Presentation is loading. Please wait.

Presentation is loading. Please wait.

Firewall Management Task Force

Similar presentations


Presentation on theme: "Firewall Management Task Force"— Presentation transcript:

1 Firewall Management Task Force
Kickoff Meeting 4/12/16

2 Introductions Name Department What you do
Your interest in this workgroup

3 Opening Comments Brian DeMeulle (Acting CISO) Executive Sponsor

4 Logistics Email distribution list:
Website: Confluence access: Request access: Support contact:

5 Confluence Access

6 Meeting schedule/locations:
Logistics Meeting schedule/locations: Bi-weekly? Preferred days/times? Location? Meeting Minutes

7 Task Force Charter Gather campus security resources to collaboratively address current network firewall challenges such as ruleset management, documentation, visibility, change control, request tracking, and authorization. Formulate requirements for tools/processes to address identified challenges, evaluate possible solutions (whether commercial, open-source or custom built) and provide recommendations for subsequent implementation. Review, discuss and provide feedback and recommendations for campus network firewall policy, standards and templates. Questions or suggestions?

8 Task Force Organization (borrowed from SDLC)
Project Initialization and Planning Current state, inventory, categorization Knowledge sharing, brainstorming, etc. Functional Requirements Definition Specifications for System Design/Acquisition Development/Acquisition Implementation Testing, Acceptance Transition to Production Operations and Maintenance

9 Task Force Activities Initialization Activities
Assessment – understand and document the current state, strengths/weaknesses, inventory, review, etc. Idea generation – brainstorming, researching, identifying potential solutions to problems, etc. Knowledge sharing – communicating practices to determine and establish “best practices” Risk management – prioritizing based on risk (threats, vulnerabilities, assets), and categorization based on risk

10 Task Force Activities Project activities – parallel efforts that may include: Ruleset – review and cleanup activities Process – improve processes and/or procedures Templates – establish standard ruleset templates Policy and Standards – recommend changes to policy or standards Tools – acquisition or development Near Term – quick wins, targeting urgent issues or top challenges Long Term – more robust, comprehensive solutions Other activities?

11 Project Initialization and Planning
Project Charter (goals, scope, schedule, etc.) Workgroup established Asses strengths/weaknesses Current State Information and Process Sharing Research, Networking, Analysis Brainstorming Other initialization activities?

12 Successful Collaboration
Respect differing perspectives (practice role reversal) Value and acknowledge each member’s input Listen completely and without pre-judgement Be open-minded, flexible, and seek common ground Frame the problems/challenges as a third party Look past personalities to solve the core challenges Attempt to keep discussions succinct and relevant Other suggestions?

13 Strengths/Weaknesses Exercise
Group participation brainstorming exercise to identify current strengths/weaknesses surrounding network firewall management Think in terms of your network firewall experiences, tools that are available, the services delivered, processes and standards, etc. Current strengths (5) Current weakness (5) Design your comments for maximum reception Frame the challenges as a third party Try not identify solutions at this point (just observations) You may be called on to explain your comments During the review you may have additional thoughts, if so, please continue to jot them down and post them on the board.

14 Next Steps? Assess and document current state
Review current standards, practices, tools, and procedures Review and understand current policies and regulations Review and understand network communication requirements Inventory and review of current rulesets Establish risk categorization Information sharing on common practices (firewall policy, ruleset documentation, change management) Generating ideas (come prepared with potential solutions) Prioritize top challenges and determine broad scope


Download ppt "Firewall Management Task Force"

Similar presentations


Ads by Google