Presentations 2019

Agenda for 2019

The CRESTCon 2019 digital brochure, with full details on all of the speakers and presentations, is available to download here: Brochure. We will be adding videos of the presentations and filmed interviews from the event to the brochure as soon as they are available.

Penetration Testing Stream – Wolfson Theatre

08:30 – 09:00 Registration, coffee and pastries (main hall)

09:00 – 09:15 Welcome: Ian Glover, President, CREST & Mark Turner, Chairman, CREST – Wolfson Theatre

09:15 – 09:45 Keynote: Paul Midian, CISO, Dixons Carphone plc

09:55 – 10:25 Sarka Pekarova, Cybersecurity Consultant, SureCloud: The Pirate Queen’s Techniques to social engineer her targets (and how you can too) Download slides

10:25 – 11:00 Coffee & networking (main hall) – sponsored by Aon

11:00 – 11.45 Tabraiz Malik, Cyber Security Associate, PwC: Unorthodox Command and Control (C2) Channels Download slides

11:50 – 12.35 Gabriel Gonzalez, Principal Security Consultant, IOActive: SATCOM: Attacker’s Perspective Download slides

12:35 – 13:30 Lunch (main hall) – sponsored by Aon

13:30 – 14:00 CISOs and Penetration Testers debate panel: Chair Andrew Jutson, Director, Cyprotec Ltd

CISO Panel:
Neil Fowler Wright, Global IT Security & Compliance Manager, Hitachi Rail Europe
Matt Gordon-Smith, CISO, Anglo-American
Denis Onuoha, CISO, Arqiva

PenTest Panel
Gemma Moore, Director, Cyberis
Justin Clarke-Salt, Managing Director, Aon’s Cyber Solutions Group

14:05 – 14:35 Imran Shaheem, Consultant, Cyberis: Quantum Cryptography Download slides

14:40 – 15:10 Justin Clarke-Salt, Managing Director, Aon’s Cyber Solutions Group: Let’s Talk About Risk Download slides

15:10 – 15:45 Coffee & networking (main hall) – sponsored by Aon

15:45 –  16:30 Christopher Thomas, Solution Architect, IBM: Blockchain – conceptual and architectural security considerations and their potential associated risks. Download slides

16.35 – 17:05 Rewanth Cool, Payatu Software Labs LLP: Creating browser extension to hunt low hanging fruits Download slides

17:05 -17:15 Closing address

17:15 -18:15 Sponsors and VIP guest networking drinks – sponsored by Pen Test Partners

18:00 – 22:00 Networking drinks and canapes – sponsored by Aon

Incident Response & Threat Intelligence Stream – Seligman Theatre

08:30 – 09:00 Registration, coffee and pastries (main hall)

09:00 – 09:15 Welcome: Ian Glover, President, CREST & Mark Turner, Chairman, CREST – Wolfson Theatre

09:15 – 09:45 Keynote: Paul Midian, CISO, Dixons Carphone plc

09:55 – 10:25 Thomas V. Fischer, Security Advocate & Threat Researcher, FVT SecOps Consulting:   Building a Personal Data Focused Incident Response Plan to Address Breach Notification Download slides

10:25 – 11:00 Coffee & networking (main hall) – sponsored by Aon

11:00 – 11:45 Matt Lorentzen, Trustwave: Sheepl – Automating people for Red and Blue Team Tradecraft Download slides

11:50 – 12.35 Nancy Strutt & Kimberly Bucholz,  Accenture: VBA and Macro-Document Analysis & Case Studies

12:35 – 13:30 Lunch (main hall) – sponsored by Aon

13:30 – 14:00 Oliver Church, CEO of Orpheus & Chair of CTIPs: Introducing the CREST Threat Intelligence Practitioners group – what are we doing and why?

14:05 – 14:35 Paula Hancock, Senior Intelligence Lead , Cyber Tech and Threats, BT Cyber Threat Intelligence: Out of the trough of disillusionment and up the slope of enlightenment Download slides

14:40 – 15:10 Louise Taggart, Manager, & Keith Short, Senior Analyst, PwC: A Quartermaster for Compromise

15:10 – 15:45 Coffee & networking (main hall) – sponsored by Aon

15:45 – 16:30 Lesley Kipling, Lead investigator & Chief Cybersecurity Advisor, Microsoft: What is the first thing you do when you are faced with a security incident?  Do you have a plan?

16:35 – 17:05 Nick Hayes, Global Head of Technical Direction, BSI: Safely Assessing Operational Technology (OT) Environments Download slides

17:05 -17:15 Closing address (Wolfson Theatre)

17:15 -18:15 Sponsors and VIP guest networking drinks – sponsored by Pen Test Partners

18:00 – 22:00 Networking drinks and canapes – sponsored by Aon

Training stream

08:30 – 09:00 Registration, coffee and pastries (main hall)

09:00 – 09:15 Welcome: Ian Glover, President, CREST & Mark Turner, Chairman, CREST – Wolfson Theatre

09:15 – 9:45 Keynote: Paul Midian, CISO, Dixons Carphone plc

09:55 – 10:25 Costas Senekkis, Senior Security Analyst, ICSI: Mandatory Access Control Essentials with SELinux Download slides

10:25 – 11:00 Coffee & networking (main hall) – sponsored by Aon

11:00 – 11:30 Tom Huckle, Head of Cyber Training and Development, Crucial Academy: An overview of CREST Registered Threat Analyst Training Download slides

11:35 – 12:05 Tony Reeves, Director of Level 7 Expertise Ltd and QA Partner: Hacking Drones… Or not? Download slides

12:05 – 12:35 Miguel Rego, CEO of iHackLabs: The iHackLabs approach to cybersecurity education Download slides

12:35 – 13:30 Lunch (main hall) – sponsored by Aon

13:30 – 14:00 Max Vetter, Chief Cyber Officer, Immersive Labs: Criminal Innovation and Cyber Threat Intelligence Download slides

14:05 – 14:35 Martin Jordan, Austerbury:  Iranian cyber threat briefing

14:40 – 15:10 Mark Hutchings, Head of Learning Delivery, QA: The challenge of cloud security and penetration testing

15:10 – 15:45 Coffee & networking (main hall) – sponsored by Aon

15:45 – 16:30 Ask the Assessors Panel:

Chair Stuart Morgan, Principal Consultant, MWR Infosecurity Ltd

Assessors:

Simon Clow, Oliver Church, Geoff Jones, Steve Bates

16:35 – 17:05 Brian Moore, Subject Matter Expert for Cyber, Firebrand Training Ltd: Firebrand Apprenticeships and Your Business

 

For filmed presentations go to  CREST YouTube

< See the 2018 Presentations
< See the 2017 Presentations