2020 SME Review: Data Security and Compliance… Whitepaper

The 'apply' button will only display to logged in users; please login to Engage to apply

< return to list
Signup Deadline: 04 Feb, 2020
Starts: 05 Feb, 2020
Ends: 10 Feb, 2020
Location: Online Opportunity

Description:

Volunteer subject matter experts are needed to review a new ISACA whitepaper before it is published. The working title of this white paper is Data Security and Compliance: Protecting information and reducing risk in an age of unlimited data. The whitepaper will communicate an information protection and compliance approach that spans the full data and sharing lifecycles across devices, applications (including SaaS), cloud and on-premises. 

The major themes of the whitepaper are currently anticipated to include:

  • Tightly coupling user identity to user data; leveraging solutions like Microsoft O365 to foster strong ties between a user and their information.
  • Embracing industry standards and best practices for access controls and identity-centric security and addressing the long-standing governance gaps related to data ownership and digital rights management.
  • Recognizing that information lifecycle management is inextricably bound to identity lifecycle management and evaluating current policies and standards against this condition to understand governance and management gaps in everything from data disposal to user account maintenance.
  • Evolving your information and data security controls to directly address the historically confirmed risks related to the IAM governance failures associated with distributed or shared ownership, unmanaged data propagation and problems with audit transparency.

Volunteer Criteria:

  • Extensive subject matter expertise in the identity life-cycle and identify & access management, federation, security and compliance
  • Knowledgeable in techniques and tools to discover, classify and protect sensitive data at rest and in transit
  • Background in Active Directory data classification, ownership and protection strategies
  • Familiarity and/or implementation experience with the following Microsoft O365 solutions in an enterprise (or similar solutions):
    • Office 365 Advanced Threat Protection (ATP);
    • Office 365 Advanced Compliance and Azure Information Protection; or
    • full Microsoft 365 E5 suite
  • Geographic area considered for diversity

Volunteer benefits:

  • Up to 5 CPE credits (max. 20 annually) in the area of Contributions to the Profession to be claimed upon successful completion.

Time commitment:

  • Anticipated Review Period: 3-7 February 2020 (subject to change).

Anticipated outcomes of the whitepaper:

  • Promote methods and solutions to address the challenges and issues of securing data and protecting information while still achieving compliance in the face of expanding and evolving legal and regulatory demands.
  • Communicate techniques to Increase collaboration and sharing to achieve business objectives.
  • Understand the implications of the digital data supply chain and obligations.
  • Provide practitioners with short, relevant use cases
  • Educate on recent regulatory and compliance failures that have yielded negative consequences (fines, penalties, etc.)
  • Highlight potential solutions within the marketplace

 

All volunteers must have an ISACA Participation Agreement on file.  To see if your agreement is active, visit your volunteer profile. Access all volunteer policies here.

Interests:

Governance
Infosecurity/cybersecurity
Knowledge and Content

Volunteers Needed:

5 (0 open slots)

Experience Required:

4 - 6 Years Industry Experience

Engagement Points:

15

CPE Credits:

5

Staff Facilitator:

Lisa Cook

ISACA's Philosophy on Volunteer Engagement

ISACA encourages the active participation of our dedicated professional community in relevant, compelling and innovative activities at both the regional and international levels. With appreciation for the talent, expertise and experience each person contributes, volunteers and staff work collaboratively to fulfill ISACA's purpose and promise, while benefiting from incredible experiences and accomplishments that instill confidence in our professional and personal growth.