Angie M. Santiago President, CPAC Triangle Chapter

Size: px
Start display at page:

Download "Angie M. Santiago President, CPAC Triangle Chapter"

Transcription

1 Public Policy & Regulatory Trends in Business Continuity Management Title IX - A Primer Angie M. Santiago President, CPAC Triangle Chapter 1

2 Agenda PL History Governance structure Major Stakeholders Standards under consideration Concerns Opportunities 2

3 Title IX History January 2004 ANSI HSSP Workshop Discuss the feasibility and desirability of recommending to the 9/11 Commission a high level national standard on emergency management and business continuity Focus on voluntary consensus standard Would not require business to apply specific system or approach 3

4 History Cont d ANSI HSSP recommendation to 9/11 Commission As an ANSI standard NFPA is recognized as a framework for private sector preparedness and urges DHS to promote its adoption. Reference Intelligence Reform & Terrorism Prevention Act of 2004 PL Private Sector Preparedness 4

5 Title IX is Born Implementation Recommendation of 9/11 Commission Act of 2007 Public Law Signed into Law August 3, page bill 7 pages directly affects us 523 Guidance & Recommendations 524 Voluntary Private Sector Preparedness Accreditation & Certification Program Implemented by February

6 PL Title I: Homeland Security Grants Title II: EM Performance Grants EOC construction Title III: Communications Interoperability Title IV: Strengthening ICS Capability inventory, credentialing, typing Title V: Info Sharing & Intel Improvements Title VI: Congressional Oversight of V Declassification Board 6

7 PL Travel VII: Terrorist Travel Border security, human smuggling Title VIII: Privacy & Civil Liberties Title IX: Private Sector Preparedness Title X: Critical Infrastructure Security Ntl. Asset database, levees Title XI: WMD Defenses Bio-surveillance, nuclear, radiological 7

8 Private Sector Preparedness Council Michael Chertoff, Secretary, DHS R. David Paulison, Administrator FEMA Jay Cohen, Under Sec. Science & Technology Directorate Al Martinez Fonts Asst. Sec Private Sector Office Robert Stephan Asst. Sec Office of Infrastructure Protection 8

9 523 Identify best practices to assist or foster action by the private sector in assist or foster action by the private sector in (1) identifying potential hazards and assessing risks and impacts; (2) mitigating the impact of a wide variety of hazards, including weapons of mass destruction; (3) managing necessary emergency preparedness and response resources; (4) developing mutual aid agreements; (5) developing and maintaining emergency preparedness and response plans, and associated operational procedures; (6) developing and conducting training and exercises to support and evaluate emergency preparedness and response plans and operational procedures; (7) developing and conducting training programs for security guards to implement emergency preparedness and response plans and operations procedures; and (8) developing procedures to respond to requests for information from the media or the public. 9

10 524 Provides a method to independently certify the emergency preparedness of private sector organizations. Includes disaster/emergency management and business continuity programs. Certify businesses and other private sector entities, not individual professionals. All-hazards preparedness and not on terrorism. The program is voluntary. Key stakeholders are invited to participate in the development of the program. The federal government will not run the certification program. One or more preparedness standards can be designated. NFPA 1600 is referenced as one example. Existing industry efforts, certifications and reporting in this area will be recognized and integrated. Special consideration will be made for small businesses. Proprietary and confidential information is to be protected. 10

11 ANSI HSSP Plenary Session Oct 2, US Chamber of Commerce Well attended by: Insurance, Utilities, Consulting Firms, Petroleum, Transportation, Telecommunications, Financial, Postal, Mental Health, IBHS, ACP, CPAC, NFPA, CSA, Building Security Council, DRII, FSTC Academia, Healthcare, Gartner, DHS, HSI, FEMA, US Senate, ANSI, 911 Commission, NIST 11

12 12

13 Stakeholders - Public Agency DHS ANSI AQ Private Sector Voluntary Preparedness Certification Program Establish a common set of criteria in disaster and emergency management, and business continuity Designate an organizational body to act as the accrediting body DHS signs agreement with ANSI AQ National Accreditation Board (ANAB) National Accreditation Board (ANAB) - Oversees development, implementation, management of program Accrediting third parties to carry out certification of private sector entities DHS Private Sector Preparedness Council Select program standards Define and promote business case to participate Update Congress 13

14 Target Common Criteria 3. Identify hazards and threats including cyber and human security...insider threats 14

15 The Sloan Report Framework for Voluntary Preparedness ASIS International Association for security professionals Disaster Recovery Institute International Administers industry s educational and certification programs worldwide National Fire Protection Association Standards development organization with over 300 codes and standards Risk and Insurance Management Society Professional disciple that protects physical, financial, and human resources 15

16 Sloan Report Findings This work highlights the commonality of the different perspectives and approaches of these disciplines and their established standards, guidelines and best practices. Depending on the structure of businesses and organizations in the private sector, many are already pursuing elements or complete programs in preparedness based on the viewpoint of one or more of these disciplines. These businesses and organizations need the freedom to develop mature preparedness programs and systems building on their existing models Crosswalk of business continuity principles, practices, and standards currently utilized in the private sector. 16

17 17

18 ASIS International July 2008 ASIS, files an ANSI Project Initiation Notification System (PINS) Form With the intention to develop a business continuity management system standard Partners with BSI Management - Americas Integrate BS25999 into ASIS ISO / TC

19 ASIS International Oct Hosts Stakeholder Meeting Purpose: Discuss ASIS intent to develop a new BCM standard on BS25999 platform Attendees: ASIS International; Association of Contingency Planners; Avalution Consulting; Business Continuity Institute; BSI Management Systems America; Carrier Information Systems; Computer Sciences Corporation; Contingency Planning Association of the Carolinas; Continuity Information Support Services; Danalie Partners; Disaster Recovery Institute International; Emergency Management & Safety Solutions; McDermott Inc.; Navigant Consulting; North River Solutions. Attendees unanimously expressed the need for a new standard that is auditable and scalable Most attendees expressed concerns that a new standard would conflict with NFPA

20 ASIS ISO / TC

21 DRI International Contributed to the Framework for Voluntary Preparedness Sponsored ANSI HSSP Title IX Plenary Session Participated in Plenary Session Panel on Sloan Report Raised concerns of potential conflicts to ASIS BCM standard Principal attendee and leader at ASIS Oct 3 stakeholder meeting Expanding programs internationally Member of NFPA 1600 Technical Panel Member of ASIS BCM Technical Panel 21

22 NFPA 1600 Revising 2007 version 2010 version Publish draft late 2009 Currently recognized as an ANSI standard and quoted by Title IX framers It is not an implementation guide! Specifies essential elements for effective business continuity and emergency management 22

23 NFPA 2010 Addition of management system guidelines Self evaluation checklists Late 2008 open public comments Spring 2009 public comments meeting Publish by late

24 524 Concerns Provides a method to independently certify the emergency preparedness of private sector organizations. Consulting firms building certification practices Includes disaster/emergency management and business continuity programs. Also includes DHS missions with an emphasis on security Certify businesses and other private sector entities, not individual professionals. Private sector is not defined. Business continuity, enterprise risk management, compliance, and security professionals are concerned that the third party certifiers' will not be sufficiently qualified to determine the organizations' risk management decisions. All-hazards preparedness and not on terrorism. The target criteria published by HSI specifies cyber security and insider threats as part of the vulnerability assessment. The program is voluntary. True. Private sector cannot be required to participate even to bid on government contracts. Can be considered de facto standard and recommended by risk managers or legal community to reduce liability. Third party certification is costly. No business case. 24

25 524 Concerns The federal government will not run the certification program. ANAB has been designated One or more preparedness standards can be designated. NFPA 1600 is referenced as one example. Existing industry efforts, certifications and reporting in this area will be recognized and integrated. Special consideration will be made for small businesses. Institute for Business and Home Safety has not been invited to participate, nor has the US Chamber of Commerce or SBA Proprietary and confidential information is to be protected. Of most concern to companies who choose to participate, pay for third party evaluation, but do not feel compelled to submit results. It is voluntary after all 25

26 Resources Document PL Title IX Law FEMA Fact Sheets DRII The Sloan Report Continuity Central ASIS vs. DRII ASIS International Homeland Security Institute s Target Criteria ANSI Documents Links INALREPORT.pdf Management-System-Standards.pdf _Voluntary_Private_Sector_Preparedness.pdf x?rootfolder=%2fsites%2fapdl%2fdocuments%2fstandards%2 0Activities%2fHomeland%20Security%20Standards%20Panel&V iew=%7b21c60355%2dab17%2d4cd7%2da090%2dbabeec5 26 D7C60%7d

27 Resources Cont d Document NFPA Link PA1600.pdf 27

28 Opportunities CPAC BCM Technical Committees NFPA ASIS BCM Title IX Voluntary Private Sector Preparedness Accreditation Certification Awareness Self Assessment / Reporting 28

29 Upcoming Events November December 10 Cary, NC CPAC Annual Symposium Charlotte, NC Elections!!!!! Triad - Triangle Chapter Meeting Install new officers! 29

30 Contact Angie M. Santiago BCM Standards Committee No sales calls please! 30

ABA Homeland Security Law Institute Panel. Two Ounces of Prevention: The SAFETY Act and PS Prep Voluntary Programs to Mitigate Liability

ABA Homeland Security Law Institute Panel. Two Ounces of Prevention: The SAFETY Act and PS Prep Voluntary Programs to Mitigate Liability ABA Homeland Security Law Institute Panel Two Ounces of Prevention: The SAFETY Act and PS Prep Voluntary Programs to Mitigate Liability March 23, 2012 Remarks of Stephen Amitay, Counsel to ASIS International

More information

On the New Voluntary Corporate Preparedness Accreditation and Certification Program

On the New Voluntary Corporate Preparedness Accreditation and Certification Program On the New Voluntary Corporate Preparedness Accreditation and Certification Program Dr. Matt Statler International Center for Enterprise Preparedness New York University (NYU) Overview A new business preparedness

More information

Business Continuity Standards A Primer

Business Continuity Standards A Primer INTELLIGENT NOTIFICATION Alphabet Soup: Making Sense of BC/DR Standards Part 1: Business Continuity Standards A Primer Why all the attention now? One of the hottest topics in BC/DR these days is standards.

More information

Subject Area 9 Public Relations and Crisis Coordination

Subject Area 9 Public Relations and Crisis Coordination DRII/BCI Professional Practice Narrative: Develop, coordinate, evaluate, and exercise plans to communicate with internal stakeholders (employees, corporate management, etc.) external stakeholders (customers,

More information

Is Business Continuity Certification Right for Your Organization?

Is Business Continuity Certification Right for Your Organization? 2008-2013 AVALUTION CONSULTING, LLC ALL RIGHTS RESERVED i This white paper analyzes the business case for pursuing organizational business continuity certification, including what it takes to complete

More information

Workshop on BCP Standards and ISO Auditing:

Workshop on BCP Standards and ISO Auditing: Workshop on BCP Standards and ISO Auditing: An Introduction to the PS Prep Program April 2011 Donald Byrne dbyrne@grcsllc.com 603.714.4206 (Cell) Copyright 2011 All Rights Reserved Session Goals And Topics

More information

ANSI Healthcare Informatics Board (HISB)

ANSI Healthcare Informatics Board (HISB) ANSI Healthcare Informatics Board (HISB) Update to the National Committee on Vital and Health Statistics (NCVHS) Presented by Robert L. Owens June 30, 2005 1 ANSI and the Voluntary Consensus Standards

More information

GAO DEPARTMENT OF HOMELAND SECURITY. Actions Taken Toward Management Integration, but a Comprehensive Strategy Is Still Needed

GAO DEPARTMENT OF HOMELAND SECURITY. Actions Taken Toward Management Integration, but a Comprehensive Strategy Is Still Needed GAO November 2009 United States Government Accountability Office Report to the Subcommittee on Oversight of Government Management, the Federal Workforce, and the District of Columbia, Committee on Homeland

More information

JOINT EXPLANATORY STATEMENT TO ACCOMPANY THE CYBERSECURITY ACT OF 2015

JOINT EXPLANATORY STATEMENT TO ACCOMPANY THE CYBERSECURITY ACT OF 2015 JOINT EXPLANATORY STATEMENT TO ACCOMPANY THE CYBERSECURITY ACT OF 2015 The following consists of the joint explanatory statement to accompany the Cybersecurity Act of 2015. This joint explanatory statement

More information

Cybersecurity Audit Why are we still Vulnerable? November 30, 2015

Cybersecurity Audit Why are we still Vulnerable? November 30, 2015 Cybersecurity Audit Why are we still Vulnerable? November 30, 2015 John R. Robles, CISA, CISM, CRISC www.johnrrobles.com jrobles@coqui.net 787-647-3961 John R. Robles- 787-647-3961 1 9/11-2001 The event

More information

TEXAS HOMELAND SECURITY STRATEGIC PLAN 2015-2020: PRIORITY ACTIONS

TEXAS HOMELAND SECURITY STRATEGIC PLAN 2015-2020: PRIORITY ACTIONS TEXAS HOMELAND SECURITY STRATEGIC PLAN 2015-2020: PRIORITY ACTIONS INTRODUCTION The purpose of this document is to list the aligned with each in the Texas Homeland Security Strategic Plan 2015-2020 (THSSP).

More information

Plan Development Getting from Principles to Paper

Plan Development Getting from Principles to Paper Plan Development Getting from Principles to Paper March 22, 2015 Table of Contents / Agenda Goals of the workshop Overview of relevant standards Industry standards Government regulations Company standards

More information

DEPARMTMENT OF HOMELAND SECURITY AUTHORIZATION BILL FOR FY 2008 AND FY 2009 SECTION-BY-SECTION

DEPARMTMENT OF HOMELAND SECURITY AUTHORIZATION BILL FOR FY 2008 AND FY 2009 SECTION-BY-SECTION DEPARMTMENT OF HOMELAND SECURITY AUTHORIZATION BILL FOR FY 2008 AND FY 2009 SECTION-BY-SECTION TITLE I: AUTHORIZATION OF APPROPRIATIONS Sec. 101. Authorization of Appropriations. This section authorizes

More information

Teaching an Overview of Homeland Security

Teaching an Overview of Homeland Security Teaching an Overview of Homeland Security Stan Supinski, NPS/CHDS Bert Tussing, US Army War College 1 Overview ~ What Should Homeland Security Leaders be Talking About.. What Should be in an Overview Course?

More information

How To Be A Cabinet Member Of The Interior Department

How To Be A Cabinet Member Of The Interior Department Washington, DC 20528 Phone, 202 282 8000. Internet, www.dhs.gov. SECRETARY OF HOMELAND SECURITY Deputy Secretary Chief of Staff Directorates: Federal Emergency Management Director, Mitigation Division

More information

NIST Cybersecurity Initiatives. ARC World Industry Forum 2014

NIST Cybersecurity Initiatives. ARC World Industry Forum 2014 NIST Cybersecurity Initiatives Keith Stouffer and Vicky Pillitteri NIST ARC World Industry Forum 2014 February 10-13, 2014 Orlando, FL National Institute of Standards and Technology (NIST) NIST s mission

More information

Salem Community College Course Syllabus. Section I. Course Title: Principles of Emergency Management. Course Code: EME101.

Salem Community College Course Syllabus. Section I. Course Title: Principles of Emergency Management. Course Code: EME101. Salem Community College Course Syllabus Section I Course Title: Principles of Emergency Management Course Code: EME101 Lecture Hours: 3 Lab Hours: 0 Credits: 3 Course Description: This is a three credit

More information

Office of Homeland Security

Office of Homeland Security Office of Homeland Security City Council City Manager OFFICE OF HOMELAND SECURITY Mitigation Program Preparedness Program Recovery Program Response Program Mission Statement To establish and maintain a

More information

Legislative Language

Legislative Language Legislative Language SEC. 1. COORDINATION OF FEDERAL INFORMATION SECURITY POLICY. (a) IN GENERAL. Chapter 35 of title 44, United States Code, is amended by striking subchapters II and III and inserting

More information

Cybersecurity in the Utilities Sector Best Practices and Implementation 2014 Canadian Utilities IT & Telecom Conference September 24, 2014

Cybersecurity in the Utilities Sector Best Practices and Implementation 2014 Canadian Utilities IT & Telecom Conference September 24, 2014 Cybersecurity in the Utilities Sector Best Practices and Implementation 2014 Canadian Utilities IT & Telecom Conference September 24, 2014 Victoria Yan Pillitteri Advisor for Information Systems Security

More information

UCF Office of Emergency Management. 2013-2018 Strategic Plan

UCF Office of Emergency Management. 2013-2018 Strategic Plan UCF Office of Emergency Management 2013-2018 Strategic Plan Table of Contents I. Introduction... 2 Purpose... 2 Overview... 3 Mission... 5 Vision... 5 II. Mandates... 6 III. Accomplishments and Challenges...

More information

THE WHITE HOUSE. Office of the Press Secretary. For Immediate Release February 12, 2013. February 12, 2013

THE WHITE HOUSE. Office of the Press Secretary. For Immediate Release February 12, 2013. February 12, 2013 THE WHITE HOUSE Office of the Press Secretary For Immediate Release February 12, 2013 February 12, 2013 PRESIDENTIAL POLICY DIRECTIVE/PPD-21 SUBJECT: Critical Infrastructure Security and Resilience The

More information

How To Plan A Crisis Management Program

How To Plan A Crisis Management Program Building a Security Conscious Business Continuity Management (BCM) Program Sam Stahl, CBCP, MBCI EMC Global Professional Services Program Manager stahl_samuel@emc.com ASIS Singapore, 2014 Agenda Overview

More information

H. R. 5005 11 SEC. 201. DIRECTORATE FOR INFORMATION ANALYSIS AND INFRA STRUCTURE PROTECTION.

H. R. 5005 11 SEC. 201. DIRECTORATE FOR INFORMATION ANALYSIS AND INFRA STRUCTURE PROTECTION. H. R. 5005 11 (d) OTHER OFFICERS. To assist the Secretary in the performance of the Secretary s functions, there are the following officers, appointed by the President: (1) A Director of the Secret Service.

More information

MARYLAND. Cyber Security White Paper. Defining the Role of State Government to Secure Maryland s Cyber Infrastructure.

MARYLAND. Cyber Security White Paper. Defining the Role of State Government to Secure Maryland s Cyber Infrastructure. MARYLAND Cyber Security White Paper Defining the Role of State Government to Secure Maryland s Cyber Infrastructure November 1, 2006 Robert L. Ehrlich, Jr., Governor Michael S. Steele, Lt. Governor Message

More information

Business Continuity for the New Professional. Britt Corra Enterprise BCM Erika Voss Senior BCM

Business Continuity for the New Professional. Britt Corra Enterprise BCM Erika Voss Senior BCM Business Continuity for the New Professional Britt Corra Enterprise BCM Erika Voss Senior BCM New to Business Continuity? Agenda & Experience 3-5 years experience? Seasoned veteran? What is BCM Tool Kit?

More information

With the large number of. How to Avoid Disaster: RIM s Crucial Role in Business Continuity Planning. Virginia A. Jones, CRM, FAI RIM FUNDAMENTALS

With the large number of. How to Avoid Disaster: RIM s Crucial Role in Business Continuity Planning. Virginia A. Jones, CRM, FAI RIM FUNDAMENTALS How to Avoid Disaster: RIM s Crucial Role in Business Continuity Planning The world has experienced a great deal of natural and man-made upheaval and destruction in the past few years, including tornadoes,

More information

CSA Z1600 Emergency Management and Business Continuity Programs

CSA Z1600 Emergency Management and Business Continuity Programs CSA Z1600 Emergency Management and Business Continuity Programs Presented by: John Lindsay, Brandon University Department of Applied Disaster and Emergency Studies and Z1600 Technical Committee member

More information

CALIFORNIA STATE UNIVERSITY LOS ANGELES

CALIFORNIA STATE UNIVERSITY LOS ANGELES CALIFORNIA STATE UNIVERSITY LOS ANGELES CALIFORNIA STATE UNIVERSITY, LOS ANGELES 5151 STATE UNIVERSITY DRIVE, LOS ANGELES, CA 90032-8629 OFFICE OF CONTINUING EDUCATION (213) 343-4900 February 21, 1995

More information

How To Make A Terrorist Watchlist More Secure

How To Make A Terrorist Watchlist More Secure United States Department of Homeland Security Transportation Security Administration Statement of Kip Hawley Assistant Secretary (Transportation Security Administration) Committee on Commerce, Science

More information

Maryland Preparedness Planning Certificate Program Pilot Packet July 2014 June 2015

Maryland Preparedness Planning Certificate Program Pilot Packet July 2014 June 2015 Maryland Preparedness Planning Certificate Program Pilot 2014 2015 Maryland Preparedness Planning Certificate Program Pilot Packet July 2014 June 2015 A Center for Preparedness Excellence A Center for

More information

Overview of Homeland Security Funding 1999 to Present National Incident Management System Mandates and Training Requirements

Overview of Homeland Security Funding 1999 to Present National Incident Management System Mandates and Training Requirements Overview of Homeland Security Funding 1999 to Present National Incident Management System Mandates and Training Requirements Jim Weldin Delaware League of Local Governments 1 Homeland Security Grant Funding

More information

Business Crisis and Continuity Management and Planning

Business Crisis and Continuity Management and Planning Business Crisis and Continuity Management and Planning Healy P. Palepu Dong Burritt Morhardt J. Freeman Chapter Outline 1. Introduction of topics and concepts to be discussed in this chapter. a. Introduction

More information

Evaluating and Improving Your Business Continuity Plan

Evaluating and Improving Your Business Continuity Plan Evaluating and Improving Your Business Continuity Plan As presented to the Northeast Florida IIA Chapter January 23, 2015 Contact Information Karen Weir, MAC, CISA, CBCP Manager kweir@accretivesolutions.com

More information

How To Write A National Cybersecurity Act

How To Write A National Cybersecurity Act ROCKEFELLER SNOWE CYBERSECURITY ACT SUBSTITUTE AMENDMENT FOR S.773 March 17, 2010 BACKGROUND & WHY THIS LEGISLATION IS IMPORTANT: Our nation is at risk. The networks that American families and businesses

More information

Public Law 113 283 113th Congress An Act

Public Law 113 283 113th Congress An Act PUBLIC LAW 113 283 DEC. 18, 2014 128 STAT. 3073 Public Law 113 283 113th Congress An Act To amend chapter 35 of title 44, United States Code, to provide for reform to Federal information security. Be it

More information

STATE OF MARYLAND Strategy for Homeland Security

STATE OF MARYLAND Strategy for Homeland Security STATE OF MARYLAND Strategy for Homeland Security Published June 2004 Governor s Office of Homeland Security Dennis R. Schrader, Director Robert L. Ehrlich, Jr. Governor Michael S. Steele Lt. Governor HOMELAND

More information

JOB ANNOUNCEMENT. Chief Security Officer, Cheniere Energy, Inc.

JOB ANNOUNCEMENT. Chief Security Officer, Cheniere Energy, Inc. JOB ANNOUNCEMENT Chief Security Officer, Cheniere Energy, Inc. Position Overview The Vice President and Chief Security Risk Officer (CSRO) reports to the Chairman, Chief Executive Officer and President

More information

How To Write A Cybersecurity Framework

How To Write A Cybersecurity Framework NIST Cybersecurity Framework Overview Executive Order 13636 Improving Critical Infrastructure Cybersecurity 2nd ENISA International Conference on Cyber Crisis Cooperation and Exercises Executive Order

More information

CONTINUITY OF OPERATIONS PLANNING

CONTINUITY OF OPERATIONS PLANNING University of North Carolina Wilmington CONTINUITY OF OPERATIONS PLANNING November 9, 2010 Lumina Theater, Fisher Student Center Development of Continuity Planning University of North Carolina Wilmington

More information

Introduction to Emergency Management

Introduction to Emergency Management Introduction to Emergency Management Purpose Understanding the Job! Your Job Description and what it means Resources Training Understanding your Job Are there certain expectations? Communication, Coordination

More information

All. Presidential Directive (HSPD) 7, Critical Infrastructure Identification, Prioritization, and Protection, and as they relate to the NRF.

All. Presidential Directive (HSPD) 7, Critical Infrastructure Identification, Prioritization, and Protection, and as they relate to the NRF. Coordinating Agency: Department of Homeland Security Cooperating Agencies: All INTRODUCTION Purpose Scope This annex describes the policies, responsibilities, and concept of operations for Federal incident

More information

SHARED ASSESSMENTS PROGRAM STANDARD INFORMATION GATHERING (SIG) QUESTIONNAIRE 2014 MAPPING TO OCC GUIDANCE (2013-29) ON THIRD PARTY RELATIONSHIPS

SHARED ASSESSMENTS PROGRAM STANDARD INFORMATION GATHERING (SIG) QUESTIONNAIRE 2014 MAPPING TO OCC GUIDANCE (2013-29) ON THIRD PARTY RELATIONSHIPS SHARED ASSESSMENTS PROGRAM STANDARD INFORMATION GATHERING (SIG) QUESTIONNAIRE 2014 MAPPING TO OCC GUIDANCE (2013-29) ON THIRD PARTY RELATIONSHIPS An overview of how the Shared Assessments Program SIG 2014

More information

GAO COMBATING TERRORISM. Observations on Options to Improve the Federal Response. Testimony

GAO COMBATING TERRORISM. Observations on Options to Improve the Federal Response. Testimony GAO For Release on Delivery Expected at 3:00 p.m. Tuesday, April 24, 2001 United States General Accounting Office Testimony Before the Subcommittee on Economic Development, Public Buildings, and Emergency

More information

Subject: Critical Infrastructure Identification, Prioritization, and Protection

Subject: Critical Infrastructure Identification, Prioritization, and Protection For Immediate Release Office of the Press Secretary The White House December 17, 2003 Homeland Security Presidential Directive / HSPD-7 Subject: Critical Infrastructure Identification, Prioritization,

More information

Larimer County Comprehensive Emergency Management Plan 2015

Larimer County Comprehensive Emergency Management Plan 2015 Larimer County Comprehensive Emergency Management Plan 2015 EMERGENCY SUPPORT FUNCTIONS Emergency Support Functions (ESFs) provide the structure for coordinating county activities in support of incident

More information

April 8, 2013. Ms. Diane Honeycutt National Institute of Standards and Technology 100 Bureau Drive, Stop 8930 Gaithersburg, MD 20899

April 8, 2013. Ms. Diane Honeycutt National Institute of Standards and Technology 100 Bureau Drive, Stop 8930 Gaithersburg, MD 20899 Salt River Project P.O. Box 52025 Mail Stop: CUN204 Phoenix, AZ 85072 2025 Phone: (602) 236 6011 Fax: (602) 629 7988 James.Costello@srpnet.com James J. Costello Director, Enterprise IT Security April 8,

More information

December 17, 2003 Homeland Security Presidential Directive/Hspd-7

December 17, 2003 Homeland Security Presidential Directive/Hspd-7 For Immediate Release Office of the Press Secretary December 17, 2003 December 17, 2003 Homeland Security Presidential Directive/Hspd-7 Subject: Critical Infrastructure Identification, Prioritization,

More information

Business Continuity in Healthcare

Business Continuity in Healthcare Business Continuity in Healthcare Cynthia Simeone, CBCP, PMP Director Business Resilience Catholic Health Initiatives Scott Ream President Virtual Corporation 1 Session Speakers Cynthia Simeone, CBCP,

More information

Ohio Homeland Security Strategic Plan 2013-2016

Ohio Homeland Security Strategic Plan 2013-2016 GOAL 1 Strengthen Ohio s intelligence and information sharing system for the detection and prevention of threats to public safety. Objective 1.1 Support continued development of the information sharing

More information

OPTIONS FOR EDUCATION AND TRAINING...3 LEARNING RESOURCES...5 TABLE TOP EXERCISE: POWER OUTAGE SCENARIO...7

OPTIONS FOR EDUCATION AND TRAINING...3 LEARNING RESOURCES...5 TABLE TOP EXERCISE: POWER OUTAGE SCENARIO...7 CONTENTS INTRODUCTION...2 AWARENESS EDUCATION... 2 TRAINING AND EXERCISING... 2 OPTIONS FOR EDUCATION AND TRAINING...3 LEARNING RESOURCES...5 TABLE TOP EXERCISE: POWER OUTAGE SCENARIO...7 DISCUSSION QUESTIONS...

More information

September 28, 2 012 MEMORANDUM FOR. MR. ANTONY BLINKEN Deputy Assistant to the President and National Security Advisor to the Vice President

September 28, 2 012 MEMORANDUM FOR. MR. ANTONY BLINKEN Deputy Assistant to the President and National Security Advisor to the Vice President 004216 THE WHITE HOUSE WASHINGTON MEMORANDUM FOR September 28, 2 012 MR. ANTONY BLINKEN Deputy Assistant to the President and National Security Advisor to the Vice President MR. STEPHEN D. MULL Executive

More information

This page intentionally left blank.

This page intentionally left blank. This page intentionally left blank. This page intentionally left blank. CONTENTS List of Tables...vii List of Figures...vii What Is the National Incident Management System?...1 PREFACE... 3 INTRODUCTION

More information

Homeland Security Education: The Current State. The Naval Postgraduate School, Center for Homeland Defense and Security

Homeland Security Education: The Current State. The Naval Postgraduate School, Center for Homeland Defense and Security Homeland Security Education: The Current State and The Naval Postgraduate School, Center for Homeland Defense and Security Dr. Stan Supinski Director, Partnership Programs 1 Homeland Security Education

More information

Implementation of the Cybersecurity Executive Order

Implementation of the Cybersecurity Executive Order Implementation of the Cybersecurity Executive Order November 13 th, 2013 Ben Beeson, Partner, Lockton Companies Gerald J. Ferguson, Partner, BakerHostetler Mark Weatherford, Principal, The Chertoff Group

More information

Brief Documentary History of the Department of Homeland Security

Brief Documentary History of the Department of Homeland Security Brief Documentary History of the Department of Homeland Security 2001 2008 History Office Table of Contents Introductory Note... 2 Homeland Security Before September 11... 3 The Office of Homeland Security...

More information

H. R. ll IN THE HOUSE OF REPRESENTATIVES A BILL

H. R. ll IN THE HOUSE OF REPRESENTATIVES A BILL F:\M\BARLET\BARLET_0.XML TH CONGRESS ST SESSION... (Original Signature of Member) H. R. ll To amend the Homeland Security Act of 00 to enhance the partnership between the Department of Homeland Security

More information

Loss Control Webcast. Disaster Recovery Planning we re not in Kansas anymore

Loss Control Webcast. Disaster Recovery Planning we re not in Kansas anymore Loss Control Webcast Disaster Recovery Planning we re not in Kansas anymore May 15, 2013 1 The information presented in this material has been developed from sources believed to be reliable. It is presented

More information

Assessment Profile of Curricula for US PhD and Master s Degree Programs in Homeland Security and Related Fields 1. March 2011

Assessment Profile of Curricula for US PhD and Master s Degree Programs in Homeland Security and Related Fields 1. March 2011 Assessment Profile of Curricula for US PhD and Master s Degree in Homeland Security and Related Fields 1 March 2011 It is important to recognize that the homeland security academic discipline within the

More information

Disaster Recovery/Business Continuity

Disaster Recovery/Business Continuity CITY AUDITOR'S OFFICE Disaster Recovery/Business Continuity March 6, 2015 AUDIT REPORT NO. 1511 CITY COUNCIL Mayor W.J. Jim Lane Suzanne Klapp Virginia Korte Kathy Littlefield Vice Mayor Linda Milhaven

More information

TITLE III INFORMATION SECURITY

TITLE III INFORMATION SECURITY H. R. 2458 48 (1) maximize the degree to which unclassified geographic information from various sources can be made electronically compatible and accessible; and (2) promote the development of interoperable

More information

NIST Cybersecurity Framework What It Means for Energy Companies

NIST Cybersecurity Framework What It Means for Energy Companies Daniel E. Frank J.J. Herbert Mark Thibodeaux NIST Cybersecurity Framework What It Means for Energy Companies November 14, 2013 Your Panelists Dan Frank J.J. Herbert Mark Thibodeaux 2 Overview The Cyber

More information

Statement of Gil Vega. Associate Chief Information Officer for Cybersecurity and Chief Information Security Officer. U.S. Department of Energy

Statement of Gil Vega. Associate Chief Information Officer for Cybersecurity and Chief Information Security Officer. U.S. Department of Energy Statement of Gil Vega Associate Chief Information Officer for Cybersecurity and Chief Information Security Officer U.S. Department of Energy Before the Subcommittee on Oversight and Investigations Committee

More information

Center for Health and Homeland Security ver. 4.0 FOR OFFICIAL USE ONLY RE - 1

Center for Health and Homeland Security ver. 4.0 FOR OFFICIAL USE ONLY RE - 1 REFERENCES 36 Code of Federal Regulations, Part 1236, Management of Vital Records, revised as of July 1, 2000. 41 Code of Federal Regulations 101.20.103-4, Occupant Emergency Program, revised as of July

More information

Business Continuity for Cyber Threat

Business Continuity for Cyber Threat Business Continuity for Cyber Threat April 1, 2014 Workshop Session #3 3:00 5:30 PM Susan Rogers, MBCP, MBCI Cyberwise CP S2 What happens when a computer program can activate physical machinery? Between

More information

Seaborne Attack Impact at Transportation, Energy, and Communication Systems Convergence Points in Inland Waters

Seaborne Attack Impact at Transportation, Energy, and Communication Systems Convergence Points in Inland Waters Seaborne Attack Impact at Transportation, Energy, and Communication Systems Convergence Points in Inland Waters Challenges & Innovations in Risk Assessment for the Homeland Security Enterprise A Panel

More information

The National Incident Management System (NIMS): Overview and Compliance

The National Incident Management System (NIMS): Overview and Compliance The National Incident Management System (NIMS): Overview and Compliance Technologies for Critical Incident Preparedness Conference and Expo San Diego, CA November 1, 2005 Anne Wilson, FEMA Region IX, Oakland,

More information

South Dakota Training Program

South Dakota Training Program South Dakota Training Program 2014-2016 Table of Contents Background Page 2 Program Details. Pages 3-4 Recommended Courses..Page 5 Scheduling of Courses..Page 6 Instructor Qualifications/Requirements.

More information

BUSINESS CONTINUITY: BEST PRACTICE, 2ND EDITION

BUSINESS CONTINUITY: BEST PRACTICE, 2ND EDITION BUSINESS CONTINUITY: BEST PRACTICE, 2ND EDITION EXCERPT FROM THE FOREWORD TO THE 2ND EDITION The events of 9/11 have cast a long shadow over the world and led to a vital reappraisal of Enterprise Risk

More information

Department of Homeland Security Information Sharing Strategy

Department of Homeland Security Information Sharing Strategy Securing Homeland the Homeland Through Through Information Information Sharing Sharing and Collaboration and Collaboration Department of Homeland Security April 18, 2008 for the Department of Introduction

More information

Business Continuity and Emergency Preparedness Planning. Vandita Zachariah, MA, MBA, CIA HHSC Internal Audit Division May 21, 2010

Business Continuity and Emergency Preparedness Planning. Vandita Zachariah, MA, MBA, CIA HHSC Internal Audit Division May 21, 2010 Business Continuity and Emergency Preparedness Planning Vandita Zachariah, MA, MBA, CIA HHSC Internal Audit Division May 21, 2010 Overview Define key terms and list essential elements of business continuity

More information

For Official Use Only. Springfield-Greene County, Missouri Multi-Year Training and Exercise Plan 2016-2018 (TEP) July 27, 2015. For Official Use Only

For Official Use Only. Springfield-Greene County, Missouri Multi-Year Training and Exercise Plan 2016-2018 (TEP) July 27, 2015. For Official Use Only For Official Use Only Springfield-Greene County, Missouri Multi-Year Training and Exercise Plan 2016-2018 (TEP) July 27, 2015 For Official Use Only SPRINGFIELD-GREENE COUNTY Point of Contact Erin Pope

More information

The International Association of Emergency Managers

The International Association of Emergency Managers The International Association of Emergency Managers COLLABORATION WITH EMERGENCY MANAGEMENT History & Future Perspectives for CD, EM & IAEM Presented to the Science & Technology Conference June 2, 2008

More information

Salem Community College Course Title: Course Code: Lecture Hours Lab Hours: Credits: Prerequisite Course Description: Place in College Curriculum:

Salem Community College Course Title: Course Code: Lecture Hours Lab Hours: Credits: Prerequisite Course Description: Place in College Curriculum: Salem Community College Course Title: Principles of Emergency Management Course Code: EM 100 Lecture Hours: 3 Lab Hours: 0 Credits: 3 Prerequisite: None Course Description:This is a three credit course

More information

How Cybersecurity Initiatives May Impact Operators. Ross A. Buntrock, Partner ross.buntrock@agg.com 202.669.0495

How Cybersecurity Initiatives May Impact Operators. Ross A. Buntrock, Partner ross.buntrock@agg.com 202.669.0495 How Cybersecurity Initiatives May Impact Operators Ross A. Buntrock, Partner ross.buntrock@agg.com 202.669.0495 Agenda! Rise in Data Breaches! Effects of Increase in Cybersecurity Threats! Cybersecurity

More information

Why you should adopt the NIST Cybersecurity Framework

Why you should adopt the NIST Cybersecurity Framework www.pwc.com/cybersecurity Why you should adopt the NIST Cybersecurity Framework May 2014 The National Institute of Standards and Technology Cybersecurity Framework may be voluntary, but it offers potential

More information

Training Opportunities

Training Opportunities FEMA Independent Study Courses IS-288.A: The Role of Voluntary Organizations in Emergency Management To complete the above course please visit the FEMA Independent Study Website at: http://training.fema.gov/is

More information

2015 Emergency Management Course Schedule

2015 Emergency Management Course Schedule 2015 Emergency Management Course Schedule NOTE: ALL COURSES WILL NOW BE OFFERED AT THE CENTER FOR LEARNING AND INNOVATION 1979 MARCUS AVE. LAKE SUCCESS, NY 11042 EXCEPT WHERE NOTED HazMat for Healthcare

More information

Seoul Communiqué 2012 Seoul Nuclear Security Summit

Seoul Communiqué 2012 Seoul Nuclear Security Summit Seoul Communiqué 2012 Seoul Nuclear Security Summit We, the leaders, gathered in Seoul on March 26-27, 2012, renew the political commitments generated from the 2010 Washington Nuclear Security Summit to

More information

GAP Subject Area 2 Risk Evaluation and Control

GAP Subject Area 2 Risk Evaluation and Control BCI Professional Practice Narrative: Determine the events and external surroundings that can adversely affect the organization and its facilities with disruption as well as disaster, the damage such events

More information

unified command course (MGT-314)

unified command course (MGT-314) enhanced ALL-HAZARDS incident management/ unified command course (MGT-314) I was sent to St. Bernard Parish, Louisiana, as the incident commander for 16 days following Hurricane Katrina. The training I

More information

NH!ISAC"ADVISORY"201.13" NATIONAL"CRITICAL"INFRASTRUCTURE"RESILIENCE"ANALYSIS"REPORT""

NH!ISACADVISORY201.13 NATIONALCRITICALINFRASTRUCTURERESILIENCEANALYSISREPORT National(Health#ISAC#(NH!ISAC) GlobalInstituteforCybersecurity+Research7GlobalSituationalAwarenessCenter NASA SpaceLifeSciencesLaboratory KennedySpaceCenter,FL NH!ISACADVISORY201.13 NATIONALCRITICALINFRASTRUCTURERESILIENCEANALYSISREPORT

More information

NORTH CAROLINA EMERGENCY MANAGEMENT CERTIFICATION PROGRAM

NORTH CAROLINA EMERGENCY MANAGEMENT CERTIFICATION PROGRAM NORTH CAROLINA EMERGENCY MANAGEMENT CERTIFICATION PROGRAM October 15 th, 2013 Table of Contents Program Overview and Administration:...4 Certification process:...4 Responsibilities:...4 North Carolina

More information

Dust Explosion Incident Response & Coordination

Dust Explosion Incident Response & Coordination Dust Explosion Incident Response & Coordination Objectives Introduction to NIMS History Concepts National Response Framework Introduction to ICS History Concepts Implementation NIMS National Incident Management

More information

BCM Data Research within a Business Intelligence Dashboard

BCM Data Research within a Business Intelligence Dashboard BCM Data Research within a Business Intelligence Dashboard A powerful, innovative assessment tool designed exclusively for the Business Continuity Profession Collecting BCM data metrics since 2000. The

More information

Flooding Emergency Response Exercise

Flooding Emergency Response Exercise Flooding Emergency Response Exercise James Woodward, Senior Exercise Planner California Emergency Management Agency 3650 Schriever Ave. Mather, CA 95655 Cell: (916) 439-3546 Email: james.woodward@calema.ca.gov

More information

Public Law 108 330 108th Congress An Act

Public Law 108 330 108th Congress An Act PUBLIC LAW 108 330 OCT. 16, 2004 118 STAT. 1275 Public Law 108 330 108th Congress An Act To amend title 31, United States Code, to improve the financial accountability requirements applicable to the Department

More information

1851 (d) RULE OF CONSTRUCTION. Nothing in this section shall be construed to (1) require a State to report data under subsection

1851 (d) RULE OF CONSTRUCTION. Nothing in this section shall be construed to (1) require a State to report data under subsection U:\REPT\OMNI\FinalOmni\CPRT--HPRT-RU00-SAHR-AMNT.xml 0 (d) RULE OF CONSTRUCTION. Nothing in this section shall be construed to () require a State to report data under subsection (a); or () require a non-federal

More information

National Institute of Standards and Technology Smart Grid Cybersecurity

National Institute of Standards and Technology Smart Grid Cybersecurity National Institute of Standards and Technology Smart Grid Cybersecurity Vicky Yan Pillitteri Advisor for Information Systems Security SGIP SGCC Chair Victoria.yan@nist.gov 1 The National Institute of Standards

More information

July 2015-August 2016

July 2015-August 2016 STATE OF MARYLANDONSE OPERATIONS PLAN (SROP)Maryland Preparedness Planning Certificate Program (MPPCP) July 2015-August 2016 A Center for Preparedness Excellence 1 A CENTER FOR PREPAREDNESS EXCELLENCE

More information

The following NIMS FAQ was prepared by NIMS on-line, which has additional information at www.nimsonline.com.

The following NIMS FAQ was prepared by NIMS on-line, which has additional information at www.nimsonline.com. The National Incident Management System is a structure for management large-scale or multi-jurisdictional incidents. It is being phased in at the federal, state and local levels. Eventually, any jurisdiction

More information

Virginia Commonwealth University School of Medicine Information Security Standard

Virginia Commonwealth University School of Medicine Information Security Standard Virginia Commonwealth University School of Medicine Information Security Standard Title: Scope: Business Continuity Management Standard for IT Systems This standard is applicable to all VCU School of Medicine

More information

One Hundred Tenth Congress of the United States of America

One Hundred Tenth Congress of the United States of America H. R. 1 One Hundred Tenth Congress of the United States of America AT THE FIRST SESSION Begun and held at the City of Washington on Thursday, the fourth day of January, two thousand and seven An Act To

More information

Cybersecurity Framework. Executive Order 13636 Improving Critical Infrastructure Cybersecurity

Cybersecurity Framework. Executive Order 13636 Improving Critical Infrastructure Cybersecurity Cybersecurity Framework Executive Order 13636 Improving Critical Infrastructure Cybersecurity National Institute of Standards and Technology (NIST) Mission To promote U.S. innovation and industrial competitiveness

More information

CBO. Federal Funding for Homeland Security: An Update. What Is Homeland Security?

CBO. Federal Funding for Homeland Security: An Update. What Is Homeland Security? CBO A series of issue summaries from the Congressional Budget Office JULY 20, 2005 Federal Funding for Homeland Security: An Update The terrorist attacks of September 11, 2001, heightened Congressional

More information

STATE UNIVERSITY OF NEW YORK COLLEGE OF TECHNOLOGY CANTON, NEW YORK COURSE OUTLINE EADM 220 DISASTER MANAGEMENT AND PREPAREDNESS

STATE UNIVERSITY OF NEW YORK COLLEGE OF TECHNOLOGY CANTON, NEW YORK COURSE OUTLINE EADM 220 DISASTER MANAGEMENT AND PREPAREDNESS STATE UNIVERSITY OF NEW YORK COLLEGE OF TECHNOLOGY CANTON, NEW YORK COURSE OUTLINE EADM 220 DISASTER MANAGEMENT AND PREPAREDNESS Prepared By: Dr. Michael J. O Connor Jr. SCHOOL OF BUSINSS AND LIBERAL ARTS

More information

Pilot Nursing Home Emergency Management Assessment Tool

Pilot Nursing Home Emergency Management Assessment Tool Pilot Nursing Home Emergency Management Assessment Tool Introduction The Pilot Nursing Home Emergency Management Project (NHEMP) Assessment Tool, developed by the Primary Care Development Corporation (PCDC),

More information

Managing Liabilities from Cyber Threats Using the SAFETY Act

Managing Liabilities from Cyber Threats Using the SAFETY Act Managing Liabilities from Cyber Threats Using the SAFETY Act Brian Zimmet Dismas Locaria Jason Wool August 5, 2014 2013 Venable LLP 1 Agenda 1. Introduction 2. The SAFETY Act An Overview 3. Applicability

More information

HOMELAND SECURITY INTERNET SOURCES

HOMELAND SECURITY INTERNET SOURCES I&S Internet Sources I&S HOMELAND SECURITY INTERNET SOURCES USEFUL SITES, PORTALS AND FORUMS Homeland Security Home Page http://www.whitehouse.gov/homeland/ A federal agency whose primary mission is to

More information