Room 1 Plenary
Room 2 Plenary
Training Track 1 – Security Operation Center Training 1/2
Training Track 2 - Introduction to Penetration Testing 1/2
Training Track 3 - Forensics Training
Training Track 1 – Security Operation Center Training 2/2
Training Track 2 - Introduction to Penetration Testing 2/2
Training Track 3 – Intro to Jupyter and Data science for incident responders
Room 1 Plenary | Room 2 Plenary | |
---|---|---|
08:30 – 09:00 | Registration and welcoming coffee | |
09:00 – 09:45 | Welcome and opening Mr. Jeton Akiku, Director, (Agency for Electronic Communications); Mr. Mark Downes, Deputy Director (DCAF); Dr Serge Droz, Vice Chair (FIRST); Ms. Slavica Grkovska (Deputy President of the Government for Good Governance policies); Mr. Azir Aliu (Minister for Information Society and Administration); Mr Andrew Brand, Head of Programmes (British Embassy Skopje) | |
09:45 – 11:00 | GB Panel: Best Practices in Cyber Threat Information Exchange Chris Gibson, Executive Director (FIRST Executive Director – FIRST, GB); Nadica Josifovski (State Advisor for Information Systems and Technologies, Ministry of Information Society and Administ); Maja Lakušić, , Cyber Security Promotion Advisor (SRB-CERT, Serbia); Michael Hamm (Operator and Analyst at Computer Incident Response Center Luxembourg); Paweł Pawliński, Principal Specialist (CERT.PL, Poland (online)); Franziska Klopfer, Principal Programme Manager (Europe and Central Asia Division, DCAF) | |
11:00 – 11:30 | Coffee Break | |
11:30 – 12:30 | Deep Learning for Predictive Alerting and Cyber-attach Mitigation Arbnor Imeri (SENSE Cyber Research Centre) | MK Vladislav Bidikov (Faculty of Computer Science and Engeneering, MK) |
12:30 – 13:30 | Lunch | |
13:30 – 14:30 | Incident Handling and Security Technologies for Defending Against Cyber Attacks on industrial IoT Atdhe Buja, Blent Kurtalani (ICT Academy CERT, Kos) | MK Tino Apostolovski ((CPP Services)); Valentin Lekov (CPP Services, MK) |
14:30 – 15:30 | SI Matej Kovačič (SI) | MK Privacy-enhancing Technologies - Where Privacy and Cybersecurity Intersect Mickov Saso (ASEE MKD, MK) |
15:30 – 15:45 | Coffee Break | |
15:45 – 16:45 | MK Process of Destroying Phishing Sites Kristijan Angelovski (CPP, MK) | IT Cyber Intelligence and Cyber Terrorism in Medical field Emanuela Dyrmishi (IT) |
16:45 – 17:30 | Closing of the Conference | |
17:30 – 19:30 | ||
20:00 – 22:30 |
Training Track 1 – Security Operation Center Training 1/2 | Training Track 2 - Introduction to Penetration Testing 1/2 | Training Track 3 - Forensics Training | |
---|---|---|---|
09:00 – 10:30 | SESSION I: Introduction to SOC operations Blaze Grashovski (Infosoft) and Aleksandar Acev | SESSION I: Introduction to Hacking Renato Venzin (Oneconsult) and Tobias Pohl (Oneconsult) | SESSION I: File System Forensics Michael Hamm, Operator and Analyst at Computer Incident Response Center Luxembourg |
10:30 – 11:00 | Coffee Break | ||
11:00 – 12:30 | SESSION II : Designing the Next-Gen SOC Blaze Grashovski (Infosoft) and Aleksandar Acev | SESSION Il: Using Kali Linux Renato Venzin (Oneconsult) and Tobias Pohl (Oneconsult) | SESSION Il: File System Forensics - continuation Michael Hamm, Operator and Analyst at Computer Incident Response Center Luxembourg |
12:30 – 13:30 | Lunch | ||
13:30 – 14:45 | SESSION III : Designing the Next-Gen SOC-continuing Blaze Grashovski (Infosoft) and Aleksandar Acev | SESSION III : Passive Information Gathering Renato Venzin (Oneconsult) and Tobias Pohl (Oneconsult) | SESSION III : Windows Forensics and Memory Analysis Michael Hamm, Operator and Analyst at Computer Incident Response Center Luxembourg |
14:45 – 15:00 | Break | ||
15:00 – 16:00 | SESSION IV: Building the Next-Gen SOC Blaze Grashovski (Infosoft) and Aleksandar Acev | SESSION IV : Active Information Gathering Renato Venzin (Oneconsult) and Tobias Pohl (Oneconsult) | SESSION IV : Windows Forensics and Memory Analysis - continuation Michael Hamm, Operator and Analyst at Computer Incident Response Center Luxembourg |
Training Track 1 – Security Operation Center Training 2/2 | Training Track 2 - Introduction to Penetration Testing 2/2 | Training Track 3 – Intro to Jupyter and Data science for incident responders | |
---|---|---|---|
09:00 – 10:30 | SESSION I: Operating the Next-Gen SOC (Team Roles and Best practices for SOC operations) Blaze Grashovski (Infosoft) and Filip Simeonov (CPP) | SESSION I: Web Application Exploitation Renato Venzin (Oneconsult) and Tobias Pohl (Oneconsult) | SESSION I Dr Serge Droz, Vice Chair (FIRST) |
10:30 – 11:00 | Coffee Break | ||
11:00 – 12:30 | SESSION II : Operating the Next-Gen SOC (Incident Response Planning and Execution) Blaze Grashovski (Infosoft) and Filip Simeonov (CPP) | SESSION II: Privilege Escalation Renato Venzin (Oneconsult) and Tobias Pohl (Oneconsult) | SESSION II Dr Serge Droz, Vice Chair (FIRST) |
12:30 – 13:30 | Lunch | ||
13:30 – 14:45 | SESSION III : Measuring SOC Effectiveness Blaze Grashovski (Infosoft) and Filip Simeonov (CPP) | SESSION III : Know your tools Renato Venzin (Oneconsult) and Tobias Pohl (Oneconsult) | |
14:45 – 15:00 | Break | ||
15:00 – 16:00 | SESSION IV : Case Studies of Successful Next-gen SOC Operations Blaze Grashovski (Infosoft) and Filip Simeonov (CPP) | SESSION IV : Attacking Active Directory Renato Venzin (Oneconsult) and Tobias Pohl (Oneconsult) |
Emanuela DyrmishiEmanuela Dyrmishi (IT)
I worked many years in the field of Psychiatry and Psychotherapy in Switzerland as referent of Psychiatry for the Asylum Seeker Centers when I also prepare the staff in " Conflict Prevention and Resolution with focus in Geopolitics, Psychology, Interculture. This allowed me to know people from all over the world, the functioning of their countries on a social, cultural, political and economic level. To strengthen what I learned at work in transcultural, ethnopsychological and legal level, I was trained in “ Transcultural approach to the person”. Subsequently, I continued my training as Analyst of Economic Risk, Geopolitics and Intelligence at SIOI-UNA, Rome- Italy with focus on Intelligence and thesis: Migration and Terrorism. Latter I was trained in Cybersecurity managing Risk at Harvard University. At SIOI I was also trained in European Projectuality and Internationalization. I have embraced to all these fields the Psychopharmacological research which I'm a specialized.
May 16, 2023 15:45-16:45
Vladislav BidikovVladislav Bidikov (Faculty of Computer Science and Engeneering, MK)
Cybersecurity expert working 13+ in the Faculty Computer center at the Faculty for Computer Science and Enginering (FCSE). Mitigation of DDOS attacks are his expertise, while being actively involved in Personal Data protection activities and high-end IT system design for National IT systems, as well as activities in the Academic sector in the field of Cyber security.
May 16, 2023 11:30-12:30
Matej KovačičMatej Kovačič (SI)
Matej Kovacic works as a researcher at Jozef Stefan Institute and International Research Centre on Artificial Intelligence.
He is an author of four monographs and author or co-author of several other original scientific, professional and other articles and presentations. His last book, published in 2022 is titled "Crash course on cybersecurity: a manual for surviving in a networked world".
May 16, 2023 14:30-15:30
Atdhe BujaBlent KurtalaniAtdhe Buja (ICT Academy CERT, Kos), Blent Kurtalani (ICT Academy CERT, Kos)
Atdhe is a cybersecurity expert with 10 years of experience in incident handling, tools, trends, and security technologies. He has a strong understanding of the importance of Open-Source Intelligence (OSINT) and its role in threat intelligence gathering and analysis. Atdhe has extensive experience in consolidating CERT teams in sectors of academic, and critical information infrastructure (CII). He has worked on a range of projects aimed at protecting critical infrastructure and ensuring the safety and reliability of industrial systems. In recent years, Atdhe has been focused on developing a model of cybersecurity countermeasures for industrial IoT. He recognizes the unique challenges presented by IoT devices and is committed to helping organizations implement effective security strategies that address these challenges. As a speaker, Atdhe has presented on a range of cybersecurity topics, including incident handling, threat intelligence, and ICS/SCADA cybersecurity.
Blent Kurtalani is part of Information Security team at Solaborate L.L.C , and part of ICT Academy CERT as Cyber Security Analyst and co-founder of ICT Academy. Experienced in Cyber Security with a demonstrated history of working in the CERT Community, Higher Education Industry, BPO Industry, Software Development Industry etc. Areas of expertise include building incident response teams from the ground up and counselling of new teams, exercising and implementing scenario designs, hands-on incident response and coordination, vulnerability analysis, risk management, security governance (including ISO/IEC 27001/2, GDPR, HIPAA ), penetration test coordination specialized in most advanced methodologies.
May 16, 2023 13:30-14:30
Chris Gibson, Executive DirectorChris Gibson, Executive Director (FIRST, GB), Nadica Josifovski (State Advisor for Information Systems and Technologies, Ministry of Information Society and Administ), Maja Lakušić, , Cyber Security Promotion Advisor (SRB-CERT, Serbia), Michael Hamm (Operator and Analyst at Computer Incident Response Center Luxembourg), Paweł Pawliński, Principal Specialist (CERT.PL, Poland (online)), Franziska Klopfer, Principal Programme Manager (Europe and Central Asia Division, DCAF)
Chris brings a wealth of relevant and up-to-date experience in setting up and managing CERTs at the very highest levels of the worldwide Information and Cyber Security community.
Chris spent over 12 years working in the Computer Emergency Response Team (CERT) whilst at Citigroup and, for 10 years, was part of the leadership of the Forum of Incident Response and Security Teams (FIRST); 2 as Chair. Within FIRST he implemented the Fellowship program. This was created to fund CERTs from UN-designated “Least Developed Nations” (LDCs) allowing them both to join FIRST and attend conferences and training.
Chris joined the UK Government's CERT-UK team in November 2013 to build and launch the UK’s first formally chartered national CERT, joined Close Brothers as Chief Information Security Officer in November 2016, moved to Orwell Group as CISO in Jul 2018 and joined FIRST as it’s Executive Director in May 2019.
Chris’ experience has allowed him to work with colleagues from both inside some of the world’s largest global financial institutions with the complexities that brings and also with colleagues from the incident response community, with members ranging from Microsoft and Oracle through to the national CERTs of Azerbaijan and Indonesia.
Cybersecurity threat information (CTI) sharing allows cybersecurity actors to improve their cyber threat prevention. Efficient CTI requires actors to be able to detect and collect CTI and find ways of sharing it with others. In this panel, we will discuss best practices in CTI exchange and the role of actors such as national CERTs in CTI. We will also talk about the importance of CTI exchange at the national, regional, and international level.
Keynote
Chris Gibson, Executive Director (FIRST)
Discussants
Nadica Josifovski, (State Advisor for Information Systems and Technologies, Ministry of Information Society and Administration, North Macedonia)
Maja Lakušić, Cyber Security Promotion Advisor (SRB-CERT, Serbia)
Michael Hamm, (Operator and Analyst at Computer Incident Response Center Luxembourg)
Paweł Pawliński, Principal Specialist (CERT.PL, Poland (online))
Moderator
Franziska Klopfer, Principal Programme Manager (Europe and Central Asia Division, DCAF)
May 16, 2023 09:45-11:00
Mickov SasoMickov Saso (ASEE MKD, MK)
I have a bachelor’s degree in computer science from state university in Skopje ("Ss. Cyril and Methodius"- Skopje) and Master (MSc) in E-Business Management, at Faculty of Economics ("Ss. Cyril and Methodius"- Skopje).
I am holder of the relevant professional certificates in the critical areas of information system based on world famous framework and standards, such as COBIT, ISO 27001, PCI DSS and ITIL:
- CIPM - Certified Information Privacy Manager - 2020, IAPP
- CIA - Certified Internal Auditor, 2014, the IIA
- CISA - Certified Information Systems Auditor, 2008, ISACA
- Information Security ISO 27001 Lead Auditor – BSI
- ISMS in accordance with ISO 27001 – TUV, Austria
- ITIL v3 Foundation Certificate
- Microsoft Certified Systems Engineer- MCSE
- Over 20 years of professional experience in the critical project in the local country and interracially give me appropriate technical and business knowledge.
May 16, 2023 14:30-15:30
Kristijan AngelovskiKristijan Angelovski (CPP, MK)
Kristijan Angelovski is a highly motivated student currently pursuing a degree in Computer Science atthe Faculty of Computer Science and Engineering in Skopje. At the age of 23, he has already demonstrated a strong interest and aptitude in the field of cybersecurity. Kristijan has gained valuable experience as a Cyber Security Engineer and Penetration Tester during their time at CPP Services. He is passionate about ensuring the security of digital systems and networks and has developed a deep understanding of cyber threats. Kristijan is dedicated to keeping up with the latest security trends and technologies and is always seeking to expand their skills and knowledge. With a strong work ethic and a commitment to excellence, Kristijan is sure to make a significant contribution to the cybersecurity industry in the future.
May 16, 2023 15:45-16:45
Valentin LekovTino Apostolovski ((CPP Services)), Valentin Lekov (CPP Services, MK)
As a cybersecurity enthusiast, I am eager to learn and grow in this fast-paced and exciting field. With a really good foundation in computer science and a passion for protecting data, I am eager to contribute to a team dedicated to safeguarding businesses and individuals against digital threats.
I am committed to staying up-to-date with the latest cybersecurity trends and technologies. I am always looking for opportunities to expand my knowledge and skillset, whether through attending conferences, participating in online training courses, or collaborating with peers in the cybersecurity community.
With a strong work ethic and a willingness to learn, I am eager to take on new challenges and contribute to the success of any organization that values cybersecurity.
May 16, 2023 13:30-14:30