Why Privacy Security Awareness Training Why is privacy

  • Slides: 15
Download presentation
Why Privacy & Security Awareness Training?

Why Privacy & Security Awareness Training?

Why is privacy & security awareness training required?

Why is privacy & security awareness training required?

Changing Threat Landscape Then Now • Amateur hackers • Organized crime • Web site

Changing Threat Landscape Then Now • Amateur hackers • Organized crime • Web site defacement • SQL Injections • Viruses • Identity theft • Infrequent attacks • Constant threat + • Amateur hackers • Web site defacement • Viruses

Why is privacy & security awareness training required? Threats to data, systems, and networks

Why is privacy & security awareness training required? Threats to data, systems, and networks are increasing. n Attacks are more sophisticated. n Technology can’t do the job alone. n National Association of State Chief Information Officers and other leading organizations have said this is a high priority. n

Why is privacy & security awareness training required? n n Louisiana public servants have

Why is privacy & security awareness training required? n n Louisiana public servants have a responsibility to safeguard data and other IT resources. OIT policies require it. ¨ http: //doa. louisiana. gov/oit/pdf/IT_POL_1 -00. pdf

What are my responsibilities? n Be privacy & security minded. ¨ Privacy & security

What are my responsibilities? n Be privacy & security minded. ¨ Privacy & security considerations are necessities, not burdens. ¨ Consider the impact your actions could have on the security of data and other IT resources.

What are my responsibilities? n Be willing to learn. ¨ Understand the privacy and

What are my responsibilities? n Be willing to learn. ¨ Understand the privacy and security requirements of the networks, systems, devices, and data that are part of your job. ¨ Know what data you have. ¨ Know with whom you are communicating. ¨ Question n “Do we need this data for a business function? ” “Should I have access to this data? ” “Should I share this data with others? ”

What are my responsibilities? n Be proactive. ¨ Adopt good privacy and security practices

What are my responsibilities? n Be proactive. ¨ Adopt good privacy and security practices at work and at home. ¨ Report unusual events.

What are my responsibilities? n Seek help and advice. ¨ Become familiar with the

What are my responsibilities? n Seek help and advice. ¨ Become familiar with the policies, procedures, and standards that apply to your work environment. ¨ When in doubt, ask!

How do I know what to do? n n n Federal & state law

How do I know what to do? n n n Federal & state law University Policies University Procedures University Work Rules Procedures or standards specific to a program or deapartment n n Your team lead, supervisor, or manager Security Officer or Data Privacy Point of Contact

Where can I get information? n Michael Graham Chief Information Technology Officer ¨ mgraham@mcneese.

Where can I get information? n Michael Graham Chief Information Technology Officer ¨ mgraham@mcneese. edu, 5523 n http: //www. mcneese. edu/IS n http: //doa. louisiana. gov/oit/Policies. htm

Where do I start? n IT Best Practices ¨ Acceptable Use ¨ Password-PIN ¨

Where do I start? n IT Best Practices ¨ Acceptable Use ¨ Password-PIN ¨ Mobile Computing ¨ Data Classification ¨ Security Education and Awareness ¨ Incident Response ¨ And more

Where do I start? n Special Areas of Concern ¨ Sensitive data ¨ E-mail

Where do I start? n Special Areas of Concern ¨ Sensitive data ¨ E-mail ¨ Portable computing devices ¨ Storage media – electronic and non-electronic ¨ Internet & Usage ¨ Physical security ¨ Exit procedures ¨ Incident response

Remember Privacy & Security are everybody’s business!

Remember Privacy & Security are everybody’s business!

Questions? ? ?

Questions? ? ?