Home > Security Tips > Weekly Security Planner > Week 34: Mid-year status check -- What's going right?
Security Tips:
EMAIL THIS
 TIPS & NEWSLETTERS TOPICS 

WEEKLY SECURITY PLANNER

Week 34: Mid-year status check -- What's going right?


Shelley Bard, CISSP
08.04.2004
Rating: --- (out of 5)


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


When
Midway through your annual personnel review cycle.

Why
We focus so much on what is wrong with our systems and what could go wrong, we need to take some time to recognize what works and doesn't need fixing.

Strategy
What's going right? List five things the IT department is doing well, and put them in an article for the corporate newsletter or a trade publication. Did you put a process in place that has saved you time, money or headaches? Other people in positions like yours want to know!

You should record all of the things you've accomplished so far, if you haven't been doing so along the way. Can you quantify a cost savings from any particular incident? For example, did an upgrade happen on schedule and with zero downtime? If you run a help desk, you may have some statistics regarding number of customers served, problems solved, issues requiring a larger solution, trends, etc. Have people thanked your organization for anything you protected or maybe recovered? Did your systems keep running flawlessly despite rampant reports in the media of massive virus attacks?

Have an organization-wide suggestion contest for ways to use systems even better or save money. A terrific prize can be pretty motivating -- how about an extra day off to the winner?

After reflecting on everything you've done since the beginning of the year, do your duties match your job description and vice versa? Think you're just keeping things secure? At review time, think again: What have you accomplished in the following areas?

  • Time/access/project/identity/file/configuration/risk/inventory/crisis management
  • Host/system management
  • Network management and architecture
  • Budget projection and management
  • Auditing and critical analysis
  • Training/technical knowledge growth
  • Contingency planning and disaster recovery
  • Maintenance/troubleshooting
  • Regulations and laws
  • Lifecycle/systems planning
  • Asset allocation
  • Decision-making

What would you like to accomplish in your department by the end of the year? This is also a good time to adjust your perpetual calendar if you have not done so already.

More Information
Talk to your colleagues. Find your counterpart at another corporate site, or an unrelated but friendly business in the same building/campus/city and have lunch; trade stories and resources. What's working for them?

About the author
Shelley Bard, CISSP, CISM, is a senior security network engineer with Verizon Federal Network Systems (FNS). An information security professional for 17 years, Bard has briefed and written infosecurity assessments and technical reports for the White House and Department of Defense, special interest groups, industry and academia. Please e-mail any comments to securityplanner@infosecuritymag.com.

Opinions expressed in this column are those of Shelley Bard and don't necessarily reflect those of Verizon FNS.


Rate this Tip
To rate tips, you must be a member of SearchSecurity.com.
Register now to start rating these tips. Log in if you are already a member.




BROWSE BY TAG
Weekly Security Planner,   VIEW ALL TAGS

Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   



RELATED CONTENT
Weekly Security Planner
Weekly Security Planner: April
Weekly Security Planner: March
Weekly Security Planner: January
Weekly Security Planner: February
Weekly Security Planner: December
Weekly Security Planner: November
Weekly Security Planner: September
Weekly Security Planner: October
Weekly Security Planner: August
Weekly Security Planner: June

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary

DISCLAIMER: Our Tips Exchange is a forum for you to share technical advice and expertise with your peers and to learn from other enterprise IT professionals. TechTarget provides the infrastructure to facilitate this sharing of information. However, we cannot guarantee the accuracy or validity of the material submitted. You agree that your use of the Ask The Expert services and your reliance on any questions, answers, information or other materials received through this Web site is at your own risk.



Research Solutions for Network Security, Access Control and Security Threats
TechTarget Security Media
Information Security View this month\\'s issue and subscribe today.
Information Security Decisions Apply online for free conference admission.
SearchSecurity.com
HomeNewsMagazineMultimediaWhite PapersLearningAdviceTopicsEventsAbout Us

About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2003 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts