《透明胜于保密.pdf》由会员分享,可在线阅读,更多相关《透明胜于保密.pdf(20页珍藏版)》请在三个皮匠报告上搜索。
1、How we built a security scorecard that drives accountability without fearTransparency over secrecy August 2025Information Security Senior Program Manager Gina AndrewsRocket team member since 2021,spearheading awareness initiatives.Human behavior focusedFormer marketing and event planner for a local
2、non-profitBig picture thinkerGame show junkieMeet the speakersTransparency over secrecy 2Director,Information SecurityJohn CarrServed Rocket since 2007,leading various InfoSec teams.Former IT&InfoSec architect,engineer,sales engineer,consultant,auditor,penetration tester,cat herderLoves people and t
3、echEats a lot of Indian and Ethiopian foodRetrocomputing dorkRCompany Lingo Transparency over secrecy Headquartered in Detroit,MIFinancial Services industry18,000 team members Serves millions of clients nationwideRecognized as a top place to work and a leader in digital transformation23 J.D.Power aw
4、ards in origination and servicing over the past 15 yearsStrong startup-style,scrappy,tech-forward culture3Who is Rocket?R4Problem&VisionTransparency over secrecy Team members were unaware of their InfoSec performanceNo standardized way to measure or improve behaviorHuman risk lacked visibility and c
5、ontextPROBLEMEmpower individuals through personalized feedbackProvide leadership visibility into behavioral trendsShift from secrecy to transparency without fearVISIONRWhat is the Security Scorecard?Transparency over secrecy The Scorecard measures the performance of each team member during InfoSec e
6、xercises to determine an individuals information security risk index.Tooling used:Cofense PhishMePower BIExcel5R6R7Team member viewTransparency over secrecy R8Team leader viewTransparency over secrecy RThe scoring modelTransparency over secrecy 9Weightedscores:Didnotclickonphishingsimulationlink:+1C