BCS'07 Speakers
Speakers from numerous disciplines will join BCS'07 to discuss present and future information security and hacking issues through an intensive series of business and technical sessions and demonstrations.
Keynote Speakers
- Mr. Mohamad Nuh (Minister of Communications and Information of Republic Indonesia)
- Jos Luhukay — Security Outlook on Increased Financial Transactions in 2008
- Fetri Miftach & Krisna Nugraha — Integrating Security Into Your IT Service Management
top ^
Business Track
- Tony Teo — Quiet Revolution in Network Security
- Phil Leifermann — Implementing World-class IT compliance for Asian Organisations
- Dhany Kurniawan — Raising the Bar for Security: Ensuring Regulatory Compliance with Efficient Security Management
- Edmon Makarim — Legal Issues of IT Security
- Pascal Andrei & Cedric Blancher — Aircraft Onboard Systems Security
- Greg Schmidt — Security Compliance: How do we get there?
- Tedy Djajawinata — Basel II and Information Security
- John Grygorcewicz — Security Consideration for a BCS: Planning to Implementation
- Yono Reksoprodjo — Preparing for Cyber War
top ^
Technical Track
- Frederic Raynal — Attack: From Technical to Informational Fields
- The Grugq — Meta Anti Forensics: The HASH Hacking Harnes
- Fredrik Söderblom — How to Catch a DDoS Kiddie
- A. Muammar W.K. & Mulyadi Santosa (Echo RDC Collective) — Recent Trends in Local Hacking Community
- Raffael Marty — Insider Threat Visualization - Where is Waldo?
- Fyodor Yarochkin — Hacking with AI - Explained
- Nguyen Anh Quynh — Hijacking Virtual Machine Execution for Fun and Profit
- Roberto Preatoni — WabiSabiLabi: The Exploit Marketplace
- Jim Geovedi & Raditya Iryandi — Hacking a Bird in the Sky: Exploiting Satellite Trust Relationship
- Cedric Blancher — Are Identity-based Security Schemes Going to Save Our LANs?
top ^
Profile
A. Muammar W.K. (ECHO RDC Collective)
Ahmad Muammar WK (also known as y3dips) is an IT Security Consultant at Hermis Consulting and founder of ECHO (http://echo.or.id/), one of Indonesian computer security community. He has been involved in computer security for more then five years and also actively wrote some articles in computer security, advisories, tutorials, and doing security research. He's also has been invited as speaker in many security seminar and events, which organized by ECHO or local university. y3dips & ECHO has been well known in local computer security community and various security mailing list all over the world, such as bugtraq, milw0rm, packetstormsecurity, etc.
top ^
Cedric Blancher
Cedric BLANCHER has spent the last 6 years working in network security field, performing audits and penetration tests. In 2004, he joined EADS Innovation Works and now runs the Computer Security Research lab in Suresnes, France.Cedric is known for his work on wireless networks security, through talks delivered worldwide, research papers, articles and trainings. He authored Wifitap, a 802.11 communication tool based on Wi-Fi traffic injection. Cedric website: http://sid.rstack.org/
top ^
Dhany Kurniawan
Dhany is a local guy from Indonesia, working for M.Tech, a regional distributor focusing in IT Security products. In his role, he works with a team, delivering Security Solutions for Indonesia's enterprises and telco customers. He is still quite young, with only 3 years experience in the ICT industry, and Yes, you can count on him for delivering professional results. Starting his role from doing installation and configuration, he is now focus on security consultation, assisting sales force providing best solutions for customers.
Dhany graduated from Bina Nusantara University (Jakarta), majoring in Information System. He is also certified in various IT Security products in professional level, such as: CCSE - Checkpoint Security Expert, NCSP - Nokia Security Professional, RHCE - RedHat Certified Engineer
top ^
Edmon Makarim
Edmon Makarim achieved Bachelor of Law from Universitas Indonesia, Bachelor of Computer Science from Universitas Gunadarma, and Master of Laws from University of Washington, Seattle, US. Coming from legal and computer science academic background, he founded an information technology law discussion group that preceded the existing Lembaga Kajian Hukum dan Teknologi (LKHT).
Edmon is expert in analyzing and providing consultancy for various issues in information technology law, intellectual property rights related law, telecommunication law, legal audit, law in cyber notary, digital evidence, and information system accountability.
top ^
Fetri Miftach
Fetri Miftach is a Principal Consultant at Bellua Asia Pacific. Fetri has a deep understanding of security methodology for the banking and telecommunication industries in Indonesia since 1999 and provided services to government agencies and private sectors. Expert in business process analysis from an information security perspective, risk assessment analysis, analysis and policy development that fit to specific industry need, educational and socialization, and forensic analysis. Fetri hails from aerospace engineering background and has an extensive background in Airborne Systems and Real Time System technology, especially in the aerospace, banking and telecommunication industries.
top ^
Frederik Raynal
Frederic Raynal is head of the Software Security Research and Development team at Sogeti. He is also the Chief Editor of the first French magazine dealing with computer and information security (MISC). He was previously co-head of a similar team at the Common Research Center (CRC) of EADS and head of the Organisation Committee of SSTIC (Symposium sur la Securite des Technologies de l'Information et de la Communication). He worked on information hiding and cryptography to defend his PhD. Now, he deals with (in)secure programming, security of operating systems, information warfare.
top ^
Fredrik Soderblom
Fredrik has been working in the IT industry for more than 20 years, and has been involved with the Internet and security since 1992, when he designed and implemented the first firewall for Hewlett Packard in northern Europe.
He has designed and implemented various network perimeter security solutions in Europe and the United States, as well as performed numerous security audits.
He is now the owner of XPD AB, a small, independent security consulting and research firm, with a focus on security and perimeter security solutions
top ^
Fyodor Yarochkin
Fyodor's been in business objectives and the security service delivery field for the past few years, contributing his spare time to a few open and closed source projects. He has a background of system administration and programming.
top ^
Greg Schmidt
Greg Schmidt is Regional Technical Sales Manager, Security and Mobile Connectivity, Enterprise Solutions, Nokia in Asia Pacific and based in Singapore. In his role, Greg works with a team of sales engineers to support the technical needs of customers and channel partners around the region. His portfolio spans 14 countries throughout Asia Pacific including China and Japan.
Greg brings with him more than 17 years of experience in the IT industry. He started his career working in voice, networking, applications, security, and data communications. Greg has worked for a number of Corporations (MCI, Microsoft, ANZ Bank) in Senior Design and Architecture Roles as well as Project and Program Management. His client list includes BP, NAB, Sony, Zurich, and Cambridge University. Greg's work and living experience spans several continents including North America, Europe, Australia and Asia.
Greg has been working with Nokia since January 2006. Prior to moving to Singapore this year, Greg was Southern Region Manager, Security and Mobile Connectivity, Enterprise Solutions, Nokia, based in Australia. Greg is a frequent expert speaker at various industry events. He closely follows the standards development and work in the fields of networking and network security. He is an avid runner and has completed several marathons.
top ^
Jim Geovedi
Jim Geovedi is an information security manager at Bellua Asia Pacific and has collected a tremendous amount of experience delivering professional security services where he prefers to approach security from an attacker's perspective in order to readily pinpoint weaknesses. He has presented at various international computer security conferences.
top ^
John Grygorcewicz
John Grygorcewicz has over 25 years of process and systems consulting experience. 13 years of which was with Ernst & Young, 9 of those years in Indonesia. There he was a Principal with the Indonesia Ernst & Young practice heading up their systems and process group within the Business Risk Services area. He has extensive experience in assisting clients to develop processes and how to align those processes the systems that in many cases now enable those processes, particularly if the organizations is looking to deploy a Business Process Management System (BPMS) or Service Oriented Architecture (SOA) based infrastructure to support its business processes. Recently he has been researching and helping clients make use of robust frameworks, such as the Zachman Enterprise Architecture framework, to give organizations visibility to potential security fail over points across the enterprise. He has provided advice to some of Australia's and Indonesia's largest and most respected organizations.
top ^
Jos Luhukay
Educated mainly in electrical engineering and computer science, Jos Luhukay got into the business applications of information systems very early in his career. Dr Luhukay helped start a school of Computer Science at the University of Indonesia. He left the university in 1989 to join Bank Niaga as Vice President of Information Technology. His last executive position was as Senior Vice President of Systems and Operations, which he held until 1994.
In September 1997, Dr Luhukay was recruited by the Government of Indonesia to serve as COO of the Jakarta Initiative Task Force, a unit set up to help mediate private sector debt restructuring. In February 2000, Jos joined Ernst & Young as Partner. On 15 April 2003, Dr Luhukay was appointed President Director of PT Bank Lippo, Tbk. For his role in Bank Lippo, SWA, the largest business magazine in Indonesia, named Jos the ÒBest CEO 2006Ó with the highest ratings ever achieved in the seven years of the award's history.
Dr Luhukay's various concepts in corporate governance, talent management and information technology led to a number national-level initiatives, among others in the financial, education and IT industries.
Since 1 October 2006, Jos Luhukay serves as Partner in IndoConsult, a 38-old consulting firm in Indonesia. On 13 November 2006 he was appointed with a presidential decree to serve as member of the National Council on Information & Communications Technologies, an advisory body tasked with advising the President of the Republic of Indonesia in policy and strategy matters.
top ^
Krisna Nugraha
Krisna poses 13 years IT experiences in Asia market started from database Client/Server application developer, infrastructure specialist, and shifted to IT strategy and IT operations area. Krisna is ex-Microsoft Consulting Services Principal Consultant who spent 7.5 years with Microsoft Indonesia and Microsoft Asia Pacific Regional. Krisna started his career with Microsoft in January 1998 when he was hired as the first Consultant for Microsoft Consulting Services organization in Indonesia. In April 2001, Krisna was promoted as Sr. Consultant and he was offered to take a bigger role in Microsoft Asia Pacific Regional Headquarter office based out of Kuala Lumpur. In 2003, Krisna received his second promotion as Principal Consultant focusing on IT Strategy and Operations Excellence. Krisna spent his very dynamics 3.5 years supporting 12 countries in Asia Pacific region, spanning from China to India, and Vietnam to New Zealand. Krisna returned to Indonesia in June 2004 to share his skills and experiences with the local market. Krisna obtained his credential as ITIL Manager Certified in 2004 and member of ISACA since 2005.
KrisnaÕs strengths include IT Service Management, IT Enterprise Architecture, IT Governance and IT Workforce Management. During his career, Krisna has provided his service to major organizations in Asia Pacific not limited to Central Bank of Thailand for IT Service Management assessment and implementation, Petroleum Authority of Thailand (PTT) for developing enterprise wide IT architecture and governance, Singapore Airlines for architecting enterprise Knowledge Management systems, Philippines Long Distance Telecommunication company for IT Service Management assessment, Ministry of Finance Republic of Indonesia for IT Service Management process implementation, Government of Queensland for Information Security training program, PT. Exelcomindo Pratama for IT Service Management process improvement. PT. Asuransi Astra Buana for enterprise architecture and IT Service Management implementation, PT. Asuransi Allianz Utama for IT Governance and IT Service Management implementation and many other names.
top ^
Mulyadi Santosa (Echo RDC Collective)
Mulyadi Santosa MCSE RHCE, 28 years old, is a freelance IT consultant and freelance IT writer. He specializes in Linux and open source technology topics. As a consultant, he was involved in several computer simulation projects in the past. Now. he also runs a start up that teaches Linux courses targetting newbies to advance users. Since 2006, he also joined ECHO-zine's editorial team and maintains 2 regular columns. Contact him at mulyadi.santosa@gmail.com for further technical discussions or business inquiries.
top ^
Nguyen Anh Quynh
Nguyen Anh Quynh is a postdoctoral researcher at National Institute of Advanced Industrial Science and TechnologyÑAIST, Japan. His research interests include computer security, networking, data forensic, virtualization, trusted computing and operating system. His papers has been published in various academic conferences, such as ACM, IEEE, LNCS, Usenix among others. Quynh is a contributor of numerous opensource projectsÑnotably are Xen Virtual Machine and Linux kernel. He is not limited his research to to the academic field though, as he loves to get involved with the industry. He presented his research results at international hacking conferences such as EusecWest, HackInTheBox, Hack.lu, SyScan, VNSECON, Xcon. Quynh obtained PhD degree in computer science from Keio University, Japan. He is also a member of Vnsecurity, a pioneer information security research group in Vietnam.
top ^
Pascal Andrei
Pascal ANDREI has a PhD degree in Competitive Intelligence & security from Paris University. He has started his carrier at Aerospatiale in 1992 as Head of Competitive Intelligence before leading E-Business activities in Munich for EADS headquarters. Pascal is now in charge of Aircraft Security at Airbus Engineering, covering Information Systems and Physical security items.
top ^
Phil Leifermann
Phil Leifermann is the President Director of Insight Consulting. Insight Consulting was established in 2000, and specializes in providing management assurance consulting services in the Asia Pacific region, including: Corporate governance, Risk management, Internal audit, IT audit, and IT security.
In addition, Insight Consulting also provides IT and business process consulting services, as well as a number of related products from the North America, Europe and Asia Pacific regions.
Prior to establishing Insight Consulting, Phil was a Director in the global risk management solutions group of PricewaterhouseCoopers for over 14 years in Australia and Indonesia.
Phil has a Master of Business Administration, as well as a Bachelor of Business majoring in accounting and information systems, and is also a: Chartered Accountant (CA), Certified Internal Auditor (CIA), Certified Control Self Assessor (CCSA), Certified Financial Services Auditor (CFSA), Certified Information Systems Auditor (CISA), and Certified Fraud Examiner (CFE).
In addition, Phil is a board member of the: Forum for Corporate Governance in Indonesia (FCGI), Professional Risk Managers International Association (PRMIA) Indonesia Chapter, Institute of Internal Auditors (IIA) Indonesia Chapter, Information Systems Audit and Control Association (ISACA) Indonesia Chapter, Information Systems Security Association (ISSA) Indonesia Chapter, and Association of Certified Fraud Examiners (ACFE) Indonesia Chapter.
top ^
Raditya Iryandi
Raditya Iryandi is a security consultant for Bellua Asia Pacific, with with several years experience in security and information technology. Raditya is an experience security engineer and consultant specialising in telecommunication network security. Apart of being a consultant, he is also DJing and he hopes to one day pursue a career with his passion in music.
top ^
Raffael Marty
As chief security strategist and senior product manager, Raffy is customer advocate and guardian - expert on all things security and log analysis at Splunk. With customers, he uses his skills in data visualization, log management, intrusion detection, and compliance to solve problems and create solutions. Inside Splunk, he is the conduit for customer issues, new ideas and market requirements to the development team. Fully immersed in industry initiatives, standards efforts and activities, Raffy lives and breathes security and visualization. His passion for visualization is evident in the many presentations he gives at conferences around the world.
Active in standard committees like CEE (common event expression) and OVAL (open vulnerability and assessment language), he is also creator of automation tools Thor and AfterGlow, founder of the security visualization portal http://secviz.org, and contributing author to a number of books on security and visualization. Before coming to Splunk he managed the solutions team at ArcSight, was an IT security consultant for PriceWaterhouse Coopers, and was a member of the Global Security Analysis Lab at IBM Research, where he participated in various intrusion detection related research projects.
top ^
Roberto Preatoni
Roberto Preatoni (aka Sys64738): 40, is the Director of Strategy of WabiSabiLabi, the first marketplace for security research and intellectual property. He is also the founder of the cybercrime archive Zone-H (http://www.zone-h.org/). He's also CEO of an International ITsec company (Domina Security) which is active in European and former soviet countries. He has been globetrotting, lecturing in several ITsec security conferences, including Defcon in the US, Paranoia Norway and Chaos Communication Congress Germany. He has been interviewed by several print and online newspapers where he shares his experiences relating to cyberwar and cybercrimes.
top ^
Tedy Djajawinata
Tedy is one of the Founders and a Director of Vaia Consulting, one of IndonesiaÕs specialized system consulting services companies. He is primarily responsible for directing the companyÕs services to clients in relation to Financial Risk Management (FRM) including Basel II Solutions, especially for the banking industry. He has extensive international experience in Information System services specifically in relation to IS management, strategy, infrastructure, security and system integration. He also has significant work and education experience in the international environment.
Prior to Vaia Consulting, Tedy worked for Ernst & Young USA and KPMG Indonesia within related disciplines. He had been invited to speak in numerous local and international forums and conferences on related topics. He earned a bachelor degree in Industrial Design from Mapua Institute of Technology in the Philippines, and two master degrees in Business Administration and Information Systems from the University of Dallas in Texas.
top ^
The Grugq
The Grugq is a domain expert consultant on VoIP security, digital forensic analysis and reverse engineering. The Grugq has spent 7 years working with all aspects of information security, from penetration testing to solutions and product development. The Grugq's career has seen him working for financials, security consulting companies, start-ups and, most recently, founding his own information security company. The Grugq's information security expertise ranges from penetration testing and source code auditting, through to rootkit technologies and advanced digital forensic analysis and investigation.
top ^
Tony Teo
Tony Teo holds the position of Technical Director, ASEAN at TippingPointÕs operations in Singapore. Based in Singapore, his responsibilities include driving all of TippingPointÕs technical operations, and assist sales force in developing new business opportunities. With over 10 yearsÕ experience in the ICT industry, Tony comes equipped with a strong understanding of the network and application security market.
Prior to joining TippingPoint, Tony was the Technical Manager for Radware ASEAN operations. He managed the Technical SE team and oversaw technical operations in Southeast Asia region. And prior to this, he was with F5 Networks focusing on Network Application delivery solution. And prior to this, he spent close to five years at Motorola Inc as part of the project team development Telecommunication Infrastructure Application for the Telcos.
Tony graduated with a Computer Engineering Degree from the Nanyang Technological University (Singapore), and a Master of Science in Electrical Engineering from the National University of Singapore. He is also a certified CISSP and SANS GCIH.
top ^
Yono Reksoprodjo
Yono Reksoprodjo was born in Jakarta, in late August 1962. After graduating as Naval Architect from the Mechanical Engineering Department, Engineering Faculty University of Indonesia in mid 1987, he joined the Indonesian Aircraft Industries (PT.IPTN) in Bandung. Here, he began to master the talent and art of reverse engineering which then brought him to the Computer Aided System Engineering Section at the Mechanical Engineering Department of Imperial College London to continue his further study in this topic for his Doctoral degree which he got it in mid 1994. As a young design engineer, project leader and manager, he must take the important role and responsibility to keep the work always in the lead so he found this as a good reason to mastering the knowledge and skill of industrial intelligence. Yono believes that there is always a need to make things better. Before returning for good to Indonesia in late 2002, Yono had spend his time gaining professional experiences playing the role as engineer and/or manager at Rolls Royce Aero Engine UK, Rover UK, Millard Design Australia, System Engineering Integrator Japan and Araco Japan. His know how and activities within the industrial intelligence field later brought him to engage formally with the Indonesian Defense Forces Architecture Framework Center as advisor to the Commander in Chief of the Indonesian Defense Forces (TNI). Beside his formal education, Yono has completed as much as 21 additional technical courses including ISO 27001 ISMS Lead Auditor Course in 2006. Yono has also around 87 academic publications, papers, presentations and teaching materials published in and out Indonesia. He is happily married and has two teenage boys to look after.
top ^
For speakers at our previous events, you can visit BCS'06 and BCS'05 speaker lists.


