SlideShare ist ein Scribd-Unternehmen logo
1 von 11
Downloaden Sie, um offline zu lesen
Cyber Security
The Service Providers Perspective
By: Samit Jana , ISPAN
30th Jan 2019
.
Cyber Security Practices and Future Plan:
Real Scenario in ISPs
ISPAN: An Introduction
• Internet Service Provider Associations of
Nepal, Established in 1998
• Mission to Develop and Provide Affordable
Internet for everyone in Nepal
• Promote and Protect interest of ISP and ICT
industry as whole
• Works closely with NTA, MOIC, NEA, NDCL,
CAN, NPIX and various other agencies in ICT
for the development of Internet in Nepal
• 15 officially Members Organization , 100+
unofficially
Telecom Sector
Statistics:
122 registered
ISPs ~30 active
6 Licensed Mobile
Operators
3 active
6 Commercial
Datacenters in
operations
38 Millions Mobile
Subscribers
1Million Fixed
Broadband
Connections
700,000 FTTH
connections
210,000 ADSL
connections
55,000 Fixed
Wireless
connections
50,000 Cable
DOCSIS
2.5 Million Digital
TV
300,000 IPTV
Fastest Fixed
Broadband and
Growth in the
Region
One of the
Cheapest Fixed
Broadband in the
World
Google &
Facebook makes
70% of the
Internet Traffic
Our Internet Connectivity to the
outside World:
Kathmandu
Tanakpur Bhairawa Birgunj Dhalkebar Duhabi
Rasuwagadi Tatopani
How we are connected to the
Internet?
Other
ISP/Telecom
Internet out side Nepal
BNG
Router
Mobile
Gateway
Packet Core
Routers
Application
Servers
OLT/DSLAM
Cell Site
Router
Mobile/Wireless
Base Station
Teleport/Headend
Network
Service Provider
End Users
Primary Focus of
Service Providers:
• Build Infrastructure for enabling
connectivity
• Focus more on accessibility and
affordablity
• Increase Service Relialbility
Why are we concerned about Cyber Security
today?
• We are Late
• Internet Protocal was not designed for open
nature network
• TCP/IP developed by ARPANET for Military
Communciation in Secured environment
• Basic design criteria: stablity not security
• Took almost 20yrs to become Public and Open
• Unimaginable growth
• Speed, Reach, Affordablity Triumped
Security..!
What does Service Providers do?
• Own Infrastructure:
• Implements Best Common Security Practices (BCP)
• Analyze Traffic and Flows to detect and mitigate DDOS
• Manages Firewall/UTM
• For Government:
• Stores Subscribers Internet Lots: AAA, CGNAT, DNS &
Web for digital forensic
• Few Enable v6 – Helpful for forensic but v6 security still
remains a concern
• Block Domain Name and IP address upon request
• For End Users:
• Some provides per DNS based security services in the
Internet and Email Security
• Provides Router, Firewall, IDS, IPS to Enterprise as
managed service
• Awareness programs
Service Providers Dilemma:
• Build Infrastructure focusing on enabling
connectivity or security ?
• Focus more on network accessibility and service
affordablity or security ?
• How to Store and Analyze the massive amount logs
and graphs data with minimal invesment?
• Are we responsible to sniff and analyze user’s
traffic ?
• Can we do content filtering?
• Traffic Survelliance and Security may degrade
network performance?
• Most of the ISPs are already struggling due to high
infrastructure capex/opex but low ARPU and stiff
competition , can I afford to spend more on security
now?
What can Service
Providers do ?
• Collaborate and Facilitate :
• Government on Cyber Security Act and
Policy formulation
• Cyber Security Awareness Programs
• Implement and recommend security
BCP for end users and organizations
• Sharing operational knowledge and
Threat Analysis
• In Digital Forensic helping law
enforcement agencies , CERT or SoC
• Becoming major stakeholders to
strengthen National Cyber Security
situation
• To find the right balance between:
• Security vs Ease of Use
• Security Cost vs Network/Application
Performance
Cyber Security is Best Effort.
It is everyone’s responsibility !
-From Internet

Weitere ähnliche Inhalte

Was ist angesagt?

ARM 7: ROA session
ARM 7: ROA sessionARM 7: ROA session
ARM 7: ROA sessionAPNIC
 
Cybersecurity response in the Pacific
Cybersecurity response in the PacificCybersecurity response in the Pacific
Cybersecurity response in the PacificAPNIC
 
Strenthening Critical Internet Infrastructure
Strenthening Critical Internet InfrastructureStrenthening Critical Internet Infrastructure
Strenthening Critical Internet InfrastructureFrancis Amaning
 
Connecting the next billions
Connecting the next billionsConnecting the next billions
Connecting the next billionsAPNIC
 
APNIC Update - MMNOG 2017
APNIC Update - MMNOG 2017APNIC Update - MMNOG 2017
APNIC Update - MMNOG 2017APNIC
 
Internet infrastructure in South Asia
Internet infrastructure in South AsiaInternet infrastructure in South Asia
Internet infrastructure in South AsiaAPNIC
 
What is APNIC: Infotel 2014
What is APNIC: Infotel 2014What is APNIC: Infotel 2014
What is APNIC: Infotel 2014APNIC
 
APNIC Update for ARIN 35
APNIC Update for ARIN 35APNIC Update for ARIN 35
APNIC Update for ARIN 35APNIC
 
MMNOG: Internet infrastructure comparisons in the Asia Pacific
MMNOG: Internet infrastructure comparisons in the Asia Pacific MMNOG: Internet infrastructure comparisons in the Asia Pacific
MMNOG: Internet infrastructure comparisons in the Asia Pacific APNIC
 
AFRINIC 24 - APNIC Update
AFRINIC 24 - APNIC UpdateAFRINIC 24 - APNIC Update
AFRINIC 24 - APNIC UpdateRobbie Mitchell
 
APNIC Update, APEC TEL 54
APNIC Update, APEC TEL 54APNIC Update, APEC TEL 54
APNIC Update, APEC TEL 54APNIC
 
Stockholm Internet Forum 2017: Development of CERTs in the Asia Pacific
Stockholm Internet Forum 2017: Development of CERTs in the Asia PacificStockholm Internet Forum 2017: Development of CERTs in the Asia Pacific
Stockholm Internet Forum 2017: Development of CERTs in the Asia PacificAPNIC
 
Jisc cloud services: helping our members deliver their cloud strategies
Jisc cloud services: helping our members deliver their cloud strategiesJisc cloud services: helping our members deliver their cloud strategies
Jisc cloud services: helping our members deliver their cloud strategiesJisc
 
Preparing healthcare networks for mobility, digitalization and IoT
Preparing healthcare networks for mobility, digitalization and IoTPreparing healthcare networks for mobility, digitalization and IoT
Preparing healthcare networks for mobility, digitalization and IoTAlcatel-Lucent Enterprise
 
Apnic update-btnog1-sc
Apnic update-btnog1-scApnic update-btnog1-sc
Apnic update-btnog1-scAPNIC
 
PCTA 2019: How to obtain Internet resources to join the IXP
PCTA 2019: How to obtain Internet resources to join the IXPPCTA 2019: How to obtain Internet resources to join the IXP
PCTA 2019: How to obtain Internet resources to join the IXPAPNIC
 
IPv6 Adoption by ASEAN Government Agencies
IPv6 Adoption by ASEAN Government AgenciesIPv6 Adoption by ASEAN Government Agencies
IPv6 Adoption by ASEAN Government AgenciesAPNIC
 
CommuniCast 2014: APNIC Services Update
CommuniCast 2014: APNIC Services Update CommuniCast 2014: APNIC Services Update
CommuniCast 2014: APNIC Services Update APNIC
 
Hfd media network fastershire june 2013
Hfd media network fastershire   june 2013Hfd media network fastershire   june 2013
Hfd media network fastershire june 2013Natalie Sadler
 

Was ist angesagt? (20)

ARM 7: ROA session
ARM 7: ROA sessionARM 7: ROA session
ARM 7: ROA session
 
Cybersecurity response in the Pacific
Cybersecurity response in the PacificCybersecurity response in the Pacific
Cybersecurity response in the Pacific
 
Strenthening Critical Internet Infrastructure
Strenthening Critical Internet InfrastructureStrenthening Critical Internet Infrastructure
Strenthening Critical Internet Infrastructure
 
Connecting the next billions
Connecting the next billionsConnecting the next billions
Connecting the next billions
 
APNIC Update - MMNOG 2017
APNIC Update - MMNOG 2017APNIC Update - MMNOG 2017
APNIC Update - MMNOG 2017
 
Internet infrastructure in South Asia
Internet infrastructure in South AsiaInternet infrastructure in South Asia
Internet infrastructure in South Asia
 
What is APNIC: Infotel 2014
What is APNIC: Infotel 2014What is APNIC: Infotel 2014
What is APNIC: Infotel 2014
 
APNIC Update for ARIN 35
APNIC Update for ARIN 35APNIC Update for ARIN 35
APNIC Update for ARIN 35
 
MMNOG: Internet infrastructure comparisons in the Asia Pacific
MMNOG: Internet infrastructure comparisons in the Asia Pacific MMNOG: Internet infrastructure comparisons in the Asia Pacific
MMNOG: Internet infrastructure comparisons in the Asia Pacific
 
AFRINIC 24 - APNIC Update
AFRINIC 24 - APNIC UpdateAFRINIC 24 - APNIC Update
AFRINIC 24 - APNIC Update
 
APNIC Update, APEC TEL 54
APNIC Update, APEC TEL 54APNIC Update, APEC TEL 54
APNIC Update, APEC TEL 54
 
Stockholm Internet Forum 2017: Development of CERTs in the Asia Pacific
Stockholm Internet Forum 2017: Development of CERTs in the Asia PacificStockholm Internet Forum 2017: Development of CERTs in the Asia Pacific
Stockholm Internet Forum 2017: Development of CERTs in the Asia Pacific
 
ION Sri Lanka - IPv6 Deployment Update
ION Sri Lanka - IPv6 Deployment UpdateION Sri Lanka - IPv6 Deployment Update
ION Sri Lanka - IPv6 Deployment Update
 
Jisc cloud services: helping our members deliver their cloud strategies
Jisc cloud services: helping our members deliver their cloud strategiesJisc cloud services: helping our members deliver their cloud strategies
Jisc cloud services: helping our members deliver their cloud strategies
 
Preparing healthcare networks for mobility, digitalization and IoT
Preparing healthcare networks for mobility, digitalization and IoTPreparing healthcare networks for mobility, digitalization and IoT
Preparing healthcare networks for mobility, digitalization and IoT
 
Apnic update-btnog1-sc
Apnic update-btnog1-scApnic update-btnog1-sc
Apnic update-btnog1-sc
 
PCTA 2019: How to obtain Internet resources to join the IXP
PCTA 2019: How to obtain Internet resources to join the IXPPCTA 2019: How to obtain Internet resources to join the IXP
PCTA 2019: How to obtain Internet resources to join the IXP
 
IPv6 Adoption by ASEAN Government Agencies
IPv6 Adoption by ASEAN Government AgenciesIPv6 Adoption by ASEAN Government Agencies
IPv6 Adoption by ASEAN Government Agencies
 
CommuniCast 2014: APNIC Services Update
CommuniCast 2014: APNIC Services Update CommuniCast 2014: APNIC Services Update
CommuniCast 2014: APNIC Services Update
 
Hfd media network fastershire june 2013
Hfd media network fastershire   june 2013Hfd media network fastershire   june 2013
Hfd media network fastershire june 2013
 

Ähnlich wie Cyber Security Practices and Future Plan: Real Scenario in ISPs In Nepal

23. NECS 2016 _ Digital Connectivity_ Mr. Anupam Agarwal
23. NECS 2016 _ Digital Connectivity_ Mr. Anupam Agarwal23. NECS 2016 _ Digital Connectivity_ Mr. Anupam Agarwal
23. NECS 2016 _ Digital Connectivity_ Mr. Anupam AgarwalFICCINorthEast
 
Internet infrastruture development in the asia pacific
Internet infrastruture development in the asia pacificInternet infrastruture development in the asia pacific
Internet infrastruture development in the asia pacificAPNIC
 
2015 i cdn_cloud_vypa_services
2015 i cdn_cloud_vypa_services2015 i cdn_cloud_vypa_services
2015 i cdn_cloud_vypa_servicesnetstairs
 
Lao ICT Expo 2019: Your IP, Your Network
Lao ICT Expo 2019: Your IP, Your NetworkLao ICT Expo 2019: Your IP, Your Network
Lao ICT Expo 2019: Your IP, Your NetworkAPNIC
 
NetIX Moving Traffic to the Expressway 2016
NetIX Moving Traffic to the Expressway 2016NetIX Moving Traffic to the Expressway 2016
NetIX Moving Traffic to the Expressway 2016Yana Filipova
 
Internet Economics: Urban and Rural perspectives
Internet Economics: Urban and Rural perspectivesInternet Economics: Urban and Rural perspectives
Internet Economics: Urban and Rural perspectivesSayeef Rahman
 
BICS empowers predictive analytics and customer centricity with a Hadoop base...
BICS empowers predictive analytics and customer centricity with a Hadoop base...BICS empowers predictive analytics and customer centricity with a Hadoop base...
BICS empowers predictive analytics and customer centricity with a Hadoop base...DataWorks Summit
 
BCN (Nigeria) strategies to promote broadband & digitization
BCN (Nigeria) strategies to promote broadband & digitization BCN (Nigeria) strategies to promote broadband & digitization
BCN (Nigeria) strategies to promote broadband & digitization Myles Freedman
 
ISP business plan
ISP business plan ISP business plan
ISP business plan ontor omi
 
IOT, It's the Internet...only bigger
IOT, It's the Internet...only biggerIOT, It's the Internet...only bigger
IOT, It's the Internet...only biggerAPNIC
 
Driving Networks Forward to the Hyper-Connected World
Driving Networks Forward to the Hyper-Connected WorldDriving Networks Forward to the Hyper-Connected World
Driving Networks Forward to the Hyper-Connected WorldQuEST Forum
 
Presentation on adoption of cloud and outsourced services
Presentation on adoption of cloud and outsourced servicesPresentation on adoption of cloud and outsourced services
Presentation on adoption of cloud and outsourced servicesJustin Thomas
 
Napoleon - C Squared.pdf
Napoleon - C Squared.pdfNapoleon - C Squared.pdf
Napoleon - C Squared.pdfAdrian Hall
 
Lao ICT Expo 2018: Introduction to the Internet and APNIC
Lao ICT Expo 2018: Introduction to the Internet and APNICLao ICT Expo 2018: Introduction to the Internet and APNIC
Lao ICT Expo 2018: Introduction to the Internet and APNICAPNIC
 
LKNOG3 QoE
LKNOG3 QoELKNOG3 QoE
LKNOG3 QoELKNOG
 
The Data Center of the Future: The New IP - Phil O'Reilly
The Data Center of the Future: The New IP - Phil O'ReillyThe Data Center of the Future: The New IP - Phil O'Reilly
The Data Center of the Future: The New IP - Phil O'Reillyscoopnewsgroup
 

Ähnlich wie Cyber Security Practices and Future Plan: Real Scenario in ISPs In Nepal (20)

23. NECS 2016 _ Digital Connectivity_ Mr. Anupam Agarwal
23. NECS 2016 _ Digital Connectivity_ Mr. Anupam Agarwal23. NECS 2016 _ Digital Connectivity_ Mr. Anupam Agarwal
23. NECS 2016 _ Digital Connectivity_ Mr. Anupam Agarwal
 
Internet infrastruture development in the asia pacific
Internet infrastruture development in the asia pacificInternet infrastruture development in the asia pacific
Internet infrastruture development in the asia pacific
 
2015 i cdn_cloud_vypa_services
2015 i cdn_cloud_vypa_services2015 i cdn_cloud_vypa_services
2015 i cdn_cloud_vypa_services
 
Lao ICT Expo 2019: Your IP, Your Network
Lao ICT Expo 2019: Your IP, Your NetworkLao ICT Expo 2019: Your IP, Your Network
Lao ICT Expo 2019: Your IP, Your Network
 
NetIX Moving Traffic to the Expressway 2016
NetIX Moving Traffic to the Expressway 2016NetIX Moving Traffic to the Expressway 2016
NetIX Moving Traffic to the Expressway 2016
 
Venturefest Launch Event - PM Session
Venturefest Launch Event - PM SessionVenturefest Launch Event - PM Session
Venturefest Launch Event - PM Session
 
Internet Economics: Urban and Rural perspectives
Internet Economics: Urban and Rural perspectivesInternet Economics: Urban and Rural perspectives
Internet Economics: Urban and Rural perspectives
 
BICS empowers predictive analytics and customer centricity with a Hadoop base...
BICS empowers predictive analytics and customer centricity with a Hadoop base...BICS empowers predictive analytics and customer centricity with a Hadoop base...
BICS empowers predictive analytics and customer centricity with a Hadoop base...
 
BCN (Nigeria) strategies to promote broadband & digitization
BCN (Nigeria) strategies to promote broadband & digitization BCN (Nigeria) strategies to promote broadband & digitization
BCN (Nigeria) strategies to promote broadband & digitization
 
ISP business plan
ISP business plan ISP business plan
ISP business plan
 
inspiration day_linkedin.pdf
inspiration day_linkedin.pdfinspiration day_linkedin.pdf
inspiration day_linkedin.pdf
 
IOT, It's the Internet...only bigger
IOT, It's the Internet...only biggerIOT, It's the Internet...only bigger
IOT, It's the Internet...only bigger
 
Driving Networks Forward to the Hyper-Connected World
Driving Networks Forward to the Hyper-Connected WorldDriving Networks Forward to the Hyper-Connected World
Driving Networks Forward to the Hyper-Connected World
 
Ihan tech check 2020
Ihan tech check 2020Ihan tech check 2020
Ihan tech check 2020
 
Presentation on adoption of cloud and outsourced services
Presentation on adoption of cloud and outsourced servicesPresentation on adoption of cloud and outsourced services
Presentation on adoption of cloud and outsourced services
 
Napoleon - C Squared.pdf
Napoleon - C Squared.pdfNapoleon - C Squared.pdf
Napoleon - C Squared.pdf
 
Lao ICT Expo 2018: Introduction to the Internet and APNIC
Lao ICT Expo 2018: Introduction to the Internet and APNICLao ICT Expo 2018: Introduction to the Internet and APNIC
Lao ICT Expo 2018: Introduction to the Internet and APNIC
 
Tstat conext
Tstat conextTstat conext
Tstat conext
 
LKNOG3 QoE
LKNOG3 QoELKNOG3 QoE
LKNOG3 QoE
 
The Data Center of the Future: The New IP - Phil O'Reilly
The Data Center of the Future: The New IP - Phil O'ReillyThe Data Center of the Future: The New IP - Phil O'Reilly
The Data Center of the Future: The New IP - Phil O'Reilly
 

Mehr von ICT Frame Magazine Pvt. Ltd.

Analysis of card management and associated operational risk in banks of Nepal
Analysis of card management and associated operational risk in banks of NepalAnalysis of card management and associated operational risk in banks of Nepal
Analysis of card management and associated operational risk in banks of NepalICT Frame Magazine Pvt. Ltd.
 
Cyber Security Challenges in Developing Countries with Reference to Legislat...
 Cyber Security Challenges in Developing Countries with Reference to Legislat... Cyber Security Challenges in Developing Countries with Reference to Legislat...
Cyber Security Challenges in Developing Countries with Reference to Legislat...ICT Frame Magazine Pvt. Ltd.
 
Nepal Rastra Bank Information Technology Guidelines
Nepal Rastra Bank Information Technology GuidelinesNepal Rastra Bank Information Technology Guidelines
Nepal Rastra Bank Information Technology GuidelinesICT Frame Magazine Pvt. Ltd.
 
Cyber Crime In Nepal: Threats And Minimize The Cyber Security Issues
Cyber Crime In Nepal: Threats And Minimize The Cyber Security IssuesCyber Crime In Nepal: Threats And Minimize The Cyber Security Issues
Cyber Crime In Nepal: Threats And Minimize The Cyber Security IssuesICT Frame Magazine Pvt. Ltd.
 
Workshop Proposal APRIGF 2020 (Advocate Baburam Aryal)
Workshop Proposal APRIGF 2020 (Advocate Baburam Aryal)Workshop Proposal APRIGF 2020 (Advocate Baburam Aryal)
Workshop Proposal APRIGF 2020 (Advocate Baburam Aryal)ICT Frame Magazine Pvt. Ltd.
 

Mehr von ICT Frame Magazine Pvt. Ltd. (14)

InfoDevelopers TechTalk Series
InfoDevelopers TechTalk SeriesInfoDevelopers TechTalk Series
InfoDevelopers TechTalk Series
 
Web application security measures
Web application security measuresWeb application security measures
Web application security measures
 
Cyber security awareness presentation nepal
Cyber security awareness presentation nepalCyber security awareness presentation nepal
Cyber security awareness presentation nepal
 
Analysis of card management and associated operational risk in banks of Nepal
Analysis of card management and associated operational risk in banks of NepalAnalysis of card management and associated operational risk in banks of Nepal
Analysis of card management and associated operational risk in banks of Nepal
 
Possibilities of e-learning in Nepal
Possibilities of e-learning in NepalPossibilities of e-learning in Nepal
Possibilities of e-learning in Nepal
 
Risk Based Approach In cyber Security In Nepal
Risk Based Approach In cyber Security In NepalRisk Based Approach In cyber Security In Nepal
Risk Based Approach In cyber Security In Nepal
 
Cyber Security Challenges in Developing Countries with Reference to Legislat...
 Cyber Security Challenges in Developing Countries with Reference to Legislat... Cyber Security Challenges in Developing Countries with Reference to Legislat...
Cyber Security Challenges in Developing Countries with Reference to Legislat...
 
Nepal internet governance forum 2018 report
Nepal internet governance forum 2018 reportNepal internet governance forum 2018 report
Nepal internet governance forum 2018 report
 
Nepal Rastra Bank Information Technology Guidelines
Nepal Rastra Bank Information Technology GuidelinesNepal Rastra Bank Information Technology Guidelines
Nepal Rastra Bank Information Technology Guidelines
 
IT Directives For Insurance Company, 2076
IT Directives For Insurance Company, 2076IT Directives For Insurance Company, 2076
IT Directives For Insurance Company, 2076
 
IGF 2020 NRIs Virtual Meeting II
IGF 2020 NRIs Virtual Meeting IIIGF 2020 NRIs Virtual Meeting II
IGF 2020 NRIs Virtual Meeting II
 
Cyber Crime In Nepal: Threats And Minimize The Cyber Security Issues
Cyber Crime In Nepal: Threats And Minimize The Cyber Security IssuesCyber Crime In Nepal: Threats And Minimize The Cyber Security Issues
Cyber Crime In Nepal: Threats And Minimize The Cyber Security Issues
 
Workshop Proposal APRIGF 2020 (Advocate Baburam Aryal)
Workshop Proposal APRIGF 2020 (Advocate Baburam Aryal)Workshop Proposal APRIGF 2020 (Advocate Baburam Aryal)
Workshop Proposal APRIGF 2020 (Advocate Baburam Aryal)
 
ICT MAGAZINE NEPAL (ICTFRAME.COM)
ICT MAGAZINE NEPAL (ICTFRAME.COM)ICT MAGAZINE NEPAL (ICTFRAME.COM)
ICT MAGAZINE NEPAL (ICTFRAME.COM)
 

Kürzlich hochgeladen

The Ultimate Guide to Choosing WordPress Pros and Cons
The Ultimate Guide to Choosing WordPress Pros and ConsThe Ultimate Guide to Choosing WordPress Pros and Cons
The Ultimate Guide to Choosing WordPress Pros and ConsPixlogix Infotech
 
Advanced Computer Architecture – An Introduction
Advanced Computer Architecture – An IntroductionAdvanced Computer Architecture – An Introduction
Advanced Computer Architecture – An IntroductionDilum Bandara
 
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptxUse of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptxLoriGlavin3
 
unit 4 immunoblotting technique complete.pptx
unit 4 immunoblotting technique complete.pptxunit 4 immunoblotting technique complete.pptx
unit 4 immunoblotting technique complete.pptxBkGupta21
 
What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024Stephanie Beckett
 
"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii SoldatenkoFwdays
 
The State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptxThe State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptxLoriGlavin3
 
Unraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdfUnraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdfAlex Barbosa Coqueiro
 
From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .Alan Dix
 
Gen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfGen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfAddepto
 
Connect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck PresentationConnect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck PresentationSlibray Presentation
 
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptxThe Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptxLoriGlavin3
 
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024BookNet Canada
 
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptxMerck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptxLoriGlavin3
 
Take control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test SuiteTake control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test SuiteDianaGray10
 
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Mark Simos
 
Streamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project SetupStreamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project SetupFlorian Wilhelm
 
Commit 2024 - Secret Management made easy
Commit 2024 - Secret Management made easyCommit 2024 - Secret Management made easy
Commit 2024 - Secret Management made easyAlfredo García Lavilla
 
SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024Lorenzo Miniero
 

Kürzlich hochgeladen (20)

The Ultimate Guide to Choosing WordPress Pros and Cons
The Ultimate Guide to Choosing WordPress Pros and ConsThe Ultimate Guide to Choosing WordPress Pros and Cons
The Ultimate Guide to Choosing WordPress Pros and Cons
 
Advanced Computer Architecture – An Introduction
Advanced Computer Architecture – An IntroductionAdvanced Computer Architecture – An Introduction
Advanced Computer Architecture – An Introduction
 
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptxUse of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
 
unit 4 immunoblotting technique complete.pptx
unit 4 immunoblotting technique complete.pptxunit 4 immunoblotting technique complete.pptx
unit 4 immunoblotting technique complete.pptx
 
What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024
 
"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko
 
The State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptxThe State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptx
 
Unraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdfUnraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdf
 
From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .
 
Gen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfGen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdf
 
Connect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck PresentationConnect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck Presentation
 
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptxThe Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
 
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
 
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptxMerck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptx
 
Take control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test SuiteTake control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test Suite
 
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
 
Streamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project SetupStreamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project Setup
 
DMCC Future of Trade Web3 - Special Edition
DMCC Future of Trade Web3 - Special EditionDMCC Future of Trade Web3 - Special Edition
DMCC Future of Trade Web3 - Special Edition
 
Commit 2024 - Secret Management made easy
Commit 2024 - Secret Management made easyCommit 2024 - Secret Management made easy
Commit 2024 - Secret Management made easy
 
SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024
 

Cyber Security Practices and Future Plan: Real Scenario in ISPs In Nepal

  • 1. Cyber Security The Service Providers Perspective By: Samit Jana , ISPAN 30th Jan 2019 . Cyber Security Practices and Future Plan: Real Scenario in ISPs
  • 2. ISPAN: An Introduction • Internet Service Provider Associations of Nepal, Established in 1998 • Mission to Develop and Provide Affordable Internet for everyone in Nepal • Promote and Protect interest of ISP and ICT industry as whole • Works closely with NTA, MOIC, NEA, NDCL, CAN, NPIX and various other agencies in ICT for the development of Internet in Nepal • 15 officially Members Organization , 100+ unofficially
  • 3. Telecom Sector Statistics: 122 registered ISPs ~30 active 6 Licensed Mobile Operators 3 active 6 Commercial Datacenters in operations 38 Millions Mobile Subscribers 1Million Fixed Broadband Connections 700,000 FTTH connections 210,000 ADSL connections 55,000 Fixed Wireless connections 50,000 Cable DOCSIS 2.5 Million Digital TV 300,000 IPTV Fastest Fixed Broadband and Growth in the Region One of the Cheapest Fixed Broadband in the World Google & Facebook makes 70% of the Internet Traffic
  • 4. Our Internet Connectivity to the outside World: Kathmandu Tanakpur Bhairawa Birgunj Dhalkebar Duhabi Rasuwagadi Tatopani
  • 5. How we are connected to the Internet? Other ISP/Telecom Internet out side Nepal BNG Router Mobile Gateway Packet Core Routers Application Servers OLT/DSLAM Cell Site Router Mobile/Wireless Base Station Teleport/Headend Network Service Provider End Users
  • 6. Primary Focus of Service Providers: • Build Infrastructure for enabling connectivity • Focus more on accessibility and affordablity • Increase Service Relialbility
  • 7. Why are we concerned about Cyber Security today? • We are Late • Internet Protocal was not designed for open nature network • TCP/IP developed by ARPANET for Military Communciation in Secured environment • Basic design criteria: stablity not security • Took almost 20yrs to become Public and Open • Unimaginable growth • Speed, Reach, Affordablity Triumped Security..!
  • 8. What does Service Providers do? • Own Infrastructure: • Implements Best Common Security Practices (BCP) • Analyze Traffic and Flows to detect and mitigate DDOS • Manages Firewall/UTM • For Government: • Stores Subscribers Internet Lots: AAA, CGNAT, DNS & Web for digital forensic • Few Enable v6 – Helpful for forensic but v6 security still remains a concern • Block Domain Name and IP address upon request • For End Users: • Some provides per DNS based security services in the Internet and Email Security • Provides Router, Firewall, IDS, IPS to Enterprise as managed service • Awareness programs
  • 9. Service Providers Dilemma: • Build Infrastructure focusing on enabling connectivity or security ? • Focus more on network accessibility and service affordablity or security ? • How to Store and Analyze the massive amount logs and graphs data with minimal invesment? • Are we responsible to sniff and analyze user’s traffic ? • Can we do content filtering? • Traffic Survelliance and Security may degrade network performance? • Most of the ISPs are already struggling due to high infrastructure capex/opex but low ARPU and stiff competition , can I afford to spend more on security now?
  • 10. What can Service Providers do ? • Collaborate and Facilitate : • Government on Cyber Security Act and Policy formulation • Cyber Security Awareness Programs • Implement and recommend security BCP for end users and organizations • Sharing operational knowledge and Threat Analysis • In Digital Forensic helping law enforcement agencies , CERT or SoC • Becoming major stakeholders to strengthen National Cyber Security situation • To find the right balance between: • Security vs Ease of Use • Security Cost vs Network/Application Performance
  • 11. Cyber Security is Best Effort. It is everyone’s responsibility ! -From Internet