TEXT SIZE Small Medium Large

 IS&P SIG Leadership

SIG Chair
Peter McDonald, Symantec
301-681-9012
peter_mcdonald@symantec.com

SIG Vice Chair
Jim Graham,
SecureIT
703-230-0734
jgraham@secureit.com

Programs Chair
Rob Montgomery,
Argosy Omnimedia
301-816-9373, ext. 17
rob.montgomery@argoc.com

Communications Chair
Myisha Frazier-McElveen
, Truestone
703-766-6203
myisha.frazier-mcelveen@truestonefed.com

Risk Management
Chris Feudo, Edgewater IT
Chris.Feudo@edgewaterit.com

Privacy and Data Protection
Peter Rath, Tantus Technologies
703-624-2796
prath@tantustech.com

Health IT Security & Privacy
Tom Evans, KMK Systems
703-624-2796
evanst@kmksystems.com

Regulations and Best Practices
Patricia Titus,
Unisys Corporation
703-439-5406
patricia.titus@unisys.com

Information Security & Privacy SIG 

 About the Information Security & Privacy SIG

About the SIG 

The Information Security and Privacy Special Interest Group (IS&P SIG) tackles the challenges and emerging threats and issues associated with protecting Federal Government information systems and the privacy of U.S. Citizens.  An active Government Advisory Panel consisting of executive security and privacy professionals from the Federal Government identifies their challenges and issues and provides advice on our plans, programs and products.  Our goal is to provide leadership, increase knowledge and present innovative ideas to enable our Government counterparts to support their missions, counter threats, and achieve compliance.

Focus Areas for 2010

  • Cloud Computing security and privacy enablers
  • Privacy and data protection
  • Health IT security and privacy
  • Comprehensive National Cybersecurity Initiative (CNCI)
  • Security & Privacy Regulatory and Practice Updates (FISMA, NIST, HIPAA, etc)
  • Risk management and security performance measurement

Meetings, Networking and Events

The SIG meets monthly on the 2nd Wednesday of each month from 10am - Noon.  Meetings are held in the 6th floor conference room of the IAC Offices in Fairfax, VA.  You can register to attend in person or participate via the Teleconference number provided.  Check the IAC calendar for meeting details or contact the SIG chair or vice chair.

Programs or events hosted by the Information Security and Privacy SIG are posted to the calendar and are generally conducted along with SIG regulary monthly meetings.   The IAC calendar and email messages will contain the details.   We also generally provide these events in person as well as broadcast them live via webinar.

Get Involved 

We are currently seeking individuals with interest in participating in the following activities with the goal of organizing an event or other activity over the course of this year:

  • Cloud Computing:  Participate in ACT/IAC-wide program representing security and privacy
  • Comprehensive National Cybersecurity Initiative (CNCI): Update and Plans
  • Health IT security and privacy: What works to meet new security and privacy rules
  • Social Networking:  Using it safely and securely to support improved government collaboration
  • Security Performance Measurement: CyberScope, OMB’s new FISMA reporting and management solution 
  • FEA Security and Privacy Profile: Participate in a group responsible for review and comment on a new draft

If you have a particular interest area and care to volunteer your time and energy, contact the chair or vice chair to get involved.

 

Membership

Membership in this SIG is open to anyone in the ACT-IAC membership.  Contact the chair or vice-chair for more information.

Visit the IS&P SIG on Facebook: http://www.facebook.com/group.php?gid=63260463593

 IS&P SIG Webinars

 

Past Programs and Events

FISMA "NextGen" – March 22, 2010
The federal government is in a significant upgrade to address cybersecurity with heightened awareness on hackers penetrating their networks, fueled attacks from nation states, and data loss and leaks.  How will the government respond to these issues in the next generation FISMA guidance? What will be the impacts to the federal government, private sector and those currently doing business with the federal government? Follow the panel of experts consisting of:
Dr. Ron Ross, Senior Computer Scientist and Information Security Researcher, National Institute of Standards and Technology (NIST)
Mr. Dan Philpott, Editor, FISMApedia.com and Federal Information Security Architect, Tantus Technologies
Ms. Patricia Titus, Chief Information Security Officer, Unisys Corporation
as they delve into the Next Generation FISMA. 
Click here to access the FISMA NextGen webinar – 1 hr 57 min 12 sec: 20100322FISMANextGen.html

Breach Pre-Detection and Prevention - Telltale Signs, Tools and More – January 13, 2010
Security breaches against federal IT assets and data are becoming more complex, attempts are becoming more numerous, and federal agencies are being even more The panel consists of:
Michael F. Brown, Chief Information Security Office and Director, Office of Information Systems Security (ISS), at the Federal Aviation Administration (FAA)
Harold Byun, DLP Product Management, Symantec
Click here to access the Breach Pre-Detection and Prevention webinar – 1 hr 11 min 53 sec: 20100113AnatomyOfABreach.html

Consensus Audit Guidelines (CAG) Program - June 10, 2009 - A comprehensive discussion on the security and privacy considerations associated with the Consensus Audit Guidelines (CAG). John M. Gilligan, President of the Gilligan Group, Inc.,describes the background, content, and planned implementation of the 20 Critical Controls for Effective Cyber Defense: Consensus Audit Guidelines (CAG).

Cyber Security and Privacy Impacts of the American Recovery and Reinvestment (Economic Stimulus) Act of 2009 - March 11, 2009 - Barbara Ryland discussed the healthcare and HIPAA Security and Privacy regulatory impacts of the legislation. Robin Campbell discussed the specific implications of legislation as it pertains to security breaches and the applicable state regulations know as "breach notification" laws.Brian Flood presented his view of the various components of the act, the funding allocations, and agencies application of this funding with a focus on information security and privacy.

Cloud Computing Cyber Security and Privacy - May 13, 2009 -   A panel consisting of Kevin Skapinetz, IBM Internet Security Systems, Laurin H. Mills, D.C. Office Managing Partner, Nixon Peabody, LLP, Peter Mell, Senior Computer Scientist, NIST, and moderated by Jim Graham, SecureIT discussed the challenges and the real world issues impacting users and service providers to the Federal government market.

Integrating & Automating Security Functions through SCAP - July 8, 2009 -Webinar presented a discussion on Integrating & Automating Security Functions through SCAP at the Department of Energy (DOE) . Samara Moore, IT and Cyber Security Program Manager for the Office of the Under Secretary for the Department of Energy (DOE) and Ari Miller, Senior Information Security Consultant with DoE.

 Calendar

< July, 2010 >
 Sun  Mon  Tue  Wed  Thu  Fri  Sat 
 27 
 28 
 29 
 30 
 1 
 2 
 3 
 4 
 5 
 6 
 7 
 8 
 9 
 10 
 11 
 12 
 13 
 14 
  IS&P Program: Federated Architecture Security and Privacy
 15 
 16 
 17 
 18 
 19 
 20 
 21 
 22 
 23 
 24 
 25 
 26 
 27 
 28 
 29 
 30 
 31 

 IS&P Resources

USDA Identity Credential and Access Managment - Owen Unangst-USDA - 07-14-10.pdf
Claims Based Federation - Patrick Harding-Ping Identity - 07-14-10.pdf
Federated Security in the cancer Biomedical Informatics Grid-caBIG - George Komatsoulis-NCI-NIH - 07-14-10.pdf
- Presentations from the 7/14/10 IS&P SIG Cost Effective Data Sharing through Federated Architectures

Next Generation Risk Management - Ron Ross - NIST - 03-22-10.pdf
Near Real-Time Risk Management -Dan Philpott - Tantus Technologies - 03-22-10.pdf
Next Gen FISMA Private Sector Impacts - Patti Titus - Unisys - 03-22-10.pdf
- Presentations from the 3/22 IS&P SIG Next-Gen FISMA Meeting

Best Practices for Use of At-Home Agents in a Federal Contact Center - ISP SIG - 01-22-10.pdf
- IS&P SIG White Paper

Prevent Security Breaches by Protecting Information Proactively - Harold Byun-Symantec - 01-13-10.pdf
- PDF of the presentation from the January 13, 2010 IS&P SIG Meeting

Security WorkForce Talent Challenges - Wayne Jones - NNSA-DoE - 11-10-09.pdf
- PDF of the presentation given by Wayne Jones, NNSA-DOE

Integrating and Automating Security Functions through SCAP - Samara Moore and Ari Miller - Department of Energy - 07-08-09.pdf
- PDF of the presentation given by Samara Moore & Ari Miller, U.S. Department of Energy, at the 07/08/09 IS&P SIG meeting.

Improving FISMA Effectiveness and Efficiency Through the SCAP - ISP SIG - 01-28-08.pdf
- This White Paper addresses the challenges facing every federal agency given the cost and complexity of achieving the Federal Information Security Management Act (FISMA) security readiness and maintaining this readiness 24/7/365.

Legal Issues Associated with Cloud Computing - Laurin Mills - Nixon Peabody LLP - 05-13-09.pdf
Effectively and Securely Using the Cloud Computing Paradigm - Peter Mell-Tim Grance - NIST - 04-28-09.pdf
Cloud Computing Security and Privacy Considerations for Federal - ISP SIG - 05-13-09.pdf

- Presentations from the May 13, 2009 IS&P SIG meeting on Cloud Computing Security & Privacy

 Document Library

2010ProgramsSchedule r2.xls2010ProgramsSchedule r2Jim Graham

 Announcements

There are currently no active announcements.

 IS&P SIG Discussion Board

There are no items to show in this view of the "IS&P SIG Discussion Board" discussion board.

 Quick Links

There are currently no favorite links to display.
ACT-IAC Headquarters - 3040 Williams Drive, Suite 610, Fairfax, VA 22031 - Tel: 703.208.4800 - Fax: 703.208.4805 - Email: ACT-IAC@actgov.org
©2010 American Council for Technology and Industry Advisory Council