“Use New s”
to build your aw areness program 2011 FISSEA Conference David Kurtz Bureau of the Public Debt
Use New s to build your aw areness program 2011 FISSEA Conference - - PowerPoint PPT Presentation
Use New s to build your aw areness program 2011 FISSEA Conference David Kurtz Bureau of the Public Debt Public Debts Program Orientation, End User class, annual DoD tutorial Not just once a year multiple conveyances
to build your aw areness program 2011 FISSEA Conference David Kurtz Bureau of the Public Debt
as an accredited expert telling us what to know
to everyone in their areas (can customize)
Reminder, followed by a review of one item from the IT Rules of Behavior
internal and external sources
etters/2008/FISSEA-June2008_Newsletter.pdf
(released the same day)
graphics (e.g., pictures of ATM skimmers)
(Take a peek at a leak; Trash talkin’; Men are better than women?; Flashing; Three heroes)
newsletter
good tips for home users
Establish relationships with
– PC Support – E-mail Admins – Helpdesk – Other Technical Gurus (including Pen Testers) – Disaster Recovery – Physical Security – Procurement & Travel Credit Cards – HR – Janitors – FISSEA (lots of ideas have been stolen here)
Computer Security Incident Response Capability (CSIRC) required by NIST
submits reports to Treasury
major breach
[An alert is sent whenever malware is discovered, so get put on the list to get this notification]
another virus victim story
share how they created passwords
strategies of coworkers, which hopefully translates into more robust passwords
selection from our Rules of Behavior
history
archive of prior publications on your intranet, and then tie current events into past situations
contact you to provide story ideas
the most interesting, and help to lead to more story ideas (including stories from home)
rewards within the text of the article (the first 100 employees who read this get a gold coin)
Missed It” covering security issues
information
.gov or .mil account with the subject line "Subscribe" to awareness@state.gov
[If there aren’t enough lessons to be learned from your own place, use someone else’s lessons!]
This is a partial list of potential newsletter article sources (but not an official endorsement):
employee awareness to current security issues
news sources (internally and externally)
with your employees (often helpful at home, too)
David Kurtz • (304) 480-7979 • david.kurtz(at)bpd.treas(dot)gov