1/15/2009 Security Committee Meeting Highlights

Attendees:

Deb Snyder (OTDA)
Bob Spina (Cisco)
Joel Conklin (Verizon Business)
Frank Wickham (Sun Microsystems)
Joe Lynch (Sun Microsystems)
Brian Spinner (D & D)
Barry Pardee (D & D)
Bridget Nuss (EMC)
Mike Springer (Dormitory Authority)
Rich Higgins (OMRDD)
Ted Phelps (SUNY Admin.)
Scott Elliott (IPLogic)
Joann Bomeisl (OMRDD)
Bruce Borgoyne (DMV)
Ann Marie Prysbala ? NYS Archives, guest speaker

12/10/08 meeting highlights shared.

Monthly "Hot Topic" Presentation - "NY State Email Policy Guidelines" *Guest speaker Ann Marie Przybyla of the NYS Archive, provided us with an overview of the NYSARA guidelines regarding developing a policy for managing email, published in Oct. 2008.

Education/Security-Related Webcasts - Update on collaborative effort with NYS OCSCIC on the MS ISACA webcasts. Feb. 12, 2009 webcast on track; presenter proposals due by 1/20, selection will be made by 1/23/09. 2009 dates/topics:

  • Feb. 12, 2009 - Payment Card Industry Data Security Standard (PCI DSS) (Low-Medium Technical Level) Register online: www.msisac.org/webcast/2009-02/index.cfm
  • April 9, 2009 - Incident Response (Medium Technical Level)
  • June 17, 2009 - Securing Mobile Devices (Medium Technical Level)
  • Aug. 19, 2009 - Security of Social Networking Sites / Web 2.0 (Medium Technical Level)
  • Oct. 2009 ? TBA - (in conjunction with October Cyber Security Awareness Month)
  • Dec. 16, 2009 - Security 101 for Your PC/Stay Safe Shopping Online (Low Tech. Level)

Education/Seminar/Presentations (topics based on Forum's Annual Strategic Planning Conference)

  • Special Event Planning Team Progress Updates:
    • "Information Security Roundtable" - Team: Bob Spina & Deb Snyder (leads); Chuck Weiss; Rich Higgins, Nikki Brate, Mike Deyo, Ted Phelps, Mike Springer. Update on planning meetings, event outline, format, preliminary topics & revised Call for Topics of Interest survey. Date/Time/Location: May 14, 2009, 8am-12noon; Desmond Hotel & Conference Center, Albany, NY.
    • "Virtualization-Related Security Risk" - Team: Joe Lynch (lead); Chuck Weiss, Rich Higgins, Bob Spina, Joel Conklin. Met 1/12 to outline topic, define challenges & commence planning. Call for presenters will be issued through the Forum.
    • "Emerging Technologies / Web 2.0" - collaborative endeavor with the Emerging Technologies committee on new ways of doing business, new threats and risk mitigation practices. Team: Bob Spina (lead); Jill Elwert (additional volunteers needed). Reached out to Forum's Emerging Technologies Committee Co-chairs (Duane Averill, Jim Brennan); further discussion planned.
    • "Data Classification - A Planned, Phased-in Approach" - Team: Deb Snyder (lead); Joel Conklin; Bridget Nuss. Dr. Sanjay Goel (SUNY) is willing to serve as a presenter; OGS and DOT ISOs also proposed as potential panel co-presenters). Further discussion planned.
    • "Information Security & Business Continuity - What Project Managers Need to Know" - collaborative event with Forum's Project Management and Business Continuity Committees on what PMs need to consider in these particular areas when planning and executing an IT project. Planning underway. Date/Time/Location: March 24, 2009, 2:30-4:00pm; Empire State Plaza Rm. 6.

Committee Co-Chair Vacancy Filled - Robert (Bob) Spina was submitted and officially confirmed as Corporate Co-chair at the 1/9/09 Executive Committee meeting. Our thanks to Bob for assuming this leadership role.

Next meeting - Feb. 11, 2009, 2:00-3:30pm. Regular meetings are held the 2nd Wed. of each month; posted on Forum online calendar online event calendar and www.nysforum.org/committees/security/meetings.aspx.


Security Committee Co-Chairs:

Deb SnyderDeborah.Snyder@otda.state.ny.us(518) 473-3195
Bob Spinabspina@cisco.com(518) 427-5248