Strategy and Strategic Planning:

Slides:



Advertisements
Similar presentations
Rock Paper Scissor Tournament. STRATEGIC MANAGEMENT PROCESS 1.4.
Advertisements

Appendix A © 2014 Cengage Learning. All Rights Reserved. May not be scanned, copied or duplicated, or posted to a publicly accessible website, in whole.
Management of Information Security Chapter 2: Planning for Security
TEL2813/IS2820 Security Management
MANAGEMENT of INFORMATION SECURITY Second Edition.
TEL2813/IS2820 Security Management
Introduction to Hospitality, 6e
Objective Explain What is the Balanced Scorecard
Foundations of Business 3e
Slide 2-1.
Leaders Facilitate the Planning Process
S TRATEGIC M ANAGEMENT. Translating a Mission and Overall Goals into Strategic Outcomes Mission (Why We Exist) To Increase enterprise Value Mission (Why.
National Association of Healthcare Access Management Strategic Planning Session-Agenda Washington, DC January, 1999.
MANAGEMENT of INFORMATION SECURITY Third Edition C HAPTER 2 P LANNING FOR S ECURITY You got to be careful if you don’t know where you’re going, because.
INFORMATION SECURITY MANAGEMENT L ECTURE 2: P LANNING FOR S ECURITY You got to be careful if you don’t know where you’re going, because you might not get.
The Integrated Campaign
17/9/2009 Nakato Ruth Chapter one Introduction and review of strategic management.
1 Ch. 4 Outline Introduction to Planning 1.Planning Fundamentals 2.Levels of Planning 3.Strategic Planning.
Management Roles, Functions, and Skills
© Prentice Hall, 2002 End Show Strategic Management in Action Introducing the Concepts.
Amity School of Business Amity School of Business Management Foundation Module-II By Neeti Saxena Assistant Professor, ASB 1.
Planning for Security planning.
The Importance of Vision and the Motive to Lead
INFORMATION SECURITY MANAGEMENT L ECTURE 2: P LANNING FOR S ECURITY You got to be careful if you don’t know where you’re going, because you might not get.
Strategy and strategic planning Lecture 5. Strategy and strategic planning Strategy is an element of the internal environment of the organization. It.
Strategic planning A Tool to Promote Organizational Effectiveness
Business Management March 2, 2017, Marketing.
6.0 Business Strategy Chapter 38 HL Only.
Strategic thinking Chapter 1.
Core Competencies Training for Supervisors
MANAGEMENT of INFORMATION SECURITY, Fifth Edition
Optimize the HR Department to Support the Organizational People Strategy Enhance your HR departmental structure, process, technology, and capability to.
International Strategic Management
Core Competencies Training for Supervisors
ADVANCED STRATEGIC THINKING AND PLANNING
LO1 - Analyse the impact and influence which the macro environment has on an organization and its business strategies 1. P1 Applying appropriate frameworks,
Strategic Planning and the Marketing Management Process
Leaders Facilitate the Planning Process
Planning for Information System
MANAGEMENT of INFORMATION SECURITY, Fifth Edition
MANAGEMENT of INFORMATION SECURITY Second Edition.
IT Governance at the SCO
Principles of Marketing - UNBSJ
Culture Survey This document provides examples of how we analyze and report our clients’ culture survey data. It includes data from several clients in.
SAMPLE Develop a Comprehensive Competency Framework
Identify the Risk of Not Doing BA
Chapter 13: Setting a Direction for Information Resources
IT Professional Perspective IT Strategy, Policy and Governance
Responsibilities & Tasks Week 2
Athletic Training Management
Learning Unit 3.3 Levels of Strategic Management 5 May 2011
التخطيط الإستراتيجي ببساطة – تحديد اتجاه مؤسسة – حزب – حركة – مجتمع ما في المرحلة المقبلة. سؤال إلى أين تتجه المؤسسة – الحزب – الحركة - المجتمع؟ وكيفية.
MGT 498 TUTORIAL Lessons in Excellence -- mgt498tutorial.com.
Vision Facilitation Template
Strategic Marketing Process Week-2 Dr. Ananda Sabil Hussein
Developed by Cool Pictures & MultiMedia Presentations
The Strategic Planning Process
UNIT-VII Strategic Management.
5 BUSINESS MANAGEMENT © 2007 Prentice Hall, Inc. All rights reserved.
Management, Leadership, and Internal Organization
Marketing Management Indicator 1.03
Management, Leadership, and the Internal Organization
Power point presentation
Portfolio, Programme and Project
Principles of Marketing
Chapter 1: INTRODUCTION TO STRATEGIC MARKETING
CHAPTER 14 SETTING A DIRECTION FOR INFORMATION RESOURCES
CHAPTER 14 SETTING A DIRECTION FOR INFORMATION RESOURCES
Developed by Cool Pictures & MultiMedia Presentations
Presentation transcript:

Strategy and Strategic Planning: Strategy, Strategic planning and security strategy, the information security lifecycle and Architecting the enterprise by Erlan Bakiev, Ph.D.

Precursors to Planning The Role of Planning Precursors to Planning Values Statement Vision Statement Mission Statement Strategic Planning Creating a Strategic Plan Planning Levels Planning and the CISO(Chief Info Security Officer) Planning for Information Security Implementation

Identify the roles in organizations that are active in the planning process Grasp the principal components of information security system implementation planning in the organizational planning scheme.

Planning Influences Employees Management Stockholders Outside stakeholders Physical environment Political and legal environment Competitive environment Technological environment

Information Security Professionals Professionals that support the information security program Chief Information Officer (CIO) Chief Information Security Office (CISO) Security Managers Security Technicians Data Owners Data Custodians Data Users Slide 6

Planning Definition Planning is creating action steps toward goals and then controlling them Provides direction for the organization’s future Allows managing resources Optimizes the use of the resources Coordinates the effort of independent organizational units

Precursors to Planning Values Statement Vision Statement Mission Statement

Values Statement Principles Qualities Benchmarks What your company is? Microsoft: Integrity, honesty, passion, and respectfulness are significant parts of Microsoft’s corporate philosophy

Vision Statement Ambitious Best-case scenario Future goals Where your company wants to be? Microsoft: A personal computer in every home running Microsoft software

Mission Statement Organization’s business Areas of operation Internal External How your company is going to get there? Google: Organize the world's information and make it universally accessible and useful.

Strategic Planning Strategy lays out the long-term direction to be taken by organization It guides organizational efforts, and focuses resources toward specific, clearly defined goals. Strategic planning includes Mission statement Vision statement Values statement Coordinated plans for sub units

Creating a Strategic Plan Organization Develops a general strategy Creates specific strategic plans for major divisions Each level of translates those objectives into more specific objectives for the level below

Top-Down Strategic Planning

Creating a Strategic Plan Strategic goals are translated into tasks Specific Measurable Achievable Realistic Timely

Planning Levels Strategic Planning Tactical Planning Five or more year focus Strategic plan separated into strategic goals for each department Tactical Planning One to three year focus Breaks strategic goals into a series of incremental objectives

Planning Levels Operational Planning Organize the ongoing, day-to-day performance of tasks Includes clearly identified coordination activities across department boundaries Communications requirements Weekly meetings Summaries Progress reports Break previous slide into this

Planning Levels

Strategic Plan Elements Introduction by senior executive Executive Summary Mission Statement and Vision Statement Organizational Profile and History Strategic Issues and Core Values Program Goals and Objectives Management/Operations Goals and Objectives Appendices (optional) Strengths, weaknesses, opportunities and threats (SWOT) analyses, surveys, budgets &etc

10 Tips For Strategic Planning Create a compelling vision statement Embrace the use of balanced scorecard approach Deploy a draft high level plan early, and get input from stakeholders Make the evolving plan visible

10 Tips For Planning (cont.) 5. Make the process invigorating for everyone 6. Be persistent 7. Make the process continuous 8. Provide meaning 9. Be yourself 10. Have fun

Planning For InfoSec Implementation Commonly the CISO directly reports to the CIO. The CIO and CISO play important roles in translating overall strategic planning into tactical and operational information security plans CISO plays a more active role planning the details

CISO Job Description Creates strategic information security plan with a vision for the future of information security Understands fundamental business activities performed by the company Suggests appropriate information security solutions that uniquely protect these activities Improves status of information security by developing action plans schedules budgets status reports top management communications

Planning for Information Security CIO: translates strategic plan into departmental and InfoSec objectives CISO: translates InfoSec objectives into tactical and operational objectives Implementation can now begin Implementation of information security can be accomplished in two ways Bottom-up Top-down

Bottom-Up Approach Grass-roots effort Individual administrators try to improve security No coordinated planning from upper management No coordination between departments Unpredictable funding

Top-Down Approach Strong upper management support A dedicated champion Assured funding Clear planning and implementation process Ability to influence organizational culture