David Venable

Last updated

David Venable
DaveVenable.jpg
Born (1978-01-11) January 11, 1978 (age 47)
NationalityAmerican
EducationDoctor of Information Security, International Scientific and Technical University (h.c.)
Occupation(s)Intelligence Officer
Cyber Security
Author
Speaker
Espionage activity
AllegianceFlag of the United States.svg  United States of America
Service branch Seal of the U.S. National Security Agency.svg National Security Agency
U.S. Department of State official seal.svg Department of State

David "Dave" Venable (born January 11, 1978) is a former intelligence officer with the United States National Security Agency, and current cyber security professional and businessman. [1] [2] He is an author and speaker on the topics of cyber security, cyberwarfare, and international security; has developed security-related internet protocols; [3] [4] [5] [6] [7] is a US patent holder; [8] and has been named as one of the most influential people in security. [9]

Contents

Early life and education

Venable was born in and grew up in Little Rock, Arkansas, and later attended the University of Arkansas, majoring in mathematics. After college, he joined the United States Air Force and studied Korean at the Defense Language Institute in Monterey, California, a Department of Defense educational and research institution which provides linguistic and cultural instruction to the DoD and other Federal Agencies. Venable has also pursued graduate education in mathematics at the University of Texas, and international relations at Harvard University. [2] [10]

Career

Dr. Venable has serve in several intelligence roles with the National Security Agency, including Computer Network Exploitation, Cyberwarfare, Information Operations, and Digital Network Intelligence in support of global anti-terrorism operations. He has also taught about these subjects while serving as adjunct faculty at the National Cryptologic School, a school within the National Security Agency that provides training to members of the United States Intelligence Community. [2] [11] [12]

After leaving federal service Venable founded and served as CEO of Vanda Security, a Dallas-based security consultancy, which ultimately was acquired, and became the security professional services practice of Comcast Business Masergy. Venable went on to serve as Vice President and CISO of Comcast Business for eight years. Venable regularly speaks at industry and government conferences including The G20 Summit, the World Economic Forum summit in Davos, NATO forums, Black Hat Briefings and European security forums including the Munich Security Conference and the Warsaw Security Forum; serves as a cyber security expert with think tanks and policy research institutes; serves as a board member of Alliance for Innovation and Infrastructure; and is a cybersecurity expert, speaker, and public diplomat with the United States Department of State. [13] [14] [15] [16] [17] [18] [19]

Bibliography

Venable frequently contributes to and appears in Forbes , BBC , Harvard Business Review , Bloomberg Businessweek , InformationWeek , IDG Connect, and other media outlets in matters pertaining to cyber security, cyberwarfare, and international security. [10] [20] [21] [22]

Patents

USpatent 10469482,Venable, David,"Encrypted data retrieval systems and methods to provide access to encrypted data",issued 2019-11-05, assigned to Masergy, Inc. 

Related Research Articles

<span class="mw-page-title-main">Computer security</span> Protection of computer systems from information disclosure, theft or damage

Computer security is the protection of computer software, systems and networks from threats that can lead to unauthorized information disclosure, theft or damage to hardware, software, or data, as well as from the disruption or misdirection of the services they provide.

<span class="mw-page-title-main">Cybercrime</span> Type of crime based in computer networks

Cybercrime encompasses a wide range of criminal activities that are carried out using digital devices and/or networks. These crimes involve the use of technology to commit fraud, identity theft, data breaches, computer viruses, scams, and expanded upon in other malicious acts. Cybercriminals exploit vulnerabilities in computer systems and networks to gain unauthorized access, steal sensitive information, disrupt services, and cause financial or reputational harm to individuals, organizations, and governments.

Ransomware is a type of malware that encrypts the victim's personal data until a ransom is paid. They commonly use difficult-to-trace digital currencies such as paysafecard or Bitcoin and other cryptocurrencies are used for the ransoms, making tracing and prosecuting the perpetrators difficult. Sometimes the original files can be retrieved without paying the ransom due to implementation mistakes, leaked cryptographic keys or a complete lack of encryption in the ransomware.

Fortinet, Inc. is an American cybersecurity company with headquarters in Sunnyvale, California. The company develops and sells security solutions like firewalls, endpoint security and intrusion detection systems. Fortinet has offices located all over the world.

<span class="mw-page-title-main">Eugene Kaspersky</span> Russian specialist in the information security field

Yevgeny Valentinovich Kaspersky is a Russian cybersecurity expert and the CEO of Kaspersky Lab, an IT security company with 4,000 employees. He co-founded Kaspersky Lab in 1997 and helped identify instances of government-sponsored cyberwarfare as the head of research. He has been an advocate for an international treaty prohibiting cyberwarfare.

EC-Council is a cybersecurity certification, education, training, and services company based in Albuquerque, New Mexico.

Cyberwarfare is the use of computer technology to disrupt the activities of a state or organization, especially the deliberate attacking of information systems for strategic or military purposes. As a major developed economy, the United States is highly dependent on the Internet and therefore greatly exposed to cyber attacks. At the same time, the United States has substantial capabilities in both defense and offensive power projection thanks to comparatively advanced technology and a large military budget. Cyberwarfare presents a growing threat to physical systems and infrastructures that are linked to the internet. Malicious hacking from domestic or foreign enemies remains a constant threat to the United States. In response to these growing threats, the United States has developed significant cyber capabilities.

Cyberwarfare by China is the aggregate of cyberattacks attributed to the organs of the People's Republic of China and various related advanced persistent threat (APT) groups.

Jeffrey Carr is a cybersecurity author, researcher, entrepreneur and consultant, who focuses on cyber warfare.

Mandiant, Inc. is an American cybersecurity firm and a subsidiary of Google. Mandiant received attention in February 2013 when it released a report directly implicating China in cyber espionage. In December 2013, Mandiant was acquired by FireEye for $1 billion, who eventually sold the FireEye product line, name, and its employees to Symphony Technology Group for $1.2 billion in June 2021.

<span class="mw-page-title-main">DB Networks</span>

DB Networks is a privately held Information Security company founded in the United States The company is headquartered in San Diego, California, and its regional offices are located in Palo Alto, California and Seattle, Washington.

Bureau 121 is a North Korean cyberwarfare agency, and the main unit of the Reconnaissance General Bureau (RGB) of North Korea's military. It conducts offensive cyber operations, including espionage and cyber-enabled finance crime. According to American authorities, the RGB manages clandestine operations and has six bureaus.

<span class="mw-page-title-main">Cyber Threat Intelligence Integration Center</span>

The Cyber Threat Intelligence Integration Center (CTIIC) is a United States federal government agency that operates as a fusion center between intelligence agencies and the private sector for real-time use against cyber attacks. CTIIC was created in the wake of the 2014 cyber attack on Sony in combination with the need to establish a cyber integration center following blocked efforts in Congress that were stymied over liability and privacy concerns of citizens.

<span class="mw-page-title-main">Alex Stamos</span> Greek American computer scientist

Alex Stamos is an American, cybersecurity expert, the former chief security officer (CSO) at Facebook. His planned departure from the company, following disagreement with other executives about how to address the Russian government's use of its platform to spread disinformation during the 2016 U.S. presidential election, was reported in March 2018.

BitSight Technologies, Inc. is a cybersecurity ratings company that analyzes companies, government agencies, and educational institutions. It is based in Back Bay, Boston. Security ratings that are delivered by BitSight are used by banks and insurance companies among other organizations. The company rates more than 200,000 organizations with respect to their cybersecurity.

Nyotron is an information-security company. It was established in 2009 by brothers Nir and Ofer Gaist. Nir Gaist is the CTO, and Sagit Manor became the CEO in 2017. The company is based in Santa Clara, CA, with an R&D office in Herzliya, Israel.

Internet security awareness or Cyber security awareness refers to how much end-users know about the cyber security threats their networks face, the risks they introduce and mitigating security best practices to guide their behavior. End users are considered the weakest link and the primary vulnerability within a network. Since end-users are a major vulnerability, technical means to improve security are not enough. Organizations could also seek to reduce the risk of the human element. This could be accomplished by providing security best practice guidance for end users' awareness of cyber security. Employees could be taught about common threats and how to avoid or mitigate them.

Ryuk is a type of ransomware known for targeting large, public-entity Microsoft Windows cybersystems. It typically encrypts data on an infected system, rendering the data inaccessible until a ransom is paid in untraceable bitcoin. Ryuk is believed to be used by two or more criminal groups, most likely Russian or Ukrainian, who target organizations rather than individual consumers.

DarkSide is a cybercriminal hacking group, believed to be based in Russia, that targets victims using ransomware and extortion; it is believed to be behind the Colonial Pipeline cyberattack. The group provides ransomware as a service.

<span class="mw-page-title-main">Ilya Sachkov</span> Russian entrepreneur

Ilya Sachkov is a Russian cybersecurity expert and founder and CEO of Group-IB, a cybersecurity company specialising in the detection and prevention of cyberattacks. He received an award from Russian President Vladimir Putin for his work in 2019. In September 2021, he was detained by the Russian government's Federal Security Service on treason charges.

References

  1. Geer, David. "Why are there still so many website vulnerabilities?". CSO Online. CSO. Archived from the original on December 5, 2018. Retrieved October 19, 2016.
  2. 1 2 3 "Black Hat Europe 2016". blackhat.com. Retrieved October 19, 2016.
  3. Bruen, Garth (2016). WHOIS Running the Internet: Protocol, Policy, and Privacy. New York: John Wiley & Sons. pp. 132–133. ISBN   978-1-118-67955-5 . Retrieved October 19, 2016.
  4. Venable, David. "Ransomware: Why you mustn't pay the ransom". IDG Connect.
  5. Venable, David. "State-Sponsored Cybercrime: A Growing Business Threat". Dark Reading. Retrieved October 19, 2016.
  6. "The Exploitation Game". Computing Security. BTC.
  7. Alvarez, Dean (June 6, 2016). "Q&A with David Venable". IT Security Guru.
  8. "US Patent for Encrypted data retrieval systems and methods to provide access to encrypted data Patent (Patent # 10,469,482 issued November 5, 2019) - Justia Patents Search". patents.justia.com.
  9. "Security's Most Influential People in Security 2019 - David Venable". www.securitymagazine.com. September 1, 2019.
  10. 1 2 "David Venable - Authors & Columnists". InformationWeek. Archived from the original on September 16, 2021. Retrieved October 20, 2016.
  11. Solomon, Howard (June 22, 2015). "Web vulnerabilities need to be stamped out". IT World Canada. Retrieved October 21, 2016.
  12. Howlett, William IV (June 2016). "The Rise of China's Hacking Culture: Defining Chinese Hackers". Electronic Theses, Projects, and Dissertations. (383): 6. Retrieved October 21, 2016.
  13. ढुंगाना, कृष्ण (June 3, 2019). "अमेरिका नेपाललाई साईबर सुरक्षामा सहयोग गर्न तयार छः डेब भेनावेल (अन्तर्वार्ता)". NepalKhabar.
  14. "Speakers". Warsaw Security Forum.
  15. "Team and partners". Strategikon. Archived from the original on October 15, 2016. Retrieved October 19, 2016.
  16. Baker, Pam. "Cyberwar Part 1: What IT Can Do To Survive". InformationWeek. Retrieved October 19, 2016.
  17. Winder, Davey (June 3, 2016). "The rise and rise of ransomware". SC Magazine UK. Retrieved October 19, 2016.
  18. "Technologies Board". thecolonytx.gov. Archived from the original on December 1, 2016. Retrieved October 19, 2016.
  19. Stockwell, Amy (November 7, 2024). "Post-Conflict Reconstruction and Peacebuilding Panel Discussion". The College Today. College of Charleston.
  20. Venable, David; McCown, Brigham. "China On The March: Cybersecurity And Hidden Risks". Forbes.
  21. Ward, Matthew Wall and Mark (May 19, 2017). "WannaCry: What can you do to protect your business?". BBC News.
  22. Lawrence, Dune (December 14, 2017). "North Korea's Bitcoin Play". Bloomberg. Bloomberg Businessweek.