Brian Ventura: Building a robust information security program leveraging the CIS Controls.
Description
Information Security is a core requirement for any organization today. Building a comprehensive and robust program is challenging. There are many competing recommendations and requirements. Vendors have numerous products to solve all problems, yet organizations are having incidents and breaches. Damages are significant. We regularly talk about risk and risk-focused security, however, argue over which risk or how much risk. How should we best proceed? Enter the CIS Controls! A focused, prioritized list of controls to reduce the most risk with limited resources. In this talk, we will discuss the CIS Controls approach and review the tools and resources available. This talk also announces a new one-day course from SANS, specifically focused on how to start with the CIS Controls. The course is designed for small organizations, including SLTT and K-12!
Speaker
Brian Ventura
Certified Instructor
SANS Institute
Brian is an Information Security Expert, Educator and Advisor. Through IANS and Cyverity, Brian provides security program advise and assessment. With more than 30 years in Information Technology and 10 years focused on Information Security, Brian brings a wealth of knowledge and experience. Brian is the Author and lead instructor for the CIS Controls courses (SANS SEC566 and SEC366(BETA)) at SANS. Brian is a member of the MS-ISAC Leadership and Mentoring Program (LMP), collaborates regularly with the Center for Internet Security (CIS), and formerly worked for the City of Portland, Oregon. When not working with Security Frameworks and programs, Brian enjoys rock crawling in his 4runner, and attending Portland Thorns and Timbers soccer games, including travelling to rival games in Seattle! Brian also attended The Evergreen State College in Olympia, before graduating from Western Governors University with his Bachelor of Science in Information Security. Brian is currently a student in the SANS Institute Master’s program.
________________________________________________________________________________
________________________________________________________________________________