Category

EC-Council in News

Hacker Halted Tackles “Life, the Universe, Everything” for 2018 edition with An Ethical Hacker’s Guide to the Universe

Hacker Halted, EC-Council’s largest annual conference, will focus its 2018 edition on applying the lessons from “Hitchhiker’s Guide to the Galaxy” to cybersecurity. The event will be in Atlanta, GA for the sixth year in a row on September 13 & 14. The Hacker Halted speaker committee has combed through the dizzying stack of submissions to form the agenda for this year’s conference with a special focus on presentations that take the lessons from The Guide to heart and apply them to the cyberwars being fought every day across the world. Read More…

Read article
Hacker Halted Security Conference Free for Women through IBM Security Scholarship

Today EC-Council and IBM announced that IBM will once again fund a scholarship program for women to attend EC-Council’s Hacker Halted security conference free of charge. Funded by IBM Security, the scholarship is designed to help address the underrepresentation of women in cybersecurity and help women further their skills and expertise in this high-demand field. Hacker Halted 2017 conference saw a large increase in female attendees due to the support of IBM and the sponsorship. In fact, approximately 34% of last year’s registrants were women – a huge number for information security conferences. Read More…

Read article
EC-Council Partners with the NHS to raise the Cybersecurity Skills of NHS Trust Employees

A number of reports reference that the Healthcare sector has become one of the main targets for hackers. A major factor behind this increased interest is the sector being classed as critical national infrastructure.  In light of this, the Doncaster and Bassetlaw Teaching Hospitals has partnered with EC-Council, the world’s leading cybersecurity credentialing body, to provide up-to-date cybersecurity training for their employees. The partnership between Doncaster and Bassetlaw Teaching Hospitals and EC-Council will help raise awareness in the healthcare sector of the need for higher quality cybersecurity skills to protect this key part of the UK’s critical infrastructure. In the wake of the WannaCry security event in May 2017, Doncaster and Bassetlaw Teaching Hospitals has sought to improve cybersecurity planning across its corporate services. The partnership between the Hospitals and EC-Council is embodied by a number of elements but include: Training employees in Certified Ethical Hacking (C|EH), Penetration Testing and EC-Council’s strategic/leadership course, Certified Chief Information Security Officer (C|CISO) Conducting an End User ‘Audit’ on the existing 6,500 of the Hospital’s employees to understand their security awareness Providing an example of the types of training, from end user to c-level, that the NHS should be incorporating as policy Robin Smith, IT Security & Continuity Manager, said: ‘’This is a new way of working with our partners to build digital resilience. We hope to create the most skilled workforce in the NHS with regards to security and protection of our data”. “We see the deployment of critical cybersecurity knowledge and skills to the NHS workforce as a tremendous step forward in addressing the skills shortage in such a critical industry”, added Sean Lim, COO of EC-Council. According to the 2017 Global Information Security Workforce Study, 66% of European businesses indicated that there are too few cybersecurity professionals available to tend to the rising threats; and this number is expected to rise over the next couple of years. The UK is no exception to this and leaders of critical infrastructure have begun to view cybersecurity as an imperative part of strategy for their operations. “Government, business, and military institutions have increased their demand for certified cybersecurity professionals, and yet we still face a shortage of qualified professionals,” says Jay Bavisi, President of the EC-Council Group, “partnering directly with the NHS will enable EC-Council to play a more direct role in the security of this critical piece of British infrastructure. Through this initiative, our training and certification programs will increase security awareness and the level of competence within the Trust.” About EC-Council EC-Council has been the world’s leading information security certification body since the launch of their flagship program, Certified Ethical Hacker (C|EH), which created the ethical hacking industry in 2002. Since the launch of CEH, EC-Council has added industry-leading programs to their portfolio to cover all aspects of information security including EC-Council Certified Security Analyst (ECSA), Computer Hacking Forensics Investigator (C|HFI), Certified Chief Information Security Officer (C|CISO), among others. EC-Council’s certifications also boast recognition and endorsements from various government agencies, including the UK’s intelligence and security agency, NCSC (via NCSC Certified Training), the United States Federal Government (via the Montgomery GI Bill), the National Security Agency (NSA), the Committee on National Security Systems (CNSS) and the American National Standards Institute (ANSI). EC-Council Foundation, the non-profit branch of EC-Council, created Global CyberLympics, the world’s first global hacking competition. EC-Council Foundation also hosts a suite of conferences across the U.S. and around the world including Hacker Halted, Global CISO Forum, TakeDownCon, and CISO Summit. For more information about EC-Council, please see https://staging-new.eccouncil.org About Doncaster and Bassetlaw Teaching Hospitals Doncaster and Bassetlaw Teaching Hospitals NHS Foundation Trust is one of Yorkshire’s leading acute trusts, serving a population of more than 420,000 across South Yorkshire, North Nottinghamshire and the surrounding areas. Hosting three main hospital sites and a number of additional services, the Trust is one of only five Teaching Hospitals in Yorkshire and by 2018 is projecting to train 25% of all medical students in the region, while we currently train 30% of all other healthcare professional students. A modern and forward-facing Trust employing over 6,000 members of staff, the hospital provides a full range of local hospital services across the following sites – Doncaster Royal Infirmary (DRI), Bassetlaw Hospital in Worksop (BH), and Montagu Hospital in Mexborough. For more information please visit: https://www.dbth.nhs.uk/ Sources: https://theconversation.com/why-has-healthcare-become-such-a-target-for-cyber-attackers-80656 https://iamcybersafe.org/GISWS/

Read article
The Alpha and Omega of Application Security Training: EC-Council’s New Application Security Engineer Credential, CASE

EC-Council, the world’s leading information security certification body, in its global mission to mitigate risks from cyber attacks, has introduced a brand-new application security training and certification program – Certified Application Security Engineer (C|ASE) for .NET and Java  programming languages, on 20th June, 2018, in their live webcasted global launch. This program is said to be one of the most comprehensive application security training programs encompassing security requirements beyond secure coding. In this training and certification program, EC-Council will train future application security engineers to generate secure applications, thereby generating fewer vulnerabilities and less risk  for the consumer. Despite there being over 21 million software developers globally, all web applications still  remain vulnerable, meaning application security should be foremost on the security industry’s mind.  . The training program was designed to ensure that organizations mitigate the risk of losing millions of dollars to security compromises that may arise in every step of the application development process. The program is also designed to help individuals focus on security in their day-to-day job roles (in the Software Development Life Cycle (SDLC)), therefore ensuring that security is part of testers’, developers’, and network administrators’ daily work. “Until a few years ago, network perimeter defense was considered to be the king of security. However today, that is just not enough,” says Jay Bavisi, President and CEO of the EC-Council Group, “This is 2018 and the hackers are smarter than before. They don’t just target the external layer of your network, which is already well-protected, rather they target internal vulnerabilities, in your application code.” This certification was built in accordance with the NICE 2.0 Framework, “Securely Provision” category, to provide for the Job Task Analysis (JTA) of roles involved in application security. About C|ASE While designing C|ASE, EC-Council focused on solving the problems that organizations face while dealing with application insecurity by highlighting application security threats and countering them through 10 comprehensive modules and 36 interactive labs. The program includes detailed security requirements for every stage of the SDLC including understanding application security, threats, and attacks, security requirements gathering, secure application design and architecture, secure coding practices for input validation, secure coding practices for authentication and authorization, secure coding practices for cryptography, secure coding practices for session management, secure coding practices for error handling, static and dynamic application security testing (SAST and DAST), and secure deployment and maintenance. For information about C|ASE, visit: https://staging-new.eccouncil.org/case/ or https://staging-new.eccouncil.org/programs/certified-application-security-engineer-case/ About EC-Council EC-Council has been the world’s leading information security certification body since the launch of their flagship program, Certified Ethical Hacker (C|EH), which created the ethical hacking industry in 2002. Since the launch of CEH, EC-Council has added industry-leading programs to their portfolio to cover all aspects of information security including EC-Council Certified Security Analyst (ECSA), Computer Hacking Forensics Investigator (C|HFI), Certified Chief Information Security Officer (C|CISO), among others. EC-Council Foundation, the non-profit branch of EC-Council, created Global CyberLympics, the world’s first global hacking competition. EC-Council Foundation also hosts a suite of conferences across the U.S. and around the world including Hacker Halted, Global CISO Forum, TakeDownCon, and CISO Summit. For more information about EC-Council, please see https://staging-new.eccouncil.org Sources: https://www.inkwoodresearch.com/reports/enterprise-application-market/ https://www.infosecurity-magazine.com/news/100-of-web-apps-contain/

Read article
Deloitte Romania and EC-Council Partner to Bring Cybersecurity Education to the Region

Deloitte Romania has now partnered with EC-Council in their efforts to create cybersecurity professionals from various organisations and sectors through the coveted, ANSI 17024 and NCSC accredited, Certified Ethical Hacker (C|EH), Certified Security Analyst (ECSA) and Computer Hacking Forensic Investigator (C|HFI) programs. “Deloitte Romania believes that constant change is the new norm for today’s businesses and in this changing environment, one has to be ready to act at a moment’s notice. That is why,  in an effort to strengthen the cybersecurity workforce in Romania and Central Europe through accredited programmes like the CEH, we eagerly welcome this partnership with EC-Council,” said George Daniliuc, Manager for Deloitte Cyber Academy, Romania A Certified Ethical Hacker is a skilled professional who understands and knows how to look for weaknesses and vulnerabilities in target systems and uses the same knowledge and tools as a malicious hacker, but in a lawful and legitimate manner to assess the security posture of a target system(s). The C|EH credential certifies individuals in the specific network security discipline of Ethical Hacking from a vendor-neutral perspective. “Cybersecurity is a major strategic risk for any individual. We live in a rapidly advancing world, where progress in technology often outpaces the speed at which we come to terms with it. In such a chaos, quality skill-based certifications can offer stability. We are optimistic that this partnership with Deloitte Romania will help future and current cybersecurity professionals fight prevailing cyber threats that they face on a daily basis,” said Jay Bavisi, President of the EC-Council Group. The goal of this course is to help professionals master an ethical hacking methodology that can be used in a penetration testing or ethical hacking situation. With this credential, professionals will be able to walk out the door with ethical hacking skills that are in high demand, as well as the internationally recognised Certified Ethical Hacker certification. About Deloitte Romania Deloitte is one of the leading professional services organizations in Romania providing, in cooperation with Reff & Associates, services in audit, tax, legal, consulting, financial advisory, risk advisory, business processes and technology services and other related services with more than 1100 professionals. Please see www.deloitte.com/ro/about to learn more about our global network of member firms. About Deloitte Cyber Academy Deloitte Academy has the mission to train specialists and experts in area such as: Cyber Security, Privacy, Audit, Tax, Legal, Consulting. Our role is to promote and increase level of knowledge and expertise among our customers and partners, respond to current market needs and anticipate future needs. All Deloitte Academy instructors are, above all, practitioners in the field they teach, sharing the experience and knowledge they have gained in the projects they were part of. About EC-Council EC-Council has been the world’s leading information security certification body since the launch of their flagship program, Certified Ethical Hacker (C|EH), which created the ethical hacking industry in 2002. Since the launch of CEH, EC-Council has added industry-leading programs to their portfolio to cover all aspects of information security including EC-Council Certified Security Analyst (ECSA), Computer Hacking Forensics Investigator (C|HFI), Certified Chief Information Security Officer (C|CISO), among others. EC-Council Foundation, the non-profit branch of EC-Council, created Global CyberLympics, the world’s first global hacking competition. EC-Council Foundation also hosts a suite of conferences across the U.S. and around the world including Hacker Halted, Global CISO Forum, TakeDownCon, and CISO Summit. For more information about EC-Council, please see https://staging-new.eccouncil.org About EC-Council Programmes EC-Council has certified over 200,000 security professionals. Individuals who have achieved EC-Council certifications include those from some of the finest organisations, militaries and governing bodies around the world. Many of these certifications are recognised worldwide and have received endorsements from various government agencies including the US Federal Government via the Montgomery GI Bill, National Security Agency (NSA),  Committee on National Security Systems (CNSS) and the UK’s NCSC. Moreover, the United States Department of Defense has included the CEH program into its Directive 8570 making it one of the mandatory standards to be achieved by Computer Network Defenders Service Providers (CND-SP).

Read article
EC-Council and ID Integrated Data: Protecting the Global Economy Via the Alpine Route

EC-Council announces a new partnership with Geneva-based Swiss training partner, ID Integrated Data. Dedicated to helping corporations, governments, and individuals beat cyber threats, EC-Council is pleased to team up with their new Swiss training partner, ID Integrated Data, based in Geneva. ID Integrated Data provides holistic support to cyber-unsafe organizations by  providing expert advice and support to IT professionals. The training center helps prepare students to take the certification exams through monthly exam preparation workshops. According to Dianne Little Goriup, Managing Director and Owner at ID Integrated Data, “By associating with world-class training bodies like EC-Council and by providing their industry leading Certified Ethical Hacker (CEH) program, we want to enable our candidates and clients to defend their respective networks by understanding how hackers think, thereby beating them at their own game.” Our team is devoted to helping Swiss businesses and organizations shield their important business data from malicious cyber threats.” In a 2017 survey published by KPMG focusing on the cybersecurity concerns of Swiss companies, it was reported that 88% of respondents had suffered a cyber-attack in the past 12 months. For Switzerland, a country that the IMF has projected to be the second richest country in the world based on its projected GDP per capita ranking (2016-2020) – ranking higher than Qatar, the US, and Singapore to name a few – the statistic of 88% is alarming to government and business interests, as well as to the entire global economy. A Swiss government pane consisting of academics and industry professionals concluded that major cyber-attacks (like the one affecting millions of U.S.-based Equifax users last year) are a major risk for Switzerland. Also, owing to the Swiss banking tradition of secrecy and data protection, Switzerland is fertile ground for cyber protection services. Effective cybersecurity, therefore, is vital to ensuring that the economy of Switzerland is not disrupted because of inadequate cyber security and awareness. While companies around the world are waking up to the need for better cyber-risk awareness and the implementation of effective defensive strategies against threats. It is important to note that although 71% respondents in the KPMG survey indicated a deep understanding of cyber risks, only 20% acknowledged and adopted a strategy of “security by design” – effectively ignoring this key security practice and showing that there is still a long way to go on the road to better security in practice. About EC-Council EC-Council has been the world’s leading information security certification body since the launch of their flagship program, Certified Ethical Hacker (CEH), which created the ethical hacking industry in 2002. Since the launch of CEH, EC-Council has added industry-leading programs to their portfolio to cover all aspects of information security including EC-Council Certified Security Analyst (ECSA), Computer Hacking Forensics Investigator (CHFI), Certified Chief Information Security Officer (CCISO), among others. EC-Council Foundation, the non-profit branch of EC-Council, created Global CyberLympics, the world’s first global hacking competition. EC-Council Foundation also hosts a suite of conferences across the US and around the world including Hacker Halted, Global CISO Forum, TakeDownCon, and CISO Summit. For more information about EC-Council, please see https://staging-new.eccouncil.org. Reference Links https://assets.kpmg.com/content/dam/kpmg/ch/pdf/cyber-security-media-conference-presentation-en.pdf https://www.admin.ch/gov/de/start/dokumentation/medienmitteilungen.msg-id-56715.html

Read article
EC-Council Appoints Maninder Pal Singh as Executive Director for EC-Council Global Services

Kuala Lumpur, Malaysia – EC-Council, the world’s leading information security certification body, today announced the appointment of Maninder Pal Singh as Executive Director of its consulting division, also known as EC-Council Global Services (EGS). EGS is composed of advisory and technical teams with years of corporate, field, and consulting experience. EGS teams are dedicated to helping organizations protect, detect, and react against applicable cyber threats in an increasingly complex legal and regulatory environment. Jay Bavisi, CEO of EC-Council Group and Chairman of the Board EC-Council University, explained, “It is widely accepted that we face a dearth of cybersecurity professionals and an estimated shortfall of 1.5 million professionals is expected by 2019. EC-Council Global Services strives to rope in suitable member firms to deliver high quality cybersecurity services across the globe. Maninder brings both experience and leadership in cybersecurity consulting and experience in leading security teams as a CISO in his earlier role and this is undeniably a huge asset for EGS.” Singh’s career spans over 14 years in IT and cybersecurity, which includes 5 years as a CISO. Prior to joining EC-Council, Singh was part of the cybersecurity practice at a big 4 consulting firm where he was responsible for managing client relations and driving large teams while ensuring the quality of services being delivered. “Cyber Risks are evolving by the day and are huge threats for most businesses across the globe. With cybersecurity being discussed by the board and increasing pressure from regulators, CISOs need to do a lot but with limited resources.” said Singh. “We at EGS intend to provide services and solutions to help manage Cyber Risks in a cost-effective manner, while leveraging the knowledge and expertise of the EC-Council teams that impart trainings at the Pentagon and the Department of Defense. I am very excited about the prospects and challenges we have in front of us.” To date, EC-Council has trained over 220,000 cybersecurity professionals in 145 countries with award-winning courses that include flagship Certified Ethical Hacker, as well as Certified Security Analyst, Computer Hacking Forensics Investigator, and Certified Chief Information Security Officer. For more information, contact: Rohit Sharma Director – Global Marketing, EC-Council [email protected] About EC-Council: EC-Council has been the world’s leading information security certification body since the launch of their flagship program, Certified Ethical Hacker (CEH), which created the ethical hacking industry in 2002. Since the launch of CEH, EC-Council has added industry-leading programs to their portfolio to cover all aspects of information security including EC-Council Certified Security Analyst (ECSA), Computer Hacking Forensics Investigator (CHFI), Certified Chief Information Security Officer (CCISO), among others. EC-Council Foundation, the non-profit branch of EC-Council, created Global Cyberlympics, the world’s first global hacking competition. EC-Council Foundation also hosts a suite of conferences across the US and around the world including Hacker Halted, Global CISO Forum, TakeDownCon, and CISO Summit. To learn more about EC-Council, visit: https://staging-new.eccouncil.org/

Read article
Nottingham City Council IT Training Service Selects EC-Council as its Official Training and Certification Partner in Nottingham

Nottingham City Council IT Training service is responsible for the development of critical IT and cybersecurity capacity and capability for all its 20 wards in Nottingham City. By partnering with EC-Council, IT professionals in Nottingham and the surrounding areas now have access to the world-class EC-Council C|EH (Certified Ethical Hacker) training and credentials. “Nottingham City Council IT Training Service wants to ensure that local public-sector bodies and the many high-profile businesses in Nottingham, can access high quality cybersecurity training locally, and as such, we welcome this strategic partnership with EC-Council,” said Simon Salmon, Head of IT at Nottingham City Council. IT Security remains a key concern across the globe, with 45% of organisations identifying that they have a shortage of cybersecurity skills, this amounts to a global shortage of some two million professionals. While the U.K. was once hailed as a world leader in cybersecurity expertise, today she stands the plight of facing escalating demand and a pool of resources that continues to shrink by the day. Training a task force to be able to tackle and resolve such concerns, seems to be the urgent need of the hour. “The shortage, both locally and internationally, of skilled security experts remains a key issue across all business sectors. The Certified Ethical Hacker program will help promote key digital skills across the East Midlands, helping us tackle the complex and increasingly prevalent cybersecurity challenges that we face,” said Jay Bavisi, President of the EC-Council Group. The shortage of quality cybersecurity professionals however, profoundly affects organizations operating in an increasingly digital world, with both public and private sector organizations feeling the impact. “As a training and certification body and the proud creator of C|EH, it is very heartening for EC-Council to see Nottingham City Council, exhibit such faith in our ethical hacking program. C|EH is famous across the globe for being one of the best ethical hacker courses and associations like such, which facilitate a smooth spread of critical knowledge to the deserving people, only bolster confidence in our products thus motivating us to go the extra mile in ensuring quality at all times”, said Philip Blake, Country Manager for EC-Council, United Kingdom. A Certified Ethical Hacker is a skilled professional who understands and knows how to look for weaknesses and vulnerabilities in target systems and uses the same knowledge and tools as a malicious hacker, but in a lawful and legitimate manner to assess the security posture of a target system. The C|EH credential certifies individuals in the specific network security discipline of Ethical Hacking from a vendor-neutral perspective. This course is designed to immerse professionals into the ‘Hacker Mind-set’ so that they can defend more effectively against attacks. Unlike other ethical hacking programs, C|EH puts a professional in the driver’s seat, utilizing a hands-on, labs driven environment which enhances the actual skill set required by today’s cybersecurity professionals. Professionals are exposed to an entirely different way of achieving optimal information security posture in their respective organization; by hacking it! They will be taught the five phases of ethical hacking and the ways to approach your target and succeed at breaking in every time! The five phases include reconnaissance, gaining access, enumeration, maintaining access, and covering your tracks. About EC-Council: EC-Council has been the world’s leading information security certification body since the launch of their flagship program, Certified Ethical Hacker (CEH), which created the ethical hacking industry in 2002. Since the launch of CEH, EC-Council has added industry-leading programs to their portfolio to cover all aspects of information security including EC-Council Certified Security Analyst (ECSA), Computer Hacking Forensics Investigator (CHFI), Certified Chief Information Security Officer (CCISO), among others. EC-Council Foundation, the non-profit branch of EC-Council, created Global Cyberlympics, the world’s first global hacking competition. EC-Council Foundation also hosts a suite of conferences across the U.S. and around the world including Hacker Halted, Global CISO Forum, TakeDownCon, and CISO Summit. For more information about EC-Council, please see https://staging-new.eccouncil.org About C|EH: The Certified Ethical Hacker program is the most desired information security training program any information security professional will ever want to be in. To master the hacking technologies, you will need to become one, but an ethical one! The accredited course provides the advanced hacking tools and techniques used by hackers and information security professionals alike to break into an organization. For more information, visit https://staging-new.eccouncil.org/programs/certified-ethical-hacker-ceh/

Read article