how to handle multilayered it security today

25
An effective strategy to handle multi-layered IT security today

Upload: marc-vael

Post on 10-May-2015

327 views

Category:

Technology


3 download

DESCRIPTION

A presentation for INFOSECURITY MAGAZINE on how to handle multi-layered IT security in a world in motion.

TRANSCRIPT

Page 1: How to handle multilayered IT security today

An effective strategy to handle

multi-layered IT security today

Page 2: How to handle multilayered IT security today

Membership Guidance &

Practices

Professional recognition

ISACA (www.isaca.org)

• Founded in 1969

• Non-profit, global

membership association for

IT & information systems

professionals

• +95,000 members

• 190 chapters in 75 countries

• globally accepted research,

certifications and community

collaboration

• trust in, and value from,

information systems.

• ISACA provides its

members with education,

resource sharing, advocacy,

professional networking and

a host of other benefits on a

local level.

[email protected]

ISACA (Official)

@ISACANews

Page 3: How to handle multilayered IT security today
Page 4: How to handle multilayered IT security today
Page 5: How to handle multilayered IT security today

2 views on controls

Page 6: How to handle multilayered IT security today

Information security

has become

a critical business function!

Page 7: How to handle multilayered IT security today

© 2011 ISACA

These materials are exclusive for HOGENT.

Page 8: How to handle multilayered IT security today
Page 9: How to handle multilayered IT security today
Page 10: How to handle multilayered IT security today
Page 11: How to handle multilayered IT security today
Page 12: How to handle multilayered IT security today
Page 13: How to handle multilayered IT security today

IT risk always exists! (whether or not it is

detected / recognised by the organisation).

Page 14: How to handle multilayered IT security today

ISO 27005

Page 15: How to handle multilayered IT security today
Page 16: How to handle multilayered IT security today
Page 17: How to handle multilayered IT security today

systemic approach

Linear versus Circular thinking:

Page 18: How to handle multilayered IT security today

Your solution

is as strong …

… as its weakest link

Page 19: How to handle multilayered IT security today

“I don’t care how many millions of

dollars you spend on security

technology. If you don’t have

people trained properly, I’m going

to get in if I want to get in.”

Susie Thunder, Cyberpunk

Page 20: How to handle multilayered IT security today

20

Page 21: How to handle multilayered IT security today

1. Information Security Governance

2. Information Risk Management

3. Information Security Program Development

4. Information Security Program Management

5. Incident Management & Response

Page 22: How to handle multilayered IT security today
Page 23: How to handle multilayered IT security today
Page 24: How to handle multilayered IT security today

Nov

emb

er

201

1

24 ISACA

Page 25: How to handle multilayered IT security today

Career Summary Expertise Summary Education/ Certification

Marc Vael

• Chief Audit Executive (Smals)

• Managing Director (Valuendo)

• Director / CISO (KPMG Belgium)

• Sr Mgr (Arthur Andersen)

• Quality Control (IBM)

• IT Audit & Assurance

• Information Security

Management

• Business Continuity /

Disaster Recovery

• Privacy & Data

Protection

• Risk Management

• IT Governance

• Master in Applied Economics (UA)

• Master in Information Mgt

(Uhasselt)

• Master in IT (KUL)

• CISA (ISACA)

• CISM (ISACA)

• CISSP (ISC2)

• CGEIT (ISACA)

• ITIL Service Mgr (BCS)

• Prince2 (BCS)

• Board Effectiveness (GUBERNA)

Involvement

• Member Flemish Privacy Commission

• Director at ISACA International

• Vice President ISACA Belgium

• Chairman Cloud Computing Task Force ISACA International

• Visiting lecturer at Antwerp Mgt School, Solvay Business School and other universities

[email protected]

http://www.linkedin.com/in/marcvael

@marcvael