80 likes | 256 Views
Information Security Manual Briefing Prepared by the IIPS Security Standards Committee. IT Standards Committee Officers. Roderick B. Brower Chair Chuck Hauser (General Standards) Deborah Joyner (Application Server) Jeff Drake (Network) Jodi Dyson (Business Continuity)
E N D
Information Security ManualBriefing Prepared by the IIPS Security Standards Committee
IT Standards Committee Officers Roderick B. Brower Chair Chuck Hauser (General Standards) Deborah Joyner (Application Server) Jeff Drake (Network) Jodi Dyson (Business Continuity) Arthur Hohnsbehn & Stephen Reeves (System Office) Honorable Mentions: Randy Robertson, Kathy Jones, & Janet Mintern
Why? • Customization to Community Colleges • Control of update schedule • Local revisions (as needed)
Same/Different • Similar: • Kept the numbering scheme and general layout • ISO References • Differences: • Cleaned up verbiage that did not apply to community Colleges • Re-Vamped Preamble (excluded classroom PCs) • Deleted standards that did not apply to Community Colleges • Deleted history references from document
Next Steps • IIPS organization will adopt the manual • Manual will be sent to State CIO for review • Local college implementation of standards* • Note: In the interim, until SCIO approves this manual, colleges will be audited based on the current: • “Statewide Information Security Manual”
Local Implementation • You do NOT have to re-write these standards at your local institution • This manual should be referenced in your local Administrative Procedures Manual • Statement should reflect that all standards included in the NCCC Information Security manual are followed locally • Any deviation from the manual needs to be documented locally and college needs to be prepared to justify the deviation
Moving Forward • Living document • Manual will be updated as Statewide Manual is updated • Edits will be sent out, reviewed, and adopted at the Fall IIPS Conference (as needed) • Ask for input on for future conferences • (session topics, lessons learned, etc.)
Q&A Motion to adopt standards