Applied Hacking Techniques and the Benefits and Pitfalls of Running a Vulnerability Assessment Program
In cooperation with its UK-based partner Matta Consulting, Security Matterz conducted ‘Applied Hacking Techniques and the Benefits and Pitfalls of Running a Vulnerability Assessment Program” seminar at the Sheraton Hotel in Riyadh on the 8th of June.
Event Key Speaker, Jon McClelland from AEMS, a leading global provider of technology solutions for exchanges, clearing houses, banks, brokers and intermediaries, talked about the challenges of running vulnerability testing from a security managers’ perspective in a large financial organization. Jon also spoke about his experiences and how he brings together the requirements of the business, the regulators and the IT security function.
Nick Baskett Managing Director of Matta spoke about Vulnerability Assessment using new tools and methods. In this talk, Nick discussed the various aspects of Vulnerability Assessment, and demonstrated how metrics can be used along with vulnerability assessment tools to properly baseline companies’ security. He also showed how different companies approach reporting, and how CVSS is standardizing “Risk Classification".
The last session of the seminar was a live demonstration of web application hacking by Robert Connolly from Matta showing how SQL injection and other techniques can compromise web applications. Rob also explained OWASP top 10 Web Application vulnerabilities, and attendees were shown how some of the key OWASP issues actually work in a live environment. He demonstrated some of the latest attacks hitting the Internet, and discussed ways in which one can protect his company from becoming the next victim.
The event attracted senior IT officials from various industries including Finance, Telecom, Government, Petrochemical, FMCG and Insurance. The audience was delighted to watch the “Gurus” of VA and Pen Test live in action. Attendees expressed their appreciation to Security Matterz, both verbally and in writing, for allowing the opportunity to benefit from a wealth of knowledge and experience of a team of specialized consultants in a very critical area within the IT Security domain.
It is well worth mentioning that AEMS is an affiliate of Euronext, a subsidiary of New York Stock Exchange. Euronext LIFFE, the derivatives business of Euronext, is the second largest in Europe by volume and second largest in the world by the value of the business transacted through the exchange every day.