2015å¹´ã¢ã¸ã¢ã»ãã·ãã£ãã¯ISLAåè³ã¨CSIRTæ¨é²æ´»åã«ã¤ãã¦
ãã®ãã³ã(ISC)2ï¼ã¢ã¤ã»ã¨ã¹ã»ã·ã¼ã»ã¹ã¯ã¨ã¢ã以ä¸ã(ISC)2ãï¼ã主å¬ããã第9å年次ã¢ã¸ã¢ã»ãã·ãã£ãã¯æ å ±ã»ãã¥ãªãã£ã¼ã»ãªã¼ãã¼ã·ããã»ã¢ãã¼ãã¡ã³ãï¼Asia-Pacific Information Security Leadership Achievementsã以ä¸ãISLAï¼ãåè³ãã¾ããã
(ISC)2ã®çºè¡¨å 容ï¼https://japan.isc2.org/files/pressrelease/20150715.pdf ï¼
ãã®ã³ã©ã ã§ã¯æ¬è³ã¨ãæ¬è³ãåè³ãããã£ããã¨ãªã£ãCSIRTã«ã¤ãã¦ã話ããããã¨æãã¾ãã
CSIRTï¼Computer Security Incident Response Teamï¼ã¨ã¯
ã³ã³ãã¥ã¼ã¿ã¼ããããã¯ã¼ã¯ã«é¢ãããã¾ãã¾ãªã»ãã¥ãªãã£ä¸ã®åé¡ã»äºæ (ã¤ã³ã·ãã³ãã¨å¼ã³ã¾ã)ã®å ±åãåãåãã調æ»ãã対å¿æ´»åãè¡ãçµç¹ã®ç·ç§°ã§ãããµã¤ãã¼æ»æãªã©ã«ãã£ã¦çããã¤ã³ã·ãã³ãã®äºé²ããæ¤ç¥ã»å¯¾çã«ãããã¾ã§ã®å¯¾å¿ããã¾ããè¿å¹´ãã³ã³ãã¥ã¼ã¿ã¼ãã³ã³ãã¥ã¼ã¿ã¼ã»ãããã¯ã¼ã¯ã®æè¡ã¯ãã¾ãã¾ãªåéã«æµ¸éãã¦ãã¾ããããã«ä¼´ãã³ã³ãã¥ã¼ã¿ã¼ã¦ã¤ã«ã¹ãæ å ±æ¼ãããªã©å¤ãã®è å¨ããçµç¹ã人ã ã«å½±é¿ãã¦ãã¾ãããããã£ãç¶æ³ã«å¯¾å¿ããããã«ãCSIRTã®æ´»åã注ç®ãéãã¦ãã¾ãã
ã¯ããã«
ããç°¡åã«ç§ã¨CSIRTã¨ã®é¢ãããã話ããã¾ãã1998å¹´ã«JPCERT/CCã®ã¡ã³ãã¼ã¨ãªããCSIRTã«é¢ããæ´»åãå§ã¾ãã¾ããããã®å¾ãNTTã°ã«ã¼ãã®CSIRTã§ããNTT-CERTã®æ§ç¯ãã¾ããå½å ã®CSIRTå士ã®é£æºãç®çã¨ããæ¥æ¬ã·ã¼ãµã¼ãåè°ä¼ï¼Nippon CSIRT Associationã以ä¸ãNCAï¼ã®è¨ç«ã«ååãã¾ããã
ç¾å¨ã¯ãå½ç¤¾ã«ããã¦ã主ã«CSIRTã®æ§ç¯ã»éç¨æ¯æ´æ¥åã«æºãã£ã¦ãã¾ããå½ç¤¾èªèº«ã®CSIRTã§ããIL-CSIRTãããã³NTT-CERTã®ã¡ã³ãã¼ã§ããã¾ããNCAã®éå¶å§å¡ã¨ãªã£ã¦ãã¾ãã
1. ISLAã¨ã¯
(ISC)2ã¯ãæ å ±ã·ã¹ãã ã«é¢ããã»ãã¥ãªãã£ã¼ã»ãããã§ãã·ã§ãã«ã®èªå®ãè¡ãéå¶å©å£ä½ã§ããä¼å¡ç·æ°ã¯11ä¸äººã«è¿«ããå種ã®èªå®å£ä½ã¨ãã¦ã¯ä¸çæ大è¦æ¨¡ã§ããCISSPã®èªå®å£ä½ã¨ãã¦ãæåã§ãã
ä»åãç§ãåè³ããISLAã¨ã¯ããã®(ISC)2ãå®æ½ãã¦ããé¡å½°ããã°ã©ã ã§ããæ å ±ã»ã»ãã¥ãªãã£çã«è²¢ç®ãã次ä¸ä»£ãæ ã人ã ã®ããå¼ã«æ¥ç¸¾ã®ãã£ãå人ã«å¯¾ããå¹´ãã¨ã«è³ãè´ããã¾ããåç±³ããã³ä¸åç±³ã®Americas ISLAã¨ãã¢ã¸ã¢ã»å¤ªå¹³æ´å°åã®Asia-Pacific ISLAã¨ã«åããã¦ãã¦ãç§ã¯å¾è ã®ä¸ã®ãManagerial Professional for Information Security Projectsé¨éã§è³ãããã ãã¾ãããNCAã§ã®æ´»åãéãã¦CSIRTã®çºå±ã«å¯ä¸ãããã¨ãæè³ã®çç±ãã¨èãã¦ãã¾ãã
ï¼å·¦ï¼David Shearer, Chief Executive Officer (ISC)2
ï¼ä¸ï¼æ浦è³æ¨¹ NTTãã¼ã¿å
端æè¡æ ªå¼ä¼ç¤¾
ï¼å³ï¼Dr Jae-Woo Lee, Fellow of (ISC)2,
ãããCo-Chairperson (ISC)2 Asian Advisory Council
ISLAæè³ãããã£ã¼
2. NCAã¨ç§
æ¬ç¨¿å·çä¸ã®2015å¹´8æä¸æ¬ç¾å¨ãNCAã«ã¯90ãã¼ã ï¼ä¼å¡çµç¹ï¼ãå çãã¦ãã¾ããä¸çåå½ã»å°åã®ãã¼ã æ°ãæ£ç¢ºã«ææ¡ãã¦ããããã§ã¯ããã¾ããããä¸çã©ã³ãã³ã°ã®ä¸ã§NCAã¯ããªãä¸ä½ã«ä½ç½®ãã¦ããã¨æããã¾ãããªã©ã³ãã®CSIRTé¢ä¿è ã®æ¹ããããããæ°ã§ãããã¨é©ãã¦ãã¾ããã8å¹´åã®2007å¹´ãããã6ãã¼ã ã§ã¹ã¿ã¼ãããNCAã§ãããä¼å¡æ°ã¯å³è©ä¸ããã«ä¼¸ã³ã¦ãã¾ããããã§ã¯ããªãããã»ã©ã¾ã§ä¼å¡ãå¢ããã®ã§ããããã
ä¸ã¤ã®çç±ã¨ãã¦ãNCAã§ã¯å¸¸ã«é£æºãéè¦ããCSIRTãåå ããããç°å¢ãæ´ãã¦ãããã¨ãæããããã¨æãã¾ããèªçµç¹ã«CSIRTãç«ã¡ä¸ãããã¨èãã¦ãã人ã ã®ç¸è«ã«ä¹ãã課é¡ã®å ±æã¨è§£æ±ºã®ç³¸å£ãè¦ã¤ããããã®å ´ãæä¾ãã¦ãããã¨ããçç±ã®ä¸ã¤ã§ãããã
ITã°ããã§ãªãã製é ã建è¨ãéèãªã©ä¼å¡ã®æ¥ç¨®ã¯ç¨®ã æ§ã ã§ãããä¼å¡ãã¼ã ã®å é¨ãè¦ã¦ããå人ã®æ¥åå 容ã¯ããã¼ã¸ã£ã¼ãã¤ã³ã·ãã³ããã³ãã©ã¼ãåæå®ãªã©å¤å²ã«æ¸¡ãã¾ããNCAã®ããããå¤æ§æ§ããã¾ãã¾ãªæè¦ãçã¿åºããç¶æ³ã®ç°ãªãCSIRTãæè»ã«æ¯æ´ã§ããã®ã ã¨æãã¾ãã
ããã¦ãæ¥æ¬ã«TRANSITSãå°å ¥ãããã¨ãNCAãè©ä¾¡ããã¦ããä¸å ã§ããããTRANSITSã¯ã¨ã¼ãããã®å¦è¡ãããã¯ã¼ã¯TERENAãéçºãããCSIRTã®æ§ç¯ã»éç¨ã®ããã®æè²ããã°ã©ã ã§ãçµç¹ãéç¨ãæè¡ãæ³å¾ã®4ã¤ã®ã¢ã¸ã¥ã¼ã«ã§æ§æããã¾ããTRANSITSã¯åãªãæè²ã³ã¼ã¹ã§ã¯ãªããé£æºã¹ãã«ãå¹ãå ´ã«ããªã£ã¦ãã¾ããã¨ã¼ãããã§ã¯ãCSIRTã®ã¡ã³ãã¼ã«ãªãã¨æåã«TRANSITSãåè¬ãã¾ãããè¬å¸«ï¼å¤ãã¯ãã¯ãCSIRTã®ã¡ã³ãã¼ã§ãï¼ãã»ãã®åè¬è ã¨ã®äº¤æµãéãã¦ãé£æºã«ã¤ãã¦ãç¿å¾ãã¦ããã¾ã
ç§ã¯NCAã®ã¡ã³ãã¼ã¨ã¨ãã«TRANSITSãæ¥æ¬èªã«ç¿»è¨³ããè¬å¸«ãå¤ãã¦ãã¾ãããã¨ã¼ãããã®TRANSITSãåè¬ããå é²ã®ç¾å°ã®é°å²æ°ãã¤ãããã¨ãã§ããã¨æãã¦ãã¾ããNCAã主å¬ããæ¥æ¬ã®TRANSITSã¯ã¼ã¯ã·ã§ãããã¾ããã¨ã¼ãããåæ§ã«CSIRTå士ã®äº¤æµã®å ´ã¨ãªã£ã¦ãã¾ãã
3. ããã¾ãã«
ä»å¹´ã®ISLAã®åè³è ã¯23åã§ããã¡3åãæ¥æ¬äººã§ãããCSSCèªè¨¼ã©ãã©ããªã¼ã»å¥¥æåæ°ãæ ªå¼ä¼ç¤¾BLUE代表ã»ç¯ ç°ä½³å¥æ°ãããã¦ç§ã§ããç¹ã«ä»åã¯æ¥æ¬äººã®æ´»åãé«ãè©ä¾¡ãããããã§ãShowcasedã¨å¼ã°ããè¨å¿µè¬æ¼çãªã¹ãã¼ãã«ç¯ ç°æ°ã¨ç§ãæåããã¾ãããã¾ããç§ã®æ å ±ã»ãã¥ãªãã£ã»ã³ãã¥ããã£ã¼ã«å¯¾ãããããããªå¯ä¸ã«ãããCommunity Service Starã¨ããè³ãããã ãã¾ãããåè³ã¯ãã¡ããåã°ããããã¾ãããæ¥æ¬ã®ãã¬ã¼ã³ã¹ã®åä¸ã«å¾®åãªããè²¢ç®ã§ããã§ããããã¨ã¯ãç§ã«ã¨ã£ã¦æ大ã®åã³ã§ãã
CSSCèªè¨¼ã©ãã©ããªã¼ 奥æ åæ°
æ ªå¼ä¼ç¤¾BLUE代表 ç¯ ç° ä½³å¥æ°
æ¥æ¬ã®æ å ±ã»ãã¥ãªãã£çã§ãããå½å å¤ã®é£æºã®å¿ è¦æ§ãã¾ãã¾ãé«ã¾ãä¸ãæè¡è ã¨ãã¦åªç§ã§ããã«ãããããããæå±çµç¹ã®æ ã«çã¾ããããå¾ãªãè¥ã人ã大å¢ããããã«æãã¾ããä»åã®ç§ãã¡ã®åè³ããã®ãããªæè¡è ã®çããã®å±ã¿ã¨ãªããæ´»èºã®æ©ä¼ãä»ä»¥ä¸ã«åºãã¦ãããããã¨ãåã«é¡ã£ã¦ãã¾ãã
ISLAã¯ç§å人ã°ããã§ãªããå ±ã«æ´»åãã¦ããæ¥æ¬ã®æ å ±ã»ãã¥ãªãã£ã»ã³ãã¥ããã£ã¼ã®çãã¾ãNCAã®çãã¾ãããã¦ãNTT-CERTã®çãã¾ããã³å½ç¤¾ã«å¯¾ãã¦è´ããããã®ã ã¨èãã¦ãã¾ãããã ãç§ã®ååã§é æ´ãã¾ããã®ã§ãISLAã«æ¥ããªãããããããããæ¥ã ç²¾é²ãããã¨æãã¾ããæå¾ã«ãªãã¾ãããã大å¢ã®çãã¾ããæ´»åã®æ©ä¼ãä¸ãã¦ããã ãããã®å ´ãåãã¦ã礼ãç³ãä¸ãã¾ãã
Writer Profile
ã»ãã¥ãªãã£äºæ¥é¨
ã¤ã³ã·ãã³ãã¬ã¹ãã³ã¹æ
å½ ã·ãã¢ITã¹ãã·ã£ãªã¹ã
NTT-CERTã¡ã³ãã¼
CSIRTã¨ã´ã¡ã³ã¸ã§ãªã¹ã
æ浦 è³æ¨¹
Tweet