Skip to content
Awareity
Awareity

The Pre-Incident Prevention Experts

Primary Navigation Menu
Menu
  • Home
  • About
    • About
    • Awareity Butterfly Effect
    • Contact
    • Support
  • Solutions
    • Information Security Training
      • Information Security Awareness Training
      • Awareness and Accountability Vault (AAV)
    • Prevention and Connecting the Dots Platform
    • First Preventers Framework
    • Prevention and GAP Assessment
    • Threat Assessment Teams
    • Climate Surveys
    • Partners in Prevention
    • Industries
      • K12
      • Higher Education
      • Diocese
      • Healthcare
      • Government
      • Corporate
  • Blog
  • Info Request

SEC Provides Lessons Learned on Policies and Porn

By: Awareity
On: July 7, 2010

 

A recent follow up article in Federal Computer Week (FCW) highlighted the porn scandal at the Securities Exchange Commission (SEC) and suggested this was a dramatic wake-up call for any government agency who doubted the need for and importance of an airtight security policy.

Good for Teri Robinson… who wrote the article!!

However…the steps Teri laid out that an agency should take to build and enforce a security policy are missing a couple of critical steps based on lessons learned and legal defensibility.  Teri suggested the following steps:

  • Review existing policy
  • Social media guidelines should be included and should be specific
  • Assign responsibility because policies are more easily adopted if someone is in charge
  • Train, train, train as threats change so do policies so regular training is needed
  • Enforce the rules
  • Ramp up resources with technology and staffing

 

I agree with Reviewing Existing Policy, Including Social Media and Enforcing the Rules.

I sort of agree with Assigning Responsibility and Train, Train, Train…

I disagree with Ramping Up Resources and Staffing Up.

Based on lessons learned, the following steps are also needed:

  • Accountability at the Individual Level
  • Documentation of Individual Acknowledgements
  • Situational Awareness and Case Studies that relate to organization specific policies
  • Incident Reporting and Incident Management Tools for Assessment/Prevention Teams

 

And based on lessons learned, more staff for enforcement and training is probably not necessary if you implement the right tools for current personnel to utilize.

Now if we could just get federal agencies to start using “tractors” instead of “old horses”…

2010-07-07
Previous Post: Improving Campus Safety – Prevention and Intervention – Part 2
Next Post: CFOs Have Responsibility To Break Down Risk Management Silos

READ MORE:

WATCH MORE:

Not seeing the form to request information? Drop us a line and we’ll send you more information!

Recent Blog Posts

Higher Ed Research facts, silos, and different actions

April 10, 2025

Community Research facts, silos, and different actions

April 10, 2025

K12 Research facts, silos, and different actions

April 3, 2025

Bias-based Decisions Can Be Overcome

December 4, 2024

First Preventers Believe…

October 18, 2024

Rick Shaw, Founder & CEO

Click here to learn more about Founder, CEO, and Prevention Specialist, Rick Shaw.

Awareity on Twitter

Tweets by Awareity

Search

Tweets by Awareity

Support

Need more information on
Support for AAV or TIPS?

Click here

What are you looking for?

Connect the Dots With Us!

 | |

Designed using Dispatch Premium. Powered by WordPress.

This site uses cookies to ensure that we give you the best experience on our website. Continuing to use this site means you are agreeing to the use of cookies.Ok