UC IT Policy and Security Officers Meeting
Fall Quarter 2001 - UC Santa Barbara - Thursday, October 25, 2001

AGENDA

9:00 AM Breakfast goodies

10:00AM Welcome

CYBERSECURITY 1
Review and discussion of compilation of campus responses

  • Common themes
  • Major components of an overall security framework
  • Tools in common use
  • Opportunities for leverage
    • Software, hardware, services acquisition
    • Coordination across UC
    • Shared projects

12:00 Noon Lunch

1:00PM CYBERSECURITY II
  • Password expiration
  • UCNETSEC listserv
  • SANS proposal for security language in federal contracts
  • Update on VISA security and privacy guidelines implementation
  • What is a managed security service?
  • Demo of common security tool

2:30PM Other items

3:00PM Adjourn

Questions

  1. What general security strategies are most effective and feasible [in the face of potential cyber-terrorism]? Is there agreement? Are there alternative paths that are appropriate for different local conditions?
  2. Is it possible to agree on a minimum set of essential network security tools that every campus is prepared to or has acquired? Alternatively, is there a limited set of network security tools from which all (or most) campuses have or would acquire a substantial proportion, using local resources to do so? If so, what are these tools?
  3. Is there consensus that specific tools should be licensed on a Universitywide basis, if this is feasible?
  4. Is there a consensus on common security training elements (at various levels -- from end user to network manager)? Are there specified certifications that are needed across campuses?
  5. Can we agree to share, at least, information about guest speakers and other educational programs on security that may be of interest across campuses?


Return to UC IT Policy and Security Officers (UCITPSO) website.


Comments to: policy@uclink.berkeley.edu

Revised: 24 October 2001