Auditing with the Critical Security Controls in Washington State
|
|
- Stephany Flynn
- 5 years ago
- Views:
Transcription
1 Auditing with the Critical Security Controls in Washington State 2017 NSAA IT Conference and Workshop October 6, 2017 Joe Clark Performance Auditor Sunia Laulile IT Security Specialist Michael Hjermstad Assistant Audit Manager O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r What we will cover today Impact of our IT security audits Audit program and tools we use Lessons learned O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 2
2 What we do and why IT security audits are important to: Identify security gaps in state and local government IT systems Offer remedies and strategies to improve IT security through our recommendations The goal: To help governments better serve Washingtonians and protect the data they hold O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 3 A sample of audit findings reveals serious problems Procedural deficiencies Lack of policies and procedures Broken vulnerability and patch management processes Incomplete visibility into networks Technical vulnerabilities Missing patches Misconfigured devices O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 4
3 Agency reactions demonstrate audit value Remediate vulnerabilities as quickly as possible Correct procedural deficiencies Prioritize security Agencies request audits O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 5 Building expertise within our Office Auditors Lead and conduct audits Communicate with auditees Develop findings and recommendations Technical support Solicit feedback and clarification IT security specialists Review/validate findings Help craft findings and recommendations Knowledge transfer to auditors and auditees O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 6
4 Audits scoped in two parts Penetration testing Critical Security Controls assessment Interviews Validation Core testing O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 7 Critical Security Control assessment Critical Security Controls (CSCs) Prioritized list of security measures, focused on value Endorsed by public and private organizations Surveyed WA state agencies prefer CSCs over NIST O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 8
5 The CSCs we use 1. Inventory of authorized and unauthorized devices 2. Inventory of authorized and unauthorized software 3. Secure configurations for hardware and software 4. Continuous vulnerability assessment and remediation 5. Controlled use of administrative privileges 11. Secure configurations for network devices O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 9 CSC audit program Measurable sub-controls to implement each CSC Developed procedures using AuditScripts criteria, examining four topic areas: Policy Implementation Automation/Technical enforcement Reporting O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 10
6 CSC assessment procedures Interviews Assessment sheets sent to auditee in advance Participants may include: CIO CISO IT staff Allocate about three hours to review each control O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 11 CSC assessment procedures Validation Technical validation includes: Observations Screenshots Assessment with tools Level of evidence depends on risk and significance Goal: Conduct all interviews and validation in one week O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 12
7 Validation tools in our toolbox Tenable Nessus AdAssetInventory.PS1 Lynis O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 13 Validation tool: Nessus Name: Tenable Nessus Paid license required Purpose: Identify vulnerabilities Perform security benchmark tests Assess maturity level of patch and vulnerability management O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 14
8 Validation tool: Nessus O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 15 Validation tool: Nessus Output review Review security groups Identify critical vulnerabilities Assess system configuration Value Can identify configuration and software weaknesses Assesses many types of systems O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 16
9 Validation tool: AD Asset Inventory Name: AdAssetInventory.PS1 Cost: Free Purpose: Identify membership in default privilege groups Verify accounts follow security standards (such as password requirements) O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 17 Validation tool: AD Asset Inventory O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 18
10 Validation tool: AD Asset Inventory O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 19 Validation tool: AD Asset Inventory Output review Review security group membership Is least privilege being followed? Are standards being followed? Value Provides heat map of accounts of interest Generates both HTML and Excel outputs of reports Can be run with user-level permissions O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 20
11 Validation tool: Lynis Name: Lynis Cost: Free Purpose: Gain situational awareness on Linux/Unix systems Assess whether system follows known best practices O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 21 Validation tool: Lynis O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 22
12 Validation tool: Lynis HRDN-7230 Harden the system by installing at least one malware scanner, to perform periodic file system scans O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 23 Validation tool: Lynis Output review Review warnings and suggestions provided by tool Patch levels and configurations Value Assess Linux/Unix systems With another tool, generate PDF or HTML for easier viewing O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 24
13 CSC assessment procedures Core testing Core evaluation testing Effectiveness test for each CSC Demonstrates importance of CSC Mostly technical/hands-on Minimize risk to and impact on organization Conduct in one week Follow Rules of Engagement O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 25 Audit results Overview Deliverable Critical Security Control assessment sheets AuditScripts spreadsheet Critical Security Control results document Audience IT management, technical staff Executives, IT management, technical staff Executives, IT management O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 26
14 Audit results CSC Assessment Sheets Result of interviews and testing Used to document and aggregate evidence Specific, detailed results Intended for technical staff Conclusions feed into AuditScripts spreadsheet O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 27 Audit results AuditScripts spreadsheet Includes dashboard with charts/graphs Intended for agency technical staff and mid-level management Customized by our auditors O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 28
15 AuditScripts dashboard O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 29 AuditScripts dashboard O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 30
16 AuditScripts dashboard O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 31 AuditScripts dashboard O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 32
17 AuditScripts CSC 1 Tab O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 33 AuditScripts CSC 1 Tab O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 34
18 AuditScripts CSC 1 Tab O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 35 AuditScripts CSC 1 Tab O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 36
19 AuditScripts CSC 1 Tab O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 37 AuditScripts CSC 1 Tab O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 38
20 Audit results Critical Security Controls Results in brief Overall results Detailed results section Explains why each control is important What we found Our recommendations O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 39 CSC Results In Brief Maturity Rating Implementation by Control O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 40
21 CSC Results Control Introduction Control description Does the organization have and maintain an inventory of all the devices that are connected to its network? Why this control is important O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 41 CSC Results What the audit found What the audit found Alignment percentage Implementation description Areas of strength Areas for improvement Test results Reasons not fully implemented O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 42
22 CSC Results Recommendations General recommendations Covers all of the sub-controls Specific recommendations Unique to the government Resource aware Provides prioritization O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 43 Public reporting and confidentiality Information largely protected under state law RCW (4) Public audit reports published with limited details Present high-level results to governing stakeholders Joint Legislative Audit and Review Committee for state audits Council, board or executive for local audits O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 44
23 Lessons learned Start interviews with Implementation question Core evaluation tests will be optional Clearly communicate audit expectations to auditee O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 45 References AuditScripts spreadsheet: Center of Internet Security Critical security controls: Additional tools listed on slides State Auditor s Office website: O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 46
24 Questions? O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 47 Contacts Joseph Clark Performance Auditor (360) Joseph.Clark@sao.wa.gov Pat McCarthy State Auditor (360) Pat.McCarthy@sao.wa.gov Chuck Pfeil, CPA Director of Performance Audit (360) Chuck.Pfeil@sao.wa.gov Michael Hjermstad Assistant Audit Manager (253) Michael.Hjermstad@sao.wa.gov Sunia Laulile IT Security Specialist (360) Sunia.Laulile@sao.wa.gov O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 48
25 Tools used in our audits Nessus: Gain awareness of patch levels Check systems against known benchmarks Gain awareness of privileged accounts Lynis: Free audit tool for Linux, Unix, and Apple systems. AdAssetInventory.PS1: Active-Directory-Audit-7754a877 PowerShell script that identifies privileged accounts in AD and provides insight O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 49 More tools used in our audits NetBrain: Maps networks for situational awareness Generates network diagram Assists in configuration review Nipper: Networking auditing tool CIS-CAT: Center of Internet Security tool for checking CIS benchmarks O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 50
Internal Audit Report
Internal Audit Report Right of Way Mapping TxDOT Internal Audit Division Objective To determine the efficiency and effectiveness of district mapping procedures. Opinion Based on the audit scope areas reviewed,
More informationThe purpose of this report is to recommend a Geographic Information System (GIS) Strategy for the Town of Richmond Hill.
Staff Report for Committee of the Whole Meeting Department: Division: Subject: Office of the Chief Administrative Officer Strategic Initiatives SRCAO.18.12 GIS Strategy Purpose: The purpose of this report
More informationIntroduction to Portal for ArcGIS
Introduction to Portal for ArcGIS Derek Law Product Management March 10 th, 2015 Esri Developer Summit 2015 Agenda Web GIS pattern Product overview Installation and deployment Security and groups Configuration
More informationGIS for Crime Analysis. Building Better Analysis Capabilities with the ArcGIS Platform
GIS for Crime Analysis Building Better Analysis Capabilities with the ArcGIS Platform Crime Analysis The Current State One of the foundations of criminological theory is that three things are needed for
More informationEconomic and Social Council
United Nations Economic and Social Council Distr.: General 18 July 2016 Original: English Committee of Experts on Global Geospatial Information Management Sixth session New York, 3-5 August 2016 Item 2
More informationIntroduction to Portal for ArcGIS. Hao LEE November 12, 2015
Introduction to Portal for ArcGIS Hao LEE November 12, 2015 Agenda Web GIS pattern Product overview Installation and deployment Security and groups Configuration options Portal for ArcGIS + ArcGIS for
More informationREVIEW OF THE EMERGING ISSUES TASK FORCE
REVIEW OF THE EMERGING ISSUES TASK FORCE Conclusions and Recommendations Financial Accounting Standards Board www.fasb.org REVIEW OF THE EMERGING ISSUES TASK FORCE BACKGROUND OF THE EITF The Financial
More informationPROGRESS REPORT ON APPROACH PAPER THE IMPLEMENTATION OF THE GEF KNOWLEDGE MANAGEMENT. GEF/C.49/Inf.04 September 23, 2015
49 th GEF Council Meeting October 20 22, 2015 Washington, D.C. GEF/C.49/Inf.04 September 23, 2015 PROGRESS REPORT ON THE IMPLEMENTATION OF THE GEF KNOWLEDGE MANAGEMENT APPROACH PAPER TABLE OF CONTENTS
More informationECONOMIC AND SOCIAL COUNCIL 13 July 2007
UNITED NATIONS E/CONF.98/CRP.34 ECONOMIC AND SOCIAL COUNCIL 13 July 2007 Ninth United Nations Conference on the Standardization of Geographical Names New York, 21-30 August 2007 Item 17(b) of the provisional
More informationD2E GIS Coordination Initiative Functional Transformation Kick-Off Meeting
D2E GIS Coordination Initiative Functional Transformation Kick-Off Meeting GIS Functional Transformation Kick-Off Meeting May 13, 2008 D2E GIS Coordination Initiative Functional Transformation Kick-Off
More informationEmpowering Local Health through GIS
Empowering Local Health through GIS Mapping data from Washington s Immunization Information System (IIS). Presented to IACW October 16 th, 2013 by: Chris Halsell and Isaiah Berg Agenda IIS Overview Why
More informationPortal for ArcGIS: An Introduction
Portal for ArcGIS: An Introduction Derek Law Esri Product Management Esri UC 2014 Technical Workshop Agenda Web GIS pattern Product overview Installation and deployment Security and groups Configuration
More informationState GIS Officer/GIS Data
State GIS Officer/GIS Data This Act creates the position of state Geographic Information Systems (GIS) officer. The Act: requires the state GIS officer to adopt or veto the GIS data standards and a statewide
More informationPortal for ArcGIS: An Introduction. Catherine Hynes and Derek Law
Portal for ArcGIS: An Introduction Catherine Hynes and Derek Law Agenda Web GIS pattern Product overview Installation and deployment Configuration options Security options and groups Portal for ArcGIS
More informationNOAA S2S Planning. Dave DeWitt Fred Toepfer
NOAA S2S Planning Dave DeWitt Fred Toepfer 1 Agenda 1. Brief synopsis of The Weather Research and Forecasting Act of 2017 2. Report to Congress a. Timeline b. Process c. Document Outline 3. Some Preliminary
More informationLeveraging Web GIS: An Introduction to the ArcGIS portal
Leveraging Web GIS: An Introduction to the ArcGIS portal Derek Law Product Management DLaw@esri.com Agenda Web GIS pattern Product overview Installation and deployment Configuration options Security options
More informationControlled Substances: TSCA the Toxic Substances Control Act
The select agent list and relevant regulatory program information are maintained by the CDC and can be found on the select agent web site http://www.selectagents.gov/. The regulations covering select agents
More informationCHAPTER 22 GEOGRAPHIC INFORMATION SYSTEMS
CHAPTER 22 GEOGRAPHIC INFORMATION SYSTEMS PURPOSE: This chapter establishes the administration and use of to improve the quality and accessibility of Department s spatial information and support graphical
More informationLaw Enforcement Solutions and Applications
ArcGIS for Solutions and Applications Solutions and Applications ArcGIS for Platform ArcGIS for Collection of solutions and applications for law enforcement. Built on the ArcGIS platform. For any named
More informationGEOGRAPHIC INFORMATION SYSTEMS Session 8
GEOGRAPHIC INFORMATION SYSTEMS Session 8 Introduction Geography underpins all activities associated with a census Census geography is essential to plan and manage fieldwork as well as to report results
More informationfile://q:\report1\greenatlasfinalreportindex.html
Page 1 of 8 Quick Links WATER MANAGEMENT INTERNSHIP USDA HIS GRANT FUNDED FINAL PROJECT REPORT SUBMITTED BY MELISSA QUINTANA 11/07/07-03/24/08 Summary Provided is an assessment of my accomplishments for
More informationGIS Capability Maturity Assessment: How is Your Organization Doing?
GIS Capability Maturity Assessment: How is Your Organization Doing? Presented by: Bill Johnstone Principal Consultant Spatial Vision Group November 8, 2018 1. Motivation for Capability Maturity Models
More informationRealizing benefits of Spatial Data Infrastructure A user s perspective from Environment Agency - Abu Dhabi
Realizing benefits of Spatial Data Infrastructure A user s perspective from Environment Agency - Abu Dhabi Anil Kumar Director, Environment Information Management 26 April 2012 Geospatial World Forum,
More informationESTA governance Quality Assurance System for Seed Treatment and Treated Seed
ESTA governance Quality Assurance System for Seed Treatment and Treated Seed Version 2.1 Contents On the scope and purpose of this Quality Assurance system... 1 Legislation... 1 Governance aspects covered
More informationCHAPTER 3 RESEARCH METHODOLOGY
CHAPTER 3 RESEARCH METHODOLOGY 3.1 INTRODUCTION The research methodology plays an important role in implementing the research and validating the results. Therefore, this research methodology is derived
More informationCEDAR CREST MUTUAL DOMESTIC WATER CONSUMERS & SEWAGE WORKS ASSOCIATION. December 31, 2016
CEDAR CREST MUTUAL DOMESTIC WATER CONSUMERS Table of Contents Page Official Roster i Independent Accountants Report on Applying Agreed Upon Procedures 1 Schedule of Revenues and Expenditures Budget and
More informationKansas Next Generation 911
Kansas Next Generation 911 Kansas Next Generation 911 the largest IT project in state history* the largest GIS project in state history* * could be...has not been fact checked Project overview Primary
More informationJOB TITLE: CURRENT CLASSIFICATION/GRID POSITION # GIS Coordinator AD Grid Level 6(c) # 420
COUNTY OF GRANDE PRAIRIE JOB DESCRIPTION JOB TITLE: CURRENT CLASSIFICATION/GRID POSITION # GIS Coordinator AD Grid Level 6(c) # 420 NOC CODE: 2255 STANDARD HOURS: 35 hours/week (non-management) JOB TITLE
More information2018/1 The integration of statistical and geospatial information. The Regional Committee of UN-GGIM: Americas:
The following are the conclusions and recommendations of the Regional Committee of the United Nations on Global Geospatial Information Management for the Americas, during its Fifth Session, Thursday 8
More informationA Governance Framework for Geographic Data, Services, and Applications. Colin MacDonald Esri UC 2017
A Governance Framework for Geographic Data, Services, and Applications Colin MacDonald Esri UC 2017 Some Context Nova Scotia, Canada Population ~1,000,000 Photos copyright Province of Nova Scotia Geomatics
More informationSource Protection Zones. National Dataset User Guide
Source Protection Zones National Dataset User Guide Version 1.1.4 20 th Jan 2006 1 Contents 1.0 Record of amendment...3 2.0 Introduction...4 2.1 Description of the SPZ dataset...4 2.1.1 Definition of the
More informationChemical Safety as a Core ACS Value: Report on the 2018 Safety Summit
Chemical Safety as a Core ACS Value: Report on the 2018 Safety Summit Introduction In December 2016, the ACS Board of Directors adopted safety as one of the Society s core values, thus affirming that the
More informationPresentation of the Cooperation Project goals. Nicola Ferrè
Presentation of the Cooperation Project goals Nicola Ferrè Project goals Capacity development for implementing a Geographic Information System (GIS) applied to surveillance, control and zoning of avian
More informationChapter X: Radiation Safety Audit Program
Chapter X: Radiation Safety Audit Program Policy All laboratories using radioactive material shall be reviewed as required by the Illinois Emergency Management Agency (IEMA), Division of Nuclear Safety
More informationØrsted. Flexible reporting solutions to drive a clean energy agenda
Ørsted Flexible reporting solutions to drive a clean energy agenda Ørsted: A flexible reporting solution to drive a clean energy agenda Renewable energy company Ørsted relies on having a corporate reporting
More informationStatus of implementation of the INSPIRE Directive 2016 Country Fiches. COUNTRY FICHE Netherlands
Status of implementation of the INSPIRE Directive 2016 Country Fiches COUNTRY FICHE Netherlands Introduction... 1 1. State of Play... 2 1.1 Coordination... 2 1.2 Functioning and coordination of the infrastructure...
More informationGeographic information strategy
Department for Environment, Food and Rural Affairs Geographic information strategy Methodology JULY 2011 2 Geographic information strategy Methodology This document provides a detailed description of the
More informationCompensation Planning Application
Compensation Planning Application Why Physician Compensation? More and more organizations are formally aligning with physicians. These organizations require large support structures to effectively manage
More informationWeb GIS Deployment for Administrators. Vanessa Ramirez Solution Engineer, Natural Resources, Esri
Web GIS Deployment for Administrators Vanessa Ramirez Solution Engineer, Natural Resources, Esri Agenda Web GIS Concepts Web GIS Deployment Patterns Components of an On-Premises Web GIS Federation of Server
More informationStatus of implementation of the INSPIRE Directive 2016 Country Fiches. COUNTRY FICHE Malta
Status of implementation of the INSPIRE Directive 2016 Country Fiches COUNTRY FICHE Malta Introduction... 1 1. State of Play... 2 1.1 Coordination... 2 1.2 Functioning and coordination of the infrastructure...
More informationCreating A-16 Compliant National Data Theme for Cultural Resources
Creating A-16 Compliant National Data Theme for Cultural Resources Cultural Resource GIS Facility National Park Service John J. Knoerl Deidre McCarthy Paper 169 Abstract OMB Circular A-16 defines a set
More informationTulare County Office of Education BTSA Induction Consortium
Tulare County Office of Education BTSA Induction Consortium Biennial Report 5/17/10 Page 1 of 15 Local Educational Agency CD Code 54-10546 Section A, Part I: Contextual Information Biennial Report Contextual
More informationOregon Department of Transportation. Geographic Information Systems. Implementation Plan. Adopted November, 2000 By the GIS Steering Committee
Oregon Department of Transportation Geographic Information Systems Implementation Plan Adopted November, 2000 By the GIS Steering Committee Introduction The Oregon Department of Transportation (ODOT) GIS
More informationCanada s Experience with Chemicals Assessment and Management and its Application to Nanomaterials
Canada s Experience with Chemicals Assessment and Management and its Application to Nanomaterials European Chemicals Agency (ECHA) Topical Scientific Workshop: Regulatory Challenges in Risk Assessment
More information8 th Arctic Regional Hydrographic Commission Meeting September 2018, Longyearbyen, Svalbard Norway
8 th Arctic Regional Hydrographic Commission Meeting 11-13 September 2018, Longyearbyen, Svalbard Norway Status Report of the Arctic Regional Marine Spatial Data Infrastructures Working Group (ARMSDIWG)
More informationMapping of potential for mini-hydro and mini-wind in the Southeast region of Sweden
IEE/07/797/S12.499715 acronym RURAL-RES Report: Mapping of potential for mini-hydro and mini-wind in the Southeast region of Sweden Region: Southeast Sweden with the Counties of Blekinge, Kronoberg and
More informationGIS ADMINISTRATOR / WEB DEVELOPER EVANSVILLE-VANDERBURGH COUNTY AREA PLAN COMMISSION
GIS ADMINISTRATOR / WEB DEVELOPER EVANSVILLE-VANDERBURGH COUNTY AREA PLAN COMMISSION SALARY RANGE INITIATION $43,277 SIX MONTHS $45,367 POSITION GRADE PAT VI The Evansville-Vanderburgh County Area Plan
More informationThe World Bank Mali Reconstruction and Economic Recovery (P144442)
Public Disclosure Authorized AFRICA Mali Social, Urban, Rural and Resilience Global Practice Global Practice IBRD/IDA Emergency Recovery Loan FY 2014 Seq No: 7 ARCHIVED on 30-Jun-2017 ISR28723 Implementing
More informationUSEPA's Comprehensive Geospatial Information Sharing Framework
USEPA's Comprehensive Geospatial Information Sharing Framework An Overview ESRI Federal User Conference February 22, 2008 Agenda Background What is EPA s Geospatial Information Sharing Framework? Why was
More informationSummary Description Municipality of Anchorage. Anchorage Coastal Resource Atlas Project
Summary Description Municipality of Anchorage Anchorage Coastal Resource Atlas Project By: Thede Tobish, MOA Planner; and Charlie Barnwell, MOA GIS Manager Introduction Local governments often struggle
More informationSpace Weather & Critical Infrastructures
Space Weather & Critical Infrastructures Italy Organisers EC JRC, MSB, UK Met Office Date and Venue 29-30 November 2016, JRC Ispra, Background Our modern technological infrastructures on the ground and
More informationPeterborough Distribution Inc Ashburnham Drive, PO Box 4125, Station Main Peterborough ON K9J 6Z5
Peterborough Distribution Inc. 1867 Ashburnham Drive, PO Box 4125, Station Main Peterborough ON K9J 6Z5 November 15, 2017 Ontario Energy Board PO Box 2319 27 th Floor, 2300 Yonge St Toronto ON M4P 1E4
More informationAnalysis of Regional Fundamental Datasets Questionnaire
Permanent Committee on GIS Infrastructure for Asia and the Pacific Working Group 2 Regional Fundamental Data Summary Report on Analysis of Regional Fundamental Datasets Questionnaire ABBAS RAJABIFARD and
More informationSystematic Review Round 7 Application Form
Systematic Review Round 7 Application Form SR7/1063 1. BASIC PROJECT INFO (i) Title of Proposed Review * Systematic review question.download detailed SR7 questions here Title of the study if more focused
More informationDr. Steven Koch Director, NOAA National Severe Storms Laboratory Chair, WRN Workshop Executive Committee. Photo Credit: Associated Press
Dr. Steven Koch Director, NOAA National Severe Storms Laboratory Chair, WRN Workshop Executive Committee 1 Photo Credit: Associated Press 1" 2" Much%Increased%Vulnerability%to% High6Impact%Weather% %even%before%2011!%
More informationHighlights. Situation Overview
Situation report issued by NDMO Vanuatu This report covers the period from 10 March 2015 Highlights Tropical Cyclone Pam Cat 3 enters Vanuatu grid at 8:00 on 11 March 2013. The Vanuatu Met Services has
More informationBuilding a National Data Repository
Building a National Data Repository Mladen Stojic, Vice President - Geospatial 1/30/2013 2012 Intergraph Corporation 1 Information has meaning and gives power only when shared and distributed. Information,
More informationGIS Needs Assessment. for. The City of East Lansing
GIS Needs Assessment for The City of East Lansing Prepared by: Jessica Moy and Richard Groop Center for Remote Sensing and GIS, Michigan State University February 24, 2000 Executive Summary At the request
More informationARGUS.net IS THREE SOLUTIONS IN ONE
OVERVIEW H i g h l y c o n f i g u r a b l e s o f t w a r e a c c o m m o d a t e s a w i d e r a n g e o f c o l l e c t i o n s T h r e e s o l u t i o n s c o v e r P o r t a l s, C o l l e c t i o
More informationMarine Debris in the Gulf of Mexico
Marine Debris in the Gulf of Mexico Peter Murphy NOAA Marine Debris Program / Genwest Biloxi, Mississippi October 25, 2009 Outline 1. Project Background 2. Process 3. 2006-2007 Alabama, Mississippi 4.
More informationDavid Lanter PhD GISP. Information Security Risks and Controls of Public Geospatial Datasets July 17, 2014
David Lanter PhD GISP Information Security Risks and Controls of Public Geospatial Datasets July 17, 2014 This Presentation CDM Smith applies GIS and develops custom applications producing, deploying and
More informationHELCOM-VASAB Maritime Spatial Planning Working Group Twelfth Meeting Gdansk, Poland, February 2016
HELCOM-VASAB Maritime Spatial Planning Working Group Twelfth Meeting Gdansk, Poland, 24-25 February 2016 Document title HELCOM database for the coastal and marine Baltic Sea protected areas (HELCOM MPAs).
More informationAuthor(s): Charles K. Cover, P.E. Federal Energy Regulatory Commission
Using GIS to Help Manage a National Energy Program Author(s): Charles K. Cover, P.E. Federal Energy Regulatory Commission The Federal Energy Regulatory Commission (FERC) has statutory oversight on key
More informationFour Basic Steps for Creating an Effective Demand Forecasting Process
Four Basic Steps for Creating an Effective Demand Forecasting Process Presented by Eric Stellwagen President & Cofounder Business Forecast Systems, Inc. estellwagen@forecastpro.com Business Forecast Systems,
More informationProject Charter. $58,000 See attached budget report. shapefile to track poles and pole attachments. Poles are defined as a support structure on
Project Charter Title: Pole and Pole Attachment Geodatabase Design Sponsor: City of Philadelphia Streets Department Date: May 10, 2006 Estimated Start Date: June 1, 2006 Projected Finish Date: October
More informationR E A D : E S S E N T I A L S C R U M : A P R A C T I C A L G U I D E T O T H E M O S T P O P U L A R A G I L E P R O C E S S. C H.
R E A D : E S S E N T I A L S C R U M : A P R A C T I C A L G U I D E T O T H E M O S T P O P U L A R A G I L E P R O C E S S. C H. 5 S O F T W A R E E N G I N E E R I N G B Y S O M M E R V I L L E S E
More informationUS National Spatial Data Infrastructure A Spatial Framework for Governance and Policy Development to Enable a Location-Based Digital Ecosystem
GeoPlatform Workshop 7 Dec 2016, Department of the Interior Washington, D.C. US National Spatial Infrastructure A Spatial Framework for Governance and Policy Development to Enable a Location-Based Digital
More informationUSGS Mineral Information Systems: Current Capabilities and Future Developments
USGS Mineral Information Systems: Current Capabilities and Future Developments Dr. Steven M Fortier, Director National Minerals Information Center United States Geological Survey U.S. Department of the
More informationOverview of the Chemicals Management Working Group and Chemicals Management Module. Ethical Sourcing Forum New York City March 27-28, 2014
Overview of the Chemicals Management Working Group and Chemicals Management Module Ethical Sourcing Forum New York City March 27-28, 2014 Today s Objectives INFORM webinar attendees about the Chemicals
More informationPOLICY ISSUE (INFORMATION)
POLICY ISSUE (INFORMATION) August 12, 2011 SECY-11-0112 FOR: FROM: SUBJECT: The Commissioners Michael R. Johnson, Director /RA/ Office of New Reactors STAFF ASSESSMENT OF SELECTED SMALL MODULAR REACTOR
More informationSpatial Data Availability Energizes Florida s Citizens
NASCIO 2016 Recognition Awards Nomination Spatial Data Availability Energizes Florida s Citizens State of Florida Agency for State Technology & Department of Environmental Protection Category: ICT Innovations
More information7 GEOMATICS BUSINESS SOLUTIONS - ANNUAL REPORT 2006
7 GEOMATICS BUSINESS SOLUTIONS - ANNUAL REPORT 2006 The Planning and Economic Development Committee recommends the adoption of the recommendation contained in the following report November 30, 2006, from
More informationProject Plan for the City of Philadelphia Pole and Pole Attachment Geodatabase Design Project
Project Plan for the City of Philadelphia Pole and Pole Attachment Geodatabase Design Project Project Overview: The City of Philadelphia is experiencing data integrity problems caused by data format issues.
More informationTOP MARKET SURVEY INSTRUCTION SHEET. Requirements. Overview
INSTRUCTION SHEET TOP SURVEY TOP SURVEY INSTRUCTION SHEET Overview For nearly 40 years, the ACA has surveyed member agencies and conducted the Top Collection Market Survey. This survey provides critical
More informationSWEDISH SDI DEVELOPMENT & IMPLEMENTATION OF INSPIRE
SWEDISH SDI DEVELOPMENT & IMPLEMENTATION OF INSPIRE Christina Wasström, Lantmäteriet, 801 82 Gävle, Sweden, christina.wasstrom@lm.se ABSTRACT The Swedish Government and Parliament has given Lantmäteriet
More informationGIS Data Conversion: Strategies, Techniques, and Management
GIS Data Conversion: Strategies, Techniques, and Management Pat Hohl, Editor SUB G6ttlngen 208 494219 98 A11838 ONWORD P R E S S V Contents SECTION 1: Introduction 1 Introduction and Overview 3 Ensuring
More informationLocation Intelligence Infrastructure Asset Management. Confirm. Confirm Mapping Link to ArcMap Version v18.00b.am
Location Intelligence Infrastructure Asset Management Confirm Confirm Mapping Link to ArcMap Version v18.00b.am Information in this document is subject to change without notice and does not represent a
More informationUSGS National Geospatial Program Understanding User Needs. Dick Vraga National Map Liaison for Federal Agencies July 2015
+ USGS National Geospatial Program Understanding User Needs Dick Vraga National Map Liaison for Federal Agencies July 2015 + Topics 2 Background Communities of Use User Surveys National Map Liaisons Partnerships
More informationFlood Map. National Dataset User Guide
Flood Map National Dataset User Guide Version 1.1.5 20 th April 2006 Copyright Environment Agency 1 Contents 1.0 Record of amendment... 3 2.0 Introduction... 4 2.1 Description of the Flood Map datasets...4
More informationCREATING CUSTOMIZED DATE RANGE COLLECTIONS IN PRESENTATION STUDIO
CREATING CUSTOMIZED DATE RANGE COLLECTIONS IN PRESENTATION STUDIO Date range collections are pre-defined reporting periods for performance data. You have two options: Dynamic date ranges automatically
More informationCalifornia GIS Strategic Plan Phase 2: Regional Participation. Generic All Workshops CA
California GIS Strategic Plan Phase 2: Regional Participation Generic All Workshops CA Collaboratives Represented Today? Bay Area Regional GIS Council Central Coast Joint Data Committee Channel Islands
More informationFINAL REPORT EVALUATION REVIEW OF TVA'S LOAD FORECAST RISK
Memorandum from the Office of the Inspector General Robert Irvin, WT 9C-K FINAL REPORT EVALUATION 2012-14507 REVIEW OF TVA'S LOAD FORECAST RISK As part of a series of reviews to evaluate the Tennessee
More informationGOVERNMENT MAPPING WORKSHOP RECOVER Edmonton s Urban Wellness Plan Mapping Workshop December 4, 2017
GOVERNMENT MAPPING WORKSHOP 12.4.17 RECOVER Edmonton s Urban Wellness Plan Mapping Workshop December 4, 2017 In July of 2017, City Council directed administration to develop RECOVER, Edmonton s Urban Wellness
More informationThe Group of Representative Bodies (GRB) Position Paper on the EC Expert Group on the Technical Pillar of the 4th Railway Package Topics
The Group of Representative Bodies (GRB) Position Paper on the EC Expert Group on the Technical Pillar of the 4th Railway Package Topics Brussels, 15.03.2017 1 P a g e Scope of this GRB position paper
More informationStrategic Plan for the Geospatial Teaching, Research, and Outreach in CNR. The CNR Geospatial Steering Committee, March 31, 2008
Strategic Plan for the Geospatial Teaching, Research, and Outreach in CNR The CNR Geospatial Steering Committee, March 31, 2008 Current Mission for the Geospatial Learning Center Established in 1995, the
More informationReport from the Geographic Information Coordinating Council
Report from the Geographic Information Coordinating Council Presented by: Dr. Lee Mandell, Chair North Carolina Geographic Information Coordinating Council What is GIS? Geography plays a role in nearly
More informationStatus of implementation of the INSPIRE Directive 2016 Country Fiches. COUNTRY FICHE Croatia
Status of implementation of the INSPIRE Directive 2016 Country Fiches COUNTRY FICHE Croatia Introduction... 1 1. State of Play... 2 1.1 Coordination... 2 1.2 Functioning and coordination of the infrastructure...
More informationWeather Information for Surface Transportation (WIST): Update on Weather Impacts and WIST Progress
Weather Information for Surface Transportation (WIST): Update on Weather Impacts and WIST Progress Samuel P. Williamson Office of the Federal Coordinator for Meteorological Services and Supporting Research
More informationDigital Weft. InterPARES as common thread in Vancouver s Digital Preservation Programme. CITRA Oslo Sept 15, 2010
Digital Weft InterPARES as common thread in Vancouver s Digital Preservation Programme CITRA Oslo Sept 15, 2010 Presentation Structure Context and Background City of Vancouver Archives and Records Programmes
More informationU.S. Geological Survey Agency Briefing for MAPPS Mark L. DeMulder Director, National Geospatial Program. March 12, 2013
+ U.S. Geological Survey Agency Briefing for MAPPS Mark L. DeMulder Director, National Geospatial Program March 12, 2013 + 3D Elevation Program (3DEP) National Leadership The National Enhanced Elevation
More informationICSM delivering benefits through collaboration
ICSM delivering benefits through collaboration Russell Priebbenow Chair and Queensland Member Australia and New Zealand s Intergovernmental Committee on Surveying and Mapping Overview Who is ICSM & why
More informationThe World Bank. Key Dates. Project Development Objectives. Components. Overall Ratings. Public Disclosure Authorized
Public Disclosure Authorized Public Disclosure Copy AFRICA South Sudan Urban Development Global Practice IBRD/IDA Specific Investment Loan FY 2013 Seq No: 4 ARCHIVED on 11-Feb-2015 ISR18127 Implementing
More informationReport on the establishment of UN GGIM: Europe Item 14. 4th session of the Committee of Experts on UN-GGIM
Report on the establishment of UN GGIM: Europe Item 14 1 Why regional European committees of UN GGIM? In the ECOSOC resolution 2011/24 on the UN GGIM: Emphasizes the importance of promoting national, regional
More informationThe Swedish National Geodata Strategy and the Geodata Project
The Swedish National Geodata Strategy and the Geodata Project Ewa Rannestig, Head of NSDI Co-ordination Unit, Lantmäteriet, ewa.rannstig@lm.se Ulf Sandgren, Project Manager Geodata Project, Lantmäteriet,
More informationWhat s the problem? A Modern Odyssey in Search of Relevance. The search for relevance. Some current drivers for new services. Some Major Applications
A Modern Odyssey in Search of Relevance FIG Working Week, Athens, 24 May 2004 Paul Kelly ANZLIC Executive Director The search for relevance 1. New expectations for spatial services 2. Are we ready to meet
More informationGEOGRAPHIC INFORMATION SYSTEM ANALYST I GEOGRAPHIC INFORMATION SYSTEM ANALYST II
CITY OF ROSEVILLE GEOGRAPHIC INFORMATION SYSTEM ANALYST I GEOGRAPHIC INFORMATION SYSTEM ANALYST II DEFINITION To perform professional level work in Geographic Information Systems (GIS) management and analysis;
More informationMiniature Fiber Optic Spectrometry StellarNet Tutorial
StellarNet Tutorial Using SpectraWiz VBA-NIST-CRI/CQS for MS Excel Contents This tutorial describes the basic measurement procedure for using a StellarNet SpectroRadiometer system with the free SpectraWiz
More informationArcGIS Pro 3D Workflows. Zena Pelletier
ArcGIS Pro 3D Workflows Zena Pelletier 3D as a GIS capability Core part of the platform Desktop Web Device Combine 2D and 3D in the same web GIS architecture Reuse dynamic services across clients Securely
More informationHIGHLANDS REGIONAL MASTER PLAN MONITORING PROGRAM FUTURE LAND USE TECHNICAL ADVISORY COMMITTEE MEETING
CHRIS CHRISTIE Governor KIM GUADAGNO Lt. Governor State of New Jersey Highlands Water Protection and Planning Council 100 North Road (Route 513) Chester, New Jersey 07930-2322 (908) 879-6737 (908) 879-4205
More informationWEB-BASED SPATIAL DECISION SUPPORT: TECHNICAL FOUNDATIONS AND APPLICATIONS
WEB-BASED SPATIAL DECISION SUPPORT: TECHNICAL FOUNDATIONS AND APPLICATIONS Claus Rinner University of Muenster, Germany Piotr Jankowski San Diego State University, USA Keywords: geographic information
More information