SlideShare a Scribd company logo
V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E
Adaptive Authentication
23.10.2018 1
Kevin GILLIERON
Software Engineer
Michael MOLHO
Senior Security Engineer
V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E
Agenda de la présentation
23.10.2018 2
• Adaptive Authentication
• Insight
• Démonstration
• Questions
V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E
Adaptive Authentication
23.10.2018 3
V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E
Adaptive Authentication
• Idée: assigner un score de «risque» à chaque authentification
• IP source, pays de connexion, browser utilisé, date de connexion, username ….
• Prendre des décisions basées sur ce score :
• Restreindre l’accès à certaines ressources
• Forcer le 2FA
• Bloquer l’accès
• Le score combine Machine Learning et Analytics
• Objectif : lutter contre le vol de credentials
• Limiter la contrainte utilisateur de type MFA
23.10.2018 4
V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E
Adaptive Authentication
• 3 phases :
• Learning: le système apprend les habitudes de chaque utilisateur
• Basé sur les authentification réussies
• IP source, pays de connexion, browser utilisé, date de connexion, username ….
• Building: construction du modèle à partir des données récoltées
• Active: calcul des scores de risque à chaque authentification
• Utilisation du modèle calculé (machine learning + analytics)
• Décisions en fonction du score (deny, MFA, …)
23.10.2018 5
V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E
e-Xpert Solutions - Insight
• Made by e-Xpert Solutions
• Core :
• Collecte de logs
• Indexation
• Recherche
• Modules
• Insight for APM
• Adaptative Authentication
23.10.2018 6
V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E
e-Xpert Solutions – Insight
23.10.2018 7
V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E
e-Xpert Solutions – Insight for APM
23.10.2018 8
V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E
e-Xpert Solutions – Insight for APM
23.10.2018 9
V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E
Insight Adapt Auth
Learning
23.10.2018 10
V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E
23.10.2018 11
Insight Adapt Auth
Active
V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E
23.10.2018 12
Insight Adapt Auth
V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E
Démonstration
23.10.2018 13
V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E
Questions
23.10.2018 14

More Related Content

PPTX
20 Years of SIEM - SANS Webinar 2022
PDF
Driving Insights in the Digital Enterprise
PDF
ITAM Tools Day, November 2015 - Concorde
PPTX
AI-900 Slides.pptx
PDF
CFA-NY Workshop - Final slides
PDF
Valdas Maksimavičius - Reducing Technology Risks through Prototyping
PDF
TrustArc Webinar - Unlocking AI Potential: Leveraging PIA Processes for Compr...
PDF
Zen Test Labs Starwest 2011 Keynote
20 Years of SIEM - SANS Webinar 2022
Driving Insights in the Digital Enterprise
ITAM Tools Day, November 2015 - Concorde
AI-900 Slides.pptx
CFA-NY Workshop - Final slides
Valdas Maksimavičius - Reducing Technology Risks through Prototyping
TrustArc Webinar - Unlocking AI Potential: Leveraging PIA Processes for Compr...
Zen Test Labs Starwest 2011 Keynote

Similar to Mise en place d'un Use Case d'Adaptive Authentication avec F5 APM et Insight (Solution Made in e-Xpert Solutions) (20)

PDF
2016, A New Era of OS and Cloud Security - Tudor Damian
PDF
Digital media analytics: web, mobile analytics - Ahmad Abdullah - Google
PPTX
Python Development - V2STech Corporate presentation
PPTX
Customer Story: Scaling Security With Detections-as-Code
PPTX
2016, A new era of OS and Cloud Security
PPTX
Deploying AI Applications in Enterprises
PPTX
Risk Product Management - Creating Safe Digital Experiences, Product School 2019
PDF
Machine Learning & IT Service Intelligence for the Enterprise: The Future is ...
PDF
Using Data Science to Build an End-to-End Recommendation System
PDF
OWASP AppSec EU 2016 - Security Project Management - How to be Agile in Secu...
PDF
People, process, platform, presented by Adam Singer
PPTX
Agile Chennai 2023 | Unleashing Agility: Triumphs Over Challenges in Legacy M...
PDF
Accelerate ML Deployment with H2O Driverless AI on AWS
PPTX
Making Predictive Analytics Practical: How Marketing Can Drive Engagement
PDF
QA_Services_Offering
PDF
How to be your Security Team's Best Friend
PPTX
Predicting Customer Behavior With Big Data
PDF
The Machine Learning Audit
PDF
Ai in insurance how to automate insurance claim processing with machine lear...
PPTX
Updated_Women_Financial_Empowerment.pptx
2016, A New Era of OS and Cloud Security - Tudor Damian
Digital media analytics: web, mobile analytics - Ahmad Abdullah - Google
Python Development - V2STech Corporate presentation
Customer Story: Scaling Security With Detections-as-Code
2016, A new era of OS and Cloud Security
Deploying AI Applications in Enterprises
Risk Product Management - Creating Safe Digital Experiences, Product School 2019
Machine Learning & IT Service Intelligence for the Enterprise: The Future is ...
Using Data Science to Build an End-to-End Recommendation System
OWASP AppSec EU 2016 - Security Project Management - How to be Agile in Secu...
People, process, platform, presented by Adam Singer
Agile Chennai 2023 | Unleashing Agility: Triumphs Over Challenges in Legacy M...
Accelerate ML Deployment with H2O Driverless AI on AWS
Making Predictive Analytics Practical: How Marketing Can Drive Engagement
QA_Services_Offering
How to be your Security Team's Best Friend
Predicting Customer Behavior With Big Data
The Machine Learning Audit
Ai in insurance how to automate insurance claim processing with machine lear...
Updated_Women_Financial_Empowerment.pptx
Ad

More from e-Xpert Solutions SA (20)

PDF
Event e-Xpert Solutions et Tufin - 28 mars 2019
PDF
Présentation d'e-Xpert Solutions et F5 Networks - Event Oct 2018
PDF
Présentation de nos MVP - F5 devCentral - Event 09-10-18
PDF
2018-08_Présentation Corporate
PDF
2018 06 Presentation Cloudguard IaaS de Checkpoint
PDF
2018 06 Presentation Cloudguard SaaS de Checkpoint
PDF
2018 06 nouvelles APIs checkpoint e-Xpert solutions
PDF
2018 06 Demo Checkpoint et Splunk e-Xpert solutions
PPT
Fédération d’identité : des concepts Théoriques aux études de cas d’implément...
PPTX
Fédération d'identité, séminaire du 27 novembre 2014
PDF
Séminaire Evolution de la Mobilité - Subir ou gérer ?
PDF
Le DLP vu sous un angle pragmatique
PDF
Plus de mobilité ! Moins de sécurité ?
PDF
DDoS, la nouvelle arme des hackers
PDF
Sandboxing, une nouvelle défense contre les menaces intelligentes
PDF
Evolution du paysage sécurité
PDF
Partie III – APM Application Policy Manager
PDF
Partie II – ASM Application Security Manager
PDF
Partie I – Décodage technologie ADN
PPTX
Séminaire Web Services
Event e-Xpert Solutions et Tufin - 28 mars 2019
Présentation d'e-Xpert Solutions et F5 Networks - Event Oct 2018
Présentation de nos MVP - F5 devCentral - Event 09-10-18
2018-08_Présentation Corporate
2018 06 Presentation Cloudguard IaaS de Checkpoint
2018 06 Presentation Cloudguard SaaS de Checkpoint
2018 06 nouvelles APIs checkpoint e-Xpert solutions
2018 06 Demo Checkpoint et Splunk e-Xpert solutions
Fédération d’identité : des concepts Théoriques aux études de cas d’implément...
Fédération d'identité, séminaire du 27 novembre 2014
Séminaire Evolution de la Mobilité - Subir ou gérer ?
Le DLP vu sous un angle pragmatique
Plus de mobilité ! Moins de sécurité ?
DDoS, la nouvelle arme des hackers
Sandboxing, une nouvelle défense contre les menaces intelligentes
Evolution du paysage sécurité
Partie III – APM Application Policy Manager
Partie II – ASM Application Security Manager
Partie I – Décodage technologie ADN
Séminaire Web Services
Ad

Recently uploaded (20)

PDF
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
PDF
Mobile App Security Testing_ A Comprehensive Guide.pdf
PPTX
Detection-First SIEM: Rule Types, Dashboards, and Threat-Informed Strategy
PDF
cuic standard and advanced reporting.pdf
PDF
Agricultural_Statistics_at_a_Glance_2022_0.pdf
PDF
Dropbox Q2 2025 Financial Results & Investor Presentation
PDF
CIFDAQ's Market Insight: SEC Turns Pro Crypto
PDF
Bridging biosciences and deep learning for revolutionary discoveries: a compr...
PPT
Teaching material agriculture food technology
PDF
Modernizing your data center with Dell and AMD
PPTX
MYSQL Presentation for SQL database connectivity
PPTX
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
PDF
Network Security Unit 5.pdf for BCA BBA.
PDF
Per capita expenditure prediction using model stacking based on satellite ima...
DOCX
The AUB Centre for AI in Media Proposal.docx
PDF
Building Integrated photovoltaic BIPV_UPV.pdf
PDF
Review of recent advances in non-invasive hemoglobin estimation
PDF
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
PDF
Encapsulation theory and applications.pdf
PDF
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
Mobile App Security Testing_ A Comprehensive Guide.pdf
Detection-First SIEM: Rule Types, Dashboards, and Threat-Informed Strategy
cuic standard and advanced reporting.pdf
Agricultural_Statistics_at_a_Glance_2022_0.pdf
Dropbox Q2 2025 Financial Results & Investor Presentation
CIFDAQ's Market Insight: SEC Turns Pro Crypto
Bridging biosciences and deep learning for revolutionary discoveries: a compr...
Teaching material agriculture food technology
Modernizing your data center with Dell and AMD
MYSQL Presentation for SQL database connectivity
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
Network Security Unit 5.pdf for BCA BBA.
Per capita expenditure prediction using model stacking based on satellite ima...
The AUB Centre for AI in Media Proposal.docx
Building Integrated photovoltaic BIPV_UPV.pdf
Review of recent advances in non-invasive hemoglobin estimation
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
Encapsulation theory and applications.pdf
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...

Mise en place d'un Use Case d'Adaptive Authentication avec F5 APM et Insight (Solution Made in e-Xpert Solutions)

  • 1. V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E Adaptive Authentication 23.10.2018 1 Kevin GILLIERON Software Engineer Michael MOLHO Senior Security Engineer
  • 2. V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E Agenda de la présentation 23.10.2018 2 • Adaptive Authentication • Insight • Démonstration • Questions
  • 3. V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E Adaptive Authentication 23.10.2018 3
  • 4. V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E Adaptive Authentication • Idée: assigner un score de «risque» à chaque authentification • IP source, pays de connexion, browser utilisé, date de connexion, username …. • Prendre des décisions basées sur ce score : • Restreindre l’accès à certaines ressources • Forcer le 2FA • Bloquer l’accès • Le score combine Machine Learning et Analytics • Objectif : lutter contre le vol de credentials • Limiter la contrainte utilisateur de type MFA 23.10.2018 4
  • 5. V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E Adaptive Authentication • 3 phases : • Learning: le système apprend les habitudes de chaque utilisateur • Basé sur les authentification réussies • IP source, pays de connexion, browser utilisé, date de connexion, username …. • Building: construction du modèle à partir des données récoltées • Active: calcul des scores de risque à chaque authentification • Utilisation du modèle calculé (machine learning + analytics) • Décisions en fonction du score (deny, MFA, …) 23.10.2018 5
  • 6. V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E e-Xpert Solutions - Insight • Made by e-Xpert Solutions • Core : • Collecte de logs • Indexation • Recherche • Modules • Insight for APM • Adaptative Authentication 23.10.2018 6
  • 7. V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E e-Xpert Solutions – Insight 23.10.2018 7
  • 8. V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E e-Xpert Solutions – Insight for APM 23.10.2018 8
  • 9. V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E e-Xpert Solutions – Insight for APM 23.10.2018 9
  • 10. V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E Insight Adapt Auth Learning 23.10.2018 10
  • 11. V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E 23.10.2018 11 Insight Adapt Auth Active
  • 12. V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E 23.10.2018 12 Insight Adapt Auth
  • 13. V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E Démonstration 23.10.2018 13
  • 14. V O T R E G U I D E E N S É C U R I T É I N F O R M A T I Q U E Questions 23.10.2018 14