AusCERT conference banner

Platinum Sponsors

M86

Trustwave

Add your logo here!

Please contact us
if you'd like to be a
AusCERT2012 Sponsor

Gary Hinson

Gary HinsonDr Gary Hinson PhD MBA CISSP is an information security specialist with a passion for human factors and metrics. Gary's career stretches back to the mid-1980s as a practitioner, manager and consultant in the fields of IT system administration, information security and IT auditing.

Gary now runs an information security awareness subscription service (www.NoticeBored.com) and spends his days researching and writing awareness materials. Through www.ISO27001security.com, Gary promotes and contributes to the ongoing development of the ISO/IEC 27000-series information security management standards. He lives near Napier, New Zealand.

AusCERT2012 Presentation

Security Metametrics - A Practical Approach

The handful of good books, standards and articles on information security metrics are long on fine academic principles, but decidedly short on get-on-and-do-it advice for busy ISMs and CISOs. This is undoubtedly a complex issue, arguably one of the most difficult areas of information security management. 

It is quite bizarre that so many Information Security Management Systems today are being run without decent metrics. How do people justify their budgets? How do information security and business managers keep track of the important parameters if they don't even know what those are? How can they possibly drive continuous improvement and risk reduction without the necessary information? 

This presentation will lay out a straightforward, practical approach to developing and implementing worthwhile information security metrics to support management decisions. I will explain how to select "a few good security metrics" from the thousands of candidate metrics out there, using a rational, systematic method designed specifically for information security practitioners - but applicable, in fact, to all sorts of metrics.

AusCERT2012 Presentation in PDF format

Highlights

Preparations are underway for AusCERT2012 - with a difference! It's important to make notes of these changes in your calendar...

We have a new format for AusCERT2012:

The tutorials will be held before the main conference program - on Monday 14th and Tuesday 15th May 2012.

The main conference program will be held from Wednesday 16th to Friday 18th May 2012.

Our Gala Dinner incorporating the Australian SC Information Security Awards and AusCERT Awards will be on Thursday 17th May.

Registration

AusCERT members receive 50% discount on their registration. For more information on how to become a member of AusCERT, contact us. We look forward to hearing from you.

Buy 2, Get 1 Free!
When you register 2 x delegates you can bring a 3rd person to AusCERT2012 FREE! We think that's a great deal and hope you do too :)

Copyright © 2012 The University of Queensland, authorised by AusCERT Program Committee, maintained by: auscert@auscert.org.au