raising information security awareness

18
2013 Raising information security awareness with strong training, communication and reinforcement tools.

Upload: terranovatraining

Post on 28-Nov-2014

1.206 views

Category:

Technology


1 download

DESCRIPTION

A presentation by Terranova on raising information security awareness with strong training, communication and reinforcement tools.

TRANSCRIPT

Page 1: Raising information security awareness

Plan

marketing

2012-13

2013

Raising information security awareness with strong training, communication and reinforcement tools.

Page 2: Raising information security awareness

About Us

1.  Information Security Awareness training 2.  Compliance Training (PCI – PII – PHI – SOX ) etc.. 3.  Brandon Hall Award - Best Advance in Learning

Management Technology for the compliance training category

4.  Over 20 years of experience    

 

2 TerranovaTraining.com  

Page 3: Raising information security awareness

Information Security Layers

Multiple layers aim to provide overall protection.

3  

Physical

Network

System

Application

Human

Assets

TerranovaTraining.com  

Page 4: Raising information security awareness

According to the ENISA, "Awareness of the risks and available safeguards is the !rst line of defense for the security of information systems and networks. "

This is your !rst line of defense

4  

TerranovaTraining.com  

Page 5: Raising information security awareness

 1.  Higher management is not on board 2.  No planning

•  No objectives or goals to achieve •  No roadmap for success

3.  No accountability is determined 4.  No sense of urgency amongst all staff

•  The project is dragging…inde!nitely •  No momentum has been created

5.  No continuous communications to reinforce the message

6.  The tools used are ineffective

     

5  

Why do ISA programs fail?

TerranovaTraining.com  

Page 6: Raising information security awareness

       

Steps for a successful ISA    

1.  Sense of urgency 2.  Guiding coalition 3.  Vision and strategy 4.  Empowering employees 5.  ISA training 6.  Communication 7.  Short-term wins 8.  Anchoring cultural behavior change

6  

TerranovaTraining.com  

Page 7: Raising information security awareness

ISA Training

7  

TerranovaTraining.com  

Page 8: Raising information security awareness

Did you know that…

We retain: •  10% of what we read •  20% of what we hear •  30% of what we see •  50% of what we see and

hear •  80% of what we say •  but 90% when we combine

speech with actions  

8  

TerranovaTraining.com  

Page 9: Raising information security awareness

Communication 1.  Newsletters 2.  Posters 3.  Wallpapers 4.  Awareness tips 5.  Web banners 6.  Videos 7.  Games

 

9  

TerranovaTraining.com  

Page 10: Raising information security awareness

Reinforce - Newsletters

10 TerranovaTraining.com  

Page 11: Raising information security awareness

Poster

11  

Information Security is everyone’s business!

TerranovaTraining.com  

Page 12: Raising information security awareness

Wallpaper

12  

Privacy

TerranovaTraining.com  

Page 13: Raising information security awareness

Communicate – Web banners

Rectangle 875 x 234

Rectangle - 180 x 150      

Rectangle - 120 x 60 Button - 88 x 31

13 TerranovaTraining.com  

Page 14: Raising information security awareness

Reinforce - Video

 –  Written by IT security experts –  Cutting-edge, newsworthy

information security practices –  Reminder when used on a regular

basis  

 

14 TerranovaTraining.com  

Page 15: Raising information security awareness

Reinforce– Games The Clean Desk Policy

   

 

15 TerranovaTraining.com  

Page 16: Raising information security awareness

     

Communication    

 

1. Keep it simple 2. Use metaphors, analogies, and

examples 3.  Use communication tools from

different channels 4.  Repeat, repeat, repeat 5.  Walk the talk, or lead by example

16  

TerranovaTraining.com  

Page 17: Raising information security awareness

     

Communication     •  Key factor

•  Difficult to control •  Differences

-  Culture -  Education -  Social Environment -  Values -  Etc.

17  

TerranovaTraining.com  

Page 18: Raising information security awareness

Any questions?

Thank you for your time!

Montreal + 1 (514) 489-5806 No charge 866 889-5806

[email protected]    

 

 

18 TerranovaTraining.com