• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • Skip to footer
  • About
    • Secure360
    • UMSA
    • Get Involved
  • Events
    • Secure360 2021
    • Student360
    • Past Events
      • 2020 Secure360 Twin Cities
      • 2020 Student360
      • 2019 Secure360 Twin Cities
      • 2019 Student360
      • 2018 Secure360 Twin Cities
      • 2018 Secure360 Wisconsin
      • 2018 Student360
      • 2017 Secure360 Twin Cities
      • 2017 Student360
      • 2016 TC Secure360 Conference
      • 2015 Secure360 Conference
      • 2014 Secure360 Conference
      • 2013 Secure360 Conference
        • 2013 Secure360 Conference Speaker Presentations
      • 2012 Secure360 Conference
  • For Sponsors
    • Secure360 Twin Cities
    • Student360 Sponsors
  • For Speakers
    • Secure360 Speaker Details
    • Student360 Speaker Details
  • Blog
  • Nav Social Menu

    • Facebook
    • LinkedIn
    • Twitter
    • Vimeo

Secure360

Cataloging Security Incidents with VERIS

Many Information Security professionals are familiar with the Verizon Data Breach Investigations Report (DBIR). But do you know anything about the VERIS framework that supports it? In this session Kevin Thompson from the Verizon RISK team will explain the Vocabulary for Event Recording and Incident Sharing (VERIS) and show you how you can use this open framework to record the same information about your security incidents that Verizon uses to produce the DBIR.
Objectives:
⁃ explain what the VERIS framework is.
⁃ explain how to use the VERIS framework to track and catalog information security incidents.
⁃ describe the information that is collected by the VERIS framework.
⁃ identify additional resources for using VERIS to collect incident data.
⁃ use the VERIS framework to create a feedback loop providing valuable information to the information risk management process.

Key learning points:
  • Understand the VERIS framework
  • Learn the value of recording security incidents
  • How to implement VERIS locally

About Kevin Thompson

Kevin Thompson is a researcher with the Verizon RISK team where he performs research on the ever-changing risk environment, investigates all manner of security incidents, and helps to develop solutions and knowledge based on credible data and analysis. Kevin is one of the researchers working on the wildly popular Data Breach Investigations Report and the underlying VERIS framework. Prior to working for Verizon, Kevin has worked in information security and risk management in higher education, health care, and the U.S. Navy. Kevin is CISSP certified, and is a FAIR certified risk analyst. Kevin also serves on the board of directors for the Society of Information Risk Analysts and is an adjunct faculty teaching information security and risk management at Minnesota State University, Mankato.

Primary Sidebar

Details

Wednesday May 15, 2013
11:00 AM - 12:00 PM
Room 6
Level: Intermediate

Share this page

Share on Facebook
Facebook
Tweet about this on Twitter
Twitter
Share on LinkedIn
Linkedin
Buffer this page
Buffer
Email this to someone
email

Footer

Contact

For more information about UMSA events, contact: Marie Strawser

Email List Signup

Join our email list for monthly Secure360 news and updates!




Join our tradeshow email list for updates on sponsorship opportunities and upcoming exhibitor deadlines.

Sponsored by:
© 2021 Secure360. All rights reserved.