Chapter Event Registration

DETAILS:
Event Name: Developing an Information Security Strategy
Location: State Farm Training Facility
Room: OAB E108
2309 E Oakland Ave

Bloomington, IL
Date: 10/22/2009
Time: 8:00 AM to 4:00 PM CST
CPEs: 7
ISACA Member Cost:$100
Non-ISACA Member Cost:$150
Cancellation Policy:Up to Oct 20th
Event Details:Overview
Information security has become a critical issue within organizations, and a key success factor for businesses. In order to effectively maintain the integrity and security of an organization’s information infrastructure an organized information security strategy must be developed and implemented. This workshop will introduce the concepts of an information security program, threat and vulnerability management, and metrics for effective information security governance. This workshop will highlight the key functional areas, processes and methodologies, and organizational concepts that should be included in order to implement and maintain an effective information security strategy and program. Key functional areas will be discussed in depth and will be highlighted for their importance to the strategy, activities that they will perform, and their associated key performance indicators (KPI’s). This workshop will utilize interactive discussions and case studies to highlight operationally capable models and solutions.

Syllabus
1. Introduction of an Information Security Program
  • Functional elements of an Information Security Program
  • Organizational Structure of Information Security Program
  • Key dependencies and linkage points
  • Key Performance Indicators (KPI’s) of key functional areas
  • Key competencies and staffing models
  • Case studies of Information Security Program Deployments
  • Individual Element Exploration

2. Threat and Vulnerability Management
  • Overview of Threat and Vulnerability Management Programs
  • Asset Identification
  • Threat Analysis Who, What, When, Where, and How
  • OSI+ Methodology
  • Intelligence Gathering and Assessment
  • Vulnerability Management
  • Risk Mitigation Strategies
  • Countermeasure and Control Development

3. Developing Metrics for Effective Information Security Governance
  • Defining the Measurement
  • Business Goal Alignment
  • Baseline Framework of Metrics

        - Organizational and Performance Metrics
        - Operational Metrics
        - Technological Metrics
        - Business Process Metrics
        - Business Metrics
        - Compliance Metrics
  • Meaningful Reporting
  • Benchmark Reporting

4. Final Thoughts

Who Should Attend
  • Individuals who have the responsibility to provide data security and privacy service within their organization
  • Business executives and who have the responsibility of designing, implementing, and operating information security programs within their organization
  • Business executives who would like to understand how to implement an effective information security program within their organization
  • Information security auditors who are responsible for providing oversight to enterprise information security solutions

Prerequisites
  • Familiarity with basic information security technologies, concepts, policies, procedures, and techniques. No security background or technical background required.


Lunch Details:Lunch chits will be provided
Presentation Materials:Presentation materials (if available) are only available to members who log in to the web site.
 
REGISTER:
 Sorry registration for this event is closed.