10/04/2016 David LaPlante, CISO Information Security & Cybersecurity Program Planning Critical Infrastructure Cyber Security Framework.

Slides:



Advertisements
Similar presentations
Connecting Phoenix to Information IT Governance in a Decentralized Organization Charles T. Thompson Chief Information Officer City of Phoenix.
Advertisements

Insert local logo here. Insert name Contact information.
GFOAz May 11, 2007 The ABC’s of Municipal Financing.
David A. Brown Chief Information Security Officer State of Ohio
1 Executive Office of Public Safety. 2 National Incident Management System.
City Council Offices. Mayor A mayor is an elected person who serves as the head of a city’s government. He or she has many responsibilities and follows.
Sustainability "meet the needs of the present without compromising the ability of future generations to meet their own needs."
Advancing Security Programs through Partnerships Cathy HubbsShirley Payne IT Security Coordinator Director for Security Coordination & Policy George Mason.
City of Guelph An Enterprise Approach To City Building Real Estate Pulse Conference January 2015.
Alachua County Post-Disaster Redevelopment Plan Alachua County Board of County Commissioners Meeting April 27, 2010.
Council for Economic Education. City Hall is the center of government in your city or town. It is a very important place! The Mayor, City.
Green City, Clean Waters: Philadelphia Green Schoolyards
House Economic Affairs Committee Presented by: Doug Darling, Executive Director, Department of Economic Opportunity Wednesday, September 21, 2011.
City of Houston Long Range Financial Management Task Force City Financial Overview Part 2 September 6, 2011.
Jeffery Graviet Emergency Services Coordinator, Salt Lake County Chairperson, Salt Lake Urban Area Working Group.
Local Government (City and County) Class Lecture.
CITY OF MERIDIAN FY07 BUDGET HEARING Mayor – Tammy de Weerd Council President – Shaun Wardle Council Vice President – Joe Borton Council – Keith Bird Council.
October 27, 2005 Contra Costa Operational Area Homeland Security Strategic and Tactical Planning and Hazardous Materials Response Assessment Project Overview.
Network Security Resources from the Department of Homeland Security National Cyber Security Division.
Managed Competition: Part of a Successful City’s Strategy Teresa Curlin City of Charlotte May 2007.
Leadership Asheville Gary Jackson City Manager Public Leadership and Delivering Better Service to Citizens for Less Money.
Self-Assessment and Formulation of a National Cyber security/ciip Strategy: culture of security.
Water & Waste Disposal Loans and Grants The funding purpose is to construct, enlarge, extend or improve water, wastewater and solid waste systems in rural.
1 Recent Accomplishments and Opportunities for 2007 ~WEROC~ Kelly Hubbard WEROC Emergency Manager Municipal Water District of Orange County WACO, January.
Information Sharing Challenges, Trends and Opportunities
County and City Government in Georgia March 17, 2014.
New Town Development and Urban Renewal
GSHRM Conference Cyber Security Education Shri Cockroft, CISO Piedmont Healthcare, Inc. September 21, 2015.
EECS 710: Information Security and Assurance Assignment #3 Brent Frye 10/13/
County and City Government in Georgia
℠ Pryvos ℠ Computer Security and Forensic Services May 27, 2015 Copyright © 2015 Pryvos, Inc. 1.
County and City Government in Georgia
Project NSTL Kara Clay Joshua Rucker. Purpose To revitalize North Saint Louis City and bring prosperity O Jobs O Sustainability O Long lasting Business.
City of San Antonio, Texas International Downtown Association 2013 Downtown Achievement Awards Planning.
1 1 Cybersecurity : Optimal Approach for PSAPs FCC Task Force on Optimal PSAP Architecture Working Group 1 Final Report December 10 th, 2015.
The Greater Metropolitan Houston Traffic Safety Program October 14, 2004 Ned Levine, PhD Houston-Galveston Area Council Houston, TX 2004 AMPO Annual Conference.
OFFICE OF PROGRAM POLICY ANALYSIS & GOVERNMENT ACCOUNTABILITY The Legislative Sunset Review Process Darwin Gamble, Senior Legislative Analyst OPPAGA February.
NATIONAL INCIDENT MANAGEMENT SYSTEM Department of Homeland Security Executive Office of Public Safety.
PATHWAY TO GRANT FUNDING OPPORTUNITIES Community Development Division.
National Emergency Communications Plan Update National Association of Regulatory Utility Commissioners Winter Committee Meeting February 16, 2015 Ron Hewitt.
1. Who are we? “A Time for Change”  Proud to be your state capital since 1864  Over 150 square miles  54,080 residents  Nevada’s only Consolidated.
1 City of San Diego Park and Recreation Department Herman D. Parker Director.
DHS/ODP OVERVIEW The Department of Homeland Security (DHS), Office for Domestic Preparedness (ODP) implements programs designed to enhance the preparedness.
Planning Commission Ian Macek May 26, 2016 Freight Master Plan.
REVENUE OVERVIEW FY2016 PROPOSED BUDGET July 28,
Legal Status of Cities March 23, What do cities do? Law enforcement? Fire protection? Airports? K-12 education? Community colleges? Grocery stores.
TCEQ Helps Compliance and Assistance Programs
Increasing Information and Data Security in Today’s Cybersecurity World 2017 Conference Review 6/6/2017.
Chapter 16: State and Local Government Section 3: Local Government & Citizen Participation (pgs )
Today’s Agenda The importance of a conversation
Legal Status of Cities GOVT 2306, Module 11.
Concepts: Governance Distribution of Power
Regional Improvement Planning Workshop
FY 2017 Recommended Capital Plan
“The Use of the National Public Health Performance Standards as a Tool to Evaluate Change in Capacity to Carry Out the Ten Essential Services ” Gerry Barron,
Section 1: County Government
CAPITAL PROGRAM OVERVIEW
Protective Security Advisor Program Brief
Six Month Financial Status Update and Mid Year Budget Reconciliation
Enterprise Risk Management
The Opioid Epidemic: Coordinating a Municipal Response
What is a Planning Organization?
Sustainability "meet the needs of the present without compromising the ability of future generations to meet their own needs."
Cybersecurity Special Public Meeting/Commission Workshop for Natural Gas Utilities September 27, 2018.
The U.S. Department of Homeland Security
Violence Prevention Plan National Forum on Youth Violence Prevention
Regional Solid Waste Grants Program
City Council February 4, 2019 Item No. 2
CHIEF EXECUTIVE Corporate Director
First Public Hearing to Adopt the Tentative Budget and Millage Rate
Presentation transcript:

10/04/2016 David LaPlante, CISO Information Security & Cybersecurity Program Planning Critical Infrastructure Cyber Security Framework

2 David LaPlante, CISO City of Houston: A Microcosm of Business Sectors » Administration and Regulatory Affairs » Aviation » City Secretary » Emergency Management » Finance » Fire » Fleet Management » General Services » Health and Human Services » Housing and Community Development » Human Resources » Information Technology » Legal » Library » Municipal Courts » Neighborhoods » Office of Business Opportunity » Parks and Recreation » Planning and Development » Police » Public Works and Engineering » Solid Waste Management » Special Events

3 David LaPlante, CISO City of Houston – Scope Examples » Public Library - HPL » Served 7.2 million in-person and online visitors, answered over 667,546 reference questions, circulated more than 6.9 million books, magazines, and audio-visual materials and attracted nearly 189,050 participants to our programs. Notably, all services and privileges that accompany the Houston Public Library card are free to all residents in the state of Texas » Fire – HFD » HFD is the third largest fire department in the United States and is responsible for preserving life and property to a population of more than 2 million in an area totaling 654 square miles from 95 Fire Stations » Public Works and Engineering » Responsibilities include operation and maintenance of the City’s streets and drainage, production and distribution of water, collection and treatment of wastewater, and permitting and regulation of public and private construction spanning over Houston’s 640 square miles and 6,000 center lane miles of streets.

4 David LaPlante, CISO CyberSecurity Division - What We Do » Information Security Operations » Security Monitoring and Response » Vulnerability Management » Security Incident Response » Operational Management » Firewall Services » Compliance and Risk » Security Policy » Security Management

5 David LaPlante, CISO CyberSecurity Outreach » Mayor’s Office of Public Safety and Homeland Security – Assist as CyberSecurity SME for Cyber-related activities by participating in DHS Grant programs, member of Strategic Advisory Group, provide CyberSecurity presentations to external entities including Ship Channel Security District, Ft. Bend, Brazoria, Harris, Galveston and Montgomery Counties and Secured Cities conference. » Greater Houston Partnership – Member of CyberSecurity Taskforce – Generated content for Local Government CyberSecurity section of CyberSecurity and Business Vitality Guide. » Texas Tribune – Participated as panelist for Texas Tribune Cybersecurity and Privacy Symposium in San Antonio. » Texas Legislature – Provided testimony to Urban Affairs committee on CyberSecurity » Department of Homeland Security – Applied for and received Grant Funding as a qualifier for Urban Area Security Initiative (UASI) CyberTerrorism activities. This program, beginning its 3rd year in 2016 has benefited from $1.4 million from DHS allowing the City to implement the NIST CyberSecurity Framework and provide an implementation guidance tool, lessons learned, documentation and other artifacts allowing others in the Houston UASI region a method of assessing and improving their CyberSecurity Risk Posture. The tool created by the Division was also recently recognized with an Innovation award by CSO Magazine.

6 David LaPlante, CISO Challenges According to Verizon 2015 Data Breach Investigations Report for the Public Sector  Four out of five of the security incidents affecting public sector organizations involved:  Miscellaneous Errors – 36%  Insider & Privilege Misuse – 25%  Physical Theft and Loss – 19%

7 David LaPlante, CISO Challenges

8 Attack Vectors » While there are a number of attack vectors, attacks are still at the top of the list and continue to advance in sophistication through: ˃Malicious Attachments ˃The messages themselves +Deception – Phishing +Links +Scams and Fraud +Hoaxes

9 David LaPlante, CISO Challenges

10 David LaPlante, CISO Solutions? » CyberSecurity Awareness Training » Continued Phishing Tests » Additional Training » Tips

David LaPlante, CISO Point of Contact: Chief Information Security Officer David LaPlante Walker St. Houston, TX