SlideShare a Scribd company logo
Inspiring Our Digital FutureCONFIDENTIAL AND PROPRIETARY

This presentation, including any supporting materials, is owned by neXt Curve and/or its affiliates and is for the sole use of the intended
neXt Curve audience or other intended recipients.  This presentation may contain information that is confidential, proprietary or otherwise
legally protected, and it may not be further copied, distributed or publicly displayed without the express written permission of neXt Curve or
its affiliates.

 

© 2018 neXt Curve and/or its affiliates. All rights reserved.
reThink Webinar
What Do Meltdown & Spectre Mean for IoT Past,
Present & Future?
February 6, 2018
Version 1.0
© 2018 neXt Curve and/or its affiliates. All rights reserved.
Introducing neXt Curve
Leonard Lee
Managing Director &
Founder of neXt Curve
neXt Curve is a San Diego-based
boutique consulting and venture
capital firm focused on advising
entrepreneurs, enterprises and
governments in the building of a
better digital future for all.
“We believe that a better
future requires the proactive
incubation and funding of
transformative ideas and the
businesses that will make
those ideas happen.”
An executive consultant with
23-years of experience with
leading tech and strategy firms.
© 2018 neXt Curve and/or its affiliates. All rights reserved.
neXt Curve Principal Panel
© 2018 neXt Curve and/or its affiliates. All rights reserved.
Meltdown & Spectre: The Threat We Don’t Want To Talk About
Beyond Apple: The Internet Of Security Risk
Tackling The Great Digital Risk Of Our Time
1
2
3
Discussion Agenda
© 2018 neXt Curve and/or its affiliates. All rights reserved.
Meltdown & Spectre: The Threat
We Don’t Want To Talk About1
Agenda Topic 1
© 2018 neXt Curve and/or its affiliates. All rights reserved.
Both Spectre & Meltdown exploit a device-level CPU side
channel vulnerability in processors
Meltdown takes advantage of out of order execution
capabilities of certain CPUs
Spectre takes advantage of branch prediction capabilities
of certain CPUs
Meltdown & Spectre impact a wide range of devices with
affected processors produced since 1995
Not all devices are affected. There are processors such as
StrongARM, Raspberry Pi that are deemed to be immune
What Do We Know?
Network
Device
Data & Content
Business Applications
You or Your Customer
Processor
Threat
© 2018 neXt Curve and/or its affiliates. All rights reserved.
AV-TEST identified over 139
malware samples between
January 7 and January 31
which sought to exploit the
Meltdown & Spectre security
vulnerabilities.
We can only expect growing
number of attempts to exploit
Meltdown & Spectre, which
will keep consumers and
enterprises vigilant for the
foreseeable future.
Now We Know, And So Do Bad Actors!
Source: AV-TEST
© 2018 neXt Curve and/or its affiliates. All rights reserved.
Agenda Topic 2
Beyond Apple: The Internet of
Security Risk2
© 2018 neXt Curve and/or its affiliates. All rights reserved.
The Problem Is Bigger Than Your iPhone
Consumer Devices Business Devices
Industrial Devices
The Internet
of Things
© 2018 neXt Curve and/or its affiliates. All rights reserved.
The IoT Security Threat Landscape
Industrial Enterprise
Consumer
Digital,
Connected Devices
Digital Service
Providers
Data Center/
Edge Computing
Your Internet
of Things
© 2018 neXt Curve and/or its affiliates. All rights reserved.
Agenda Topic 3
Tackling The Great Security
Risk Of Our Time3
© 2018 neXt Curve and/or its affiliates. All rights reserved.
How Do You Get Started And What Will The
Journey To Remediation Look Like?
REMEDIATEPLANPRIORITIZEASSESSProcess
Tools
Risk Assessment
Framework
Remediation & Invest
Decision Model
Remediation
Strategy & Plan
Remediation
Implementation
Governance &
Program Model
Govern &
Manage
Vendors Service
Providers
Corporate
Tech
Business
Stakeholders
© 2018 neXt Curve and/or its affiliates. All rights reserved.
Recommendations for Business Leaders
Take a holistic, multi-layered approach to security risk assessment
Quickly qualify and communicate the Meltdown/Spectre-related risk
Establish a decision framework to prioritize remediation investments
Establish PMO to manage vendors and service providers
1
2
3
4
Continue to assess the threats coming into your IoT portfolio5
© 2018 neXt Curve and/or its affiliates. All rights reserved.
Where can I find more information?
Go to our website at www.next-curve.com
Download our reThink research note
Set up an inquiry call with neXt Curve
© 2018 neXt Curve and/or its affiliates. All rights reserved.
How can neXt Curve help?
neXt Curve offers services that can help your
team and organization conceptualize and
design new products and business models
against critical trends in digital technology that
will shape the market and competitive
landscapes of your industry.
neXt Curve works with you through four basic
formats that can get our extensive network of
executive-level consultants and renowned
industry analysts engaged with you in
addressing your most critical challenges.
© 2018 neXt Curve and/or its affiliates. All rights reserved.
neXt Curve Risk Assessment & Remediation
Strategy Workshop
neXt Curve designs and moderates a 2 to 3 Day Executive Workshop program to help you and your
team develop a strategy and plan to address the Meltdown & Spectre threat to your business.
Key Outcomes
High-Level Security Posture
Assessment

Environment Risk Profile

Prioritization Criteria &
Decision Model Framework

Remediation Strategy

Remediation Action Plan

Draft Governance & Program
Framework
© 2018 neXt Curve and/or its affiliates. All rights reserved.
Contacts
Leonard Lee
Managing Director

neXt Curve

leonard.lee@next-curve.com

(619) 405-8329

www.next-curve.com
Thank You!

More Related Content

PPTX
Continuous Cyber Attacks: Engaging Business Leaders for the New Normal
PDF
Accenture Cloud Platform: Control, Manage and Govern the Enterprise Cloud
PDF
ServiceNow Webinar 12/1: Simplify Security Operations - Detect, Prioritize an...
PDF
Ims at mindtree key concepts and paradigms
PPTX
Integra presentation
PDF
2015E VirTek Services
PDF
Cisco Connect 2018 Singapore - Data center transformation a customer perspec...
PPTX
WatchGuard Firewall & Network Security
Continuous Cyber Attacks: Engaging Business Leaders for the New Normal
Accenture Cloud Platform: Control, Manage and Govern the Enterprise Cloud
ServiceNow Webinar 12/1: Simplify Security Operations - Detect, Prioritize an...
Ims at mindtree key concepts and paradigms
Integra presentation
2015E VirTek Services
Cisco Connect 2018 Singapore - Data center transformation a customer perspec...
WatchGuard Firewall & Network Security

What's hot (20)

PDF
Brink sanders cisco architecture keynote
PDF
Cisco Connect 2018 Singapore - Changing the Security Equation
PPTX
Virtual Gov Day - Security Breakout - Deloitte
PPTX
[Cisco Connect 2018 - Vietnam] Brink sanders cisco connect opening_keynote_vn_v4
RTF
eGestalt Partners Find Profitable Bundling Opportunities with New Cloud Secur...
RTF
eGestalt Announces Next Generation Security Posture Management with Aegify
PDF
Cisco Connect 2018 Singapore - Secure data center building a secure zero trus...
PPTX
Confessions of a CIO
PPTX
Webinar: Adaptive Security
PPTX
[Cisco Connect 2018 - Vietnam] Jijun cai present - cisco connect 2018 vn- c...
PPTX
Webinar: The role of Threat Intelligence Feeds in the battle against evolving...
PDF
Security Everywhere: A Growth Engine for the Digital Economy
PDF
Cisco Connect 2018 Singapore - Cybersecurity strategy
PPTX
How to Make Your Enterprise Cyber Resilient
PDF
Cisco Connect 2018 Singapore - Next generation hyperconverged infrastructure
PDF
Mike Gillespie - The Internet of Everything
PPTX
Continuous cyber attacks: Building the next-gen infrastructure
PPSX
Transformationplus Cyber Security Offering v10
PDF
Cisco Connect 2018 Singapore - Cisco CMX
PPSX
Transformationplus Corporate Profile
Brink sanders cisco architecture keynote
Cisco Connect 2018 Singapore - Changing the Security Equation
Virtual Gov Day - Security Breakout - Deloitte
[Cisco Connect 2018 - Vietnam] Brink sanders cisco connect opening_keynote_vn_v4
eGestalt Partners Find Profitable Bundling Opportunities with New Cloud Secur...
eGestalt Announces Next Generation Security Posture Management with Aegify
Cisco Connect 2018 Singapore - Secure data center building a secure zero trus...
Confessions of a CIO
Webinar: Adaptive Security
[Cisco Connect 2018 - Vietnam] Jijun cai present - cisco connect 2018 vn- c...
Webinar: The role of Threat Intelligence Feeds in the battle against evolving...
Security Everywhere: A Growth Engine for the Digital Economy
Cisco Connect 2018 Singapore - Cybersecurity strategy
How to Make Your Enterprise Cyber Resilient
Cisco Connect 2018 Singapore - Next generation hyperconverged infrastructure
Mike Gillespie - The Internet of Everything
Continuous cyber attacks: Building the next-gen infrastructure
Transformationplus Cyber Security Offering v10
Cisco Connect 2018 Singapore - Cisco CMX
Transformationplus Corporate Profile
Ad

Similar to neXt Curve reThink: What Meltdown & Spectre Mean for IoT Past, Present & Future? (20)

PDF
Spectre & Meltdown
PPTX
Open Source Insight: Meltdown, Spectre Security Flaws “Impact Everything”
PDF
How Virtual Reality and Machine Learning Are Powering the New Age of Network ...
PDF
neXt Curve IoT Evolution Expo 2018 Event Review
DOCX
Meltdown and Spectre Haunt the World’s Computers”In early Janua.docx
PDF
Avoid Meltdown from the Spectre - How to measure impact and track remediation
PDF
Delve Labs - Upcoming Security Challenges for the Internet of Things
PPTX
Threat Modelling and managed risks for medical devices
PPTX
Law seminars intl cybersecurity in the power industry
PPT
IT Security: Implications for the Technology Vision 2015
PDF
neXt Curve Mobile World Congress 2018 Key Takeaways
PDF
Mobile threat-report-mid-year-2018 en-us-1.0
PDF
Security Implications of Accenture Technology Vision 2015 - Executive Report
PDF
Privacy & Security for the Internet of Things
PDF
neXt Curve ITExpo 2018 Event Review
PPTX
CyberSecurity Threats in the Digital Age(1).pptx
PPTX
Fine line between performance and security
PDF
Cybersecurity | Risk. Impact. Innovations.
PPTX
Threat Modeling In 2021
PPTX
The Insecurity of Industrial Things
Spectre & Meltdown
Open Source Insight: Meltdown, Spectre Security Flaws “Impact Everything”
How Virtual Reality and Machine Learning Are Powering the New Age of Network ...
neXt Curve IoT Evolution Expo 2018 Event Review
Meltdown and Spectre Haunt the World’s Computers”In early Janua.docx
Avoid Meltdown from the Spectre - How to measure impact and track remediation
Delve Labs - Upcoming Security Challenges for the Internet of Things
Threat Modelling and managed risks for medical devices
Law seminars intl cybersecurity in the power industry
IT Security: Implications for the Technology Vision 2015
neXt Curve Mobile World Congress 2018 Key Takeaways
Mobile threat-report-mid-year-2018 en-us-1.0
Security Implications of Accenture Technology Vision 2015 - Executive Report
Privacy & Security for the Internet of Things
neXt Curve ITExpo 2018 Event Review
CyberSecurity Threats in the Digital Age(1).pptx
Fine line between performance and security
Cybersecurity | Risk. Impact. Innovations.
Threat Modeling In 2021
The Insecurity of Industrial Things
Ad

More from Leonard Lee (12)

PDF
neXt Curve The Great Gap: Digital Leadership & Governance
PDF
neXt Curve Cloud Spectator-The Hybrid Cloud Bill of Rights
PDF
Tokenization: Fueling The Blockchain Business Model
PDF
neXt Curve IBM Digital Reinvention 2018
PDF
neXt Curve IBM: The Future of Cloud and The Cloud Continuum
PDF
neXt Curve: The Way of The Intercepting Business
PDF
neXt Curve reThink: The Future of Retail: Retail 2.0
PDF
neXt Curve reThink: Blockchain & Cryptocurrencies
PDF
neXt Curve reThink: The Future of The Car
PDF
neXt Curve-CES 2018 Event Review
PDF
Predictive Asset Optimization - Advanced Analytics
PPTX
Software-Defined Supply Chain: The Next Industrial Revolution
neXt Curve The Great Gap: Digital Leadership & Governance
neXt Curve Cloud Spectator-The Hybrid Cloud Bill of Rights
Tokenization: Fueling The Blockchain Business Model
neXt Curve IBM Digital Reinvention 2018
neXt Curve IBM: The Future of Cloud and The Cloud Continuum
neXt Curve: The Way of The Intercepting Business
neXt Curve reThink: The Future of Retail: Retail 2.0
neXt Curve reThink: Blockchain & Cryptocurrencies
neXt Curve reThink: The Future of The Car
neXt Curve-CES 2018 Event Review
Predictive Asset Optimization - Advanced Analytics
Software-Defined Supply Chain: The Next Industrial Revolution

Recently uploaded (20)

PDF
Building Integrated photovoltaic BIPV_UPV.pdf
PDF
Encapsulation_ Review paper, used for researhc scholars
PPTX
Cloud computing and distributed systems.
PPTX
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
PDF
Bridging biosciences and deep learning for revolutionary discoveries: a compr...
PDF
Machine learning based COVID-19 study performance prediction
PDF
Build a system with the filesystem maintained by OSTree @ COSCUP 2025
PPTX
Big Data Technologies - Introduction.pptx
PDF
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
PDF
Agricultural_Statistics_at_a_Glance_2022_0.pdf
PDF
Unlocking AI with Model Context Protocol (MCP)
PDF
Reach Out and Touch Someone: Haptics and Empathic Computing
PPTX
Understanding_Digital_Forensics_Presentation.pptx
PPTX
Digital-Transformation-Roadmap-for-Companies.pptx
PDF
Empathic Computing: Creating Shared Understanding
PDF
Advanced methodologies resolving dimensionality complications for autism neur...
PPTX
MYSQL Presentation for SQL database connectivity
PDF
NewMind AI Monthly Chronicles - July 2025
PDF
Per capita expenditure prediction using model stacking based on satellite ima...
PDF
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
Building Integrated photovoltaic BIPV_UPV.pdf
Encapsulation_ Review paper, used for researhc scholars
Cloud computing and distributed systems.
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
Bridging biosciences and deep learning for revolutionary discoveries: a compr...
Machine learning based COVID-19 study performance prediction
Build a system with the filesystem maintained by OSTree @ COSCUP 2025
Big Data Technologies - Introduction.pptx
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
Agricultural_Statistics_at_a_Glance_2022_0.pdf
Unlocking AI with Model Context Protocol (MCP)
Reach Out and Touch Someone: Haptics and Empathic Computing
Understanding_Digital_Forensics_Presentation.pptx
Digital-Transformation-Roadmap-for-Companies.pptx
Empathic Computing: Creating Shared Understanding
Advanced methodologies resolving dimensionality complications for autism neur...
MYSQL Presentation for SQL database connectivity
NewMind AI Monthly Chronicles - July 2025
Per capita expenditure prediction using model stacking based on satellite ima...
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...

neXt Curve reThink: What Meltdown & Spectre Mean for IoT Past, Present & Future?

  • 1. Inspiring Our Digital FutureCONFIDENTIAL AND PROPRIETARY
 This presentation, including any supporting materials, is owned by neXt Curve and/or its affiliates and is for the sole use of the intended neXt Curve audience or other intended recipients.  This presentation may contain information that is confidential, proprietary or otherwise legally protected, and it may not be further copied, distributed or publicly displayed without the express written permission of neXt Curve or its affiliates.  
 © 2018 neXt Curve and/or its affiliates. All rights reserved. reThink Webinar What Do Meltdown & Spectre Mean for IoT Past, Present & Future? February 6, 2018 Version 1.0
  • 2. © 2018 neXt Curve and/or its affiliates. All rights reserved. Introducing neXt Curve Leonard Lee Managing Director & Founder of neXt Curve neXt Curve is a San Diego-based boutique consulting and venture capital firm focused on advising entrepreneurs, enterprises and governments in the building of a better digital future for all. “We believe that a better future requires the proactive incubation and funding of transformative ideas and the businesses that will make those ideas happen.” An executive consultant with 23-years of experience with leading tech and strategy firms.
  • 3. © 2018 neXt Curve and/or its affiliates. All rights reserved. neXt Curve Principal Panel
  • 4. © 2018 neXt Curve and/or its affiliates. All rights reserved. Meltdown & Spectre: The Threat We Don’t Want To Talk About Beyond Apple: The Internet Of Security Risk Tackling The Great Digital Risk Of Our Time 1 2 3 Discussion Agenda
  • 5. © 2018 neXt Curve and/or its affiliates. All rights reserved. Meltdown & Spectre: The Threat We Don’t Want To Talk About1 Agenda Topic 1
  • 6. © 2018 neXt Curve and/or its affiliates. All rights reserved. Both Spectre & Meltdown exploit a device-level CPU side channel vulnerability in processors Meltdown takes advantage of out of order execution capabilities of certain CPUs Spectre takes advantage of branch prediction capabilities of certain CPUs Meltdown & Spectre impact a wide range of devices with affected processors produced since 1995 Not all devices are affected. There are processors such as StrongARM, Raspberry Pi that are deemed to be immune What Do We Know? Network Device Data & Content Business Applications You or Your Customer Processor Threat
  • 7. © 2018 neXt Curve and/or its affiliates. All rights reserved. AV-TEST identified over 139 malware samples between January 7 and January 31 which sought to exploit the Meltdown & Spectre security vulnerabilities. We can only expect growing number of attempts to exploit Meltdown & Spectre, which will keep consumers and enterprises vigilant for the foreseeable future. Now We Know, And So Do Bad Actors! Source: AV-TEST
  • 8. © 2018 neXt Curve and/or its affiliates. All rights reserved. Agenda Topic 2 Beyond Apple: The Internet of Security Risk2
  • 9. © 2018 neXt Curve and/or its affiliates. All rights reserved. The Problem Is Bigger Than Your iPhone Consumer Devices Business Devices Industrial Devices The Internet of Things
  • 10. © 2018 neXt Curve and/or its affiliates. All rights reserved. The IoT Security Threat Landscape Industrial Enterprise Consumer Digital, Connected Devices Digital Service Providers Data Center/ Edge Computing Your Internet of Things
  • 11. © 2018 neXt Curve and/or its affiliates. All rights reserved. Agenda Topic 3 Tackling The Great Security Risk Of Our Time3
  • 12. © 2018 neXt Curve and/or its affiliates. All rights reserved. How Do You Get Started And What Will The Journey To Remediation Look Like? REMEDIATEPLANPRIORITIZEASSESSProcess Tools Risk Assessment Framework Remediation & Invest Decision Model Remediation Strategy & Plan Remediation Implementation Governance & Program Model Govern & Manage Vendors Service Providers Corporate Tech Business Stakeholders
  • 13. © 2018 neXt Curve and/or its affiliates. All rights reserved. Recommendations for Business Leaders Take a holistic, multi-layered approach to security risk assessment Quickly qualify and communicate the Meltdown/Spectre-related risk Establish a decision framework to prioritize remediation investments Establish PMO to manage vendors and service providers 1 2 3 4 Continue to assess the threats coming into your IoT portfolio5
  • 14. © 2018 neXt Curve and/or its affiliates. All rights reserved. Where can I find more information? Go to our website at www.next-curve.com Download our reThink research note Set up an inquiry call with neXt Curve
  • 15. © 2018 neXt Curve and/or its affiliates. All rights reserved. How can neXt Curve help? neXt Curve offers services that can help your team and organization conceptualize and design new products and business models against critical trends in digital technology that will shape the market and competitive landscapes of your industry. neXt Curve works with you through four basic formats that can get our extensive network of executive-level consultants and renowned industry analysts engaged with you in addressing your most critical challenges.
  • 16. © 2018 neXt Curve and/or its affiliates. All rights reserved. neXt Curve Risk Assessment & Remediation Strategy Workshop neXt Curve designs and moderates a 2 to 3 Day Executive Workshop program to help you and your team develop a strategy and plan to address the Meltdown & Spectre threat to your business. Key Outcomes High-Level Security Posture Assessment Environment Risk Profile Prioritization Criteria & Decision Model Framework Remediation Strategy Remediation Action Plan Draft Governance & Program Framework
  • 17. © 2018 neXt Curve and/or its affiliates. All rights reserved. Contacts Leonard Lee Managing Director neXt Curve leonard.lee@next-curve.com (619) 405-8329 www.next-curve.com