Upcoming Events

Presentation
A State of the Web Security Union Address – Scott Behrens of Neohapsis
May 17-19, 2013 – HackMiami – Miami, FL

There has been a surge of proposed standards and governing documents to improve web security. Client side flaws are being addressed by standards such as content-security-policy and IFRAME sandboxing. Data in transit is being more tightly secured using HTTP Strict Transport Security. There is a plethora of technologies available like X-frame-options, ORIGIN header, encrypted media extensions, and X-XSS-Protection. We look at the intricacies of the proposed and accepted standards as well as how they are implemented. Security considerations will be addressed for these technologies from a design perspective and with a discussion on any weaknesses observed.

Presentation
State Of The Union: Advances In Web Application And Browser Security – Scott Behrens of Neohapsis
May 23, 2013 – Rocky Mountain Information Security Conference – Denver, CO

There has been a surge of proposed standards and governing documents to improve web security. Client side flaws are being addressed by standards such as content-security-policy and IFRAME sandboxing. Data in transit is being more tightly secured using HTTP Strict Transport Security. There is a plethora of technologies available like X-frame-options, ORIGIN header, encrypted media extensions, and X-XSS-Protection. We look at the intricacies of the proposed and accepted standards as well as how they are implemented. Security considerations will be addressed for these technologies from a design perspective and with a discussion on any weaknesses observed.

Presentation
Enterprise Security on a Budget: Deciding What Gets Done First and What Doesn’t Get Done At All – Andy Hubbard and Kristine Briggs of Neohapsis
June 4, 2013 – New York State Cyber Security Conference – Albany, NY

Whether you run a government IT organization, a non-profit, or an under-funded enterprise IT or security group, managing a broad range of operational controls, emerging threats, and compliance requirements can be a hugely daunting task. Effective security requires a risk management mindset, so you are making appropriate budget trade-offs. Neohapsis’ top consultants will revisit the most critical controls that make up your security program (which are not necessarily the most expensive ones), as well as the best practice tools, practices, and organizational approaches needed to provide practical protection against common and even advanced threats.

Presentation
Security of Mobile Cloud Ecosystem – Joe Schumacher of Neohapsis

June 11, 2013 – ISACA New England Conference 2013– Boston, MA

The purpose of the presentation is to give technical operation strategists information to better understand the mobile risk universe and key concepts to be aware of with data security. The presentation will give a perspective of attacking and defending the mobile universe. Mobile in industry today includes more than email and adds complicating factors of employee verse company owned devices and/or empowering services. The theme of the presentation will be controlling and protecting company data through technical, operational and policy controls according to risk of an organization’s data.

Moderated Panels
Emerging Threats and Threat Management – with Scott Behrens and Nathaniel Couper-Noles of Neohapsis
Cloud Assurance Models – with Scott Hazdra of Neohapsis

June 13, 2013 – ISACA Summer Boat Cruise the Odyssey Cruise Ship – Chicago, IL

Past Events

Presentation
An Application Pen Tester’s Intro to Android Internals – Tom Palarz of Neohapsis
April 17, 2013 – OWASP – Chicago, IL

Presentation
Mastering the Mobile Security Landscape – Scott Behrens and Jon Janego of Neohapsis
March 13, 2013 – ISACA Kettle Moraine Chapter – Brookfield, WI

Presentation
SmartMeter Security and Common Attack Points – Robert Former of Neohapsis
December 5, 2012 – The Amphion Forum – San Francisco, CA

Presentations
End-to-end Diligence in Outsourcing Relationships – Gary Alterson of Neohapsis
Advanced Risk Concepts for IT Risk Practitioners –Tolerance, Acceptance, and Transfer – Gary Alterson of Neohapsis
November 14-16, 2012 – North America ISRM / IT GRC – Las Vegas, NV

Presentation
End-to-End Trust in a Changing World – Erik Bataller of Neohapsis
October 25-26, 2012 – ISSA International Conference – Anaheim, CA

Presentation
Mobile Security: A Strategic Approach – Gary Alterson of Neohapsis
October 25, 2012 – Greater New Orleans ISACA – Metairie, LA

Presentation
Rapid Blind SQL Injection with BBQSQL – Scott Behrens of Neohapsis
September 28-30, 2012 – DerbyCon 2012 – Louisville, KY

Presentation
Rapid Blind SQL Injection with BBQSQL – Scott Behrens of Neohapsis
July 26-29, 2012 – Def Con 20 – Las Vegas, NV

Exhibit
Black Hat 2012 – Booth #115
July 21-26, 2012 – Las Vegas, NV

Presentations
Reduce IT Risk Through Improved Management and Planning – Gary Alterson of Neohapsis
Data Quality and Data Classifi cation: Comparisons, Effi ciencies and Success Factors – Gary Alterson of Neohapsis
May 7-10, 2012 – North America CACS 2012 – Orlando, FL

Presentation
httpShell – Ben Toews of Neohapsis
April 27, 2012 – THOTCON 0x3 – Chicago, IL

Presentation
Detecting Obfuscated Web Shells – Scott Behrens of Neohapsis
April 18, 2012 – Forum Hagenberg 2012 – Hagenberg, Austria

Panel
Protecting Personal Information: What Businesses and Consumers Should Know – Gary Alterson of Neohapsis
March 14, 2012 – Illinois State Bar Association

Reception
ISSA Member Reception at RSA Conference 2012 - Supported by Neohapsis
Tuesday, February 28, 2012 – Members-only reception to honor our newest Distinguished Fellows and Fellows and we will announce the recipient of Eugene Schultz Memorial Scholarship.

Presentation
Transparent Smartphone Spying – Georgia Weidman of Neohapsis
December 6-7, 2011 – Takedowncon – Las Vegas, NV

Presentation
Transparent Botnet Command and Control for Smartphones over SMS – Georgia Weidman of Neohapsis
November 17, 2011 – Security Zone – Cali, Valle Del Cauca, Colombia

Presentation
Transparent Botnet Command and Control for Smartphones Over SMS – Georgia Weidman of Neohapsis
November 15, 2011 – Hacker Halted Asia Pacific

Presentation
Transparent Smartphone Spying – Georgia Weidman of Neohapsis
October 21-27, 2011 – Hacker Halted USA

Presentation
Throw It in the River? Towards Real Live Actual Smartphone Security – Georgia Weidman of Neohapsis
September 30, 2011 – DerbyCon

Presentation
Public-Private Partnership in CyberCrime Investigations – Richard Starnes of Neohapsis
September 12, 2011 – Interpol Cyber-Crime Europe 

Presentation
Transparent Botnet Command and Control for Smartphones over SMS – Georgia Weidman of Neohapsis
August 4, 2011 – Defcon 

Presentation
Transparent Botnet Command and Control for Smartphones over SMS – Georgia Weidman of Neohapsis
August 3, 2011 – Security B-Sides Las Vegas

Presentation
Emerging Trends in Urban Incident Response – Steve Hunt of Neohapsis
July 19, 2011 – DHS Conference on Homeland Security

Presentation
Critical Infrastructure Protection in Urban Settings – Steve Hunt of Neohapsis
July 18, 2011 – SecurityDreamer New York

Presentation
Transparent Command and Control for Smartphones over SMS Redux – Georgia Weidman of Neohapsis
June 11, 2011 – Security B-Sides CT

Presentation
Measuring the Value of Security – Steve Hunt of Neohapsis
May 25, 2011 –SecurityDreamer Chicago

Exhibit
RIMS 2011 Annual Conference & Exhibition
May 1-5, 2011

Presentation
Where dat shell @? – Scott Behrens and Ben Hagen of Neohapsis
April 16, 2011 – Security B-Sides Chicago

Webinar
OpSource: Strategies for Web Application Security – Andy Hoernecke, Sr. Application Security Consultant at Neohapsis
April 13, 2011

Presentation
Enterprise Risk Management: A Road Map to the Build Out of Sustainable Processes – Quin Rodriguez, Sales Director at Neohapsis
October 25, 2010 – SIFMA IAS Annual Conference

Presentation
Automated Security Scanners: Failures and Challenges – Patrick Toomey, Senior Security Consultant at Neohapsis
October 13, 2010 – Hacker Halted

Presentation
BA Risk Models & Internal Control Highlights 2010 – Mark Prescott & George Bennett at Neohapsis
October 10-13, 2010 – IAAIA Conference
The Marmara Taksim Hotel; Istanbul, Turkey

Presentation
Cloud Computing Risks – Greg Shipley, CTO at Neohapsis
August 9, 2010 – Open Web Application Security Project (OWASP) New York/New Jersey August OWASP meeting.

Panel
Everything You Wanted to Ask About Cloud Computing – Greg Shipley, CTO at Neohapsis

July 22, 2010 – International Association of Outsourcing Professionals

Presentation
2010 Threat Briefing – Greg Shipley, CTO at Neohapsis

July 14, 2010 – IANS

Presentation
APT in Corporate America and the Exposure to Foothold Scenarios – Nat Puffer, Technical Lead at Neohapsis

July 7-9, 2010 – 2010 Workshop on Cyber Security and Global Affairs