Vous êtes sur la page 1sur 10

Operational Excellence Webinar

Reserve Bank Information Technology Private Limited

Anti-Phishing Campaign
DMARC implementation

Vivek Srivastav, ReBIT


J Trent Adams, PayPal
Bhavin Bhansali, ICICI Bank

Webinar Support from Cisco 1


Agenda

• Vivek Srivastav
• Phishing sources, stats and mitigation strategies
• ReBIT’s Industry Agenda
• Trent Adams
• DMARC technical details
• Bhavin Bhansali
• Implementing DMARC at ICICI Bank

QA session for 15 minutes towards the end

2
Source: http://docs.apwg.org/reports/apwg_trends_report_q4_2016.pdf 3
DMARC Compliance Report
Not Compliant DMARC Compliant

DMARC Compliance
6 0
OTHER Target:
DMARC 100%
22%
Compliance
4 5
FOREIGN in 1 year
No
DMARC
6 3
78%
PRIVATE

11 0
PUBLIC

Total Surveyed: 36 Banks/Institutions

4
Anti-Phishing Campaign
Phase-1 Phase-2 Phase-3

• DMARC Webinar, • DMARC • Partnership with


knowledge implementation industry
sharing – 100% adoption stakeholders
• Playbooks by financial • Threat
• Industry level institutions intelligence
tool • Reporting tools
• DMARC for FI
implementations • Work with email
– early adopters providers

1.5 years

5
Final Phase

Threat
Intelligence

6
ReBIT’s Facilitator Role

Business Leader’s - Forum


Industry Stakeholders

Research Institutions
Community Leadership - WG

Operational Excellence - Campaigns

7
DMARC technical Deep Dive

8
ReBIT

Operational Excellence Webinar Series


Anti-Phishing Campaign

rirebit@rbi.org.in
Vivek Srivastav, SVP – Research and Innovation
Ph: +91 98677 24062

9
ReBIT’s Industry Initiatives
Planning Phase

May 11th:

Awareness Campaign
Operational Launching
Business Leader’s Forum

Cybersecurity VAPT Auditing and


Industry Tools

Cybersecurity
Assessment Accreditation Monitoring Excellence Anti-Phishing
and Reporting Webinar
Tools Body Tools Campaign -
(monthly):
(bi-monthly)

Industry initiatives DMARC Webinar -


to improve collaborating with
Cybersecurity Assessment cybersecurity PayPal & ICICI
Engagement Model WG Auditing and Monitoring postures Bank
(Kickoff planned end June)

Cybersecurity Maturity Model


(monthly)

6-months effort: Kicked off in Feb, ongoing industry initiative to define a uniform yardstick to
assess a firm’s cybersecurity maturity, benchmark and help create evolution roadmap

10

Vous aimerez peut-être aussi