Mr Terence Teo is a senior cybersecurity specialist with GovTech, with more than eight years of experience. With a background in technology implementations and security assessments for the electrical, finance and government sectors local and abroad, he has extensive hands-on experience in managing and performing various kinds of penetration testing engagements, from red team exercises to specific technology domains such as wireless, infrastructure, network, web and mobile applications.

As a Certified Information Systems Security Professional, he is equipped with the necessary knowledge across all information security domains and understands the Information Security Management System on the enterprise level. In addition, he has the necessary in-depth technical knowledge and hands-on capability to perform security assessments and this is backed by his credential as an Offensive Security Certified Professional and a CREST Registered Penetration Tester.


 

 

Presentation Synopsis
Red Teaming – A holistic approach to assessing the effectiveness of your cybersecurity ecosystem

According to a report released by IBM in 2016, the healthcare sector is ranked among the top five industry sectors that experienced the highest incidences of cyberattacks. In 2017, the world witnessed the biggest ransomware attack, WannaCry, exploiting vulnerable systems globally. But the worst hit was on United Kingdom’s National Health Service, where employees were forced to revert to pen and paper and resort to using their own mobile devices after key systems, including telephones, were affected. This incident brought upon great realisation that cyberattacks affect not only patient data but it can also put human lives at risk. 

The healthcare space continues to digitise all of its information and use more Internet of Things (IoT) healthcare solutions, and these continue to attract more attention from cyberthreat actors. Thus, cybersecurity needs to become part of the organisational culture in both healthcare providers and medtech companies. But as they slowly get implemented into the organisation, how can they be assessed for its effectiveness? 

We will share on the holistic approach of Red Teaming, which helps organisations uncover IT security weaknesses as a whole, rather than in silos. The talk will focus on the Social Engineering and behavior change aspects, which has always been the most challenging for organisations to tackle.