CISO EXECUTIVE NETWORK ADVISORY COUNCIL · CISO EXECUTIVE NETWORK ADVISORY COUNCIL NAME Brandon...

1
CISO EXECUTIVE NETWORK ADVISORY COUNCIL NAME Brandon Rogers POSITION AND COMPANY Information Security Officer/ Deputy Director of the Office of Information Security Texas General Land Office EDUCATION AND CERTIFICATIONS Bachelor of Science in Management of Information Systems form Peirce College in Philadelphia, PA; Masters of Science in Management of Information Systems from St. Edwards University in Austin, TX; Certified Information Systems Security Professional (CISSP) EXPERIENCE IN INFORMATION SECURITY 12 years total of experience with state and local government; the last seven I managed the information security program at the Texas General Land Office. INFORMATION SECURITY GOVERNING PHILOSOPHY “Bake-in vs. Bolt-on” include security early and often in your projects. The cost of fixing a problem after a project has been implemented and underway is a lot more expensive than fixing it in the design phase. MOST IMPORTANT PROJECT OR PROGRAM Data Loss Prevention (DLP) is a very critical initiative for our agency that requires you to constantly interact with the system. This program has no end date and the product is constantly evolving based on business requirement. DLP requires strong cross communication between the security team, IT, and business units to achieve the desired level of effectiveness. WHAT ATTRACTED YOU TO INFORMATION SECURITY? I've always been in asset protection with early jobs as loss prevention. It was a natural progression that as information grew as an asset I would fall into this role. BEST ADVICE YOU HAVE RECEIVED AND WHO PROVIDED IT In our industry, the goal is to move from Chief Scapegoat Officer role, and then to Chief Sanitation Officer role, finally evolving into the Chief Information Security Officer role. The ultimate goal is to truly enable the business to succeed, understanding that they ultimately are responsible for the security of their data and services. Ed Pagett. WHY DO YOU PARTICIPATE IN THE CISO EXECUTIVE NETWORK? I enjoy the CISO Executive Network as it allows me to fellowship with peers while sharing tips and strategies with a diverse group of security professional in various markets.

Transcript of CISO EXECUTIVE NETWORK ADVISORY COUNCIL · CISO EXECUTIVE NETWORK ADVISORY COUNCIL NAME Brandon...

Page 1: CISO EXECUTIVE NETWORK ADVISORY COUNCIL · CISO EXECUTIVE NETWORK ADVISORY COUNCIL NAME Brandon Rogers POSITION AND COMPANY Information Security Officer/ Deputy Director of the Office

CISO EXECUTIVE NETWORK ADVISORY COUNCIL

NAME Brandon Rogers POSITION AND COMPANY Information Security Officer/ Deputy Director of the Office of Information Security Texas General Land Office EDUCATION AND CERTIFICATIONS Bachelor of Science in Management of Information Systems form Peirce College in Philadelphia, PA; Masters of Science in Management of Information Systems from St. Edwards University in Austin, TX; Certified Information Systems Security Professional (CISSP) EXPERIENCE IN INFORMATION SECURITY 12 years total of experience with state and local government; the last seven I managed the information security program at the Texas General Land Office. INFORMATION SECURITY GOVERNING PHILOSOPHY “Bake-in vs. Bolt-on” include security early and often in your projects. The cost of fixing a problem after a project has been implemented and underway is a lot more expensive than fixing it in the design phase. MOST IMPORTANT PROJECT OR PROGRAM Data Loss Prevention (DLP) is a very critical initiative for our agency that requires you to constantly interact with the system. This program has no end date and the product is constantly evolving based on business requirement. DLP requires strong cross communication between the security team, IT, and business units to achieve the desired level of effectiveness. WHAT ATTRACTED YOU TO INFORMATION SECURITY? I've always been in asset protection with early jobs as loss prevention. It was a natural progression that as information grew as an asset I would fall into this role. BEST ADVICE YOU HAVE RECEIVED AND WHO PROVIDED IT In our industry, the goal is to move from Chief Scapegoat Officer role, and then to Chief Sanitation Officer role, finally evolving into the Chief Information Security Officer role. The ultimate goal is to truly enable the business to succeed, understanding that they ultimately are responsible for the security of their data and services. Ed Pagett. WHY DO YOU PARTICIPATE IN THE CISO EXECUTIVE NETWORK? I enjoy the CISO Executive Network as it allows me to fellowship with peers while sharing tips and strategies with a diverse group of security professional in various markets.