Salford IT Internal Audit Services A..B..C..D..E.......GYOD
Presentation to Housing Technology conference 27th Feb 2014
Slide 24
23 Introductions Steve (PADDY) Clare Principal IT Auditor Gary
(MAX) Marland Principal IT Auditor WE ARE THE AUDITORS FROM
SALFORD
Slide 25
24 IT Audit Skills Network and application security
Vulnerability Assessments/ethical hacking Penetration testing
Windows Operating Systems/ UNIX SAP/ ORACLE Website application and
development Information Security Management ITIL IT Service
Management Prince2 - project management IDEA - data analysis
Slide 26
Salford IT Internal Audit Services A..B..C..D..E.......GYOD
Presentation to Housing Technology conference 27th Feb 2014
Slide 27
26 BYOD BUY YOUR OWN DRINK? Alphabet acronym What Why How
Slide 28
27 10 key risks area 1.Strategy/Policy/Etc 2.Ownership
3.Security 4.Anti-Virus 5.Standards 6.Data Loss 7.Social Media et
al 8.Vulnerabilities 9.Licensing 10.Portable Media Devices
Slide 29
28 1. Bureaucratic claptrap 1.Strategy 2.Policy 3.Procedures
4.Risk appetite 5.Objectives 6.Responsibilities 7.Dos and donts
8.Consequences 9.Techy understanding 10.Know your audience
30 3. Max and Paddy Inc 1.Data security 2.Responsibilities
3.Access permissions 4.Monitoring 5.Current patch 6.Up to date Anti
Virus 7.Network Access 8.Mobile device management software 9.Lost,
stolen, remote wipe 10.Back up plan
32 5. My way or the highway 1.Standards 2.Device differences
3.Processing speeds 4.Private v Business use 5.Breach of standards
6.Costs 7.Legal issues 8.Monitoring, control....Policing
Slide 34
33 6. Piggy in the Middle 1.Man in the middle attacks 2.Data
loss 3.Consequences 4.Unsecure connections
36 9. FAST and Furious 1.Licensing 2.Ownership 3.Costs 4.Types
of license 5.License monitoring and control 6.Breach 7.Consequences
illegal downloads
Slide 38
37 10. U Stupid Boy... USB Storage devices Data Loss Prevention
SD card CDs
Slide 39
38 Conclusion Get the strategy right Know the take up Manage
the security Agree ownership Agree monitoring and control
Slide 40
39 Contact Details Gary Marland, Principal IT Auditor Telephone
0161 607 6974 [email protected] Steve Clare, Principal IT
Auditor Telephone 0161 607 6976 [email protected] Salford
Internal Audit Services Salford City Council Unity House Swinton
Manchester M27 5AW www.salford.gov.uk/acs-audit
Slide 41
40 Any Questions Thoughts Observations Or Confessions