Sunday, August 12, 2007

Contract Measures and C&A

Certification and Accreditation process is proceeding apace. The external auditors are completing their assessment and our documentation is nearly done.

It's also summer which means its contract performance measures time (PEMP-o-Rama). We'll be adding our own assurance section to the CIO blog as soon as these are finalized. Right now, it looks like we'll have a new leadership metric for communication to senior management about cyber security risks and threats, as well as "Section 8" cyber metrics and a new, albeit small, scorecard for IT successes at LBL.

On the policy front, UCOP issued a whole new set of requirements which are quite well conceived, especially the new IS-3. We'll be evaluating what, if anything, needs to be done to update our community-facing (RPM) or internal facing (CSPP) policies to reflect the new UC policies in the coming weeks.

As a final note, the word for the week is: Burdensomeness.

Labels: , , , , ,

Thursday, July 5, 2007

Disaster Recovery Testing

LBL completed its Contingency Planning / Disaster Recovery testing cycle for the year. This involved multiple technical tests and several large scale tabletops. Results were reported on July 4, 2007 to BSO and SC-CIO.

Labels: , , , ,