Alejandro Susel
asusel@holos-consulting.com
Managing IT IT Security in in e-GP GP Alejandro Susel - - PowerPoint PPT Presentation
Managing IT IT Security in in e-GP GP Alejandro Susel asusel@holos-consulting.com The evolu lution of power INDUSTRIAL REVOLUTION 02 Managing IT Security in e-GP Alejandro Susel / asusel@holos-consulting.com The evolu lution of in
Alejandro Susel
asusel@holos-consulting.com
INDUSTRIAL REVOLUTION
Managing IT Security in e-GP Alejandro Susel / asusel@holos-consulting.com
02
Managing IT Security in e-GP Alejandro Susel / asusel@holos-consulting.com
03
Managing IT Security in e-GP Alejandro Susel / asusel@holos-consulting.com
04
Managing IT Security in e-GP Alejandro Susel / asusel@holos-consulting.com
05
Managing IT Security in e-GP Alejandro Susel / asusel@holos-consulting.com
06
CONFIDENTIALITY AVAILABILITY INTEGRITY INFORMATION
Managing IT Security in e-GP Alejandro Susel / asusel@holos-consulting.com
07
Its pillars: Confidentiality, Integrity and Availability… Very important!!! Objectives:
Managing IT Security in e-GP Alejandro Susel / asusel@holos-consulting.com
08
How do we protect this Great Asset?... Divide and rule!!!!!
Dimension Physical Logical People Availability Integrity Confidentiality
Concept
Managing IT Security in e-GP Alejandro Susel / asusel@holos-consulting.com
09
ASSET VULNERABILITY THREAT
Managing IT Security in e-GP Alejandro Susel / asusel@holos-consulting.com
10
whether or not an event
achievement of institutional goals and
measured according to its impact and probability of
Managing IT Security in e-GP Alejandro Susel / asusel@holos-consulting.com
relationship is reflected in the function: Risk= ƒ (Probability , Impact)
the effect of internal and external factors
11
"When someone asks me how I can describe my experience of almost forty years at sea, I simply say: placid ...... .. of course there have been winds, storms, fog .... but I never saw a shipwreck or I was shipwrecked, not even some Threat of a disastrous end " E.J. Smith, Captain of RMS Titanic, April 1912
Managing IT Security in e-GP Alejandro Susel / asusel@holos-consulting.com
12
13
Alinear la estrategia a la TOLERANCIA al riesgo de la entidad.
Assume Risk Estrategias de respuestas
REDUCE RISK
Ej: Controlar
Avoid - Transfer
EVITAR
TRANSFERIR
Managing IT Security in e-GP Alejandro Susel / asusel@holos-consulting.com
Managing IT Security in e-GP Alejandro Susel / asusel@holos-consulting.com
14
Balance the cost of implementing each option vs the associated benefits.
Managing IT Security in e-GP Alejandro Susel / asusel@holos-consulting.com
Severity Risk Strategy
15
One purchase…….One transaction One bid invitation… One transaction One bid response… One transaction
Managing IT Security in e-GP Alejandro Susel / asusel@holos-consulting.com
Our focu
16
Managing IT Security in e-GP Alejandro Susel / asusel@holos-consulting.com
17
features would be interesting. Pros and Cons of the different authentication methods
Managing IT Security in e-GP Alejandro Susel / asusel@holos-consulting.com
18
documents and managing submission and opening dates, for example)
documents (purchase orders, invoices, etc.)
Managing IT Security in e-GP Alejandro Susel / asusel@holos-consulting.com
19
submitted
Managing IT Security in e-GP Alejandro Susel / asusel@holos-consulting.com
20
Exposed and destroying value Control to Minimize risks Managing risks adds value
“No brakes – Out
“Full brakes Cannot move” Uninformed Managed Obssesed High Optimal Low Value
your users
Managing IT Security in e-GP Alejandro Susel / asusel@holos-consulting.com
21
Alejandro Susel
asusel@holos-consulting.com