2019.07.06
今年的InfoSec Taiwan 2019 安排了三大主題館,「雲端服務與行動應用」(亞歷山大廳)、「物聯網與人工智慧應用」(阿基米德廳)以及「資安法與實務應用」(洛克廳),除了可以學習到新的產業方案之外,還有趣味遊戲機提供好禮大相送,歡迎至各館與經驗豐富的資安廠商互動,只要蓋滿四個廠商的章就可以得到乙次趣味遊戲機的好運機會,把好禮帶回家!
2019.07.06
物聯網與5G安全已成為未來即將面對的新議題,今年度台灣數位安全聯盟(TWCSA, Taiwan Cyber Security Alliance)將攜手CSCIS - Centre for Strategic Cyberspace + International Studies一同成為全球資安策略夥伴,7月10日將進行雙方合作備忘錄(MOU, Memorandum Of Understanding)的簽署儀式,正式啟CSCIS與台灣數位安全聯盟的合作,歡迎大家蒞臨與會。
2019.06.07
為了感謝Cloud Security Alliance 成立10週年,特別加碼 快閃七天優惠!
快閃Full Pass 優惠價:3600元
快閃Workshop 優惠價:3600元
優惠自6月7日12:00起 ~ 6月13日12:00止,立即前往報名!
2019.04.22
2019國際資訊安全組織台灣高峰會,即將於 7月9日至7月11日於台北舉辦,今年由The Honeynet Project、Cloud Security Alliance以及OWASP台灣分會共同主辦,公開徵求議程講師,若您有意願分享以下等資安領域的議題,歡迎提出申請,議程委員會將在5月31日前回覆您。
InfoSec Taiwan 2019 will be held in Taipei from July 9 to July 11. The Honeynet Project Taiwan Chapter, Cloud Security Alliance Taiwan Chapter and OWASP Taiwan Chapter hosted in this year. If you have interest to share your research and good idea, welcome to apply this form. The program committee will reply your register before May 31.
【Call for Speaker Topic】
2019 Program Committee 議程委員會 敬上!
Check Point Software Technologies Ltd. (www.checkpoint.com)是全球領先的政府與企業網路安全解決方案供應商,能夠保護客戶免於遭受網路攻擊,對惡意軟體,勒索軟體和其他攻擊類型的攔截率領先業界其他廠商。Check Point 提供多層式安全架構來保護企業放置於雲端,網路與行動裝置上的資訊,以及最全面,最直觀的單點控制安全管理系統。Check Point為超過10萬家各種規模的企業組織提供防禦措施。
Check Point Software Technologies Ltd. (www.checkpoint.com) is a leading provider of cyber security solutions to governments and corporate enterprises globally. Its solutions protect customers from cyber-attacks with an industry leading catch rate of malware, ransomware and other types of attacks. Check Point offers a multilevel security architecture that defends enterprises’ cloud, network and mobile device held information, plus the most comprehensive and intuitive one point of control security management system. Check Point protects over 100,000 organizations of all sizes.
Fortinet (NASDAQ: FTNT) 是一家全球性的網路安全設備供應商,及資安防護解決方案市場領導者。我們的產品為客戶提供了廣泛且綜合的安全服務、可靠穩定的網路與實時動態的安全保護,同時極大的簡化了客戶的IT安全體系架構。我們的客戶有企業、服務提供商和政府機構,包括全球財富榜100強的大部分客戶。 Fortinet總部位於加利福尼亞州、桑尼維爾市、在世界各地設有辦事處。
Fortinet旗艦產品FortiGate來自ASIC的多層威脅防禦系統,在網路、安全和內容分析技術上有所突破,使得產品的體系架構能在不影響性能的情況下,即時地分析網路內容和行為,並掃瞄網路和內容層威脅,以保障所有關鍵的網路服務,以及即時的 Web應用。Fortinet 提供一系列可擴充的安全設備、管理、報告和分析解決方案,使得各種規模的客戶都能在應用中具有靈活性, 滿足目標需求, 而且做到高性價比地保護他們的關鍵資源。
為協助用戶抵禦不斷演進的網路威脅,保護客戶的網路、使用者和資料。身為高效能網路安全的全球領導者,Fortinet讓企業和政府能協同並整合各種單項的資安防護技術,而不必忍受拙劣的效能。和其它昂貴、缺乏彈性和效能低落的其它解決方案不同,Fortinet的解決方案能讓客戶在保護重要系統和內容資產的同時,也能擁抱新技術與商業契機。
Fortinet is a global leader and innovator in Network Security. Our mission is to deliver the most innovative, highest performing network security platform to secure and simplify your IT infrastructure. We are a provider of network security appliances and security subscription services for carriers, data centers, enterprises, distributed offices and MSSPs. Because of constant innovation of our custom ASICs, hardware systems, network software, management capabilities and security research, we have a large, rapidly growing and highly satisfied customer base, including the majority of the Fortune Global 100, and we continue to set the pace in the Network Security market. Our market position and solution effectiveness has been widely validated by industry analysts, independent testing labs, business organizations, and the media worldwide. Our broad product line of complementary solutions goes beyond Network Security to help secure the extended enterprise.
Fortinet is headquartered in Sunnyvale, California, with offices around the world. Founded in 2000 by Ken Xie, the visionary founder and former president and CEO of NetScreen, Fortinet is led by a strong and seasoned management team with deep experience in networking and security.
NETSCOUT SYSTEMS, INC. (那斯達克股票代號:NTCT)確保數位商業服務不受可用性、效能與安全性中斷的影響。市場與技術領導地位乃源自專利智慧數據技術與智慧分析的結合。我們提供即時、無處不在的可見度,並深入理解顧客為加速數位轉換及確保其安全性的需求。因此,我們著手改變組織規劃、提交、整合、測試與部署服務及應用程式的方式。nGenius保證解決方案能提供服務、網路與應用性具即時、前因後果的分析。Arbor安全解決方案能防禦DDoS攻擊,預防其入侵網路對可用性與進階性造成威脅,竊取關鍵業務資產。欲瞭解更多有關改進實體或虛擬數據中心或雲端的服務、網路和應用程式效能,以及如何以智慧服務協助您有信心前進驅動NETSCOUT效能與安全性解決方案,請造訪www.netscout.com或追踪Twitter、Facebook或LinkedIn 上的@NETSCOUT 與 @ArborNetworks。
NETSCOUT SYSTEMS, INC. (NASDAQ: NTCT) assures digital business services against disruptions in availability, performance, and security. Our market and technology leadership stems from combining our patented smart data technology with smart analytics. We provide real-time, pervasive visibility, and insights customers need to accelerate and secure their digital transformation. Our approach transforms the way organizations plan, deliver, integrate, test, and deploy services and applications. Our nGenius service assurance solutions provide real-time, contextual analysis of service, network, and application performance. Arbor security solutions protect against DDoS attacks that threaten availability and advanced threats that infiltrate networks to steal critical business assets. To learn more about improving service, network, and application performance in physical or virtual data centers, or in the cloud, and how NETSCOUT’s performance and security solutions, powered by service intelligence can help you move forward with confidence, visit www.netscout.com or follow @NETSCOUT and @ArborNetworks on Twitter, Facebook, or LinkedIn.
互聯安睿資通是一家專注在物聯網場域安全的公司。我們的核心技術在網路封包分析、威脅情資分析模擬、與物聯網場域安全檢測。主要產品是場域資安威脅監控iSecMaster,監控場域空間中的無線訊號封包與有線網路封包.透過機器學習方法,學習場域空間資產正常運作模式,做到異常活動偵測,與進階網路攻擊偵測。協助智慧城市中的各項物聯網場域空間應用的資安聯防,如智慧工廠, 醫療院所, 智慧建築, 與關鍵資訊基礎建設等公用事業,強化智慧城市資安防護能力,降低營運資安風險。
ArcRan is a company focused on IoT/5G V2X security. Our core technologies are in RF/DSRC/C-V2X signal and packet analysis, and IoT security testing.
The main product is iSecMaster, which monitors the wireless signal packet and wired network packet in the field space. Through the machine learning technology, iSecMaster learns the operation and behavior of the field assets, and provide abnormal activity detection and advanced network attack detection. iSecMaster can be deployed in a variety of IoT applications in smart cities, such as smart factories, medical institutions, smart buildings, and critical information infrastructure, to strengthen security protection capabilities and reduce cyber risks.
敦陽科技(簡稱本公司)是國內優質系統整合廠商,為客戶提供最完善的資訊系統整合服務,客戶已超過二千多家。本公司名列台灣地區服務業500大企業之一,以代理世界性領導品牌的產品、最先進的資訊技術與專業服務,除了為各行各業規劃完整的資訊系統解決方案之外,因應新技術潮流提供各大電信公司平台開發與建置之服務,並依此擴大產業結盟之整合。其主要服務項目是以本公司所代理各領域知名資訊產品,為企業組織、規劃、建置資訊基礎架構(IT Infrastructure)且透過通訊整合服務(Communication & Information Integration)的開發,提供相關的專業性諮詢服務及顧問服務,協助其建構最有利於業務發展的資訊平台,讓其能夠利用、整合、分享組織所有的資訊資源,充分發揮整體的資訊系統效能,最終目的在於協助企業發揮最大的營運效益。
本公司成立於民國82年3月24日,登記資本額為新台幣壹仟萬元整。第一年即創造新台幣1億6仟2佰萬元的營業額,過去廿十年來,全體員工秉持創業的精神,不斷的奮鬥努力,公司業務發展突飛猛進,業績蒸蒸日上,現有的資本額已成長至10餘億元,營業額成長近40餘億元,營運績效卓著。本公司於民國89年1月正式上櫃,民國90年9月轉上市,現為資訊系統整合上櫃上市公司中,營運穩健之模範公司。
Stark Technology, Inc. (STI) is the largest domestic system integrator in Taiwan. We provide more than 2,000 customers with complete system integration services of information and communication technology (ICT) products. As one of Taiwan's top 500 service enterprises, we plan and deliver complete ICT solutions for a wide spectrum of industries through representing and reselling the world's leading products. This is made possible by using the most advanced technology, and providing the best professional services. The professional services we provide include the technical know-hows of worldly ICT products, designing, planning, implementing of IT infrastructure, and assisting customers in deploying the best information platform for their business needs. This way, they can utilize, integrate, and share all of their information resources by having fully elaborated and efficient systematic information. The direct result of this assistance is getting the best return on investments (ROI).
中芯數據成立於 2013 年 9 月,延攬各方專業人才成立大規模的資安技術團隊,搭配由人工智慧技術而成的自動化資安服務平台,為客戶提供意圖威脅即時鑑識服務(IPaaS, Intention Prediction as a Service),達到保護企業網路安全的目的。並於 2015 年正式通過國際標準資安認證機構 IOS27001 認證,可提供企業符合國際標準的資訊安全管理規範,讓客戶能夠專注在自身業務與推廣上。
中芯數據作為企業內部資安團隊的延伸,協助企業共同防禦進階威脅。致力提供企業對抗資安威脅所需的解決方案,自從 APT 攻擊手法問世後,企業不可能只靠資安產品解決 APT這類針對性的攻擊威脅,而是需要專業資安人員判讀資安報告後,採取相對應的做法。但多數企業並沒有足夠資安人力,加上員工工作型態正朝向行動化改變,傳統閘道端防護機制早以無法迎合世代需求。
面對無所不在的資安威脅,企業唯有建置完善的網路與資安規劃建置,才能降低駭客入侵的機率。或許添購新世代代資安設備可解決大部分的資安問題,但若產品設定不正確,恐怕將給予駭客更多可趁之機。而中芯數據主動回應資安事件,意圖威脅即時鑑識服務功能強悍,協助共同防禦各種進階資安威脅,使組織得以安全並快速地預防駭客攻擊。
CoreCloud unique combination of threat context, organizational resiliency and broad visibility is purpose-built to technology endpoint security risk and reduce the impact of advanced attacks across our portfolio of products and services.
CoreCloud takes endpoint detection and response to the next level, empowering endpoint security solutions strategies neutralize and prevent advanced threats from damaging their business.
Contrast Security是全球領先的應用安全技術提供商,於2013年由OWASP共同創辦人Jeff Williams所創立, 提供讓應用軟體不受應用層攻擊的自我防護的解決方案,引領應用安全自我防護的新紀元。Contrast創新的深度安全插裝技術為應用軟體提供高度準確的安全檢測,和對整個應用組合(如第三方Library)提供持續的檢測及保護,並且不需要干擾性的掃描過程,也不需要依賴昂貴的安全專家。只有Contrast才能提供分佈在應用內部的sensors,用於即時地發現安全性漏洞、保護資料洩露、保護整個企業應用從開發、測試,到生產的完整生命週期。
Contrast Security通過將sensors置於應用程式內,從內部對應用程式進行插裝。這些感測器自動地查看應用程式元件,收集傳感勘測資料並不斷地觀察交易資料流程,從而識別安全性漏洞並阻止惡意攻擊。這種無處不在的安全監測不需要像舊型代碼掃描工具那樣耗時費力,且有大量漏報、誤報之問題,不會減慢軟體發展和創新的速率,而且能夠立即獲悉漏洞與攻擊,因此可以使軟體實現自我防護。
Contrast Security is the world’s leading provider of the next generation application security technologies. Co-Founded by Jeff Williams; the co-Founder of OWASP and co-creator of OWASP TOP 10; Its technology enables software applications to protect themselves against cyberattacks, heralding the new era of self-protecting software. Contrast's patented deep security instrumentation is the breakthrough technology that enables highly accurate assessment and always-on protection of an entire application portfolio, without disruptive scanning or expensive security experts. Only Contrast has sensors that work actively inside applications to uncover vulnerabilities, prevent data breaches, and secure the entire enterprise from development, to operations, to production.
關於Gigamon
Gigamon 是公認的網路可視性解決方案領導者,提供最佳化您數位企業之安全性與效能所需的 Network Visibility。藉由提供豐富網路資料,同時確保實體、虛擬及雲端網路之間完整可視性的 Gigamon 解決方案,我們的客戶得以解決數位轉型的商業挑戰。自2004年起,我們的800多名員工,已榮獲66 項科技專案並培養全球的客戶群(目前包括80%的財星100大企業與所有前十大政府機關)。如需我們的網路可視性與安全性解決方案如何符合您數位企業之需求的完整報導,請追蹤我們的部落格,並在您最愛的社群頻道 Twitter、LinkedIn 及 Facebook 上與我們聯繫。
About Gigamon
Gigamon is the recognized leader in network visibility solutions, providing the Network Visibility Fabric required to optimize the security and performance of your Digital Enterprise. With Gigamon solutions that deliver rich network data while ensuring complete visibility across physical, virtual and cloud networks, our customers are empowered to solve the complex business challenges of a digital transformation. Since 2004, our 800+ employees have earned 66 technology patents and cultivated a global customer base which now includes more than 80 percent of the Fortune 100, and 10 out of the top 10 government agencies. For the full story on how our network visibility and security solutions can help meet the needs of your Digital Enterprise, visit our website, follow our blog, and connect with us on your favorite social channels Twitter, LinkedIn and Facebook .
卡巴斯基實驗室為全球頂尖資訊安全廠商之一,秉持技術導向積極參與全球IT安全社群和國際組織的聯合行動和網路威脅調查行動,合作對象涵及國際刑警組織和歐洲刑警組織、全球的執法機關和全球的電腦應急小組。
卡巴斯基實驗室提供各個產業創新的IT安全解決方案
A. 反針對式攻擊防禦平台 - KATA
B. 資安智能情報服務 - SIS
C. 工業控制安全系統 - KICS
D. 混合雲雲端安全系統 - KHCS
E. 儲存安全平台防毒系統 - KSS
G. 提款機與POS機安全方案 - KESS
【我們認為,任何電腦使用者,不管是家庭與個人電腦用戶還是大型企業以及政府,最重要的東西都應該得到保護。不管是隱私、家庭安全、金融安全、客戶資料還是關鍵基礎設施。所以,我們下定決心,以為保護這些最重要的東西為使命。我們通過使用專業技術,並同國際組織和執法機關共同協作打擊網路犯罪,同時開發最新的技術、解決方案和服務,説明使用者抵禦所有的網路威脅。】
卡巴斯基實驗室董事主席兼CEO 尤金·卡巴斯基
逸盈科技 Netfos Technology Corporation. 是一個以專業技術、代理與研發、整合及協同行銷為經營核心之高科技資訊技術服務公司。不論在產品之引進,應用方案開發及客戶的服務上皆深獲客戶認同,讓我們擁有許多長期合作之夥伴。逸盈科技以成為業界領先的「整合性網路資訊技術與專業服務之提供者」為目標,我們的願景為:「提供整合性資訊技術與專業服務,進而替客戶創造最大之利益」,對我們的客戶提出「品質是我們的根基、創造極品、顧客為尊」之承諾。逸盈科技於台北、新竹、台中、高雄共有四個營業據點,不但能深入掌握市場需求,同時能及時提供各地區顧客所需之服務,接近市場掌握市場脈動,且能就近提供客戶快速之服務,滿足客戶需求。優異的產品與專業的服務與技術使得逸盈科技不同於其他代理商,專業的服務提出有效管理網路安全的解決方案,給予合作夥伴(經銷商)在銷售、規劃與網路建置等各方面獨特的優勢,更推動企業發展網路強大商業之動機,有效掌握網路經濟之先機,幫助經協銷商達成企業持續業務成長的目標。
Netfos (Network Force Supplier) was founded in MAR 2004. We are a Network and Security integration solution provider. Netfos Provides presale and technical services and professional consultancy with reseller partners to deliver the optimal solution to the end customer.
• Coverage: Netfos have four primary locations: Taipei HQ, HsinChu, Taichung & Kaohsiung. All locations support sales, presale, and technical to our reseller partners.
• Service: Providing personal and immediate IT solutions.
• Experience: Average 20 years experience of manager and Average 10 years experience of PM and technical support team.
精誠資訊SYSTEX Corporation (台股代號6214) 成立於1997年,是台灣資訊服務產業龍頭企業,擁有近3,000名員工,位居台灣前一百大服務業,為跨足兩岸三地的亞洲區域級資訊服務集團公司,在台灣、中國與香港設有50個以上的營運據點,2018年合併營收為新台幣195億元。
根據台灣權威財經媒體,2018年出刊的天下雜誌「台灣兩千大調查」,精誠連續12年蟬聯台灣軟體業第一名的寶座。善用IT創新的力量,精誠一直以來都是推動企業客戶成長、前進的策略夥伴,是企業End-to-End Solution的Enabler,服務超過30,000家企業/機構客戶,代理經銷超過70項產品,提供大中華區的企業客戶跨域的專業資訊服務。
聚焦發展軟體開發(Software)、大數據分析(Data Analytics)以及人工智慧(AI)三大技術,與國際領先夥伴策略合作,協助企業從IT(資訊科技)數位轉型到DT(數據科技),以『企業數位轉型AI化的首選夥伴』為定位,培育AI技術人才,發展深入行業的AI創新應用,並進一步將智慧應用平台化,為企業變現數據價值。
精誠資訊資安中心協助超過300家不重複客戶保護其核心競爭力,服務產業橫跨公部門、傳產、製造、高科技與金融等,協助客戶依其商業流程量身打造資訊安全防護架構,保護企業運營過程之重要數據資產。持續代理引進國際級先進資安技術,是優質資安原廠在台灣的重要合作夥伴。
更多關於精誠資訊訊息,請見:www.systex.com。
資安疑難雜症歡迎來信:[email protected]
資安解決方案諮詢窗口:
鄭嘉松 0929-532099 [email protected]
涂睿珅 0928-798512 [email protected]
精誠資訊資安中心粉絲頁:https://www.facebook.com/systexcert/
Founded in 1997, SYSTEX Corporation (TSE ID: 6214) is the Taiwan-based leading IT services provider in Asia-Pacific region with 3,000 employees and more than 50 branch offices in Taiwan, China, and Hong Kong. In 2018, SYSTEX’s consolidated revenues reached US$ 630 million.
“SYSTEX is recognized as the No.1 software service provider in Taiwan for 12 consecutive years,” according to Common Wealth Magazine’s (Taiwan’s leading business magazine) Top 2000 Survey.
With skillful talents and extensive domain knowledge, SYSTEX developed state-of-art IT service offerings ranging from system integration, heterogeneous platform integration, to data integration. SYSTEX is not only the premier IT strategic partner trusted by over 30,000 corporate and institutional customers, but also the crucial link between technology vendors and the Asia local marketplace.
SYSTEX is not only the leading partner in Taiwan for distributing more than 70 world-class hardware/software products and solutions, SYSTEX is also striving to become the best partner for “AI4IA” (AI for Industry Application), aiming to help industry clients develop operation scenarios with AI technology to bring more value to their customers.
SYSTEX Information Security Center assists over 300 clients in protecting their core competitiveness as a professional cybersecurity consultant. Crossing fields from public sector, traditional industry, manufacturing industry, high-tech industry to financial industry, we help our clients build their own cybersecurity solutions based on their business process, thus to assure the safety of our clients’ important data assets.
For more information about SYSTEX: www.systex.com.
中孚科技股份有限公司(Sanfran Technologies Inc.)創立於2006 年12 月,為專注於基礎建設、網路資安、虛擬化雲端及效能量測等全IT 解決方案之系統整合商。以IP Network 為基礎,秉持著「創新、效率、創造客戶價值」為宗旨。為客戶提供網路規劃建置、網路安全,以及保固維護等服務。
Sanfran Technologies Inc. is found in 2006. We are professional supplier in IT industry. Our headquarter is in Taipei and also we have office in Hsinchu, Taichung and Kaohsiung. We have 100 staff in total.
Expect The Unexpected
安創資訊創立於 2012 年,至今已為許多國內廠商及跨國企業解決其資安需求,我們的客戶含跨製造業、傳產業及高科技產業等不同領域,也代表了資安對於各種產業都是茲事體大的。
安創資訊從資安分析中理解資料分析的重要性,因此安創結合Data Science(資料科學)、Big Data(大數據)及 Data Visualization(資料視覺化)等最新技術,落實資料及威脅情資分析的資料可視化,以服務更多有需求的客戶。
我們專注於資訊安全分析以及預防,擁有自我開發產品及提供專業顧問服務,也代理國外最新的資安產品及資料分析工具,提供給客戶最新、最即時的服務。
「安心、創新」一直是安創資訊的專業團隊所稟持的原則,發揮其所長、回饋於客戶,讓我們的客戶能得到最佳,及最安全的解決方案。
我們的目標是幫助客戶落實法規遵循,將法規制度與實際IT維運做整合與自動化,藉此改善資安狀況。
因為技術的發展,大部分的組織的核心系統已經做到無人化和智能化。這樣的趨勢除了方便組織本身的發展,但也方便了其他不懷好意的人。Ex:搶銀行的方式:以前需要帶槍還有爆砲設備劑破壞和實體入侵。最近幾年的案例,都是遠端遙控主機進行轉帳或是讓ATM設備吐鈔票出來。
所以現在國際組織和政府都針對不同領域和屬性的客戶有強制性的要求要做到一定程度的資安管理。像是ISO27001、PCI、資安法等等。導致大量的人力在處理相關的文書資料處理。
有鑑於此,竣盟科技希望協助管理者無縫接軌整合相關技術。將相關法規的要求和實際的IT維運執行面做有效的整合。讓管理者能輕鬆處理法規相關的作業。
竣盟科技提供專業的企業資安顧問服務,是企業建立自動化資安稽核與聯防系統的最佳解決方案。完整的資安監控平台能夠完整蒐集各種機器數據來源的資料,進行整合性的數據管理與檢索,並透過專業的分析系統及AI分析平台,還有全球情資與威脅比對,可針對各種事件做詳盡的分析並找出問題點,以資安儀表板將整理後的資訊轉化成簡單易懂的圖表資料,讓資安意識能夠深入組織的各個階層與部門。
Our Goal is to help clients to integrate the regulatory provisions and the actual IT environment to improve security.
Due to the continuous advancement of technology, most of the core systems must connect to the Internet, and they have been unmanned and intelligent. This trend not only facilitates the development of the organization itself, but criminals can also have access and use this trend. For example, in bank robbery, in the past, they will rob the bank with guns blazing. In recent years, the case of robbery is to use remote control to transfer money or let the ATM to expel the cash.
Therefore, international organizations and governments now have mandatory requirements for companies of different fields and attributes to achieve a certain degree of security management. Such as ISO27001, PCI, security regulation and etc. In order to comply with different regulations, it usually costs and increases a lot of manpower to reprocess the related paperwork.
In view of this, Billows hopes to help managers seamlessly integrate related equipment and tools. Effectively integrate relevant regulations and actual IT operations. It allows managers to easily handle regulatory-related operations.
Billows Technology provides professional security consultant service to any sizes of enterprises. Our Automation Compliance Management and joint defense system is the most secure solution for enterprises. We have a fully matured and complete security monitoring system to collect various sources of data. We use big data to preserve a mass amount of data. Through our professional analysis system, AI module, cross comparison of global threat intelligence, to analyze and detect various events and threats.
Finally, We use the compliance portal to transform data into a simple and easy-to- understand chart to provide customized dashboards for customers, so that the security awareness can be spread and understood by all levels and departments.
CyberArk 被評為2018 年 Gartner 特權帳號管理魔力象限的領導者– 執行能力排名最高,願景完整性最高瞻遠矚,CyberArk Software是唯一鎖定,以侵入企業內部發動攻擊的網路威脅來進行防禦的資安公司。致力於企業受到影響之前就阻斷攻擊,CyberArk Software深獲全球領先企業信任,包括超過40%的財富雜誌(Fortune)全球百大企業、以及17家前20大銀行,使用本公司產品保護企業最有價值的資訊資產、設施與應用軟體。CyberArk Software設有美國、以色列兩處總部,並於歐洲、亞洲多個城市均設立辦事處。欲瞭解更多CyberArk Software詳情,請訪問www.cyberark.tw。
CyberArk is the global leader in privileged access security, a critical layer of IT security to protect data, infrastructure and assets across the enterprise, in the cloud and throughout the DevOps pipeline. CyberArk delivers the industry’s most complete solution to reduce risk created by privileged credentials and secrets. The company is trusted by the world’s leading organizations, including more than 50 percent of the Fortune 500, to protect against external attackers and malicious insiders.
果核數位前身為遊戲橘子IDC、資安、系統及網路事業部門,為遊戲橘子(6180)和三商電腦(2427)等兩家上市公司合資的二類電信公司。
果核數位的技術團隊累積約20年維運規模達數千台伺服器的的技術經驗,服務對象遍及國內外客戶,提供高品質的基礎服務及專業的加值服務,以差異化產品服務高端客層,逐漸由傳統Internet Service Provider (ISP)角色轉為Managed Service Provider (MSP),產品也將自基礎建設即服務(IaaS)延伸為資訊安全即服務(SaaS)。
果核數位擁有三地機房與國內主要電信業者建立直連網路(Direct Peering),提供7X24全時服務台灣多家頂尖的線上遊戲與數位內容公司,單一最大客戶之營運規模達45萬人同時在線,全月登入人次更達2.4億人次。
The mission of Digicentre is to take our more than 20 years of operational experience and use it to deliver premium IaaS and SaaS to digital content industry clients, allowing them to focus their resources more directly on their businesses’ core values.
Digicentre started as the IT department of a major Taiwanese gaming company: Gamania. Seeing the unique gifts and experience that could be offered to clients, the team began to branch out their IDC, security and integration services from there. Today, Digicentre's ownership is shared by publicly listed shareholders, Gamania and MDS.
Forcepoint 是一家以人為中心的全球網絡保安公司,透過不斷偵測由用戶及設備所產生的風險,令數碼化企業可以按風險的高低即時並自動作出回應。Forcepoint Human Point 系統提供 Risk-Adaptive Protection以確保數據及系統都可以被安全使用。Forcepoint總部位於德克薩斯州奧斯汀,為超過150多個國家的數千家企業和政府客戶提供以人為中心的網絡保安保護。
Forcepoint is the global human-centric cybersecurity company transforming the digital enterprise by continuously adapting security response to the dynamic risk posed by individual users and machines. The Forcepoint Human Point system delivers Risk-Adaptive Protection to continuously ensure trusted use of data and systems. Based in Austin, Texas, Forcepoint protects the human point for thousands of enterprise and government customers in more than 150 countries.
我們是一群擁有專業鑑識知識的專家,以全球華人為主要服務對象,提供專業的電腦鑑識軟體、鑑識服務及教育訓練,以進一步協助營利企業、政府、非營利組織和個人在遭遇到智財侵權、駭客入侵、商業洩密及犯罪相關等任何緊急事故時,提供必要的鑑識技術支援及諮詢服務,所謂「數位證據鑑識(電腦鑑識)」乃是利用資訊科技與嚴謹的程序方法,對電腦或相關資訊設備進行蒐證及分析,建立證物保護方式,確保電子證據沒有遭竄改,提供可信及具有法律效力的鑑識報告及電子證據,協助還原事情真相作為法庭審訊及公司重要決策的依據。
其他相關訊息請上官網: http://www.iforensics.com.tw/
資安科技研究所(Cybersecurity Technology Institute, 簡稱CSTI)為資策會所屬之資安科技研發部門,主要任務為推動國家資通安全領域之政策規劃、智庫幕僚、並引領前瞻資安技術研發等方向。今年工作主軸為5G Security、AI與工控資安等領域,希望透過共創的機制,建立資安整合的Best Practices,連結業者組隊提供產業資安的需求。
1. 推動AI共創(智慧型資安與新興應用整合技術研發計畫):以情資導向及機器學習為研究主軸,研發人工智慧資安技術,掌握未知弱點、潛伏威脅及隱私洩漏風險,國內資安/SI/網通設備廠可透過SDK、API與情資服務三種模式,結合原產品創造新資安服務功能,將資安威脅防禦核心能量,落實於金融、醫療、工業控制、智慧製造等領域。
2. 5G資安創新技術與應用服務:依國際5G相關規範 (如:3GPP、IEC62443、GDPR等),發展5G安全檢測基準與測試案例,以資安檢測確保我國5G產業外銷競爭力。建立5G Security攻防測試平台,透過實驗場域建構,供業界試煉產品,並連結5G生態系,整合業者推動5G資安服務價值鏈、整案輸出國際。
3. 工控資安專業服務:研究工控資安防護技術,建立工控資安實驗場域,模擬各項場景,提供專業資安培訓,並輔導業者就工業生產環境進行風險評估與顧問服務,與國際IEC 62443資安標準接軌。
業務連絡窗口:資策會資安所 邱之崧 (02)6607-8973 [email protected]
As the core cybersecurity organization under the Institute for Information Industry (III), Cybersecurity Technology Institute (CSTI) aims at providing technology solutions and services for customers to cope with emerging security challenges in cyberspace proactively.
With strategic objectives in mind, CSTI intends to foster industrial partnerships and establish best practices for cybersecurity through co-creation of values in platform ecosystem. CSTI’s work foci in 2019 are 5G security, artificial intelligence (AI), and Industrial Control Systems (ICS) Cybersecurity described as follows:
1. 5G security and applications: develop 5G security assurance baseline and test cases in compliance with international standards such as 3GPP, IEC 62443, and GDPR; help boost indigenous 5G products competitiveness in the international market; establish cybersecurity and cyber defense testbeds for private sectors; exploit operational synergy for 5G platform ecosystem; integrate value chain for 5G cybersecurity services for turn-key solutions in the international market.
2. Co-creation of platform ecosystem for emerging AI-based cybersecurity: develop intelligence-driven machine learning techniques to uncover hidden weakness, lurking threats, and potential leakage of private information; provision and integrate SDK, API, and intelligence services to meet the requirements of domestic customers in finance, healthcare, ICS, and intelligent manufacturing industries.
3. ICS cybersecurity services: develop ICS cybersecurity technologies, build laboratories and testbeds, simulate attack scenarios for cyber defense, provide training, assist private sectors in risk assessment, provision consultation services, and ensure IEC 62443 compliance.
Contact info:Tony Chiu +886-2-6607-8973 [email protected]
鈊保資訊主要服務項目為系統開發為主的軟體公司,以本身自有的軟體與結構工程師團隊再佐以專家學者的團隊為業界開發出高品質的軟體,主要致力於資料安全的產品開發與系統維護。本公司擁有完整資安研發能力,並承接過眾多大型專案與產品客戶,包含:教育部、消防署、法務部、金管會、財稅中心、稅捐稽徵處、國健署、國美館、役政署、台灣微軟、調查局、能源局、KPMG、ACER、經濟部加工出口區、中華電信、國網中心、中研院、電視購物頻道、公私立銀行、信用合作社、縣市政府與公私立大專院校等經驗。
其他相關訊息請上官網:http://www.sinpao.com.tw/
自民國95年2月22日國家通訊傳播委員會(NCC)成立運作之日起,原屬交通部電信總局的電信監理業務,以及行政院新聞局廣播電視事業處的廣播電視監理業務,已統合歸由本會掌理。
在數位技術日益進步下,電信、廣電與資訊網路的匯流發展已蔚為當今全球人際溝通及資訊交流的主流趨勢,身為臺灣通訊傳播產業監理主管機關,本會當以更開闊與精準的策略眼光,配合更公開與有效率的施政作為,結合行政、立法與民間多方的力量,執行通訊傳播業的監理,以契合社會的快速發展與轉型,並符合全民期待。
本會施政目標,在於建立透明且合理的監理架構,促進通訊傳播市場的公平競爭以及各項業務的良好發展。因此,本會依據「通訊傳播基本法」第 1 條及「國家通訊傳播委員會組織法」第 1 條的立法精神,透過內部研析及傾聽產官學研各界的聲音,並參酌國外監理同儕機關的計畫,擬定本會的施政計畫,確立(一)促進通訊傳播健全發展、(二)維護國民權利、(三)保障消費者權益、(四)提升多元文化、(五) 平衡城鄉差距為本會的5大政策目標。
Since its establishment on February 22, 2006, the National Communications Commission (NCC) has been the authority that regulates telecommunications and broadcasting services. Originally, this authority was shared between the Directorate General of Telecommunications and the Department of Broadcasting Affairs of the Government Information Office; the merged mandate of the NCC was a significant milestone.
With the continual development of digital technology, the convergence of telecommunications, broadcasting, and information networks has become the mainstream of global communications and information. As regulator of merged telecommunications and broadcasting industries in Taiwan, the NCC has to govern the communications sector with a broader and more accurate strategic insight, as well as an open and more efficient administration. It also has to coordinate the efforts of the executive and legislative branches, as well as the private sector, to respond to the rapid development and transformation of society and public expectations.
A fundamental aim of the NCC is to develop a transparent and reasonable regulatory framework and promote fair competition in the communications market, thereby enabling services to thrive. The NCC formulated its administrative plan in accordance with the spirit of Article 1 of the Fundamental Communications Act and Article 1 of the NCC Organization Act. The plan was drafted through broad discussion, calling for comments from industry, government agencies, and academic groups, and referring to plans of peer regulators abroad. It established the Commission’s four primary goals: (1) promote the sound development of communications and broadcasting, (2) safeguard the rights of citizens, (3) protect the rights and interests of consumers, (4) promote the balanced development of cultural diversity,and (5) close the gap between urban and rural areas.
核心目標
台灣數位鑑識發展協會(ACFD)為致力於扮演台灣數位鑑識政策、市場、人才及應用的標準化、產業化、專業化與創新化之推手。結合產官學研各界的力量,推動數位鑑識、資通安全、雲端安全、個資安全等重要工作,謀求對於台灣資通訊安全領域有所助益。
協會任務
Core Objective
Association of Cyber Forensics Development (ACFD) committed to playing the role of the promote of the digital forensics policy, market, profession and standardization, commercialization, specialization of related applications, and innovation in Taiwan. By the cooperation of the strength of industry, government and academia, and research, ACFD engaged for promoting digital forensics, cyber security, cloud security, and personal data security etc. in order to assist the information and cyber security of the industry in Taiwan.
Mission
中華民國電腦學會是一個研究與推廣電腦學術的全國性、公益性社團組織。成員 來自國內產、學、研各界對資訊(電腦、通信)學術具有共同興趣的資訊單位與從業 人士,分為團體會員與個人會員兩類,目前有個人會員四佰餘人,另有政府機關、學校、學術研究機構及公民營事業六十餘機構參加為團體會員。謹就現況作概括性之引介。
Taiwan E-Security Analysis and Management Association (E-SAM)
Web-page:http://esam.nctu.me/esam/index.php
台灣E化資安分析管理協會(ESAM)創立於2018年。宗旨乃是從事E化資訊安全的分析管理與學術研究。目前正積極和政府、產學及國際資安機構交流與合作,協助企業、產業評估資安分析與風險。更致力於多元化推廣資訊安全應用與發展,期望台灣能透過我們協會的交流平台,使各方領域、產業能獲得有效的資安防護能量。
Our association, Taiwan E-Security Analysis and Management Association (E-SAM), which was found in 2018, is to promote research and analysis in the field of information security and collaborate with government, industry, educational institutions and global organizations. The missions would be like making risk assessment, researching contemporary Information security, providing preventive security solutions for industries, and all fields with security concerns.
台灣國際網路學會
台灣國際網路學會在台灣成立於1996年,期間獲得國內資訊、網路以及政府相關單位協助成長.主要任務在引入國際網路最新趨勢並透過國際網路協會於世界各國之分會進行跨國的合作.目前在國內主要針對IPv6、資訊安全、個資保護、網路新創等議題進行推動並參與相關活動。
Internet society Taipei chapter (ISOC Taipei)
ISOC Taipei was funded at 1996. In the past years, we collaborate with ICT NGO and government units. Our mission tries to bridge Taiwan with other chapters around the world. We focus on IPv6, cyber security, data privacy, startup related issue.
微程式-運用IoT物聯網科技,讓你掌握翻轉產業的動力
微程式資訊 Microporam提供產業IoT物聯網科技服務,透過使用者研究、軟硬技術垂直整合、終端感應裝置、行動APP、雲端服務平台到大數據分析的核心技術,以資安與技術並重作為實施風險控制之原則,微程式有專屬的資安團隊,讓微程式所提供的所有資訊系統能安全有效即時的防護,為每一位用戶提供更安全、更穩定、24小時不間斷的科技服務,協助產業進行安全的創新升級。
夢森林-中部最具影響力的科技服務交流空間
夢森林Dreamforest是由微程式所提供中部優質交流的場域空間,我們偕同相關產業的夥伴,以跨領域技術交流為目的,以知識傳遞、 交流互動、價值創造為核心出發,共同打造中部深具影響力的科技服務交流生態圈。
Microprogram offers the technical services of industrial IoT based on the core technologies of user experience, verticle intergration with software and hardware, user-endsensing devices, moble apps, cloud platforms and big data analysis. Information security and technology as our risk control principle, Microprogram have dedicated a team of information security that provide safe and effective guard, help the clients with more security and reliability, offers 24/7 technical services and aid different industries upgrade innovatively.
Dreamforest is the quality space provided by Microprogram . We and our partners in the relevant industries jointly provided a spacious meeting space for exchange in central Taiwan for the purpose of cross-field technical exchange. Based on the cores of knowledge transfer, exchange, interaction and value creation, we have collaborated to craft an influential Ecosphere for technical service exchange in central Taiwan.
中華民國軟體自由協會成立於2001年,目標在服務自由軟體與開放源碼的社群,以追求社群的成長和推廣自由軟體與開放源碼的應用。多年來軟體自由協會致力於在教育紮根,除了承接教育部自由軟體諮詢應用中心計畫,在校園內推動自由軟體資訊教育以及自由軟體融入教學以外,也在近年發起「軟體自由運動」,推動數位路平、Public Money Public Code 等主張。
此外,軟體自由協會也與國家發展委員會合作,推動以開放文件格式(ODF)為國家文件交換標準格式政策,並積極參與文件基金會(The Document Foundation)、開放源碼促進會(Open Source Initiative)等國際自由開源社群組織的運作。
Software Liberty Association Taiwan was founded in 2001. The target of this association is to serve free and open source software communities and promote FOSS. All these years SLAT put much efforts on promoting FOSS in education, including running the OSSACC (Open Source Software Application Consulting Center) project for Ministry of Education. In recent years SLAT launched a social movement named "Software Liberation Movement", in order to make people aware of vendor lock-in problems and digital freedom.
Besides, SLAT cooperate with National Development Council to promote the national policy of using Open Document Format (ODF) as the national standard for digital documents. SLAT also actively participate in some international FOSS organizations like The Document Foundation and Open Source Initiative.
台灣電腦網路危機處理暨協調中心(TWCERT/CC)在民國87年成立於中山大學,歷經台灣網路資訊中心(TWNIC)及國家中山科學研究院維運,108年1月起由TWNIC接手提供服務。
為了提升臺灣整體資安防護能量,臺灣電腦網路危機處理暨協調中心(TWCERT/CC)在行政院資安處及國家通訊傳播委員會指導下,TWCERT/CC任務如下:
期許建構國家整體資安聯防體系、推升產業自主防護能量、孕育優質資安人才及強化公私協同合作機制。
The Taiwan Computer Emergency Response Team/Coordination Center (TWCERT/CC) was established in the National Sun Yat-sen University on 1998. Once operated by the Taiwan Network Information Center (TWNIC) and the National Chung-Shan Institute of Science and Technology (NCSIST), from January 2019, TWCERT/CC is again operated by TWNIC and supervised by the Department of Cybersecurity, Executive Yuan and the National Communications Commission (NCC).
To establish the national cyber security collaborative defense system, advance self-protecting capability in cyber security industry, cultivate high quality cyber security talents, and strengthen the public-private partnership on cyber security issues therefore to enhance Taiwan's capability on cybersecurity, TWCERT/CC devotes itself to be:
In addition, TWCERT/CC provides the following services:
國立成功大學資通安全研究與教學中心,簡稱TWISC@NCKU,成立於2006年4月1日,為中央研究院等機構共同負責建置之「資通安全研究與教育中心」的首批三大實體特色中心之一。本中心宗旨為整合分散於南部地區各大專院校與研究機構之人才資源,共同參與資安技術研發團隊為主。隨著資通科技的蓬勃發展,國際資安風險日益提高,不論其目的在於竊取個人隱私、公務、國防及商業機密,或破壞國家關鍵基礎設施,甚至是發動網路戰爭以癱瘓國家運作,都在在威脅各國之國家安全及國民權益,資通安全也因此越來越受到重視。配合國家政策及需求,當前本中心以資安監控及資安管理為雙主軸。進而以「資通安全管理法」中提及「資通安全維護計畫」為計畫核心,以此出發,以健全國家關鍵基礎設施安全為宗旨。階段性目標為擬定「關鍵基礎設施防護與場域安全規範」為主要目標,同時考量法規遵循、證據效力等,配合發展相關監控平台與數位鑑識系統。中期目標為並運用前述成果及需求,建置及發展關鍵基礎設施的測試場域,以提供相關教育訓練需求。
台灣網路維運者組織(TWNOG)是專門為了在台灣有網路節點或對台灣網路發展有興趣的網路工程人員, 網路架構人員, 網路維運人員及網路相關專家人員成立的組織. 透過台灣網路維運者組織, 我們希望持續改善網路傳輸科技, 最佳實作, 基礎設施及網路環境以促使台灣網路環境及網路相關產業能日新月異且蓬勃發展。
台灣網路維運者組織是採用會員制的非營利性組織, 我們會透過每年舉辦兩次的論壇活動, 會員電子郵件名單, 臉書社團網頁, LINE群組及網站等活動來促進網路技術及維運面的知識及資訊交流, 我們也希望能匯集各方利害關係人以吸引各方意見充分交流, 聚焦網路維運者重視或有興趣的議題並促進相關技術引進, 探討, 創新及實務上的交流。
The Taiwan Network Operators Group (TWNOG), is the professional Special Interest Group (SIG) for Internet Engineers, Network Architects, Network Operators or Network Professionals who has network presence or network interests in Taiwan. Through TWNOG, we want to continuously improvement of the data transmission technologies, practices, facilities and environment that make the Taiwan Internet environment and Internet related industry works better every day.
TWNOG is a membership non-profit organization and we runs semi-annual events, email member list, Facebook page, LINE group and website, etc, to exchange technical and operational knowledge and information. Through gathering multi-stake holders, TWNOG encourages dialogues and communications. With the focus on topics that are important and of interest to network operators, TWNOG also facilitates adoption, research and innovation on new technology and sharing of best practice.