Expanding Annual Cybersecurity Assessments on an Obstreperously Decentralized Campus

Wednesday, May 03, 2023 | 8:00AM–8:45AM PT | Regency Ballroom D-G, Second Floor
Session Type: Breakout Session
Delivery Format: Presentation/Panel Session

We will share lessons we learned from completing the first cycle of the University of Chicago’s cybersecurity assessment program, the feedback we received from participants (and auditors), and the revisions we have made for our second assessment cycle. We will describe the ways in which we created, revised, and delivered reports for leadership and participants; solicited and analyzed feedback from participants; leveraged internal auditors to review our approach; expanded the scope of the program; revised the assessment process, structure, and language; built infrastructure to support tracking, communications, and change management; and planned for the future of our assessment program.

Presenters

  • Cornelia Bailey

    Director, Information Assurance, University of Chicago
  • Gabriel McElwain

    IT Risk Analyst, University of Chicago
  • David Mendez

    Risk Analyst, University of Chicago
  • Jessica Sandy

    Governance, Risk, and Compliance Manager, University of Chicago

Resources & Downloads

  • Expanding Annual Cybersecurity Assessments Presentation Slides

    Updated on 5/2/2023