230 likes | 245 Views
Learn about the successful implementation of a shared CISO model at Franklin & Marshall College and Susquehanna University, including the benefits, challenges, and shared priorities. Discover how this model promotes cost-efficiency, collaboration, and actionable risk mitigation.
E N D
Introductions Alan Bowen CISO Franklin & Marshall College Susquehanna University Carrie Rampp Vice President and CIO Franklin & Marshall College • Mark Huber • CIO • Susquehanna University
History of Consortium • 2013-2016 Franklin & Marshall College, Susquehanna University, and Bucknell • Policy focus at Franklin & Marshall • Low hanging fruit at Susquehanna • 2017-present Franklin & Marshall, Susquehanna • Renewable 3 year memo of understanding • Employer of record • Liability coverage related to work being performed or physical location, including travel • Confidentiality • Any party can terminate the agreement, no preclusion for future single employer agreement • Other shared services and collaboration
Susquehanna Initial Drivers • Cost driven • Efficiencies • Economies of scale • Actionable risk mitigation • Security by committee wasn’t working
Franklin & Marshall Initial Drivers • Cost driven • Collaboration • Grow trust • Change campus culture
Challenges • Cultural differences • IT strategies • IT organizational differences
InfoSec priorities and contemporaneous projects • Policies • InfoSec Program • Controls framework
Security Controls Slide intentionally blank
Security Controls Slide intentionally blank
Shared priorities and contemporaneous projects • Incident response • Vulnerability management • Cloud vendor assessment tool • Compliance • PCI, GDPR, GLBA
Consortial Unintended Benefits • Non-InfoSec collaboration • Co-location • Shared knowledge & experiences • Technological collaboration and alignment opportunities • Coop-etition
Keys to entry • Physical engagement • Perception of role/need • Business case • Commitment • CFO/CBO support • Employment strategy • Similar capability maturity • Trust relationship
Carrie Rampp Vice President and CIO Franklin and Marshall College Carrie Rampp Vice President and CIO Franklin and Marshall College Q & A
Carrie Rampp Vice President and CIO Franklin and Marshall College