Title: Kent Oelrich
1Implementation of ISSM at LLNL
Kent Oelrich SE SIG Workshop April 1, 2003
2LLNL Strategy for ISSM Implementation
- FY2001-2002 (Phase 1)
- Identify, develop and deploy a broad range of
mechanisms and information needed to achieve ISSM
objectives - FY2003 (Phase 2)
- Deliver, apply and refine the mechanisms and
information and Directorates conduct limited
scope self-assessments - FY2004-2005 (Phase 3)
- Assess the effectiveness of Directorates
integration of security into managers and
employees work practices - Assess the effectiveness of Security Programs
support to Directorates integration of security
into work practices
3FY2001-2002 (Phase 1)Identify, develop and
deploy a broad range of mechanisms and
information needed to achieve ISSM objectives
- Six Major Task Areas
- Better Define Requirements
- Define Roles, Responsibilities and Authorities
(RRAs) - Strengthen and Provide Additional Tools to Help
Each Person Meet RRAs - Improve mechanisms for providing information to
workers and managers - Improve mechanisms to obtain timely input from
workers and managers - Enhance and validate feedback, improvement, and
accountability mechanisms
4FY2003 (Phase 2)Deliver, apply and refine the
mechanisms and information and Directorates
conducts self-assessments
- Activities for Improvement of Mechanisms and
Dissemination of Information - Conduct Needs Assessment
- Develop Continuous Improvement Project Plan
- Evaluate Implementation of ISSM
- Ensure Effective Communication of RRAs and
Accomplishments to Managers and Employees - Ensure Effective Feedback and Improvement
Mechanisms - Conduct Directorate Self-Assessments (Limited
Scope)
General theme for FY03 is to evaluate our
effectiveness in deploying ISSM and to identify
areas for improvement.
5FY 2004 and 2005 (Phase 3) Assess the
effectiveness of Directorates integration of
security into managers and employees work
practices
- Activities for Improvement of Mechanisms and
Dissemination of Information - Conduct Needs Assessment
- Develop Continuous Improvement Project Plan
- Conduct Directorate Self-Assessments of Greater
Depth
6ISSM and the Role of the Security Awareness
Coordinator
- Volunteer or assume ISSM responsibilities that
will bring your program long term successes - Utilize employee feedback to make adjustments to
program and training mechanisms - Express security in terms of value added, and not
compliance - Allow managers and employees to assume
responsibility for making security decisions - Seize the moment!