Track 2: Good Governance Enables and Needs Good Risk Management
Cloud computing, off-shoring and social networks challenge existing governance models. New standards and changing regulatory requirements increase compliance complexity. Economic conditions require investment focus, and not all security and privacy risks can be mitigated. Learn which of the bewildering array of governance, risk and compliance suites, products and "best practices" are appropriate for the needs of your organization.
View the Full Agenda
Sessions
Setting Clear Expectations — Governance and Policy Setting
Information security is largely a translation function; converting business risk sensitivity into policies that technical and training staff can implement. The key to success is setting up an effective governance structure to manage policy.
Best Practices in Risk Assessment and Business Impact Analysis
Risk assessments are intended to identify threats and vulnerabilities and select controls. The BIA is most probably the most important aspect of the BCM planning process as it provides the foundation on which recovery requirements and objectives are built. This presentation will discuss different risk assessment approaches and give guidance on how best to conduct a BIA for BCM.
Using IAM Intelligently to Enable Governance, Risk Management and Compliance
Greater demands for IT governance, risk and compliance management (GRCM) call for adjacent, richer, and synergistic relationships with other IT management disciplines, including identity and access management (IAM). You need to understand how your IAM program can contribute to GRCM and how to manage your relationship with other GRCM stakeholders to effectually address your enterprise’s critical business challenges.
Trespass the Border, not the law — Foundation of a Global Privacy Program
As technical security controls are increasingly integrated into the infrastructure fabric, the focus of CISOs will continue to shift towards the behaviors, attitudes and culture of the human stakeholders of the enterprise. This presentation will highlight how this will impact the role of information security leaders, the opportunities this present, and the actions that they should take to prepare for the challenge.
Develop an Enterprise Strategy for Data Loss Prevention: 2010 DLP Magic Quadrant
The content aware data loss prevention market continues to evolve. Organizations are adjusting to a strategy where they can dynamically apply policy at the time of an operation. Data loss prevention technologies are increasingly common compliance tools for many organizations. However, many struggle when it comes to selecting and deploying meaningful content aware DLP solutions and achieving their intended compliance goals.
Agenda Builder Tool
With a wealth of sessions, it is helpful to have a tool to build your own agenda focusing on your own needs. The online Agenda Builder helps you select and add them to your calendar, and to build in networking and reflection time into your schedule. You can follow one of the specific tracks, or sessions based on maturity of your projects, business or technology focused sessions or just simply mix and match!
Click here for the Agenda Builder tool.