Lesley Carhart: A Crash Curriculum for Industrial Control System Security

BIO

Lesley Carhart is a Principal Threat Analyst, Threat Operations Center at the industrial cyber security company Dragos, Inc. She is recognized as a subject matter expert in cybersecurity incident response and digital forensics, regularly speaking on the topic at conferences and universities. She has spent the last 11 years of her 20+ year IT career specializing in information security, with a heavy focus on response to nation-state adversary attacks. Prior to Dragos, she was the incident response team lead at Motorola Solutions, performing digital forensics and incident handling services for both enterprise and public safety customers. Her focus at Dragos is developing forensics and incident response tools and processes for uncharted areas of industrial systems. She is also a certified instructor for the Dragos “Assessing, Hunting and Monitoring Industrial Control System Networks” course.

In 2017, Lesley was named a “Top Woman in Cybersecurity” by Cyberscoop news and received the Guidance Enfuse conference “Women in Technology” award. She holds a Bachelor’s Degree in Network Technologies from DePaul University, A.A.S. in Avionics Systems and Electronics Systems, GIAC GCIH, GREM, GCFA, and GCFE certifications, and currently serves as a Cyber Systems NCO in the US Air Force Reserves.

In her free time, Lesley co-organizes resume and interview clinics at several cybersecurity conferences, blogs and tweets prolifically about infosec, and is a youth martial arts instructor.

ABSTRACT

There’s been a lot of talk about infrastructure and ICS cybersecurity over the past several years. The field is growing and unfathomably important to our civilization. However, the learning resources available on the topic are scattered and somewhat dubious. This talk will propose a structured curriculum of free resources, books, and courses - as well as paid programs, for gaining a foundation of ICS knowledge. It will serve as a launch point for seeking out more knowledge on the topic in an intelligent way.