Advanced Cyber Analytics

This report examines the subject of advanced cyber analytics.  It makes the case for states to invest in such capabilities and maintain ongoing maturity in advanced analytics.  All organizations, including state government must also develop and maintain response capabilities that continuously mature in sophistication in order to keep pace with an ever changing threat landscape. State government remains in a defensive position.  With the advent of multi-vector strategies by cyber criminals, state government now more than ever needs the ability to correlate disparate data sources generated from the myriad of security tools agencies have already invested in.  Examples of advanced analytics tools are provided.  The report includes a call to action list, a checklist, key questions, and recommendations.

Download

 

NASCIO & NIEM Working Together

This webinar presents a discussion on how government can improve its effectiveness through better collaboration and information sharing. Examples of intergovernmental collaborative projects are presented by state and local government recipients of the Best of NIEM awards.

What is NIEM? What should you know about the power of NIEM? As highlighted in NASCIO’s 2016 Advocacy Priorities, many, if not all, federal, state, local, tribal and territorial (SLTT) government agencies require some form of information sharing. To address this growing need, the National Information Exchange Model (NIEM) is being utilized by all levels of government to advance information sharing efforts and improve the combined performance of agencies and jurisdictions that share information. State government agencies in justice, law enforcement, human services, emergency management and others can reap the benefits of a common framework for information exchange.

NIEM can save organizations time and money by providing consistent, reusable, and repeatable data terms, definitions, and processes. Although NIEM is ten years old, more awareness, education and broader adoption is needed.

Watch this webinar to learn more about the NIEM Program and ways organizations can leverage NIEM for information exchange. The webinar presents the Best of NIEM 2015 winners and shares their stories of how NIEM has helped their organizations improve performance, increase efficiencies, and advance their mission.

Watch the Recording

 

Download Presentation

Cyber Disruption Response Planning Guide

 

State government must now view cyber attacks that are more than cyber incidents.  We must prepare for larger magnitude events.  These can be termed cyber disruptions, disasters or even catastrophes.  This publication includes the following:

  • A call to action for states to develop state cyber disruption response plans that include: a governance structure that clearly designates who is in charge in a given event or phase of an event; development of a risk profile for state assets; collaboration among the various agencies that have cyber responsibility; and a communication plan to ensure the right people have the right information as early as possible so they can response effectively.
  • A checklist for states to work with in developing progress toward a cyber disruption response operating discipline.
  • A cross functional process description that can be used as a starting point for states to develop their own unique cross functional process for orchestrated planning and response at various threat levels.

 

Download

Limitations on Liability Infographic

NASCIO’s 2004 publication NASCIO on Unlimited Liability – Gaining Traction on the Road to “Win-Win” recommended changes to the state IT procurement policy regarding limitations on liability.  This infographic indicates, as of December 2015, which states have have limitations on liability in statute, which states have none, and which states are able to negotiate limitations on a case by case basis.

 

Download

Recommendations for Improved State IT Procurement

The state information technology (IT) community has long called for improvements in IT procurement processes and practices and state chief information officers (CIOs) are consistently dissatisfied with the state IT procurement process. In the 2015 state CIO survey, The Value Equation, roughly one half (47%) of state CIOs expressed negative outlooks on IT procurement processes.Because of this consistent level of dissatisfaction, NASCIO is advocating for procurement reform by issuing a call to action to states.

Download

State CIO Top Ten Policy and Technology Priorities for 2016

Each year NASCIO conducts a survey of the state CIOs to identify and prioritize the top policy and technology issues facing state government. The CIOs top ten priorities are identified and used as input to NASCIO’s programs, planning for conference sessions, and publications.

Download

 

Data: the Lifeblood of State Government

This report presents the case for investing in data management. It presents in simple terms WHY data and information must be properly managed. The report presents basic rationale for investing in the development of a formal data management program. This report is the first in a series of reports that will deal with WHY is data management important; HOW does state government get started; Legal aspects of data management.

 

Download

State of Michigan and State of Connecticut on Cyber Disruption

NASCIO Innovations Forum: State of Michigan and State of Connecticut on Cyber Disruption

Learn how the states of Michigan and Connecticut developed their respective State Government Cyber Disruption Response Plans.

Panelists:

Chris Christensen Director of Office of Infrastructure Protection Department of Technology Management & Budget State of Michigan
David Geick Director, IT Security DAS/Bureau of Enterprise Systems and Technology State of Connecticut

Sheri DeVaux IT Security Manager DAS/Bureau of Enterprise Systems and Technology State of Connecticut

Host:
Eric Sweden, MBA, MSIH
Program Director, Enterprise Architecture & Governance
NASCIO

 

View Webinar Recording

2015 CISO Toolkit

Moving Forward: Leadership Toolkit for State CISOs includes state CISO critical leadership traits, how state CISOs and private sector CISOs differ and the tenure of state CISOs. This publication examines survey responses, gives “advice from the trenches” and details other critical success factors for state CISOs.

 

Download

The 2015 State CIO Survey: The Value Equation

NASCIO, Grant Thornton LLP and CompTIA have collaborated for a sixth consecutive year to survey state government IT leaders on current issues, trends and perspectives. The survey sponsors seek to provide these state government IT leaders with an opportunity to voice their thoughts and opinions on matters of high importance. Governors, legislatures and business leaders can benefit from these knowledgeable insights about essential state IT services. As highlighted in the survey results, the state IT and business landscape continues to change, reflecting both emerging approaches to delivering IT products and services, and also the faster paced, more complex environment faced by state CIOs. We asked state CIOs to share their perspective on a number of topics, with a particular focus on the emerging role of the CIO as a broker of shared services, and on the use of incremental software development approaches to accelerate the delivery of value to customers. These topics share a common theme – customer expectations continue to rise, and state CIOs must be agile enough to adapt to changing circumstances and to rapidly deliver business value. State CIOs also shared their thoughts on the leadership attributes they perceive as most valuable for a state CIO, and which dimensions of the role were most critical for success. Cybersecurity , cloud services, mobility, broadband and IT procurement represent other high priority topics covered in the survey report.

 

Download

 

Interactive e-version

 

Downloadable Survey Charts