POLICY UNDERSTANDING WITH COMMUNICATION AND TRAINING THE POLICY - - PowerPoint PPT Presentation

policy understanding with
SMART_READER_LITE
LIVE PREVIEW

POLICY UNDERSTANDING WITH COMMUNICATION AND TRAINING THE POLICY - - PowerPoint PPT Presentation

BEYOND THE SHELF - ENSURING POLICY UNDERSTANDING WITH COMMUNICATION AND TRAINING THE POLICY MANAGEMENT ILLUSTRATED SERIES PART THREE SPEAKERS Michael Rasmussen, GRC Research Analyst and Pundit, GRC 20/20 and OCEG Fellow Robert OBrien,


slide-1
SLIDE 1

BEYOND THE SHELF - ENSURING POLICY UNDERSTANDING WITH COMMUNICATION AND TRAINING

THE POLICY MANAGEMENT ILLUSTRATED SERIES – PART THREE

99/99/99

SPEAKERS

Michael Rasmussen, GRC Research Analyst and Pundit, GRC 20/20 and OCEG Fellow Robert O’Brien, CEO, MetaCompliance Moderator: Carole Switzer, Co-Founder and President, OCEG

slide-2
SLIDE 2

2

Housekeeping

■ Download slides at http://www.oceg.org/event/beyond-the-shelf-ensuring-policy-understanding- with-communication-and-training ■ Answer all 3 polls ■ Certificates of completion (only for OCEG All Access Pass holders) ■ Evaluation survey at the close of the webinar ■ Find the recording on the Resource tab of the OCEG site, under Archived Webinars

slide-3
SLIDE 3

Learning Objectives

3

■ Define the key parts of a policy communication plan ■ Outline methods for tracking and delivering training and attestations ■ Identify ways to both push and pull employee access to policies and related materials

slide-4
SLIDE 4

a. Yes, I have an All Access Pass and I would like to receive a Certificate of Completion for this event b. No, I do not have an All Access Pass but I would like to get one and receive CPE credit for this and future webcasts I attend c. No, I do not have an All Access Pass and I don’t want to buy one at this time (so I won’t get CPE credit for this event)

Poll 1

Do you have an OCEG All Access Pass (a paid membership) and would you like to receive CPE credit for this event?

4

slide-5
SLIDE 5

5

Download at Oceg.org/resources

slide-6
SLIDE 6

■ Communication and training about policies is essential but do all policies need the same level

  • f attention?

■ If not, how do you develop an appropriate communication plan that takes differences in need into account?

6

Discussion Questions

slide-7
SLIDE 7

7

Start with the Policy Goal in Mind

■ Consider the reason for the policy ■ Assess the legal implications of non- compliance with the policy ■ Determine risk significance of the policy ■ Establish specific distribution, training and attestation needs for each policy

slide-8
SLIDE 8

a. Yes for the entity b. Yes but only within departments c. No but planning to do so d. No e. I don’t know

Poll 2

Does your organization have an established policy communication team or other centralized oversight for policy management?

8

slide-9
SLIDE 9

■ What are some of the questions you need to ask as you develop your plan? ■ What factors do you need to consider and directly address?

9

Discussion Questions

slide-10
SLIDE 10

10

slide-11
SLIDE 11

11

slide-12
SLIDE 12

12

slide-13
SLIDE 13

■ What are some of the factors that go into deciding whether to just distribute a policy, or to distribute and require certification or attestation

  • f receipt and understanding, or to actually

require training on a policy? ■ And who should make these decisions?

13

Discussion Questions

slide-14
SLIDE 14

■ In some organizations, new employees are trained on key policies that affect them during the first few days they are on the job and perhaps annually thereafter. Is this effective or is there a better way to determine the schedule, frequency and repetition of policy training?

14

Discussion Questions

slide-15
SLIDE 15

■ What should be included in your policy program to make it useful in a defense situation but also to make it measurable and accountable internally?

15

Discussion Questions

slide-16
SLIDE 16

16

slide-17
SLIDE 17

■ Many organizations tackle policy communication and training in a variety of silos from learning management systems, policy portals, e-mail, to Intranet sites. What is the value of a centralized technology architecture/solution to manage, document, and monitor the policy communication and training process?

17

Discussion Questions

slide-18
SLIDE 18
  • a. Yes for the entire entity
  • b. Yes but only in some areas
  • c. No we adapt other technology or use spreadsheets
  • d. I don’t know

Poll 3

Does your organization use technology purpose built for policy management?

18

slide-19
SLIDE 19

19

slide-20
SLIDE 20

Policy Management and Training

slide-21
SLIDE 21
slide-22
SLIDE 22
slide-23
SLIDE 23
slide-24
SLIDE 24
slide-25
SLIDE 25
slide-26
SLIDE 26
slide-27
SLIDE 27
slide-28
SLIDE 28
slide-29
SLIDE 29
slide-30
SLIDE 30
slide-31
SLIDE 31
slide-32
SLIDE 32

32

Questions?