“The global hub for educating, informing, and connecting Age leaders.” National Defense University Information Management Resource College Ensuring Cloud.

Slides:



Advertisements
Similar presentations
Doug Couto Information Systems and Technology Committee (ABJ50) Washington, DC January 25, 2011.
Advertisements

Course: e-Governance Project Lifecycle Day 1
Risk & Novelty Collaboration & Engagement Efficiency & Effectiveness Transferability & Scalability ▪Led government as first agency to implement enterprise-wide,
Bringing the Voice of the Consumer Into Your Supply Chain Jake Barr Director, Consumer Driven Supply Network Global Mfg, Planning & Logistics The Procter.
Current impacts of cloud migration on broadband network operations and businesses David Sterling Partner, i 3 m 3 Solutions.
BENEFITS OF SUCCESSFUL IT MODERNIZATION
By Adam Balla & Wachiu Siu
Clouds C. Vuerli Contributed by Zsolt Nemeth. As it started.
The 2009 Cloud Consensus Report July 28, 2009 Bringing the Cloud Down to Earth Sponsored by the Merlin Federal Cloud Initiative.
Sherry A. Key, Director Alabama State Department of Education Career and Technical Education Section Sherry A. Key, Director Alabama State Department of.
Systems Engineering in a System of Systems Context
DoD Systems and Software Engineering A Strategy for Enhanced Systems Engineering Kristen Baldwin Acting Director, Systems and Software Engineering Office.
Dr. Richard Frost Global Director, Systems Development and Program Management Driving Global IT Performance with the CMMI for Acquisition November
1 Chapter 7 IT Infrastructures Business-Driven Technology
How are service providers helping their customers to deliver IT as a Service? Peter Glock – Orange Business Services 18 May 2011, presentation to Europe.
From the IT Assessment to the IT Roadmap ( )
Demonstrating IT Relevance to Business Aligning IT and Business Goals with On Demand Automation Solutions Robert LeBlanc General Manager Tivoli Software.
Securing and Auditing Cloud Computing Jason Alexander Chief Information Security Officer.
Basel Accord IITRANSITIONSERVICES Business Integration Support FCM Management Limited Paris New York Toronto.
Navigating the Maze How to sell to the public sector Adrian Farley Chief Deputy CIO State of California
Cloud Computing. 2 A division of Konica Minolta Business Solutions USA Inc. What is Cloud Computing? A model for enabling convenient, on-demand network.
“ Does Cloud Computing Offer a Viable Option for the Control of Statistical Data: How Safe Are Clouds” Federal Committee for Statistical Methodology (FCSM)
Enterprise NASA Will Peters August, 2010.
The CIO’s response to the Global Agenda Daniel Benton, Global Managing Director IT Strategy.
Bill Newhouse Program Lead National Initiative for Cybersecurity Education Cybersecurity R&D Coordination National Institute of Standards and Technology.
Competitive Differentiation: Using Technology to Deliver on Staples EASY Brand Promise Scott Floeck, Sr. Vice President, Staples, Inc.
Submitted By Tanmoy Mondal IIFT MBA (IB) The future lies on Business transformation & Employee- Organizational Alignment.
© 2014 IBM Corporation Smarter Workforce Services Business Process Innovation.
1 IS 8950 Managing and Leading a Networked IT Organization.
Learning Are you ready to……. Evolvonline™ Learning.Successwww.evolvonline.com Bob Chappell.
Cloud Computing Zach Ciccone Claudia Rodriguez Annia Aleman Xiaoying Tu Nov 14, 2013.
DEVELOPING SUSTAINABLE ICT INFRASTRUCTURE. Start Feasibility assessment – Understanding our core business In 1998 it was clear that a disproportionate.
1102 Contract Specialist as a Business Manager Debbie Bartlett Defense Acquisition University.
SOLUTIONS FOR THE EFFICIENT ENTERPRISE Sameer Garde Country GM,India.
CMAA 2010 Owners Forum Joe P. Gionfriddo May 3, 2010 Corporate Engineering Global Construction Manager The Procter & Gamble Company.
Cyber Authentication Renewal Project Executive Overview June – minute Brief.
© 2008 IBM Corporation Challenges for Infrastructure Outsourcing July 29, 2011 Atul Gupta Vice President, Strategic Outsourcing, IBM.
7-1 Management Information Systems for the Information Age Copyright 2004 The McGraw-Hill Companies, Inc. All rights reserved Chapter 7 IT Infrastructures.
2009 Federal IT Summit Cloud Computing Breakout October 28, 2009.
PPTTEST 10/24/ :07 1 IT Ron Williams Business Innovation Through Information Technology IS Organization.
Mr. Shawn R. Hawkins O DUSD - Acquisition Reform 27 April 99 Government/Industry Partnership Packaging Example CIVIL MILITARY INTEGRATION.
Welcome Georgia Infrastructure Transformation 2010 Kick-off Meeting January 30, 2008.
EGovOS Panel Discussion CIO Council Architecture & Infrastructure Committee Subcommittee Co-Chairs March 15, 2004.
Survey Report IPEXPO 2015 Top priorities and Technology Trends.
Nov 22/26 Tech Forum 2015 Roberto Trinconi Cloud the New Path to the Business Leadership.
Robert Mahowald August 26, 2015 VP, Cloud Software, IDC
© 2012 IBM Corporation IBM Security Systems 1 © 2012 IBM Corporation Cloud Security: Who do you trust? Martin Borrett Director of the IBM Institute for.
CISC 849 : Applications in Fintech Namami Shukla Dept of Computer & Information Sciences University of Delaware A Cloud Computing Methodology Study of.
Bay Ridge Security Consulting (BRSC) Cloud Computing.
1© Copyright 2015 EMC Corporation. All rights reserved. FEDERATION ENTERPRISE HYBRID CLOUD OPERATION SERVICES FULL RANGE OF SERVICES TO ASSIST YOUR STAFF.
Cisco Consulting Services for Application-Centric Cloud Your Company Needs Fast IT Cisco Application-Centric Cloud Can Help.
ISA 201 Intermediate Information Systems Acquisition.
CLOUD-BASED VIDS A CIO’S PERSPECTIVE Stephen Alford, CIO WEP, Inc.
FITARA Revamping IT in the Federal Government Presentation to DIR Information Security Forum Richard A. Spires April 14, 2016.
Software as a Service (SaaS) Fredrick Dande, MBA, PMP.
Template V.17, July 29, 2011 What’s the Cloud Got to do with HR Transformation? Heath Brownsworth, Director Technology Strategy.
Industry Views on the Current and Future Cloud Computing Adoption and Next Steps David LeDuc - June 6, 2012.
Designing Cisco Data Center Unified Fabric
BANKING INFORMATION SYSTEMS
Improving Mission Effectiveness By Exploiting the Command’s Implementation Of the DoD Enterprise Services Management Framework - DESMF in the [name the.
Jumpstart Solution: Novell Active Information Portal
A look at our presentation agenda
CNIT131 Internet Basics & Beginning HTML
Technology Management- A CIO Perspective
Introduction to Cloud Computing
Enterprise Architecture at Penn State
MAZARS’ CONSULTING PRACTICE Helping your Business Venture Further
KEY INITIATIVE Financial Data and Analytics
I4.0 in Action The importance of people and culture in the Industry 4.0 transformation journey Industry 4.0 Industry 3.0 Industry 2.0 Industry 1.0 Cyber.
The Intelligent Enterprise and SAP Business One
Presentation transcript:

“The global hub for educating, informing, and connecting Age leaders.” National Defense University Information Management Resource College Ensuring Cloud Computing Security through Supply Chain, Acquisition and Project Management Education Dr. Michael J. Donohoe Professor, National Defense University “The views expressed in this presentation/article are those of the author and do not reflect the official policy or position of the National Defense University, the Department of Defense, or the U.S. Government.”

Preparing for the Cloud Computing Storm Next Wave in Business Transformation Vivek Kundra, Federal CIO, 25 Point Implementation Plan to Reform Federal Information Technology Management –Shift to a “Cloud First” policy –"The cloud will do for government what the Internet did in the '90s” –Move Data Centers to the Cloud for both cost and energy savings via consolidation Both cloud security awareness and information assurance risks need to be “built into” the defense acquisition and IT project management processes –Security, Acquisition and IT Project Management professionals will need Cloud Computing education & guidance to encourage adoption Vs. the common statement of ‘you can’t do that’

Preparing for the Cloud Computing Storm Next Wave in Business Transformation Federal Risk and Authorization Management Program (FedRAMP), a standard approach to assessing and authorizing cloud computing services and products. Cyber-Supply Chain Risk Management (C-SCRM) Code of Practice, NIST Sponsored Project by University of Maryland Smith School of Business Information Assurance Technology Analysis Center (IATAC), Security Risk Management for Off the Shelf (OTS) Information and Communications Technology, State of Art Report (SOAR) –Comprehensive book of knowledge on Cyber Supply Chain Products and Services Best Practice Centers for Cloud Computing & Cyber Supply Chain Management (DISA / Forge.Mil, Capability Maturity Model Integration for Acquisitions (CMMI-ACQ) & Supply Chain Operations Reference (SCOR) Model) Promote cloud computing education at the management level (functional and technical) to lead organizational cloud initiatives: and avoid project delays, scope creep, increased costs, or security failures

4 Cloud Computing Guidance & Complia nce US National Institute of Standards and Technology (NIST) Cloud Computing defined “Cloud computing is a model for enabling convenient, on-demand network access to a shared pool of configurable computing resources (e.g., networks, servers, storage, applications, and services) that can be rapidly provisioned and released with minimal management effort or service provider interaction. ” Federal Information Security Management Act (FISMA) of 2002 and the associated NISTS standards and special publications (e.g., FIPS 199, FIPS 200, SP etc) apply to Cloud Systems NIST Special Publication Cloud Computing Synopsis and Recommendations ( Draft w/comment deadline of ) –Some applications will “need to be reengineered to realize the full benefits of the new computing capacity that is now available on demand” –Decades of traditional distributed computing topics are still open with Cloud Computing (Computing Performance, Latency, Off-Line Data Synchronization, Cloud Provider Outages, ….etc.)

Cloud Computing a Wicked Problem Government & Defense usage of cloud computing is a wicked problem, where a complex mass of technology, software services, service providers, and consumers meet in a virtual space having either shared or unique business needs, bound by Service Level Agreements (SLAs), contracts, and security constraints that cannot be solved with a simple linear problem-solving process Often there is no one standard solution to a wicked problem; in most cases each approach will be different and requires a mature knowledge on how to ‘align or best fit’ the organization’s IT enterprise architecture strategy with cloud computing services Many variables need to be considered, requiring multiple stakeholder and cloud computing supply chain vendor assessments; in short the Cloud Computing wicked problem should NOT be oversimplified

Gartner Hype Cycle Government Transformation 2010 Govt. Cloud is Lagging both Public and Private –Security/Risks –Knowledge – $$$ –Consulting FUD Fear Uncertainty Doubt

Budget Reductions are Powering the Winds of Change Forcing A Transformational Shift in the Defense Acquisition of Services Dr. Ashton B. Carter, Under Secretary of Defense for Acquisition, Technology and Logistics, is leading the change: –Focus is on taxpayer value (good buying power) combined with slower increases in defense spending “we’re not going to get out of it by reaching for more money…the taxpayer is going to be looking to us make the best use of each and every dollar that they feel that they can afford to give us” –Constraints in current acquisition process need to be removed to deliver effective solutions to the war fighter "We have an acquisition system and decision-making system that is very slow, very painstaking, very risk-averse, seeks perfection and certainty … need to react on a scale of weeks and months”

Budget Reductions are Powering the Winds of Change Forcing A Transformational Shift in the Defense Acquisition of Services –Pentagon spends $200 billion a year on the acquisition of services, yet the $100 billion spent on acquisitions always gets the most attention Service agreements are often made by people whose principal skills often are not in acquisitions “It’s not surprising that they’re not very good at it” "Over time, it's hollowing out our own capability” too much thinking by RFP processes. "We have to make sure that we fill out the skill sets where we are thin” talent should be as good as what is available in industry “it's important to give in-house developers or designers the opportunity to perform work that may be automatically sought from external suppliers” –Acquisition professionals, IT managers, and IT Project Managers need greater knowledge of the IT services supply chain and select only external solutions when needed.

Need for Information Technology Education Dr. Robert Childs, Chancellor of NDU iCollege, May 6 th, 2011 address to faculty –“Information drives every conversation, it is the Alpha and Omega” –“Cloud Computing and Data Center Consolidation are very high on the list of priorities for all Military CIOs” –“Cyber is the most critical domain of the century” History repeats itself, through innovation and the need to manage the increasing dependency on IT solutions; Cloud Computing is not the first –Mainframe, Personal Computer, Client Server Computing, Internet, ERP Solutions, Web 2.0, Data Analytics, & Mobile Apps DoD Cloud experts, not contractors, should lead Cloud Computing Project Implementations (Educational Gap) –DoD employees take key leadership, functional, technical and project management roles, that will result in a cloud computing transformation driven by the DoD; not consultants

IT Project Management Education Focus on Educating the Defense Professional to be Cloud Ready IT Project Management competencies developed in three dimensions: – Project leadership skills – IT program/project management concepts & methods – IT acquisition, architecture and latest development issues IT Project Management organizational learning, needs to be agile, adaptive, & scalable to keep pace with the transformational shift from legacy, enterprise resource planning (ERP) to cloud computing applications and services. 6 courses complete the iCollege certificate

11 Caveats This presentation provides background material to stimulate discussion of the need for an educated defense workforce in the areas of Supply Chain, Acquisition and IT Project Management, to ensure successful business transformation to a Secure Cloud Computing environment

“The global hub for educating, informing, and connecting Age leaders.” AFCEA TechNet Europe 2011 Bratislava, Slovakia Ensuring Cloud Computing Security through Supply Chain, Acquisition and Project Management Education Dr. Michael J. Donohoe Professor, National Defense University