Security Chaos Engineering | Yury Niño Roa | Conf42 SRE 2020

Yury Nino Roa SRE @ Aval Digital Labs Chaos Gamedays have been successfully probed in the training of operations and on-call teams. However, they have not been explored completely when the failures are related to cyberattacks. In this talk we are going to explore how to adapt the methodology for Chaos Gamedays whit security experiments. First, the talk describes the foundations of security attacks: viruses, malware, ransomware, trojans, and cyberattacks. Second, a description of current techniques for high severity incident management will be explored: recording, triaging, tracking, and assigning business value to problems that impact critical systems. Third, it mentions the classical methodologies for training security engineering teams: red/blue teaming, purple teaming, and tabletop exercises. Fourth, a framework based on these classical methods and Chaos Gamedays are presented. The intention is to ensure that the teams operate effectively during a cyberattack and respond with resilience strategies to solve them. Fifth, it includes some recommendations result from our learning practicing these types of exercises. — 🥇 Gold Sponsors: LightStep Google 🥈 Silver Sponsors: MayaData Aval Digital Labs Elastic The Pathwayz Group 🤝 Media Partner JetBrains — 0:00 Intro 0:35 Talk — Website 🚀🪐 https://www.conf42.com Reach out 📧📭 mark@conf42.com Conf42 Discord 🧑‍🤝‍🧑💬 https://discord.com/invite/dT6ZsFJ5ZM LinkedIn 👨‍💼💼 https://www.linkedin.com/company/49110720/ Twitter 🎵🐦https://twitter.com/conf42com Conf42Cast @ Spotify 🎧 https://tinyurl.com/bnyj6a8y