Sunday, November 8, 2009

It pays to be secure - but how can we?

Today, I have spent good time in understanding the emergency response plans. Webbed through many sites as below to understand on a best response plan for pandemic alert [say H1N1]. CDC.gov & FLU.gov offered good content. Found good links on placement of portable fire extinguisher and other evacuation plans on OSHA.gov.

Just stumbled on to an interesting site called Roger's Security Blog. Blog shares interesting security information. Wonder how much time do a CSA would spend on blogging!!

Useful Links for ISM

ISACA.org-

US-CERT.gov -

WIKI.org -

Other blogs -

BCP Links -

Risk Management -


Role of Information Security Manager [ISM]

As the Information Security Manager you will take responsibility for developing, maintaining monitoring compliance of all information security policy and procedures. The successful Information Security Manager will perform security risk analysis and risk management, alongside performing security tests and managing internal audits on information security processes, controls and systems. You will take responsibility for developing and maintaining the organization's project disaster recovery and business continuity plans for information systems and monitors changes in legislation and accreditation standards that affect information security. You will provide guidance and consultation on projects for IT Security related risks and issues.

The successful Information Security Manager must be qualified to Degree level in a numerate subject (e.g. Computer Science, maths, engineering) and possess professional level Information Security Certification such as CISA/CISM/CISSP/SSCP. Will possess a minimum of 5 years experience in Information Security Management and be well versed with ISO 27001 accreditation.