Foundations for Effective Security Risk and Program Assessment

Session Details

Tuesday, April 13, 2010
1:00 p.m. - 2:00 p.m.
International B (6th floor)

Session Type: Management and Operations

Speaker(s)

  • Lori McElroy, Information Security Officer, Texas State University-San Marcos
  • Lewis Watkins, Chief Information Security Officer, University of Texas System
  • Session convener: Jon Looney, Interim Chief Information Officer, Black Hawk College

Abstract

How does an institution assess the risks and effectiveness of something as multifaceted and complex as its risk management and information security programs? An assessment methodology must be valid, reliable, transparent, and defensible. Results should be reported in a consistent format so program strengths and weaknesses are easily identified. Join two universities from Texas to hear how they implemented security-risk and security-program assessment. In this session, the underlying principles of these two programs will be explained so attendees can adapt the methodology to meet the specific needs of their institutions.

Available Resources