PROF-W10 Up for a Challenge? Learn How to Become a Successful Higher Education CISO Joanna Grama EDUCAUSE Neal Fisch Randy Marchany Tina Thorstenson California.

Slides:



Advertisements
Similar presentations
Philippine Cybercrime Efforts
Advertisements

Local Public Health System Assessment
School & Campus Security Training Program
EDUCAUSE Center for Applied Research An Update. New EDUCAUSE Initiatives for 2002 EDUCAUSE Core Data Survey Virtual Communities Initiative Institute for.
Five Guiding Themes Provide Civic Leadership through Partnerships --Lead as a civic partner, deepen our engagement as a critical community asset, demonstrate.
Advancing Security Programs through Partnerships Cathy HubbsShirley Payne IT Security Coordinator Director for Security Coordination & Policy George Mason.
School of Business University of Bridgeport Admissions Presentation Robert Gilmore, Ph.D. Associate Dean School of Business.
NTUST National Taiwan University of Science and Technology 2009 School of Management.
Higher Education Cybersecurity Strategy, Programs, and Initiatives Rodney Petersen Policy Analyst & Security Task Force Coordinator EDUCAUSE.
EDUCAUSE/Internet2 Computer and Network Security Task Force Update Jack Suess February 3, 2004.
Data Protection in Higher Education: Recent Experiences in Privacy and Security Institute for Computer Law and Policy Cornell University June 29, 2005.
© 2003, EDUCAUSE/Internet2 Computer and Network Security Task Force Computer Access, Privacy and Security: Legal Obligations and Liabilities Rodney J.
Enterprise Security. Mark Bruhn, Assoc. VP, Indiana University Jack Suess, VP of IT, UMBC.
Our Roles as Stewards of Collaborative Excellence.
Whitacre College of Engineering Panel Interdisciplinary Cybersecurity Education Texas Tech University NSF-SFS Workshop on Educational Initiatives in Cybersecurity.
1 © 2003 Cisco Systems, Inc. All rights reserved. CIAG-HLS Security For Infrastructure Protection: Public-Private Partnerships KEN WATSON 15 OCT.
Georgia Institute of Technology. Georgia Tech is an innovative intellectual environment with more than 900 full-time instructional faculty and more than.
Australia Cybercrime Capacity Building Conference April 2010 Brunei Darussalam Ms Marcella Hawkes Director, Cyber Security Policy Australian Government.
Presentation of projects’ ideas. 1. Madrid Network “A public-private network which aim is to contibute actively to position Madrid Region in the top.
EDUCAUSE 2014 Top Ten IT Issues. Today’s Agenda Introduction to EDUCAUSE IT Issues History & Methodology 2014 Top Ten IT Issues Selected Issues Reviewed.
Welcome to Loughborough University Professor Robert Allison Vice-Chancellor & President.
Proposal for a Bring Your Own Device Initiative Technology Academies of Greater Harrisburg Image courtesy of John.Karakatsanis on Flickr.
IT Security Policies and Campus Networks The dilemma of translating good security policies to practical campus networking Sara McAneney IT Security Officer.
Sharjah Higher Colleges of Technology Women’s Campus Program of Studies.
Strengthening Minority Serving Institutions: HR Best Practices and Innovations November 10, 2015 In Partnership with PeopleAdmin.
1 AFCOM Data Center World March 15, 2016 Moderator: Donna Jacobs, MBA Panel: Greg Hartley Bill Kiss Adam Ringle, MBA ITM 9.2 The New Security Challenge:
Program Overview and 2015 Outlook Finance & Administration Committee Meeting February 10, 2015 Sheri Le, Manager of Cybersecurity RTD.
CSG Meeting, January 12, Top 10 Strategic Technologies.
Lillehammer University College (LUC) International Office 2016.
School of Education 5-Year Strategic Plan Spring 2017.
Earth’s Mightiest Heroes: Combating the Evils Lurking in Cyberspace
Performing Risk Analysis and Testing: Outsource or In-house
Loughborough University
Humanities & Human Services
Ohlone Community College District Fremont & Newark, CA
Kentucky college & career connection coalition
Our Vision: Prosperous communities and transformed lives Our Mission: Creating new realities by opening endless opportunities.
Presented by: Zhenya Lindstrom Regional Director,
Presenter: Mohammed Jalaluddin
Becoming a Career Services Director: Planning or Chaos? Pat Donahue
The Texas Affordable Baccalaureate Creating opportunity for Texans
BYOD: Short-term Gain Without Long-term Pain?
Leadership Development, Mentoring, and Succession Planning
Cyber attacks are increasing in number and severity every day…
Administrative English Course
CDRH 2010 Strategic Priorities
Cal state University, Los Angeles
BUILDING A PRIVACY AND SECURITY PROGRAM FOR YOUR NON-PROFIT
Cybersecurity Education and Workforce Development Resources
The National Initiative for Cybersecurity Education (NICE)  AFCEA International Cyber Education, Research, and Training Symposium January 17, 2018 Bill.
NISD Strategic Initiatives
ITAC December 8, 2016 Michael Leary Assistant IT Director – Enterprise Strategies Mitch Wittneben Assistant IT Director – End User Services.
8 Building Blocks of National Cyber Strategies
Building a Security Operations Center
One Veteran’s Journey Veterans journey (30-year AF senior engineer )
Transforming Wisconsin’s Workforce System
Assistant Vice President and Chief Technology Officer
Larry Conrad, Co-Chair and CIO at UNC-Chapel Hill
Goals for Today’s Segment
Cyber Security Trends in Higher Education
Technology in education: A friend or foe ?
Future of Business Schools
From The Outside Looking In To The Inside Looking Out
Minnesota State University, Mankato
Chapter 9 Career Planning.
OUR HISTORY & MISSION ABOUT US. OUR HISTORY & MISSION ABOUT US.
Strategic Enrollment Plan for Career Education/Strong Workforce
The Digital University
Information Technology Organization Overview RFP #220-05
Chancellor Glen D. Johnson
Presentation transcript:

PROF-W10 Up for a Challenge? Learn How to Become a Successful Higher Education CISO Joanna Grama EDUCAUSE Neal Fisch Randy Marchany Tina Thorstenson California State University, Channel Islands Virginia Tech Arizona State University

EDUCAUSE EDUCAUSE helps people who lead, manage, and use IT in higher education to make better decisions about: Enterprise systems Strategic leadership Teaching and learning Cybersecurity

California State University Channel Islands Neal Fisch, Director, Enterprise Services & Security, ISO Located in beautiful Camarillo, California Youngest of the 23 California State University System campuses 6,611 students 21:1 student-faculty ratio 25 undergraduate degree programs 10 minutes from Ventura County beaches

Virginia Tech Randy Marchany, University IT Security Officer Located in Blacksburg, Virginia Nine colleges & graduate school 31,000 full-time students 16:1 student-faculty ratio Main campus includes more than 135 buildings, 2,600 acres, and an airport Ranked 38th in university research in the United States

Arizona State University Tina Thorstenson, AVP & CISO Based in Tempe, Arizona 98,000+ students 20,000+ degrees produced Over 1/2 billion in research expenditure Ranked #1 for Innovation from US News and World Report Starbucks partnership Global Freshman Academy (try before you buy) Center for Cybersecurity & Digital Forensics

EDU World: CISO of a Small City ISP (BYOD) Students required to purchase a computer. Can’t control what software is loaded on individually owned systems/devices On-campus students bring 3-5 devices (required computer, smartphone, tablet, gaming system, smart devices – smart TV, etc.) Administrative Traditional corporate security model Physical Plant ICS, IOT Law Enforcement – campus police Transportation – bus, traffic mgt Medical – student health, counseling, etc. Commercial - Dining, Cultural, athletics, Special events, parking, commercial (bookstore) Media – TV, Radio, Newspaper, www

State of the CISO in Higher Education

Today’s Higher Ed CISO From EDUCAUSE, The IT Workforce in Higher Education (2016): https://library.educause.edu/resources/2016/3/the-it-workforce-in-higher-education-2016

Today’s Higher Ed CISO From EDUCAUSE, The IT Workforce in Higher Education (2016): https://library.educause.edu/resources/2016/3/the-it-workforce-in-higher-education-2016

Today’s Higher Ed CISO 90% Top CISO Responsibilities Information security policies (including policy development and compliance) Incident management Awareness and training Information security compliance Risk assessment and management Organization of information security At least 90% of CISOs said they are currently responsible for these duties at their institution. From EDUCAUSE, The IT Workforce in Higher Education (2016): https://library.educause.edu/resources/2016/3/the-it-workforce-in-higher-education-2016

Today’s Higher Ed CISO 30% Top CISO Aspirational Responsibilities Identification and authentication (47%) Operations security (39%) Communications security (33%) Awareness and training* (33%) Data privacy (32%) Organization of information security* (30%) *Appears on both responsible for- and aspirational responsibilities- lists (small n’s) At least 30% of CISOs said they ARE NOT currently responsible for these duties at their institution, but SHOULD BE. From EDUCAUSE, The IT Workforce in Higher Education (2016): https://library.educause.edu/resources/2016/3/the-it-workforce-in-higher-education-2016

Today’s Higher Ed CISO What it really means Report out on latest infosec incident. Respond to latest criticism of higher ed infosec. The board takes infosec seriously. ??? From EDUCAUSE, The IT Workforce in Higher Education (2016): https://library.educause.edu/resources/2016/3/the-it-workforce-in-higher-education-2016

Today’s Higher Ed CISO Top Higher Ed IT Positions in Short Supply From EDUCAUSE, The IT Workforce in Higher Education (2016): https://library.educause.edu/resources/2016/3/the-it-workforce-in-higher-education-2016

Today’s Higher Ed CISO Top Skills for Success Communication skills, 100.00% Thinking skills, 98.00% Individual leadership skills, 94.06% Relationship and networking skills, 97.03% Collaborative skills, 93.07% Political skills, 91.09% Business skills, 80.20% Technical skills, 58.42% From EDUCAUSE, The IT Workforce in Higher Education (2016): https://library.educause.edu/resources/2016/3/the-it-workforce-in-higher-education-2016

Today’s Higher Ed CISO --APPLY Higher Education CISOs are becoming increasingly skilled at balancing an IT security infrastructure that works in a "small city" environment. It’s an exciting environment. IT security workforce shortages are severe in higher education in part due to salary constraints. Address workforce shortage by creating programs to: Expose student workers to cyber security tools, training, tasks Allow staff to focus on new and interesting projects Prepare students to work in cybersecurity roles, empowering staff as mentors. Partner with research & education areas of your school or university, taking advantage of programs such as CyberCorps Scholarship for Service, tuition-waiver programs for university staff. Maybe these could be a talking points: We can't compete with private industry. Consequently, our analysts tend to be more junior. Offload basic tasks to students.

PROF-W10 Up for a Challenge? Learn How to Become a Successful Higher Education CISO Joanna Grama EDUCAUSE Neal Fisch Randy Marchany Tina Thorstenson California State University, Channel Islands Virginia Tech Arizona State University