Wednesday Oct 12, 2022

E09 - Marc Krisjanous on Security Standards in Crypto

Marc Krisjanous is a cyber security turned crypto auditor that been working with the C4 cryptocurrency consortium to develop the new cryptocurrency auditor certification course (CCSSA). Marc is presently undertaking the first ever audit of a business using the standard to asses their crypto security practices. In this conversation we talk about where the standards fit into a business, what they consist of, and touch on best practices both for businesses and for people getting into crypto. 

Acronyms(!)

  • QSA - Qualified Security Assessor
  • PCI - Payment Card Industry 
  • DSS - Data Security standard
  • HSM - Hardware Security Module
  • CCSS - Cryptocurrency Security standard
  • CCSSA - CCSS Auditor
  • C4 - Cryptocurrency Certification Consortium
  • SOC2 - System and Organization Controls standard
  • ISO27001 - Information Security Management standard

Timestamps:
01:44 background in credit card security
10:22 crypto security standard
14:09 attack vectors
17:04 profanity vanity generator
20:59 CCSS levels
25:35 the audit boundary
28:34 social engineering
30:29 practical takeaways for businesses
35:00 multi-party compute
37:33 security advice for newcomers
40:10 wen audit? 
45:39 rapid fire
48:20 proof of reserves
52:28 fin

Some notes from the show:

Contact Marc:

Find Jeff:

The BCNZ Pod:

Sponsor:

  • The Blockchain New Zealand podcast is brought to you by EasyCrypto

Media & Sponsorship Enquires:

Recorded at blockheight 757090. The BCNZ podcast was founded in 2022 by Jeff Nijsse and Bryan Ventura.

 

Comments (0)

To leave or reply to comments, please download free Podbean or

No Comments

Copyright 2024 All rights reserved.

Podcast Powered By Podbean

Version: 20240320