Hi all, The team today went through the recommendations in the latest recommendations document (https://docs.google.com/document/d/10KOW2F6oqR3OdV7hfuWmnYo6gtE0d0wOZHOQzXmi...) to identify gaps, resulting action items, and start assessing the importance of recommendations. A summary of our discussions, open questions, and outstanding actions here: https://docs.google.com/spreadsheets/d/1pfLFG9nixw_JEZBBdErw9McLpXHfigVjPR4u... However, it became clear that many recommendations had not been transferred/merged/edited from the previous version (https://docs.google.com/document/d/1CsuEYzQHve6a5rKQNeMQbjoyujdUQa9g__9_ojoq...). Everyone, please review this old document and make sure that the recommendations you were assigned in Brussels are dealt with ASAP so that we can continue discussing and preparing next steps. In case of delays (e.g. the compliance related text), please provide a note in the latest recommendations document (https://docs.google.com/document/d/10KOW2F6oqR3OdV7hfuWmnYo6gtE0d0wOZHOQzXmi...) so that the team is aware of where we stand. Tomorrow, we will continue working on text, for example the "compliance cluster” and later in the afternoon discuss next steps. ACTION ITEM: Please review and confirm that you have worked on the recommendations assigned to you in Brussels and provide text in the latest recommendation document. All the best Laurin
Thank you Laurin. We had wonderful session today and looking forward the same tomorrow. Regards, Matogoro On Sat, 22 Jun 2019, 19:29 Weissinger, Laurin, <laurin.weissinger@yale.edu> wrote:
Hi all,
The team today went through the recommendations in the latest recommendations document ( https://docs.google.com/document/d/10KOW2F6oqR3OdV7hfuWmnYo6gtE0d0wOZHOQzXmi...) to identify gaps, resulting action items, and start assessing the importance of recommendations. A summary of our discussions, open questions, and outstanding actions here: https://docs.google.com/spreadsheets/d/1pfLFG9nixw_JEZBBdErw9McLpXHfigVjPR4u...
However, it became clear that many recommendations had not been transferred/merged/edited from the previous version ( https://docs.google.com/document/d/1CsuEYzQHve6a5rKQNeMQbjoyujdUQa9g__9_ojoq...). Everyone, please review this old document and make sure that the recommendations you were assigned in Brussels are dealt with ASAP so that we can continue discussing and preparing next steps. In case of delays (e.g. the compliance related text), please provide a note in the latest recommendations document ( https://docs.google.com/document/d/10KOW2F6oqR3OdV7hfuWmnYo6gtE0d0wOZHOQzXmi...) so that the team is aware of where we stand.
Tomorrow, we will continue working on text, for example the "compliance cluster” and later in the afternoon discuss next steps.
ACTION ITEM: Please review and confirm that you have worked on the recommendations assigned to you in Brussels and provide text in the latest recommendation document.
All the best Laurin _______________________________________________ Ssr2-review mailing list Ssr2-review@icann.org https://mm.icann.org/mailman/listinfo/ssr2-review
_______________________________________________ By submitting your personal data, you consent to the processing of your personal data for purposes of subscribing to this mailing list accordance with the ICANN Privacy Policy (https://www.icann.org/privacy/policy) and the website Terms of Service (https://www.icann.org/privacy/tos). You can visit the Mailman link above to change your membership status or configuration, including unsubscribing, setting digest-style delivery or disabling delivery altogether (e.g., for a vacation), and so on.
Dear Laurin, all, First of all, it's nice to see you've been successful in today's workshop. Sorry again that I had to cancel my trip to Marrakech at short notice and couldn't attend the remote session today due to personal reasons. It's all a bit of a fuss right now. On 22.06.19 20:28, Weissinger, Laurin wrote:
The team today went through the recommendations in the latest recommendations document (https://docs.google.com/document/d/10KOW2F6oqR3OdV7hfuWmnYo6gtE0d0wOZHOQzXmi...) to identify gaps, resulting action items, and start assessing the importance of recommendations. A summary of our discussions, open questions, and outstanding actions here: https://docs.google.com/spreadsheets/d/1pfLFG9nixw_JEZBBdErw9McLpXHfigVjPR4u...
re: Security Position; C-Suite: please find a draft of my responsibleness as DENIC's CISO - maybe it could be start for the relevant recommendation: * Controlling, monitoring and coordination of the information security and business continuity management process (ISMS and BCMS) * Informing and advising the Board of Management on all fundamental and important issues of information security * Developing and actualizing guidelines, security concepts, the emergency contingency plan and other security and business continuity relevant concepts * Creation of the annual security report * Regular reporting to the Executive Board and the Security Management Team on the status quo of information security * Initiation and controlling of identification and implementation of security measures * Carrying out and monitoring regular security audits * Coordinating security-related projects and ensuring the exchange of information security relevant topics between the divisions and their information security contacts. * Monitoring the tracking of security incidents and initiating awareness campaigns and training on information security. * Authority to issue instructions to employees in matters of information security (incl. BCM) * Authority to discontinue applications and systems completely or temporarily if the basic values of information security (confidentiality, integrity and availability) are at risk. * Commitment to training in the field of information security and keeping knowledge up to date.
However, it became clear that many recommendations had not been transferred/merged/edited from the previous version (https://docs.google.com/document/d/1CsuEYzQHve6a5rKQNeMQbjoyujdUQa9g__9_ojoq...). Everyone, please review this old document and make sure that the recommendations you were assigned in Brussels are dealt with ASAP so that we can continue discussing and preparing next steps.
To be honest, I am totally satisfied with the content of the recommendations assigned to me and I do not know what I should modify or amend here. Please take another look at it together. Wishing you all a productive and fruitful workshop! I hope to find some time tomorrow to participate remotely. Thanks again and hope to hear you soon! - Boban
participants (3)
-
Boban Krsic -
Matogoro Jabera -
Weissinger, Laurin