Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Risk

12/12/2011
01:28 PM
Dark Reading
Dark Reading
Products and Releases
50%
50%

(ISC) Announces Call For Speakers For Second Annual Security Congress

More than 20,000 information and physical security practitioners are expected to attend the joint event

London, U.K., December 12, 2011 — (ISC)' (“ISC)-squared”), the world’s largest information security professional body and administrators of the CISSP', today announced the call for speakers for the second annual (ISC) Security Congress, being held September 10-13, 2012, in Philadelphia, USA.

The event, being collocated with the ASIS International 58th Annual Seminar and Exhibits, will bring together security professionals from all disciplines, making it the largest security event of its kind in the world. More than 20,000 information and physical security practitioners are expected to attend the joint event. (ISC)’s primary objective with this event is to provide top-notch information security education to all levels of professionals, as well as offer sessions to all attendees addressing the intersection of physical and logical security.

“We are delighted to once again align with ASIS to host this superior event that brings together leading security professionals from all disciplines,” said W. Hord Tipton, CISSP-ISSEP, CAP, executive director of (ISC). “The integration of physical and logical security has become critical over the years, and we believe that this cooperative approach will benefit the entire security industry and provide attendees with valuable tools that can further their security knowledge and skills across multiple disciplines. We’re once again aiming to make Congress 2012 the ‘can’t miss’ event of the year.”

Registered attendees to either program can attend any of more than 150 conference sessions throughout 22 education tracks, or mingle with more than 700 exhibitors, as well as sit in on keynote addresses, to be announced at a later date.

Also, as part of the conference, (ISC) is hosting a series of activities for attendees that include:

50+ information security education sessions An exclusive (ISC) Town Hall and reception for (ISC) members Free half-day credential clinics for (ISC)’s Certified Information Systems Security Professional (CISSP'), Certified Secure Software Lifecycle Professional (CSSLP'), Secure Systems Certified Practitioner (SSCP'), Certified Authorization Professional (CAP')

(ISC) is currently accepting speaker submissions for information security tracks focused on:

Compliance, Regulation & Governance Threats - Inside and Out Cloud Security Swiss Army Knife Application Security Mobile Security/Social Networking Software Assurance Malware Government Security

To submit a proposal in one of the categories above, please visit https://www.isc2.org/congress-call-for-speakers/Default.aspx. (ISC) will accept submissions until Feb. 27, 2012.

(ISC) Security Congress

About (ISC)

(ISC) is the largest not-for-profit membership body of certified information security professionals worldwide, with more than 80,000 members in more than 135 countries. Globally recognised as the Gold Standard, (ISC) issues the Certified Information Systems Security Professional (CISSP') and related concentrations, as well as the Certified Secure Software Lifecycle Professional (CSSLP'), Certified Authorisation Professional (CAP'), and Systems Security Certified Practitioner (SSCP') credentials to qualifying candidates. (ISC)’s certifications are among the first information technology credentials to meet the stringent requirements of ANSI/ISO/IEC Standard 17024, a global benchmark for assessing and certifying personnel. (ISC) also offers education programs and services based on its CBK', a compendium of information security topics. More information is available at www.isc2.org.

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
News
Inside the Ransomware Campaigns Targeting Exchange Servers
Kelly Sheridan, Staff Editor, Dark Reading,  4/2/2021
Commentary
Beyond MITRE ATT&CK: The Case for a New Cyber Kill Chain
Rik Turner, Principal Analyst, Infrastructure Solutions, Omdia,  3/30/2021
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
2021 Top Enterprise IT Trends
We've identified the key trends that are poised to impact the IT landscape in 2021. Find out why they're important and how they will affect you today!
Flash Poll
How Enterprises are Developing Secure Applications
How Enterprises are Developing Secure Applications
Recent breaches of third-party apps are driving many organizations to think harder about the security of their off-the-shelf software as they continue to move left in secure software development practices.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2021-23281
PUBLISHED: 2021-04-13
Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to unauthenticated remote code execution vulnerability. IPM software does not sanitize the date provided via coverterCheckList action in meta_driver_srv.js class. Attackers can send a specially crafted packet to make IPM connect to ro...
CVE-2021-27598
PUBLISHED: 2021-04-13
SAP NetWeaver AS JAVA (Customer Usage Provisioning Servlet), versions - 7.31, 7.40, 7.50, allows an attacker to read some statistical data like product version, traffic, timestamp etc. because of missing authorization check in the servlet.
CVE-2021-27600
PUBLISHED: 2021-04-13
SAP Manufacturing Execution (System Rules), versions - 15.1, 15.2, 15.3, 15.4, allows an authorized attacker to embed malicious code into HTTP parameter and send it to the server because SAP Manufacturing Execution (System Rules) tab does not sufficiently encode some parameters, resulting in Stored ...
CVE-2021-27601
PUBLISHED: 2021-04-13
SAP NetWeaver AS Java (Applications based on HTMLB for Java) allows a basic-level authorized attacker to store a malicious file on the server. When a victim tries to open this file, it results in a Cross-Site Scripting (XSS) vulnerability and the attacker can read and modify data. However, the attac...
CVE-2021-27602
PUBLISHED: 2021-04-13
SAP Commerce, versions - 1808, 1811, 1905, 2005, 2011, Backoffice application allows certain authorized users to create source rules which are translated to drools rule when published to certain modules within the application. An attacker with this authorization can inject malicious code in the sour...