Information Technology Security (ITS) Training Carolyn Schmidt Program Manager Information Technology Security (ITS) Awareness, Training, and Education.

Slides:



Advertisements
Similar presentations
Ministry of Public Sector Development Public Sector Development Program Better Government Delivering Better Result.
Advertisements

National Finance Center Customer Service Initiatives Mose Lindsay Chief, Payroll Processing Branch Government Employees Services Division.
Training, Awareness and Competence EPA Regions 9 & 10 and The Federal Network for Sustainability.
Leaders in Asset Management Establishing a Property Training Program How do we get Property Officials trained AND….motivated?
Proposed Information Technology “Product Delivery Organization” for Bank Islam Malaysia Ernst & Young Consultants December 1997.
Chapter 12 Strategies for Managing the Technology Infrastructure.
© Copyright MetaPM 2007 Page: 1... helping clients achieve maximum business value from project management The importance of a coherent approach to project.
1 IS112 – Chapter 1 Notes Computer Organization and Programming Professor Catherine Dwyer Fall 2005.
Electronic Communications Electronic Communication Policy at Loughborough College Clare Holden Learning Resources Manager Loughborough College.
15 1 Chapter 15 Database Administration Database Systems: Design, Implementation, and Management, Seventh Edition, Rob and Coronel.
Chapter 10 Managing the Delivery of Information Services.
Oklahoma State University Human Resources 106 Whitehurst (405) THE JOURNEY.
Planning, Organizing, and Managing a Small Business.
Information Technology Service Management
Release & Deployment ITIL Version 3
Learning with a Purpose: Learning Management Systems Patti Holub, Director District Initiatives and Special Projects Miguel Guhlin, Director Instructional.
Taking the Web to the Next Level. Current Web Issues  Not reaching target audiences  People can’t find the information they need  Too difficult to.
Component 2: The Culture of Health Care Unit 3: Health Care Settings— The Places Where Care Is Delivered Lecture 3 This material was developed by Oregon.
2 Technology and Knowledge Why is technological knowledge important? Jobs, finance, personal, family, movies, car, education (other than computer science),
A Security Training Program through Transformational Leadership and Practical Approaches Tanetta N. Isler Federal Information Systems Security Educators’
Company Confidential How to implement privacy and security requirements in practice? Tobias Bräutigam, OTT Senior Legal Counsel, Nokia 8 October
Unit 5:Elements of A Viable COOP Capability (cont.)  Define and explain the terms tests, training, and exercises (TT&E)  Explain the importance of a.
Desktop job description: Program Coordinator.  The primary position is to coordinate and deliver various Programs and Events run through or in collaboration.
DAS: State Controller's Division1January 2010 Department of Administrative Services State Controller’s Division Updated January, 2010.
Improving Performance Through Integrated Analytics (iAnalytics) Lori Watson Principal Consultant IBM Business Consulting Services October 29, 2002.
Organization and Implementation of a National Regulatory Program for the Control of Radiation Sources Staffing and Training.
Fifth Edition 1 M a n a g e m e n t I n f o r m a t i o n S y s t e m s M a n a g I n g I n f o r m a t i o n T e c h n o l o g y i n t h e E – B u s i.
MIS3300_Team8 Service Aron Allen Angela Chong Cameron Sutherland Edment Thai Nakyung Kim.
2 Systems Architecture, Fifth Edition Chapter Goals Describe the activities of information systems professionals Describe the technical knowledge of computer.
SCSC 311 Information Systems: hardware and software.
THE UNIVERSITY OF GEORGIA Office of the Chief Information Officer Enterprise Information Technology Services Strategic Partnership Office of the Chief.
Introduction to Human Resource Development -Achin Bansal -Anu A Natraj.
Project Methodology May 2, System Development Life Cycle Overview.
Component 2: The Culture of Health Care
Implementing an Institutional Repository: Part III 16 th North Carolina Serials Conference March 29, 2007 Resource Issues.
1 MISA Model Douglas Petry Manager Information Security Architecture Methodist Health System Managed Information Security.
Chapter 7 Enterprise Resource Planning (ERP). Objectives After studying the chapter, students should be able to.. Explain definition of Enterprise Resource.
Security Training and Awareness Brad Reed, IT Security Analyst OIT – Information Security Office Securing the University – ITSS 2015.
 Career Paths  Organizational Structures  Competency Framework  Competency Dictionary  Role & Job Descriptions  Knowledge Requirements  Performance.
Factors Affecting Human Resource Plans.  The most human resource plans can be affected by internal and external change, so forecasting and flexibility.
Human resources Power from your People. Human resources The people who staff and operate an organization.
Chapter 8 Auditing in an E-commerce Environment
1 I.U. Professional Opportunities Orientation Program Kristin Gaines Manager, Global Financial Support & Services.
National Partnership Council Presentation – January 2016 Presented By David Perry Healthcare Talent Management Office (10A2A4) ePerformance.
I.U. Professional Opportunities Orientation Program Kristin Gaines IT Manager.
Hudson International - Regional Operations Director Purpose Reporting directly to the Regions COO and supporting the Hudson International Area Director,
Implementing Security Education, Training, and Awareness Programs By: Joseph Flynn.
Welcome. Contents: 1.Organization’s Policies & Procedure 2.Internal Controls 3.Manager’s Financial Role 4.Procurement Process 5.Monthly Financial Report.
Summer – Fall 2006 Internship Nick DiBuono Intern Presentation.
FY Accomplishments Strategic Goal: Assure Financial Integrity Enhanced our systems to provide more data and services to researchers, and University.
Chapter 1 Computer Technology: Your Need to Know
Job Titles Examples Used for HISD Nonexempt Jobs
Introduction to HUMAN RESOURCE MANAGEMENT
Structure and Responsibility
Managing the Delivery of Information Services
Strategy Implementation
HUMAN RESOURCES STRATEGIC PLANNING. HUMAN RESOURCES STRATEGIC PLANNING.
Information Technology Service Management
Chapter 1 (pages 4-9); Overview of SDLC
RECORDS AND INFORMATION
Implementing an Institutional Repository: Part III
Database Administration
IT Staff and the End User
HUMAN RESOURCES STRATEGIC PLANNING. HUMAN RESOURCES STRATEGIC PLANNING.
Data Governance & Management Skills and Experience
The Survival Plan.
Security Policies and Implementation Issues
Strategies for Information Management
Project Management Method and PMI ® PMBOK ® Roles
Security Policies and Implementation Issues
Presentation transcript:

Information Technology Security (ITS) Training Carolyn Schmidt Program Manager Information Technology Security (ITS) Awareness, Training, and Education

Information Technology Security Training Overview of NIST Overview of NIST ITS Training Program To Contract or Not to Contract

Overview of NIST Mission – Research and customer oriented Organizational Structure – Hierarchical – Training function resides in HR; ITS function resides in OCIO Technological Architecture – Distributed users Training Base – ~3,000 employees; ~5,000 total users – Varied from Support to Advanced Technical

Overview of NIST ITS Training Program Designing the program Developing the material Implementing the program Maintaining the material WHO? WHAT? WHY? WHEN? HOW?

WHO General – internal and external Specialized – Security specific roles (NIST IT System Inventory) System Security Officers IT Security Officers DAA … – Technical roles System Administrators Database Administrators Information Coordinators …

WHAT General information – Alerts and advisories – Legal and regulatory requirements ITS Policies and procedures – Minimum technical requirements – SDLC process – C&A process – …

WHY Increase skill set Streamline operations Incentives – Increase performance – Increase marketability – Part of certification or degree program – Supplemental pay (i.e., bonuses)

WHEN Applicability Timeliness Recurring

HOW Blended learning Instructor-led training (ILT) Web-based

TO CONTRACT OR NOT TO CONTRACT WHAT – Require knowledge of internal policy and procedures – Sometimes too costly to get contract staff educated – Contract content must be quality WHEN – Availability of staff to deliver ILT – Contract delivery schedule must be strict HOW – Needs to be integrated in current procedures – Ownership of course/material needs to be defined

SUMMARY THERE NEEDS TO EXIST A UNION BETWEEN AN ITS PROGRAM AND CONTRACT STAFF