Bs 7799 pilot
Download
1 / 11

BS 7799 Pilot - PowerPoint PPT Presentation


  • 54 Views
  • Uploaded on

BS 7799 Pilot. Protecting your Information JISC Assist Workshop. Dr Mike Jinks Director, Computing Service. Information Strategy. agreed July 1999 process-based key business processes educational experience research managing external interface statutory requirements income generation.

loader
I am the owner, or an agent authorized to act on behalf of the owner, of the copyrighted work described.
capcha
Download Presentation

PowerPoint Slideshow about ' BS 7799 Pilot' - ray-petty


An Image/Link below is provided (as is) to download presentation

Download Policy: Content on the Website is provided to you AS IS for your information and personal use and may not be sold / licensed / shared on other websites without getting consent from its author.While downloading, if for some reason you are not able to download a presentation, the publisher may have deleted the file from their server.


- - - - - - - - - - - - - - - - - - - - - - - - - - E N D - - - - - - - - - - - - - - - - - - - - - - - - - -
Presentation Transcript
Bs 7799 pilot
BS 7799 Pilot

Protecting your Information

JISC Assist Workshop

Dr Mike Jinks

Director, Computing Service


Information strategy
Information Strategy

agreed July 1999

process-based

key business processes

educational experience

research

managing external interface

statutory requirements

income generation


Information strategy1

integrating and enabling processes

principles and policies

Information Strategy


Information access and security policy
Information access and security policy

covers all forms of information and media

to be developed - 1999/2000

addresses ethical and statutory requirements + business continuity planning etc

new data protection act

confidentiality


Bs 7799 pilot1
BS 7799 Pilot

University policy of openness

why?

gain experience quickly

right time

investigate an ‘emerging’ standard

outcome eg generic security policy - basis for part of local policy


Bs 7799 pilot2

what?

applicable to all forms of information

concentrated on electronic information

considered some relevance to management of official records

most work undertaken within Computing Service

BS 7799 Pilot


Bs 7799 pilot conclusions

applicable to all form of information

more mature for electronic info

useful checklists

not as bureaucratic as expected

not intending to become accredited unless necessary eg to obtain access to research data

BS 7799 Pilot - conclusions


University issues

devolved governance

departmental systems

many not actively managed

ethos

expect responsible actions

policies and guidelines

not regulations

University issues


University issues1

development of information access and security policy

many aspects

different authors and areas of expertise

education and awareness

Heads of Department

Departmental Computing Officers

University issues


University issues2

implementation and monitoring

risk assessment

connection and disconnection

collaborative research

authority of centre

local ‘CERT’ and UKERNA CERT

University issues


He community issues

expectations of other sites

level of standardisation - minimum levels?

Role and relationships with UKERNA CERT

generation and dissemination of best practice

JISC

UCISA

HE community issues


ad