8
Networks ∙ Services ∙ People www.geant.org Alessandra Scicchitano TF-CSIRT meeting – Tallinn, Estonia SIG-ISM Update 24 th September 2015 SIG-ISM Secretary PDO, GEANT

Networks ∙ Services ∙ People Alessandra Scicchitano TF-CSIRT meeting – Tallinn, Estonia SIG-ISM Update 24 th September 2015 SIG-ISM Secretary

Embed Size (px)

Citation preview

Page 1: Networks ∙ Services ∙ People  Alessandra Scicchitano TF-CSIRT meeting – Tallinn, Estonia SIG-ISM Update 24 th September 2015 SIG-ISM Secretary

Networks Services People ∙ ∙ www.geant.org

Alessandra Scicchitano

TF-CSIRT meeting – Tallinn, Estonia

SIG-ISM Update

24th September 2015

SIG-ISM SecretaryPDO, GEANT

Page 2: Networks ∙ Services ∙ People  Alessandra Scicchitano TF-CSIRT meeting – Tallinn, Estonia SIG-ISM Update 24 th September 2015 SIG-ISM Secretary

Networks Services People ∙ ∙ www.geant.org

2

• Establish a community of security management professionals• Develop, maintain and promote trust framework between

NRENs based on international standards• Promote the use of international security standards and share

best practices for security management within NRENs• Discuss and promote issues of information security

management of particular interest to NRENs

[https://www.terena.org/activities/ism/SIG-ISM%20Charter.pdf]

The Objectives

Page 3: Networks ∙ Services ∙ People  Alessandra Scicchitano TF-CSIRT meeting – Tallinn, Estonia SIG-ISM Update 24 th September 2015 SIG-ISM Secretary

Networks Services People ∙ ∙ www.geant.org

3

• Alf Moens (SURF) - Chair• James Davis (JISC)• Rolf Sture Normann (UNINETT) • Wayne Routly (GÉANT)

I’m sure you know all of them

The Steering Committee

Page 4: Networks ∙ Services ∙ People  Alessandra Scicchitano TF-CSIRT meeting – Tallinn, Estonia SIG-ISM Update 24 th September 2015 SIG-ISM Secretary

Networks Services People ∙ ∙ www.geant.org

4

The SIG is working at the moment on:

• A White Paper on Information Security Management• A Best practice on Risk assessment

Both documents are based on the feedback collected during the last meeting in London.

[https://www.terena.org/activities/ism/ws2/]

Current focus

Page 5: Networks ∙ Services ∙ People  Alessandra Scicchitano TF-CSIRT meeting – Tallinn, Estonia SIG-ISM Update 24 th September 2015 SIG-ISM Secretary

Networks Services People ∙ ∙ www.geant.org

5

The focus of the white paper is mainly on:

• How to implement security management for an NREN• References to existing/running implementations

Target Audience: Security professionals and senior information management

It can be used as a starting point for setting up security management in an organisation.

Information Security Management

Page 6: Networks ∙ Services ∙ People  Alessandra Scicchitano TF-CSIRT meeting – Tallinn, Estonia SIG-ISM Update 24 th September 2015 SIG-ISM Secretary

Networks Services People ∙ ∙ www.geant.org

6

The focus of the best practice is mainly on:• Main risks for an NREN• Practical Guide for conducting risk assessment• Reference to common used risk assessment methods

Risk Management

Page 7: Networks ∙ Services ∙ People  Alessandra Scicchitano TF-CSIRT meeting – Tallinn, Estonia SIG-ISM Update 24 th September 2015 SIG-ISM Secretary

Networks Services People ∙ ∙ www.geant.org

7

• “Wise Information Security for collaborating E-infrastructures”• Joint effort of SIG-ISM and SCI• Sponsored by EGI, EUDAT, GEANT, HBP and PRACE• https://www.terena.org/activities/ism/wise-ws/

Be WISE!!!!

1st WISE - 20th/22nd October 2015Barcelona

Page 8: Networks ∙ Services ∙ People  Alessandra Scicchitano TF-CSIRT meeting – Tallinn, Estonia SIG-ISM Update 24 th September 2015 SIG-ISM Secretary

Networks Services People ∙ ∙ www.geant.org

8

Thank you and any questions

Networks Services People ∙ ∙www.geant.org

[email protected]