diff --git a/x.13-interpol/content.tex b/x.13-interpol/content.tex index c96dd62..d1d6278 100755 --- a/x.13-interpol/content.tex +++ b/x.13-interpol/content.tex @@ -5,6 +5,23 @@ \titlepage \end{frame} +\begin{frame} + \frametitle{about CIRCL and MISP} + \begin{itemize} + \item CIRCL + \begin{itemize} + \item National CERT for the for the private sector, communes, non-govermental entities in Luxembourg + \item Government-driven initiative, funded by the ministry of economy + \item Mission is to provide a systematic response facility to computer security threats and incidents + \end{itemize} + \item Our relationship with MISP has two sides + \begin{itemize} + \item We {\bf lead the development} of the MISP platform + \item We are also involved with and {\bf run several communities} + \end{itemize} + \end{itemize} +\end{frame} + \begin{frame} \frametitle{MISP: Started from a practical use-case} \begin{itemize} @@ -17,20 +34,14 @@ \end{frame} \begin{frame} -\frametitle{about CIRCL} -The Computer Incident Response Center Luxembourg (CIRCL) is a government-driven initiative designed to provide a systematic response facility to computer security threats and incidents. CIRCL is the CERT for the private sector, communes and non-governmental entities in Luxembourg and is operated by securitymadein.lu g.i.e. -\end{frame} - -\begin{frame} -\frametitle{MISP and CIRCL} +\frametitle{What is MISP?} \begin{itemize} -\item CIRCL is mandated by the Ministry of Economy and acting as the Luxembourg National CERT for private sector. -\item CIRCL leads the development of the Open Source MISP threat intelligence platform which is used by many military or intelligence communities, private companies, financial sector, National CERTs and LEAs globally. -\item {\bf CIRCL runs multiple large MISP communities performing active daily threat-intelligence sharing}. + \item MISP is a {\bf threat information sharing} platform that is free \& open source software + \item A tool that {\bf collects} information from partners, your analysts, your tools, feeds + \item Normalises, {\bf correlates}, {\bf enriches} the data + \item Allows teams and communities to {\bf collaborate} + \item {\bf Feeds} automated protective tools and analyst tools with the output \end{itemize} -\begin{center} - \includegraphics{en_cef.png} -\end{center} \end{frame} \begin{frame}