Cyber security Workshop, Managing Organizational Cybersecurity Effectiveness, Hosted by the BayTech Team
Seminar Event Information
- Managing Organizational Cybersecurity Effectiveness
- Date: November 17, 2015
- Venue: Gilruth Center, 18753 Space Center Blvd; Houston, Texas 77058
- Time: 8:30 – 9:00 Sign In & Networking
9:00 - 11:30 AM Program Coffee/Juice/Water and light snacks
- Mark Fridye, Deputy Chief Information Security Officer, NASA Johnson Space Center
- Mike Davis, Deputy Director and Senior Manager, IT Security, American Bureau of Shipping
Why Should You Attend?
- If you are an executive, decision-maker, manager, leader, IT professional – this workshop is for you. If your organization has information to protect – this workshop is for you.
- Managing an organization's cybersecurity effectiveness involves both reviewing the overall enterprise security program with a focus on business operations, risk and cost, and developing an approach to advancing workforce cyber education that supports and facilitates all organizational stakeholders and personnel needs.
- The presenters bring a wealth of knowledge that will facilitate the overall strengthening of an organization's cybersecurity posture.
Mark Fridye Deputy Chief Information Security Officer NASA Johnson Space Center
Organizational Risk - Review of the IT Security Program in a Multi-Organizational Environment
Traditional Certification and Accreditation in a large multi-organizational environment could introduce cybersecurity gaps in the overall enterprise IT security program. Organizational risks from one security program could introduce unaccepted risks to other programs. Reviewing the overall security program is essential for senior leadership to achieve the highest level of business operations at the lowest risk level the enterprise can safely tolerate all within the limits of the organization's financial constraints.
Mike Davis Deputy Director and Senior Manager, IT Security American Bureau of Shipping
Seeding the Cyber Education Triangle
Clarifying the fog of cyber security through targeted training, supporting small businesses and the disadvantaged workforce.
Given the criticality of cyber security to the world and the lack of a skilled security
workforce needed to sustain and improve all IT environments, in our highly connected
global IT ecosphere, a more global, effective and affordable (e.g., free & low cost)
approach to cyber education is needed. Estimates of more than one million cyber security
personnel are needed in the workforce in the next few years, while probably 'about
right" in numbers, that can be misleading given the financial constraints of student,
worker and employer. In this fiscal environment, companies are outsourcing cyber security,
reducing IT staff and asking the remaining personnel to take on cyber security as
another responsibility, collateral duty. Thus to be successful they need targeted
training and support (provided just-in-time) as well as small businesses more entry
level cyber workers. Additionally, other security interested folks want to enter the
cyber security profession, but training costs are a barrier to entry. This need for
affordable cyber education applies to them, veterans, disadvantaged persons and globally
as well – whereas they all need to have a certification and skills qualification pedigree
to be competitive.
There are numerous educational efforts to try and solve the lack of cyber security workers, yet there is a lack of an overall, integrated approach to fill the 'lower / middle void' of adequately skilled workers (e.g., security + certifications with a skills demonstration) and then also seed the advanced cyber security certifications (e.g., CISSP, etc) – all provided affordably. It's this initial cyber worker aspect that is not well supported or even well understood – a cyber security training gap in the overall cyber education triangle. The approach to advancing cyber education to support the workforce demand must support and facilitate all stakeholders and personnel needs. Provide affordable training to those who want to start in that field, by earning certifications and hands-on / practicum demonstration of skills, as well as enhancing higher education opportunities in parallel. We believe our proposal on "Seeding the cyber education triangle" answers that need to a large degree.
In partnership with