december 4, 2007 integrating incident response with privacy requirements janine comstock chief...

12
December 4, 2007 Integrating Incident Response with Privacy Requirements Janine Comstock Chief Information Security Officer

Upload: scarlett-henry

Post on 02-Jan-2016

217 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: December 4, 2007 Integrating Incident Response with Privacy Requirements Janine Comstock Chief Information Security Officer

December 4, 2007

Integrating Incident Response with Privacy Requirements

Janine ComstockChief Information Security Officer

Page 2: December 4, 2007 Integrating Incident Response with Privacy Requirements Janine Comstock Chief Information Security Officer

December 4, 2007

Who we are…

Page 3: December 4, 2007 Integrating Incident Response with Privacy Requirements Janine Comstock Chief Information Security Officer

3December 4, 2007

AEGON at a glance

Roots date back to mid-1800’s*Life insurance, pensions andinvestment productsMore than 40 million customers worldwideEUR 378 billion in revenuegenerating investments(as at June 30, 2007)Market capitalization ofEUR 21.5 billion (Bloomberg; as at August 21, 2007)Approximately 30,000 employeesworldwide

* AGO and Ennia in the Netherlands; Monumental Life in US;

Scottish Equitable in UK

Page 4: December 4, 2007 Integrating Incident Response with Privacy Requirements Janine Comstock Chief Information Security Officer

4December 4, 2007

Cedar Rapids

Life Investors Insurance Company of America

1979 AEGON N.V acquired

3,500 employed

Page 5: December 4, 2007 Integrating Incident Response with Privacy Requirements Janine Comstock Chief Information Security Officer

5December 4, 2007

Multi-brand Strategy

Local knowledge. Global power.

Page 6: December 4, 2007 Integrating Incident Response with Privacy Requirements Janine Comstock Chief Information Security Officer

6December 4, 2007

International presence

Page 7: December 4, 2007 Integrating Incident Response with Privacy Requirements Janine Comstock Chief Information Security Officer

December 4, 2007

Incident Response and Privacy…

Page 8: December 4, 2007 Integrating Incident Response with Privacy Requirements Janine Comstock Chief Information Security Officer

8December 4, 2007

Why did it expand?

What were some challenges?

How did we overcome those challenges?

Silo Processes and Responders

State, Federal, and International Privacy Requirements

IT Risk Focus

Page 9: December 4, 2007 Integrating Incident Response with Privacy Requirements Janine Comstock Chief Information Security Officer

9December 4, 2007

Expansion

Mitigate Privacy Risks

Meet Expectations

Manage Expanding

Requirements

Page 10: December 4, 2007 Integrating Incident Response with Privacy Requirements Janine Comstock Chief Information Security Officer

10December 4, 2007

Challenges

Too many regulatory variables

Federated organizational model

Technology Mindset

Page 11: December 4, 2007 Integrating Incident Response with Privacy Requirements Janine Comstock Chief Information Security Officer

11December 4, 2007

Challenges Met

Key Stakeholder Involvement

Training and Awareness

Business Process Integration

Page 12: December 4, 2007 Integrating Incident Response with Privacy Requirements Janine Comstock Chief Information Security Officer

12December 4, 2007

Q & A

Thank You.