SlideShare a Scribd company logo
1 of 11
Download to read offline
The ITAM Review UK Conference 2018
How to engage your IT Security Team -
and fund your SAM programme
AJ Witt, Industry Analyst, The ITAM Review
The ITAM Review UK Conference 2018
About Me
•  Former IT Asset Manager
•  Now Industry Analyst for the ITAM Review
•  Managed 5000+ device estate, half of which was floating!
•  Reported to Director of Security, Risk, and Compliance
The ITAM Review UK Conference 2018
Agenda
•  The IT Security Challenge
•  Stakeholder analysis for ITSec teams
•  How can ITAM Help ITSec?
•  What does this mean for your SAM programme?
The ITAM Review UK Conference 2018
ITAM-ITSEC
alignment –
end state
•  Mutual support for removal of technical
debt
•  Justification for ongoing support/
maintenance budgets
•  Reduction in volume of authorised software
titles
•  Hero status - Maersk
The ITAM Review UK Conference 2018
Maersk – NotPetya Response
•  20% of worldwide container shipments
•  Complete infrastructure rebuild
–  10 days
–  4,000 new servers
–  45,000 new PCs
–  2,500 applications
•  Chairman – “heroic effort to do over 10 days which should take 6 months”
•  Still operated at 80% capacity during that time
•  Revenue impact $250-300m
•  How would you respond?
The ITAM Review UK Conference 2018
Power/Interest Stakeholder Analysis - ITAM
The ITAM Review UK Conference 2018
Stakeholder Analysis - Attitude
•  Interest and Power tell you who is important, but not how you
should engage them.
•  A High Power, High Interest stakeholder can either be a Champion
or a Blocker, depending on their attitude to your programme.
•  You can’t easily change their power or interest but you can
influence their attitude.
•  How do you turn a Blocker into a Champion? Understand their
motivations and goals and tailor your interactions accordingly.
The ITAM Review UK Conference 2018
ITSec – Mindset
•  Similar mindset and stakeholders to an ITAM team
–  Risk Management
–  Management of Technical Debt
–  Audit Response
–  Proof of Compliance
–  Detail-obsessed
•  Some differences
–  Planned audit schedule – requirement for continuous compliance
–  Subject to internal audit
–  Manage unknown threats
The ITAM Review UK Conference 2018
ITSec – Current focus
•  Increasing demands and increasing focus
–  Lethal payload malware such as Wannacry
–  PCI-DSS & SOX compliance
–  Vulnerability Reporting
–  Patching
–  Privacy, including GDPR
•  What does this mean?
–  £/$/€ being thrown at your ITSec team
–  Senior Management focus
–  Programme momentum
The ITAM Review UK Conference 2018
What can ITAM do to help?
•  Additional trusted inventory source
•  Version control
•  Usage stats
•  Vulnerability Reporting
•  Automation tools
•  Some SAM tool vendors are offering GDPR-specific functionality
The ITAM Review UK Conference 2018
Conclusions
•  Working closely with ITSec is mutually beneficial
•  You may pick up budget and headcount
•  You may be a hero
•  You will have a powerful ally

More Related Content

What's hot

What's hot (20)

UK Conference 2018_Boost up your Oracle audit defence_Richard Spithoven & Cat...
UK Conference 2018_Boost up your Oracle audit defence_Richard Spithoven & Cat...UK Conference 2018_Boost up your Oracle audit defence_Richard Spithoven & Cat...
UK Conference 2018_Boost up your Oracle audit defence_Richard Spithoven & Cat...
 
UK Conference 2018_Software support and maintenance survey - Martin Thompson
UK Conference 2018_Software support and maintenance survey - Martin ThompsonUK Conference 2018_Software support and maintenance survey - Martin Thompson
UK Conference 2018_Software support and maintenance survey - Martin Thompson
 
UK Conference 2018_the brave world of IaaS_David Foxen
UK Conference 2018_the brave world of IaaS_David FoxenUK Conference 2018_the brave world of IaaS_David Foxen
UK Conference 2018_the brave world of IaaS_David Foxen
 
UK Conference 2018. People. Processes. Tools. Three's a Cloud_Rich Gibbons
UK Conference 2018. People. Processes. Tools. Three's a Cloud_Rich GibbonsUK Conference 2018. People. Processes. Tools. Three's a Cloud_Rich Gibbons
UK Conference 2018. People. Processes. Tools. Three's a Cloud_Rich Gibbons
 
UK Conference 2018_ISO 19770-1- Rebooted for your pleasure_Rory Canavan
UK Conference 2018_ISO 19770-1- Rebooted for your pleasure_Rory CanavanUK Conference 2018_ISO 19770-1- Rebooted for your pleasure_Rory Canavan
UK Conference 2018_ISO 19770-1- Rebooted for your pleasure_Rory Canavan
 
UK Conference 2018_How to fortify your Audit Castle_Jochen Hagenlocher
UK Conference 2018_How to fortify your Audit Castle_Jochen HagenlocherUK Conference 2018_How to fortify your Audit Castle_Jochen Hagenlocher
UK Conference 2018_How to fortify your Audit Castle_Jochen Hagenlocher
 
UK Conference 2018_Effective SAM without tooling_Wilson Bigg
UK Conference 2018_Effective SAM without tooling_Wilson BiggUK Conference 2018_Effective SAM without tooling_Wilson Bigg
UK Conference 2018_Effective SAM without tooling_Wilson Bigg
 
Australia Conference 2018_Getting the best from ibm license metric tool (ilmt...
Australia Conference 2018_Getting the best from ibm license metric tool (ilmt...Australia Conference 2018_Getting the best from ibm license metric tool (ilmt...
Australia Conference 2018_Getting the best from ibm license metric tool (ilmt...
 
Australia Conference 2018_How to engage your it security team and fund your s...
Australia Conference 2018_How to engage your it security team and fund your s...Australia Conference 2018_How to engage your it security team and fund your s...
Australia Conference 2018_How to engage your it security team and fund your s...
 
Australia Conference 2018_Cloud won't manage itself - a strategic opportunity...
Australia Conference 2018_Cloud won't manage itself - a strategic opportunity...Australia Conference 2018_Cloud won't manage itself - a strategic opportunity...
Australia Conference 2018_Cloud won't manage itself - a strategic opportunity...
 
Australia Conference 2018_How to be a SaaS manager – tools, people and proces...
Australia Conference 2018_How to be a SaaS manager – tools, people and proces...Australia Conference 2018_How to be a SaaS manager – tools, people and proces...
Australia Conference 2018_How to be a SaaS manager – tools, people and proces...
 
Australia Conference 2018_Making ITAM Stick – a blue print for organizational...
Australia Conference 2018_Making ITAM Stick – a blue print for organizational...Australia Conference 2018_Making ITAM Stick – a blue print for organizational...
Australia Conference 2018_Making ITAM Stick – a blue print for organizational...
 
Australia Conference 2018_Can itam be agile?
Australia Conference 2018_Can itam be agile?Australia Conference 2018_Can itam be agile?
Australia Conference 2018_Can itam be agile?
 
Australia Conference 2018_SAM Soufflé: 1 part Tool & 2 parts People = A recip...
Australia Conference 2018_SAM Soufflé: 1 part Tool & 2 parts People = A recip...Australia Conference 2018_SAM Soufflé: 1 part Tool & 2 parts People = A recip...
Australia Conference 2018_SAM Soufflé: 1 part Tool & 2 parts People = A recip...
 
Australia Conference 2018_ISO 19770 – How it’s changed and how it can benefit...
Australia Conference 2018_ISO 19770 – How it’s changed and how it can benefit...Australia Conference 2018_ISO 19770 – How it’s changed and how it can benefit...
Australia Conference 2018_ISO 19770 – How it’s changed and how it can benefit...
 
AUS Conference 2018_All change - aligning sam with your data centre change pr...
AUS Conference 2018_All change - aligning sam with your data centre change pr...AUS Conference 2018_All change - aligning sam with your data centre change pr...
AUS Conference 2018_All change - aligning sam with your data centre change pr...
 
What does good look like? Lessons learnt from assessing the ITAM maturity of ...
What does good look like? Lessons learnt from assessing the ITAM maturity of ...What does good look like? Lessons learnt from assessing the ITAM maturity of ...
What does good look like? Lessons learnt from assessing the ITAM maturity of ...
 
Growing an ITAM Team, Colin Simmons, Kingfisher IT ITAM Review UK Conference ...
Growing an ITAM Team, Colin Simmons, Kingfisher IT ITAM Review UK Conference ...Growing an ITAM Team, Colin Simmons, Kingfisher IT ITAM Review UK Conference ...
Growing an ITAM Team, Colin Simmons, Kingfisher IT ITAM Review UK Conference ...
 
Australia Conference 2018_News that shook the itam world in 2018 with resources
Australia Conference 2018_News that shook the itam world in 2018 with resourcesAustralia Conference 2018_News that shook the itam world in 2018 with resources
Australia Conference 2018_News that shook the itam world in 2018 with resources
 
Microsoft Audit Defense: Kylie Fowler ITAM Intelligence ITAM Review UK Confe...
Microsoft Audit Defense: Kylie Fowler  ITAM Intelligence ITAM Review UK Confe...Microsoft Audit Defense: Kylie Fowler  ITAM Intelligence ITAM Review UK Confe...
Microsoft Audit Defense: Kylie Fowler ITAM Intelligence ITAM Review UK Confe...
 

Similar to UK Conference 2018_How to engage your IT security team and fund your SAM programme_AJ Witt

The Power of a Complete 360° View of the Customer - Digital Transformation fo...
The Power of a Complete 360° View of the Customer - Digital Transformation fo...The Power of a Complete 360° View of the Customer - Digital Transformation fo...
The Power of a Complete 360° View of the Customer - Digital Transformation fo...
Denodo
 

Similar to UK Conference 2018_How to engage your IT security team and fund your SAM programme_AJ Witt (20)

UK Conference 2018_ SaaS Management - How to save your share of $30bn_AJ Witt
UK Conference 2018_ SaaS Management - How to save your share of $30bn_AJ WittUK Conference 2018_ SaaS Management - How to save your share of $30bn_AJ Witt
UK Conference 2018_ SaaS Management - How to save your share of $30bn_AJ Witt
 
Ecosystems - Drive improvement from Holistic Insight
Ecosystems - Drive improvement from Holistic InsightEcosystems - Drive improvement from Holistic Insight
Ecosystems - Drive improvement from Holistic Insight
 
Martin Huddleston: No Service Management, No Security
Martin Huddleston: No Service Management, No SecurityMartin Huddleston: No Service Management, No Security
Martin Huddleston: No Service Management, No Security
 
How Facility Controls Systems Present Cybersecurity Challenges - OSIsoft
How Facility Controls Systems Present Cybersecurity Challenges - OSIsoftHow Facility Controls Systems Present Cybersecurity Challenges - OSIsoft
How Facility Controls Systems Present Cybersecurity Challenges - OSIsoft
 
IT Risk Management
IT Risk ManagementIT Risk Management
IT Risk Management
 
Intelligent Maintenance: Mapping the #IIoT Process
Intelligent Maintenance: Mapping the #IIoT ProcessIntelligent Maintenance: Mapping the #IIoT Process
Intelligent Maintenance: Mapping the #IIoT Process
 
Wealth management onboarding webinar jan262011
Wealth management onboarding webinar jan262011Wealth management onboarding webinar jan262011
Wealth management onboarding webinar jan262011
 
The Power of a Complete 360° View of the Customer - Digital Transformation fo...
The Power of a Complete 360° View of the Customer - Digital Transformation fo...The Power of a Complete 360° View of the Customer - Digital Transformation fo...
The Power of a Complete 360° View of the Customer - Digital Transformation fo...
 
AIOps, IT Analytics, and Business Performance: What’s Needed and What Works
AIOps, IT Analytics, and Business Performance: What’s Needed and What Works AIOps, IT Analytics, and Business Performance: What’s Needed and What Works
AIOps, IT Analytics, and Business Performance: What’s Needed and What Works
 
Identifying Effective Endpoint Detection and Response Platforms (EDRP)
Identifying Effective Endpoint Detection and Response Platforms (EDRP)Identifying Effective Endpoint Detection and Response Platforms (EDRP)
Identifying Effective Endpoint Detection and Response Platforms (EDRP)
 
ITAM UK 2017 ITAM Risks in Cloud Era Eric Chiu & Ian Scille
ITAM UK 2017 ITAM Risks in Cloud Era Eric Chiu & Ian ScilleITAM UK 2017 ITAM Risks in Cloud Era Eric Chiu & Ian Scille
ITAM UK 2017 ITAM Risks in Cloud Era Eric Chiu & Ian Scille
 
Integration of Technology & Compliance Presented by John Heintz, CPS Energy
Integration of Technology & Compliance Presented by John Heintz, CPS EnergyIntegration of Technology & Compliance Presented by John Heintz, CPS Energy
Integration of Technology & Compliance Presented by John Heintz, CPS Energy
 
Integration of Technology & Compliance Presented by John Heintz, CPS Energy
Integration of Technology & Compliance Presented by John Heintz, CPS EnergyIntegration of Technology & Compliance Presented by John Heintz, CPS Energy
Integration of Technology & Compliance Presented by John Heintz, CPS Energy
 
How to make existing business applications io t ready
How to make existing business applications io t readyHow to make existing business applications io t ready
How to make existing business applications io t ready
 
The Business Justification for APM
The Business Justification for APMThe Business Justification for APM
The Business Justification for APM
 
Executive's Handbook on IT Strategy and Governance
Executive's Handbook on IT Strategy and GovernanceExecutive's Handbook on IT Strategy and Governance
Executive's Handbook on IT Strategy and Governance
 
Artificial Intelligence Application in Oil and Gas
Artificial Intelligence Application in Oil and GasArtificial Intelligence Application in Oil and Gas
Artificial Intelligence Application in Oil and Gas
 
Get Smart About Technical Debt
Get Smart About Technical DebtGet Smart About Technical Debt
Get Smart About Technical Debt
 
Making Enterprise Architecture Succeed at Tax Norway
Making Enterprise Architecture Succeed at Tax NorwayMaking Enterprise Architecture Succeed at Tax Norway
Making Enterprise Architecture Succeed at Tax Norway
 
Webinar | GE & Stork | APM Best Practices - Mechanical Integrity
Webinar | GE & Stork | APM Best Practices - Mechanical IntegrityWebinar | GE & Stork | APM Best Practices - Mechanical Integrity
Webinar | GE & Stork | APM Best Practices - Mechanical Integrity
 

More from Martin Thompson

More from Martin Thompson (12)

Wisdom UK 2019: Building the ultimate HAM sandwich - David Foxen
Wisdom UK 2019: Building the ultimate HAM sandwich - David FoxenWisdom UK 2019: Building the ultimate HAM sandwich - David Foxen
Wisdom UK 2019: Building the ultimate HAM sandwich - David Foxen
 
2019 Salary and Skills Survey by The ITAM Review
2019 Salary and Skills Survey by The ITAM Review 2019 Salary and Skills Survey by The ITAM Review
2019 Salary and Skills Survey by The ITAM Review
 
2017 ITAM Review Salary Survey
2017 ITAM Review Salary Survey2017 ITAM Review Salary Survey
2017 ITAM Review Salary Survey
 
Australia Conference 2018_What you need to think about when implementing micr...
Australia Conference 2018_What you need to think about when implementing micr...Australia Conference 2018_What you need to think about when implementing micr...
Australia Conference 2018_What you need to think about when implementing micr...
 
Australia Conference 2018_The $250BN annual software support and maintenance ...
Australia Conference 2018_The $250BN annual software support and maintenance ...Australia Conference 2018_The $250BN annual software support and maintenance ...
Australia Conference 2018_The $250BN annual software support and maintenance ...
 
Australia Conference 2018_Taming the multi-cloud hydra – innovate with confid...
Australia Conference 2018_Taming the multi-cloud hydra – innovate with confid...Australia Conference 2018_Taming the multi-cloud hydra – innovate with confid...
Australia Conference 2018_Taming the multi-cloud hydra – innovate with confid...
 
Australia Conference 2018_Process Meh
Australia Conference 2018_Process MehAustralia Conference 2018_Process Meh
Australia Conference 2018_Process Meh
 
Australia Conference 2018_ITAM in 2023 - where is your role heading
Australia Conference 2018_ITAM in 2023 - where is your role heading Australia Conference 2018_ITAM in 2023 - where is your role heading
Australia Conference 2018_ITAM in 2023 - where is your role heading
 
Australia Conference 2018_Building trust, reputation & budget within itam acc...
Australia Conference 2018_Building trust, reputation & budget within itam acc...Australia Conference 2018_Building trust, reputation & budget within itam acc...
Australia Conference 2018_Building trust, reputation & budget within itam acc...
 
Australia Conference 2018_Boost up your oracle audit defence
Australia Conference 2018_Boost up your oracle audit defenceAustralia Conference 2018_Boost up your oracle audit defence
Australia Conference 2018_Boost up your oracle audit defence
 
UK Conference 2018_7 pillars of a HAM practice_Martin Thompson
UK Conference 2018_7 pillars of a HAM practice_Martin ThompsonUK Conference 2018_7 pillars of a HAM practice_Martin Thompson
UK Conference 2018_7 pillars of a HAM practice_Martin Thompson
 
UK Conference 2018_Software support and maintenance survey_Martin Thompson
UK Conference 2018_Software support and maintenance survey_Martin ThompsonUK Conference 2018_Software support and maintenance survey_Martin Thompson
UK Conference 2018_Software support and maintenance survey_Martin Thompson
 

Recently uploaded

Neurulation and the formation of the neural tube
Neurulation and the formation of the neural tubeNeurulation and the formation of the neural tube
Neurulation and the formation of the neural tube
SaadHumayun7
 

Recently uploaded (20)

The Last Leaf, a short story by O. Henry
The Last Leaf, a short story by O. HenryThe Last Leaf, a short story by O. Henry
The Last Leaf, a short story by O. Henry
 
Removal Strategy _ FEFO _ Working with Perishable Products in Odoo 17
Removal Strategy _ FEFO _ Working with Perishable Products in Odoo 17Removal Strategy _ FEFO _ Working with Perishable Products in Odoo 17
Removal Strategy _ FEFO _ Working with Perishable Products in Odoo 17
 
....................Muslim-Law notes.pdf
....................Muslim-Law notes.pdf....................Muslim-Law notes.pdf
....................Muslim-Law notes.pdf
 
The Benefits and Challenges of Open Educational Resources
The Benefits and Challenges of Open Educational ResourcesThe Benefits and Challenges of Open Educational Resources
The Benefits and Challenges of Open Educational Resources
 
The Ultimate Guide to Social Media Marketing in 2024.pdf
The Ultimate Guide to Social Media Marketing in 2024.pdfThe Ultimate Guide to Social Media Marketing in 2024.pdf
The Ultimate Guide to Social Media Marketing in 2024.pdf
 
Championnat de France de Tennis de table/
Championnat de France de Tennis de table/Championnat de France de Tennis de table/
Championnat de France de Tennis de table/
 
Features of Video Calls in the Discuss Module in Odoo 17
Features of Video Calls in the Discuss Module in Odoo 17Features of Video Calls in the Discuss Module in Odoo 17
Features of Video Calls in the Discuss Module in Odoo 17
 
Navigating the Misinformation Minefield: The Role of Higher Education in the ...
Navigating the Misinformation Minefield: The Role of Higher Education in the ...Navigating the Misinformation Minefield: The Role of Higher Education in the ...
Navigating the Misinformation Minefield: The Role of Higher Education in the ...
 
Neurulation and the formation of the neural tube
Neurulation and the formation of the neural tubeNeurulation and the formation of the neural tube
Neurulation and the formation of the neural tube
 
Open Educational Resources Primer PowerPoint
Open Educational Resources Primer PowerPointOpen Educational Resources Primer PowerPoint
Open Educational Resources Primer PowerPoint
 
Post Exam Fun(da) Intra UEM General Quiz 2024 - Prelims q&a.pdf
Post Exam Fun(da) Intra UEM General Quiz 2024 - Prelims q&a.pdfPost Exam Fun(da) Intra UEM General Quiz 2024 - Prelims q&a.pdf
Post Exam Fun(da) Intra UEM General Quiz 2024 - Prelims q&a.pdf
 
MichaelStarkes_UncutGemsProjectSummary.pdf
MichaelStarkes_UncutGemsProjectSummary.pdfMichaelStarkes_UncutGemsProjectSummary.pdf
MichaelStarkes_UncutGemsProjectSummary.pdf
 
TỔNG HỢP HƠN 100 ĐỀ THI THỬ TỐT NGHIỆP THPT VẬT LÝ 2024 - TỪ CÁC TRƯỜNG, TRƯ...
TỔNG HỢP HƠN 100 ĐỀ THI THỬ TỐT NGHIỆP THPT VẬT LÝ 2024 - TỪ CÁC TRƯỜNG, TRƯ...TỔNG HỢP HƠN 100 ĐỀ THI THỬ TỐT NGHIỆP THPT VẬT LÝ 2024 - TỪ CÁC TRƯỜNG, TRƯ...
TỔNG HỢP HƠN 100 ĐỀ THI THỬ TỐT NGHIỆP THPT VẬT LÝ 2024 - TỪ CÁC TRƯỜNG, TRƯ...
 
Mbaye_Astou.Education Civica_Human Rights.pptx
Mbaye_Astou.Education Civica_Human Rights.pptxMbaye_Astou.Education Civica_Human Rights.pptx
Mbaye_Astou.Education Civica_Human Rights.pptx
 
size separation d pharm 1st year pharmaceutics
size separation d pharm 1st year pharmaceuticssize separation d pharm 1st year pharmaceutics
size separation d pharm 1st year pharmaceutics
 
philosophy and it's principles based on the life
philosophy and it's principles based on the lifephilosophy and it's principles based on the life
philosophy and it's principles based on the life
 
“O BEIJO” EM ARTE .
“O BEIJO” EM ARTE                       .“O BEIJO” EM ARTE                       .
“O BEIJO” EM ARTE .
 
Operations Management - Book1.p - Dr. Abdulfatah A. Salem
Operations Management - Book1.p  - Dr. Abdulfatah A. SalemOperations Management - Book1.p  - Dr. Abdulfatah A. Salem
Operations Management - Book1.p - Dr. Abdulfatah A. Salem
 
Telling Your Story_ Simple Steps to Build Your Nonprofit's Brand Webinar.pdf
Telling Your Story_ Simple Steps to Build Your Nonprofit's Brand Webinar.pdfTelling Your Story_ Simple Steps to Build Your Nonprofit's Brand Webinar.pdf
Telling Your Story_ Simple Steps to Build Your Nonprofit's Brand Webinar.pdf
 
Basic Civil Engg Notes_Chapter-6_Environment Pollution & Engineering
Basic Civil Engg Notes_Chapter-6_Environment Pollution & EngineeringBasic Civil Engg Notes_Chapter-6_Environment Pollution & Engineering
Basic Civil Engg Notes_Chapter-6_Environment Pollution & Engineering
 

UK Conference 2018_How to engage your IT security team and fund your SAM programme_AJ Witt

  • 1. The ITAM Review UK Conference 2018 How to engage your IT Security Team - and fund your SAM programme AJ Witt, Industry Analyst, The ITAM Review
  • 2. The ITAM Review UK Conference 2018 About Me •  Former IT Asset Manager •  Now Industry Analyst for the ITAM Review •  Managed 5000+ device estate, half of which was floating! •  Reported to Director of Security, Risk, and Compliance
  • 3. The ITAM Review UK Conference 2018 Agenda •  The IT Security Challenge •  Stakeholder analysis for ITSec teams •  How can ITAM Help ITSec? •  What does this mean for your SAM programme?
  • 4. The ITAM Review UK Conference 2018 ITAM-ITSEC alignment – end state •  Mutual support for removal of technical debt •  Justification for ongoing support/ maintenance budgets •  Reduction in volume of authorised software titles •  Hero status - Maersk
  • 5. The ITAM Review UK Conference 2018 Maersk – NotPetya Response •  20% of worldwide container shipments •  Complete infrastructure rebuild –  10 days –  4,000 new servers –  45,000 new PCs –  2,500 applications •  Chairman – “heroic effort to do over 10 days which should take 6 months” •  Still operated at 80% capacity during that time •  Revenue impact $250-300m •  How would you respond?
  • 6. The ITAM Review UK Conference 2018 Power/Interest Stakeholder Analysis - ITAM
  • 7. The ITAM Review UK Conference 2018 Stakeholder Analysis - Attitude •  Interest and Power tell you who is important, but not how you should engage them. •  A High Power, High Interest stakeholder can either be a Champion or a Blocker, depending on their attitude to your programme. •  You can’t easily change their power or interest but you can influence their attitude. •  How do you turn a Blocker into a Champion? Understand their motivations and goals and tailor your interactions accordingly.
  • 8. The ITAM Review UK Conference 2018 ITSec – Mindset •  Similar mindset and stakeholders to an ITAM team –  Risk Management –  Management of Technical Debt –  Audit Response –  Proof of Compliance –  Detail-obsessed •  Some differences –  Planned audit schedule – requirement for continuous compliance –  Subject to internal audit –  Manage unknown threats
  • 9. The ITAM Review UK Conference 2018 ITSec – Current focus •  Increasing demands and increasing focus –  Lethal payload malware such as Wannacry –  PCI-DSS & SOX compliance –  Vulnerability Reporting –  Patching –  Privacy, including GDPR •  What does this mean? –  £/$/€ being thrown at your ITSec team –  Senior Management focus –  Programme momentum
  • 10. The ITAM Review UK Conference 2018 What can ITAM do to help? •  Additional trusted inventory source •  Version control •  Usage stats •  Vulnerability Reporting •  Automation tools •  Some SAM tool vendors are offering GDPR-specific functionality
  • 11. The ITAM Review UK Conference 2018 Conclusions •  Working closely with ITSec is mutually beneficial •  You may pick up budget and headcount •  You may be a hero •  You will have a powerful ally