Session 2.7d Update: The Role of Cyber Security Assessment & Authorisation (A&A) in Safe IT/OT Integration of the SEA1300 Naval Strike Missile into the Hobart class DDGs
Tracks
Wednesday, November 13, 2024 |
2:30 PM - 3:30 PM |
Nicholls Theatre |
Details
The integration of new capabilities into the Hobart class DDGs to upgrade the Harpoon capability presents a critical opportunity and challenge for Defence, Navy, and the Maritime Explosive Ordnance System Program Office (MEOSPO). This presentation, approved by the Project Manager at MEOSPO, focuses on the pivotal role of Cyber Security Assessment & Authorisation (A&A) in ensuring the safe integration of the Naval Strike Missile (NSM) capability. The purpose is to protect Defence information systems and data assets from emerging threats and manage risks in the threat surface of our IT/OT systems. See the video of the successful firing test of the NSM (18-July-2024).
- https://images.defence.gov.au/assets/Home/Search?Query=S20241195%20VNR%20Naval%20Strike%20Missile%20Successful%20Firing.mp4&Type=Filename
- Assessment. A thorough documentation of the cyber security controls for a system, considering its environment and operating context. This assessment determines if the controls are appropriate, properly designed, implemented, or functioning as intended. This is documented in a Security Documentation Pack that enables the entire process for a Security Assessor to review. Producing these documents is limited by the available information provided by the OEM, and the time it takes to develop the documents tailored to the Commonwealth of Australia (CoA) needs. Authorisation. The formal acceptance of residual risk associated with the system, based on the Assessment outcomes. The Authorising Delegate, depending of capability ownership, decides whether the system: can operate, must operate with conditions, or is denied operation.
Speaker
Mr Nico Riquelme-Ramirez
Information Security Consultant
QinetiQ Australia
ㅤ
Biography
• Meet Nico, a passionate learner and explorer in the realms of technology, engineering, science, and critical thinking. His journey has been marked by diverse experiences, from consulting in Defence deploying Radars across Australia to venturing into the intricate world of Information Warfare. Currently with QinetiQ Australia, Nico is helping clients improve their Information Security.
• Before embarking on a quest for a Master’s degree in Project Management at ANU, Nico contributed to the cause of Seeing Machines, developing cutting-edge driver and occupant monitoring systems to ensure safe journeys home.
• Gained global exposure with Procter & Gamble, where he applied his Industrial Engineering skills to the safe and reliable production of diapers, millions of them.