Information Security - The Missing Elements

Loading...

Flash Player 9 (or above) is needed to view presentations.
We have detected that you do not have it on your computer. To install it, go here.

0 comments

Post a comment

    Post a comment
    Embed Video
    Edit your comment Cancel

    2 Favorites

    Information Security - The Missing Elements - Presentation Transcript

    1. – Information Security – The Missing Elements Ahmed Albalooshi, CISA. CISA President, Bahrain Internet Society.
    2. Objective Identify Information Security model to protect your business against threats For:  Organizations   Kingdom of Bahrain  – Information Security – The Missing Elements
    3. News Headlines  BBC team exposes cyber  crime risk  Estonia Cyber War   More Data Breached In  2008 Than In Previous Four Years Combined – Information Security – The Missing Elements
    4. Question Can anyone from the audience assure that his/her organization is safeguarded form hacking by posing a financial reward for whoever can? – Information Security – The Missing Elements
    5. Importance of Information Security  Protect profit and  reputation   Regulatory Compliance   Protection of Intellectual Property   Avoid Penalties   Loss of customers’ data   Coping with Disasters   Adhere to Service Level Agreements – Information Security – The Missing Elements
    6. Information Security Concept Confidentiality Information Security Availability Integrity – Information Security – The Missing Elements
    7. Security Technologies  Layer 7 Firewalls   Intrusion Prevention  Systems (IPS)   Multifactor Authentication   Multi Engine Anti Virus  End Point Security   Virtual Private Network  (VPN)   Virtual LANS (VLAN)   Vulnerability  Assessments  Honeybots   …etc. – Information Security – The Missing Elements
    8. Information Security Management Model • Strategy • • Vision and Mission • Organization - • Governance • • IT Governance • • People Execute • Processes • People Uses • Technology • Technology enable • processes • The Perfect Model • • Senior • Management Responsibility – Information Security – The Missing Elements
    9. Information Security Program Example 1. Senior Management approval and support 2. Define Roles and Responsibilities 3. Assets Classification 4. Risk Management 5. Information Security Manual Development: Policies, Processes and Procedures and Guidelines 6. Security Assessments And Reviews – Information Security – The Missing Elements
    10. Information Security Program Example 7. Security Awareness And Training 8. Security Monitoring 9. Security Incident Response 10. Business Continuity Planning and Disaster Recovery – Information Security – The Missing Elements
    11. Summary  Information Security is a  business requirement that will cascade on people, process and technology in order to achieve organization’s strategy and objectives  Information Security is  senior management responsibility   Don’t be afraid of going slowly. Only be afraid of standing still – Information Security – The Missing Elements
    12. Bahrain: Secure ICT Business Friendly
    13. Information Security In Bahrain Bahrain Economic Vision 2030 stress on the importance of ICT to empower citizens, government and private sector. How will Bahrain ensure the security of ICT in order to fulfill the vision? – Information Security – The Missing Elements
    14. Information Security In Bahrain Establish Computer Security Incident Response Center Benefits:  Trusted point of contact   Coordinate incidents  within Bahrain   Capability to compat incidents within Bahrain   Provide help and advisory on incidents and security  best practices  National Security Monitor  Coordinate with International centers – Information Security – The Missing Elements
    15. – Information Security – The Missing Elements Thank You By: Ahmed Albalooshi, CISA. CISA President, Bahrain Internet Society. ahmed.albalooshi@bis.org.bh

    + ahmed_vrahmed_vr, 7 months ago

    custom

    234 views, 2 favs, 0 embeds more stats

    Identify Information Security model to protect your more

    More info about this document

    © All Rights Reserved

    Go to text version

    • Total Views 234
      • 234 on SlideShare
      • 0 from embeds
    • Comments 0
    • Favorites 2
    • Downloads 22
    Most viewed embeds

    more

    All embeds

    less

    Flagged as inappropriate Flag as inappropriate
    Flag as inappropriate

    Select your reason for flagging this presentation as inappropriate. If needed, use the feedback form to let us know more details.

    Cancel
    File a copyright complaint
    Having problems? Go to our helpdesk?

    Categories