The PGCS website provides a listing of all speakers from each symposium and virtual event.
The PGCS website provides an extensive library of past papers and webinars.
PGCS is the only Australasian symposium dedicated to promoting Project Performance Management through the interlinked disciplines of project controls and program, portfolio, and project (PPP) governance.
Meet Nico, a dedicated explorer in the dynamic fields of technology, engineering, and critical thinking. With a career rooted in Defence, Nico has led projects ranging from radar deployment across Australia to navigating the complexities of Information Warfare. Now with QinetiQ, Nico is leveraging expertise in Cyber and Information Security to help clients safeguard their critical assets and people. Before pursuing a Master’s in Project Management at ANU, Nico played a key role at Seeing Machines, where he helped develop advanced driver and occupant monitoring systems designed to keep roads safer. Nico’s career also spans global experience with Procter & Gamble, where his Industrial Engineering acumen ensured the safe, and efficient production of diapers… millions of them.
This session is designed for everyone. Whether you are a complete beginner struggling with technology, a seasoned information/cyber security professional, an ICT Project/Program Manager, or a decision maker, this presentation has practical tools for everyone.
In the ever-evolving realm of Information-Technology (IT) and Operational-Technology (OT) cybersecurity, understanding and mitigating threats proactively is the only path forward. MITRE’s ATT&CK (Adversarial Tactics, Techniques and Common-Knowledge) and D3FEND (Detection, Denial, and Disruption Framework Empowering-Network-Defence) frameworks provides an evolving approach to comprehend and counter the Tactics, Techniques, and Procedures (TTPs) employed by Threat Actors. The audience will gain insights into securing systems using a risk-based and holistic approach to cyber exposure in both IT and OT.
The fast pace of change in cybersecurity can be overwhelming for those who try to keep up-to-date. The ATT&CK/D3FEND frameworks serve as a knowledge base of what is actually happening in the field. It catalogues attackers and defenders TTPs and the common vulnerabilities they exploit, how to detect and mitigate them while providing a clear taxonomy of how breaches can occur.
ATT&CK allows to single out TTPs related to Advanced-Persistent-Threat (APT) groups that attack specific industries. By understanding these TTPs, information security professionals and project leaders can proactively prioritise security measures to secure information systems and data assets in their specific industry.
ATT&CK has four matrices:
• Enterprise matrix for Windows, Linux, and MacOS;
• Enterprise cloud matrix for Azure AD, Office365, Google Workspace, SaaS, IaaS, Network, and Containers;
• Mobile matrix for Android & iOS; and
• ICS matrix for Industrial Control Systems.
The cybersecurity landscape will undoubtedly continue to evolve, driven by advancements in AI and changes in attacker’s TTPs. It is vital to understand the threat surface and being able to communicate it visually and verbally between front liners and different levels of management.