2020 Community Call

When
October 7th, 2020 11:00am

Who
Dr. Amine TALEB, Valeo; Director - Innovation & Marketing and Monica Nogueira, Director of Content Acquisition/Multimedia, SAE International

What
User Experience and Acceptance of Automated Vehicles

Description

“User acceptance of automated vehicles! This presentation examines the enablers for attaining a higher consumer trust as well as a safe and intuitive user experience at various automation levels. The talk is based on the work published as SAE EDGE Research Report ( EPR 2020012).”

Read More
Elizabeth Cox Elizabeth Cox

September 2020 Community Call

When
September 2nd, 2020 11:00am

Who
Urban Jonson, NMFTA, Chief Technology Officer

What
Are large fleets susceptible to advanced attacks?

Description

How much effort do you think someone would go through to obtain the ability to affect motor transportation at scale? An overview of the Triton malware intrusion and the search for parallels in vehicle safety systems as well as a review of Remote Vehicle Shutdown (RVS), Remote Vehicle Disablement (RVD) and ATA/TMC RP 1218.

Read More
Elizabeth Cox Elizabeth Cox

August 2020 Community Call

When
August 5th, 2020 11:00am

Who
Gary Berman, Creator of "The CyberHero Adventures"

What
"Humanizing Cybercrime: From Victim to Advocate"

Description

Gary Berman will share his incredible story about how a small group of trusted insiders essentially “cloned” his company right under his nose for an extended period. A total of 19 attack vectors including spoofed website, re-directed telephone calls, sim-swapping, social engineering by pretending to be “whistle blowers” and falsely telling his major clients that he was under investigation by the FBI for fraud and even having 36 people connected to his On-Star account. His story get incredibly uplifting as he shares his “Forrest Gump” journey into the cyber security Community. You will be riveted by a sampling of the evidence, filled with laughter and ultimately, PUMPED up about YOUR mission!

Read More
Elizabeth Cox Elizabeth Cox

July 2020 Community Call

When
July 1st, 2020 11:00am

Who
Tim Mackey, Principal Security Strategist

What
2020 Open Source Security and Risk Analysis Report

Description

The presentation is on the 2020 Open Source Security and Risk Analysis Report (OSSRA) by Mr. Tim Mackey, Principal Security Strategist, Synopsys Cybersecurity Research Center.  The overview of the report outlines several learnings from the governance decision of others.

Read More
Elizabeth Cox Elizabeth Cox

June 2020 Community Call

When
June 3rd, 2020 11:00am

Who
Randy Sandone, Executive Director of CIRI

What
Process, People, and Products - Building Cyber Resilience for the Long-Term

Description

Mr. Randy Sandone is the Executive Director of the Critical Infrastructure Resilience Institute (CIRI).  This is a Department of Homeland Security (DHS) University Center of Excellence housed at the University of Illinois at Urbana-Champaign.  Mr. Sandone presented on how we attain a secure and resilient critical infrastructure by shifting to a more holistic approach to people, product and process.

Read More
Elizabeth Cox Elizabeth Cox

May 2020 Community Call

When
May 6th, 2020 11:00am

Who
Dr. Allan Friedman - Director of Cybersecurity Initiatives at NTIA

Description

The presentation offers a brief overview of the concept of an SBOM, and the progress being made by an open, cross-sector, and international initiative convened by NTIA in the US Department of Commerce. The presentation reviews lessons learned, remaining challenges, and expected progress. It also touches on the path to adoption, including market forces and the ongoing role of regulators.

Read More
Elizabeth Cox Elizabeth Cox

April 2020 Community Call

When
April 4th, 2020 11:00am

Who
Jason Conley, Executive Director OmniAir Consortium

Description

OmniAir Consortium is the leading industry association promoting interoperability and certification for ITS, tolling, and Connected Vehicles.

Read More
Elizabeth Cox Elizabeth Cox

February 2020 Community Call

When
February 5th, 2020 11:00am

Who
Junaid Farooq, PhD Candidate, Tandon School of Engineering at New York University (NYU)

Description

Topic: Cyber-Physical Supply Chain Risk Analysis and Mitigation for Internet of Things Networks

Network-connected electronic devices are becoming an essential part of modern infrastructure systems to automate manual processes resulting in improved efficiency and productivity. The Internet of Things (IoT) is an interconnection of different types of devices using communication networks and computing systems to achieve such automated operation. The widespread adoption of the IoT is becoming indispensable in critical infrastructure (CI) systems due to their burgeoning scale and complexity. However, the cyber-physical integration is also opening doors for malicious cyber activity to sabotage their performance and/or operation. The integration of multiple components manufactured and designed separately makes the system extremely vulnerable to cyber-physical attacks. Supply chain linkages in the IoT ecosystem pose a tremendous risk towards the security of IoT-enabled CI. Furthermore, there might be potential collusion between supply chain actors to coordinate and cause damage to the system. Hence, the underlying cyber-physical supply chain linkages need to be uncovered. The cyber vulnerabilities coupled with the physical characteristics and deployment of IoT devices may lead to more severe and complex security threats to the underlying CI. This talk will discuss tools and methodologies that become a basis for developing decision support tools assisting policy and decision-makers in adopting risk minimizing strategies.

Read More
Elizabeth Cox Elizabeth Cox

January 2020 Community Call

When
January 7th, 2020 11:00am

Who
Amy Smith, the Manager of Pre-College Educational Programming at SAE International

Description

A World in Motion:  Hands-on Cybersecurity Education in a K-16
STEM Experience Continuum

Read More