(Consulting) Couch to CISO: A Security Leader's First 100 Days and Beyond

23
(Consulting) Couch to CISO A Security Leader's First 100 Days & Beyond http://lanyrd.com/skymy Philip J Beyer Information Security Officer Texas Education Agency
  • date post

    19-Oct-2014
  • Category

    Technology

  • view

    1.567
  • download

    0

description

:: History :: Security BSides DFW 2011 - November 5, 2011 (Philip J Beyer) - http://lanyrd.com/skymy :: Summary :: I will present details of how I transitioned from security consultant to program leader from vision to practice and planning for the future. :: Abstract :: If you want to go from a sedentary life to running a marathon, you have to have a plan. If you want to go from a consulting life to owning a security program, you also have to have a plan. Much like a 'Couch to 5K' running program, that plan will require vision, persistent effort, and a clear set of goals. I'll share my plan, what has worked so far and what didn't, and how you can design your own.

Transcript of (Consulting) Couch to CISO: A Security Leader's First 100 Days and Beyond

Page 1: (Consulting) Couch to CISO: A Security Leader's First 100 Days and Beyond

(Consulting) Couch to CISOA Security Leader's First 100 Days & Beyond

http://lanyrd.com/skymy

Philip J Beyer Information Security Officer Texas Education Agency

Page 2: (Consulting) Couch to CISO: A Security Leader's First 100 Days and Beyond

OverviewThe Premise Off the Couch Adopt a Plan Train Like You Mean It Enjoy the Race

http://lanyrd.com/skymy

Page 3: (Consulting) Couch to CISO: A Security Leader's First 100 Days and Beyond

The Premise

Page 4: (Consulting) Couch to CISO: A Security Leader's First 100 Days and Beyond

Consulting

Give advice Diverse experience No ownership

Page 5: (Consulting) Couch to CISO: A Security Leader's First 100 Days and Beyond

Running

Requires commitment Rewarding No one can do it for you

Page 6: (Consulting) Couch to CISO: A Security Leader's First 100 Days and Beyond

Assumptions

Couch to 5k programs are a dime a dozen Consultant to CISO programs are not Preparation and planning get your career in shape

Page 7: (Consulting) Couch to CISO: A Security Leader's First 100 Days and Beyond

Off the Couch

Page 8: (Consulting) Couch to CISO: A Security Leader's First 100 Days and Beyond

About Me

Consulting background Information Security Officer Runner

Page 9: (Consulting) Couch to CISO: A Security Leader's First 100 Days and Beyond

How Did I Start?

IT services Good record of delivery Received great advice

Page 10: (Consulting) Couch to CISO: A Security Leader's First 100 Days and Beyond

Where Are You Now?Skills

Leadership Management

Experience Delivery Presentation

Page 11: (Consulting) Couch to CISO: A Security Leader's First 100 Days and Beyond

Adopt a Plan

Page 12: (Consulting) Couch to CISO: A Security Leader's First 100 Days and Beyond

Your Career Plan

Near-term and long-term goals Specific activities, not nebulous dreams BHAG

Page 13: (Consulting) Couch to CISO: A Security Leader's First 100 Days and Beyond

A Plan Needs Vision

Big Hairy Audacious Goal Dream big Doesn't have to be attainable, just real and motivating

Page 14: (Consulting) Couch to CISO: A Security Leader's First 100 Days and Beyond

Track Progress

A plan without progress is not a plan Determine your milestones Zoom in when necessary

Page 15: (Consulting) Couch to CISO: A Security Leader's First 100 Days and Beyond

Train Like You Mean It

Page 16: (Consulting) Couch to CISO: A Security Leader's First 100 Days and Beyond

Mentor

Not a peer Not your manager Security (or business) leader

Page 17: (Consulting) Couch to CISO: A Security Leader's First 100 Days and Beyond

Resumé

Accomplishments... Not skills Teamwork... Not solo efforts

Page 18: (Consulting) Couch to CISO: A Security Leader's First 100 Days and Beyond

Build Habits

Manage yourself Optimize your research Shorten your summaries Be a translator (to business language)

Page 19: (Consulting) Couch to CISO: A Security Leader's First 100 Days and Beyond

Enjoy the Race

Page 20: (Consulting) Couch to CISO: A Security Leader's First 100 Days and Beyond

The Starting Line

100-Day Plan

Page 21: (Consulting) Couch to CISO: A Security Leader's First 100 Days and Beyond

Establish Order

Manage your projects Keep it simple The Pragmatic CSO

Page 22: (Consulting) Couch to CISO: A Security Leader's First 100 Days and Beyond

Don't Sprint

3.1 miles (5km) is a long distance You need to pace yourself Hands off the keyboard and onto the whiteboard

Page 23: (Consulting) Couch to CISO: A Security Leader's First 100 Days and Beyond

• This work is licensed under a Creative Commons Attribution-NonCommercial-ShareAlike 3.0 Unported License