Webinar: Designing & Operationalizing an Incident Response Plan
Maintaining the privacy and protection of your customers’ and employees’ personal information is a risk management issue for all organizations. Is your organization prepared to effectively handle a data breach?
Click here for Support Material
With the increased wave of information security breaches headlining our newspapers, many boards and executives are requiring their organizations to develop and implement an incident response plan. These plans help to determine policies and procedures to prevent information security breaches and outline a formal process for assessing and managing incidents when they occur. Held on: September 6, 2007 Duration: 1 hour Presenters: Doron Rotman, Managing Director, Advisory Services, KPMG LLP John Hall, Executive Vice President, EthicsPoint, Inc.
Who Should Attend:
- Privacy Officers and Practitioners
- Ethics and Compliance Officers
- General Counsels
- Security Officers
- Corporate Responsibility Officers
Maintaining the privacy and protection of your customers’ and employees’ personal information is a risk management issue for all organizations. Research continues to show that consumers have widespread distrust of many organizations’ business practices, including how they collect, use, and retain personal information. The increase in identity theft is a concern for all of us. Business systems and processes have become increasingly more complex and sophisticated, and more and more personal information continues to be collected. Laws and regulations continue to place requirements on businesses for the protection of personal information. In addition, some laws and regulations require that organizations have an incident response plan in place to address a breach of personal information.
Is your organization prepared to effectively handle this type of event?
This webinar helps organizations address these issues and provide insight into implementing a privacy program framework. This framework can be used to guide and assist organizations in implementing good privacy programs. The following questions are answered:
- What are the privacy issues facing organizations today?
- What is the process framework for handling an information security breach?
- Who should be on your incident response team?
- What control environment should exist around it?
- What tools should be used to manage an incident response plan?
Presenters' Bios:
Doron Rotman, Managing Director, Advisory Services, KPMG LLP Doron is a Managing Director in KPMG's Advisory Services practice with over 20 years of experience. Doron is focused on providing Privacy and eBusiness Services and is the national privacy service leader, a member of KPMG’s national Privacy Leadership Council and a member of KPMG’s International Privacy Team. He has extensive high tech, financial services, manufacturing and government industry knowledge, both in the information technology and the accounting and finance aspects. Doron received a MSc. degree in Finance and Accounting and a BA. (Magna Cum Laude) degree in Accounting & Economics from the University of Tel Aviv, Israel. He is a CPA (Israel), a Certified Information Systems Auditor (CISA), a Certified Information Privacy Professional (CIPP), a Certified Internal Auditor (CIA), a member of ISACA, the International Association of Privacy Professionals and the Institute of Internal Auditors. He has made numerous presentations pertaining to U.S. and global data privacy legislation and has authored professional papers on privacy and other subjects. Mr. Rotman is a member of the AICPA\CICA Enterprise Wide Privacy Taskforce that developed the Generally Accepted Privacy Principles, a global privacy standard.
John Hall, Executive Vice President, EthicsPoint, Inc. Leveraging more than 20 years of executive leadership experience, John has helped lead EthicsPoint's development into one of the leading providers of governance application services that help organizations mitigate risk and manage regulatory compliance. Through John’s leadership and working with privacy practitioners, EthicsPoint has developed an information security incident management tool that helps bridge the gap between data loss prevention and breach notification procedures. EthicsPoint’s innovative Issue, Event, and Loss Management solution provides a comprehensive framework of data intake, investigative management and event resolution, ultimately delivering a more accurate picture of enterprise risk.
|