One Article Review

Accueil - L'article:
Source NoticeBored.webp NoticeBored
Identifiant 1570358
Date de publication 2020-02-17 07:40:03 (vue: 2020-02-29 05:00:23)
Titre NBlog Feb 17 - tips on security induction sessions
Texte The InfoSec 101 management presentation is coming along ... but I'll need to rein in my enthusiasm for all things yellow to refocus on the information security essentials: one of the challenges with induction training is keeping it within a tight timescale. 'Speak fast!' is not the answer because the audience probably won't take it all in, given that information security is just one of several important induction topics. It's trial by fire for them.Some of our customers will have more time for induction training than others, so my cunning plan is to make the 101 presentations flexible. Customers who have the luxury of more time can elaborate on pertinent details and interact more extensively with the inductees. Those short of time may want to skim through or skip some of the slides ... but I hope to encourage them all to make the time to introduce inductees to the information security team. Making that personal link starts the long process of getting to know each other, with benefits on both sides as time goes on. For example, it's easier for workers to email, pick up the phone or drop in on someone they have already met, whether to ask a question, raise an issue or simply say "Hi!". 'Putting faces to names' is, to me, part of 'socialising information security', making it an integral part of the corporate culture. On that point, I will be encouraging NB customers to allocate suitable information risk and security pro's to conduct the induction courses, in person. Information Security's 'customer services' or 'help desk' people and experienced trainers are the obvious choices for this job. Furthermore, if the Information Security Manager or CISO or CEO turns up, in person, to say hello and reinforce some point or other (implying a little preparation), that sends a more subtle message about the importance of information security for new workers. It's a powerful technique to cut through the avalanche of information assaulting inductees.If it is simply not practicable for the relevant InfoSec people to make the time to attend induction courses, other approaches include:Playing a brief 'talking heads' video statement by the ISM, CISO or CEO;A quick live phone call or videoconference appearance by the ISM, CISO or CEO during the session;Showing 'meet the team' biographies - mugshots and a few choice words about the pro's in the InfoSec team (which, in fact, means everyone in the organization, including those currently in the induction session!). Another cool idea is to invite inductees to come along to Information Security eve
Envoyé Oui
Condensat  another  more  on  people 101 about access after all allocate along already alternatives answer any anyway: appearance approaches are ask assaulting attend audience avalanche bad because benefits biographies both brief but call can ceo ceo;a challenges choice choices ciso come coming comments complementary conduct content cool corporate courses culture cunning currently customer customers cut desk details drop during each easier elaborate email encourage encouraging enough enthusiasm essentials: events everyone example experienced extensively faces fact fast feb fire flexible furthermore general getting given goes have heads hello help hope idea ideally ideas implying importance important include:playing including inductees induction information infosec integral interact introduce invite ism issue job just keeping know link little live long luxury make making management manager may means meet meetings memorable message met month more mugshots names nblog necessarily need new next not now obvious one open organization other others otherwise over part people person personal pertinent phone pick plan planned point potentially powerful practicable preparation presentation presentations pro probably process putting question quick raise refocus regular rein reinforce relevant risk say security sends services session session;showing sessions several short sides simply skim skip sleeve slides socialising some someone speak specific starts statement stickier subtle suggest suitable take talking team technique than that them these things those through tight time timescale tips topics trainers training trial turns two video videoconference want what whether which who will within won words workers would yellow you:
Tags
Stories
Notes
Move


L'article ne semble pas avoir été repris aprés sa publication.


L'article ne semble pas avoir été repris sur un précédent.
My email: