Auditing with the Critical Security Controls in Washington State

Size: px
Start display at page:

Download "Auditing with the Critical Security Controls in Washington State"

Transcription

1 Auditing with the Critical Security Controls in Washington State 2017 NSAA IT Conference and Workshop October 6, 2017 Joe Clark Performance Auditor Sunia Laulile IT Security Specialist Michael Hjermstad Assistant Audit Manager O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r What we will cover today Impact of our IT security audits Audit program and tools we use Lessons learned O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 2

2 What we do and why IT security audits are important to: Identify security gaps in state and local government IT systems Offer remedies and strategies to improve IT security through our recommendations The goal: To help governments better serve Washingtonians and protect the data they hold O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 3 A sample of audit findings reveals serious problems Procedural deficiencies Lack of policies and procedures Broken vulnerability and patch management processes Incomplete visibility into networks Technical vulnerabilities Missing patches Misconfigured devices O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 4

3 Agency reactions demonstrate audit value Remediate vulnerabilities as quickly as possible Correct procedural deficiencies Prioritize security Agencies request audits O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 5 Building expertise within our Office Auditors Lead and conduct audits Communicate with auditees Develop findings and recommendations Technical support Solicit feedback and clarification IT security specialists Review/validate findings Help craft findings and recommendations Knowledge transfer to auditors and auditees O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 6

4 Audits scoped in two parts Penetration testing Critical Security Controls assessment Interviews Validation Core testing O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 7 Critical Security Control assessment Critical Security Controls (CSCs) Prioritized list of security measures, focused on value Endorsed by public and private organizations Surveyed WA state agencies prefer CSCs over NIST O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 8

5 The CSCs we use 1. Inventory of authorized and unauthorized devices 2. Inventory of authorized and unauthorized software 3. Secure configurations for hardware and software 4. Continuous vulnerability assessment and remediation 5. Controlled use of administrative privileges 11. Secure configurations for network devices O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 9 CSC audit program Measurable sub-controls to implement each CSC Developed procedures using AuditScripts criteria, examining four topic areas: Policy Implementation Automation/Technical enforcement Reporting O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 10

6 CSC assessment procedures Interviews Assessment sheets sent to auditee in advance Participants may include: CIO CISO IT staff Allocate about three hours to review each control O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 11 CSC assessment procedures Validation Technical validation includes: Observations Screenshots Assessment with tools Level of evidence depends on risk and significance Goal: Conduct all interviews and validation in one week O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 12

7 Validation tools in our toolbox Tenable Nessus AdAssetInventory.PS1 Lynis O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 13 Validation tool: Nessus Name: Tenable Nessus Paid license required Purpose: Identify vulnerabilities Perform security benchmark tests Assess maturity level of patch and vulnerability management O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 14

8 Validation tool: Nessus O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 15 Validation tool: Nessus Output review Review security groups Identify critical vulnerabilities Assess system configuration Value Can identify configuration and software weaknesses Assesses many types of systems O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 16

9 Validation tool: AD Asset Inventory Name: AdAssetInventory.PS1 Cost: Free Purpose: Identify membership in default privilege groups Verify accounts follow security standards (such as password requirements) O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 17 Validation tool: AD Asset Inventory O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 18

10 Validation tool: AD Asset Inventory O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 19 Validation tool: AD Asset Inventory Output review Review security group membership Is least privilege being followed? Are standards being followed? Value Provides heat map of accounts of interest Generates both HTML and Excel outputs of reports Can be run with user-level permissions O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 20

11 Validation tool: Lynis Name: Lynis Cost: Free Purpose: Gain situational awareness on Linux/Unix systems Assess whether system follows known best practices O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 21 Validation tool: Lynis O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 22

12 Validation tool: Lynis HRDN-7230 Harden the system by installing at least one malware scanner, to perform periodic file system scans O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 23 Validation tool: Lynis Output review Review warnings and suggestions provided by tool Patch levels and configurations Value Assess Linux/Unix systems With another tool, generate PDF or HTML for easier viewing O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 24

13 CSC assessment procedures Core testing Core evaluation testing Effectiveness test for each CSC Demonstrates importance of CSC Mostly technical/hands-on Minimize risk to and impact on organization Conduct in one week Follow Rules of Engagement O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 25 Audit results Overview Deliverable Critical Security Control assessment sheets AuditScripts spreadsheet Critical Security Control results document Audience IT management, technical staff Executives, IT management, technical staff Executives, IT management O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 26

14 Audit results CSC Assessment Sheets Result of interviews and testing Used to document and aggregate evidence Specific, detailed results Intended for technical staff Conclusions feed into AuditScripts spreadsheet O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 27 Audit results AuditScripts spreadsheet Includes dashboard with charts/graphs Intended for agency technical staff and mid-level management Customized by our auditors O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 28

15 AuditScripts dashboard O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 29 AuditScripts dashboard O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 30

16 AuditScripts dashboard O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 31 AuditScripts dashboard O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 32

17 AuditScripts CSC 1 Tab O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 33 AuditScripts CSC 1 Tab O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 34

18 AuditScripts CSC 1 Tab O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 35 AuditScripts CSC 1 Tab O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 36

19 AuditScripts CSC 1 Tab O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 37 AuditScripts CSC 1 Tab O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 38

20 Audit results Critical Security Controls Results in brief Overall results Detailed results section Explains why each control is important What we found Our recommendations O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 39 CSC Results In Brief Maturity Rating Implementation by Control O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 40

21 CSC Results Control Introduction Control description Does the organization have and maintain an inventory of all the devices that are connected to its network? Why this control is important O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 41 CSC Results What the audit found What the audit found Alignment percentage Implementation description Areas of strength Areas for improvement Test results Reasons not fully implemented O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 42

22 CSC Results Recommendations General recommendations Covers all of the sub-controls Specific recommendations Unique to the government Resource aware Provides prioritization O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 43 Public reporting and confidentiality Information largely protected under state law RCW (4) Public audit reports published with limited details Present high-level results to governing stakeholders Joint Legislative Audit and Review Committee for state audits Council, board or executive for local audits O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 44

23 Lessons learned Start interviews with Implementation question Core evaluation tests will be optional Clearly communicate audit expectations to auditee O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 45 References AuditScripts spreadsheet: Center of Internet Security Critical security controls: Additional tools listed on slides State Auditor s Office website: O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 46

24 Questions? O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 47 Contacts Joseph Clark Performance Auditor (360) Joseph.Clark@sao.wa.gov Pat McCarthy State Auditor (360) Pat.McCarthy@sao.wa.gov Chuck Pfeil, CPA Director of Performance Audit (360) Chuck.Pfeil@sao.wa.gov Michael Hjermstad Assistant Audit Manager (253) Michael.Hjermstad@sao.wa.gov Sunia Laulile IT Security Specialist (360) Sunia.Laulile@sao.wa.gov O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 48

25 Tools used in our audits Nessus: Gain awareness of patch levels Check systems against known benchmarks Gain awareness of privileged accounts Lynis: Free audit tool for Linux, Unix, and Apple systems. AdAssetInventory.PS1: Active-Directory-Audit-7754a877 PowerShell script that identifies privileged accounts in AD and provides insight O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 49 More tools used in our audits NetBrain: Maps networks for situational awareness Generates network diagram Assists in configuration review Nipper: Networking auditing tool CIS-CAT: Center of Internet Security tool for checking CIS benchmarks O f f i c e o f t h e W a s h i n g t o n S t a t e A u d i t o r 50

Internal Audit Report

Internal Audit Report Internal Audit Report Right of Way Mapping TxDOT Internal Audit Division Objective To determine the efficiency and effectiveness of district mapping procedures. Opinion Based on the audit scope areas reviewed,

More information

The purpose of this report is to recommend a Geographic Information System (GIS) Strategy for the Town of Richmond Hill.

The purpose of this report is to recommend a Geographic Information System (GIS) Strategy for the Town of Richmond Hill. Staff Report for Committee of the Whole Meeting Department: Division: Subject: Office of the Chief Administrative Officer Strategic Initiatives SRCAO.18.12 GIS Strategy Purpose: The purpose of this report

More information

Introduction to Portal for ArcGIS

Introduction to Portal for ArcGIS Introduction to Portal for ArcGIS Derek Law Product Management March 10 th, 2015 Esri Developer Summit 2015 Agenda Web GIS pattern Product overview Installation and deployment Security and groups Configuration

More information

GIS for Crime Analysis. Building Better Analysis Capabilities with the ArcGIS Platform

GIS for Crime Analysis. Building Better Analysis Capabilities with the ArcGIS Platform GIS for Crime Analysis Building Better Analysis Capabilities with the ArcGIS Platform Crime Analysis The Current State One of the foundations of criminological theory is that three things are needed for

More information

Economic and Social Council

Economic and Social Council United Nations Economic and Social Council Distr.: General 18 July 2016 Original: English Committee of Experts on Global Geospatial Information Management Sixth session New York, 3-5 August 2016 Item 2

More information

Introduction to Portal for ArcGIS. Hao LEE November 12, 2015

Introduction to Portal for ArcGIS. Hao LEE November 12, 2015 Introduction to Portal for ArcGIS Hao LEE November 12, 2015 Agenda Web GIS pattern Product overview Installation and deployment Security and groups Configuration options Portal for ArcGIS + ArcGIS for

More information

REVIEW OF THE EMERGING ISSUES TASK FORCE

REVIEW OF THE EMERGING ISSUES TASK FORCE REVIEW OF THE EMERGING ISSUES TASK FORCE Conclusions and Recommendations Financial Accounting Standards Board www.fasb.org REVIEW OF THE EMERGING ISSUES TASK FORCE BACKGROUND OF THE EITF The Financial

More information

PROGRESS REPORT ON APPROACH PAPER THE IMPLEMENTATION OF THE GEF KNOWLEDGE MANAGEMENT. GEF/C.49/Inf.04 September 23, 2015

PROGRESS REPORT ON APPROACH PAPER THE IMPLEMENTATION OF THE GEF KNOWLEDGE MANAGEMENT. GEF/C.49/Inf.04 September 23, 2015 49 th GEF Council Meeting October 20 22, 2015 Washington, D.C. GEF/C.49/Inf.04 September 23, 2015 PROGRESS REPORT ON THE IMPLEMENTATION OF THE GEF KNOWLEDGE MANAGEMENT APPROACH PAPER TABLE OF CONTENTS

More information

ECONOMIC AND SOCIAL COUNCIL 13 July 2007

ECONOMIC AND SOCIAL COUNCIL 13 July 2007 UNITED NATIONS E/CONF.98/CRP.34 ECONOMIC AND SOCIAL COUNCIL 13 July 2007 Ninth United Nations Conference on the Standardization of Geographical Names New York, 21-30 August 2007 Item 17(b) of the provisional

More information

D2E GIS Coordination Initiative Functional Transformation Kick-Off Meeting

D2E GIS Coordination Initiative Functional Transformation Kick-Off Meeting D2E GIS Coordination Initiative Functional Transformation Kick-Off Meeting GIS Functional Transformation Kick-Off Meeting May 13, 2008 D2E GIS Coordination Initiative Functional Transformation Kick-Off

More information

Empowering Local Health through GIS

Empowering Local Health through GIS Empowering Local Health through GIS Mapping data from Washington s Immunization Information System (IIS). Presented to IACW October 16 th, 2013 by: Chris Halsell and Isaiah Berg Agenda IIS Overview Why

More information

Portal for ArcGIS: An Introduction

Portal for ArcGIS: An Introduction Portal for ArcGIS: An Introduction Derek Law Esri Product Management Esri UC 2014 Technical Workshop Agenda Web GIS pattern Product overview Installation and deployment Security and groups Configuration

More information

State GIS Officer/GIS Data

State GIS Officer/GIS Data State GIS Officer/GIS Data This Act creates the position of state Geographic Information Systems (GIS) officer. The Act: requires the state GIS officer to adopt or veto the GIS data standards and a statewide

More information

Portal for ArcGIS: An Introduction. Catherine Hynes and Derek Law

Portal for ArcGIS: An Introduction. Catherine Hynes and Derek Law Portal for ArcGIS: An Introduction Catherine Hynes and Derek Law Agenda Web GIS pattern Product overview Installation and deployment Configuration options Security options and groups Portal for ArcGIS

More information

NOAA S2S Planning. Dave DeWitt Fred Toepfer

NOAA S2S Planning. Dave DeWitt Fred Toepfer NOAA S2S Planning Dave DeWitt Fred Toepfer 1 Agenda 1. Brief synopsis of The Weather Research and Forecasting Act of 2017 2. Report to Congress a. Timeline b. Process c. Document Outline 3. Some Preliminary

More information

Leveraging Web GIS: An Introduction to the ArcGIS portal

Leveraging Web GIS: An Introduction to the ArcGIS portal Leveraging Web GIS: An Introduction to the ArcGIS portal Derek Law Product Management DLaw@esri.com Agenda Web GIS pattern Product overview Installation and deployment Configuration options Security options

More information

Controlled Substances: TSCA the Toxic Substances Control Act

Controlled Substances: TSCA the Toxic Substances Control Act The select agent list and relevant regulatory program information are maintained by the CDC and can be found on the select agent web site http://www.selectagents.gov/. The regulations covering select agents

More information

CHAPTER 22 GEOGRAPHIC INFORMATION SYSTEMS

CHAPTER 22 GEOGRAPHIC INFORMATION SYSTEMS CHAPTER 22 GEOGRAPHIC INFORMATION SYSTEMS PURPOSE: This chapter establishes the administration and use of to improve the quality and accessibility of Department s spatial information and support graphical

More information

Law Enforcement Solutions and Applications

Law Enforcement Solutions and Applications ArcGIS for Solutions and Applications Solutions and Applications ArcGIS for Platform ArcGIS for Collection of solutions and applications for law enforcement. Built on the ArcGIS platform. For any named

More information

GEOGRAPHIC INFORMATION SYSTEMS Session 8

GEOGRAPHIC INFORMATION SYSTEMS Session 8 GEOGRAPHIC INFORMATION SYSTEMS Session 8 Introduction Geography underpins all activities associated with a census Census geography is essential to plan and manage fieldwork as well as to report results

More information

file://q:\report1\greenatlasfinalreportindex.html

file://q:\report1\greenatlasfinalreportindex.html Page 1 of 8 Quick Links WATER MANAGEMENT INTERNSHIP USDA HIS GRANT FUNDED FINAL PROJECT REPORT SUBMITTED BY MELISSA QUINTANA 11/07/07-03/24/08 Summary Provided is an assessment of my accomplishments for

More information

GIS Capability Maturity Assessment: How is Your Organization Doing?

GIS Capability Maturity Assessment: How is Your Organization Doing? GIS Capability Maturity Assessment: How is Your Organization Doing? Presented by: Bill Johnstone Principal Consultant Spatial Vision Group November 8, 2018 1. Motivation for Capability Maturity Models

More information

Realizing benefits of Spatial Data Infrastructure A user s perspective from Environment Agency - Abu Dhabi

Realizing benefits of Spatial Data Infrastructure A user s perspective from Environment Agency - Abu Dhabi Realizing benefits of Spatial Data Infrastructure A user s perspective from Environment Agency - Abu Dhabi Anil Kumar Director, Environment Information Management 26 April 2012 Geospatial World Forum,

More information

ESTA governance Quality Assurance System for Seed Treatment and Treated Seed

ESTA governance Quality Assurance System for Seed Treatment and Treated Seed ESTA governance Quality Assurance System for Seed Treatment and Treated Seed Version 2.1 Contents On the scope and purpose of this Quality Assurance system... 1 Legislation... 1 Governance aspects covered

More information

CHAPTER 3 RESEARCH METHODOLOGY

CHAPTER 3 RESEARCH METHODOLOGY CHAPTER 3 RESEARCH METHODOLOGY 3.1 INTRODUCTION The research methodology plays an important role in implementing the research and validating the results. Therefore, this research methodology is derived

More information

CEDAR CREST MUTUAL DOMESTIC WATER CONSUMERS & SEWAGE WORKS ASSOCIATION. December 31, 2016

CEDAR CREST MUTUAL DOMESTIC WATER CONSUMERS & SEWAGE WORKS ASSOCIATION. December 31, 2016 CEDAR CREST MUTUAL DOMESTIC WATER CONSUMERS Table of Contents Page Official Roster i Independent Accountants Report on Applying Agreed Upon Procedures 1 Schedule of Revenues and Expenditures Budget and

More information

Kansas Next Generation 911

Kansas Next Generation 911 Kansas Next Generation 911 Kansas Next Generation 911 the largest IT project in state history* the largest GIS project in state history* * could be...has not been fact checked Project overview Primary

More information

JOB TITLE: CURRENT CLASSIFICATION/GRID POSITION # GIS Coordinator AD Grid Level 6(c) # 420

JOB TITLE: CURRENT CLASSIFICATION/GRID POSITION # GIS Coordinator AD Grid Level 6(c) # 420 COUNTY OF GRANDE PRAIRIE JOB DESCRIPTION JOB TITLE: CURRENT CLASSIFICATION/GRID POSITION # GIS Coordinator AD Grid Level 6(c) # 420 NOC CODE: 2255 STANDARD HOURS: 35 hours/week (non-management) JOB TITLE

More information

2018/1 The integration of statistical and geospatial information. The Regional Committee of UN-GGIM: Americas:

2018/1 The integration of statistical and geospatial information. The Regional Committee of UN-GGIM: Americas: The following are the conclusions and recommendations of the Regional Committee of the United Nations on Global Geospatial Information Management for the Americas, during its Fifth Session, Thursday 8

More information

A Governance Framework for Geographic Data, Services, and Applications. Colin MacDonald Esri UC 2017

A Governance Framework for Geographic Data, Services, and Applications. Colin MacDonald Esri UC 2017 A Governance Framework for Geographic Data, Services, and Applications Colin MacDonald Esri UC 2017 Some Context Nova Scotia, Canada Population ~1,000,000 Photos copyright Province of Nova Scotia Geomatics

More information

Source Protection Zones. National Dataset User Guide

Source Protection Zones. National Dataset User Guide Source Protection Zones National Dataset User Guide Version 1.1.4 20 th Jan 2006 1 Contents 1.0 Record of amendment...3 2.0 Introduction...4 2.1 Description of the SPZ dataset...4 2.1.1 Definition of the

More information

Chemical Safety as a Core ACS Value: Report on the 2018 Safety Summit

Chemical Safety as a Core ACS Value: Report on the 2018 Safety Summit Chemical Safety as a Core ACS Value: Report on the 2018 Safety Summit Introduction In December 2016, the ACS Board of Directors adopted safety as one of the Society s core values, thus affirming that the

More information

Presentation of the Cooperation Project goals. Nicola Ferrè

Presentation of the Cooperation Project goals. Nicola Ferrè Presentation of the Cooperation Project goals Nicola Ferrè Project goals Capacity development for implementing a Geographic Information System (GIS) applied to surveillance, control and zoning of avian

More information

Chapter X: Radiation Safety Audit Program

Chapter X: Radiation Safety Audit Program Chapter X: Radiation Safety Audit Program Policy All laboratories using radioactive material shall be reviewed as required by the Illinois Emergency Management Agency (IEMA), Division of Nuclear Safety

More information

Ørsted. Flexible reporting solutions to drive a clean energy agenda

Ørsted. Flexible reporting solutions to drive a clean energy agenda Ørsted Flexible reporting solutions to drive a clean energy agenda Ørsted: A flexible reporting solution to drive a clean energy agenda Renewable energy company Ørsted relies on having a corporate reporting

More information

Status of implementation of the INSPIRE Directive 2016 Country Fiches. COUNTRY FICHE Netherlands

Status of implementation of the INSPIRE Directive 2016 Country Fiches. COUNTRY FICHE Netherlands Status of implementation of the INSPIRE Directive 2016 Country Fiches COUNTRY FICHE Netherlands Introduction... 1 1. State of Play... 2 1.1 Coordination... 2 1.2 Functioning and coordination of the infrastructure...

More information

Geographic information strategy

Geographic information strategy Department for Environment, Food and Rural Affairs Geographic information strategy Methodology JULY 2011 2 Geographic information strategy Methodology This document provides a detailed description of the

More information

Compensation Planning Application

Compensation Planning Application Compensation Planning Application Why Physician Compensation? More and more organizations are formally aligning with physicians. These organizations require large support structures to effectively manage

More information

Web GIS Deployment for Administrators. Vanessa Ramirez Solution Engineer, Natural Resources, Esri

Web GIS Deployment for Administrators. Vanessa Ramirez Solution Engineer, Natural Resources, Esri Web GIS Deployment for Administrators Vanessa Ramirez Solution Engineer, Natural Resources, Esri Agenda Web GIS Concepts Web GIS Deployment Patterns Components of an On-Premises Web GIS Federation of Server

More information

Status of implementation of the INSPIRE Directive 2016 Country Fiches. COUNTRY FICHE Malta

Status of implementation of the INSPIRE Directive 2016 Country Fiches. COUNTRY FICHE Malta Status of implementation of the INSPIRE Directive 2016 Country Fiches COUNTRY FICHE Malta Introduction... 1 1. State of Play... 2 1.1 Coordination... 2 1.2 Functioning and coordination of the infrastructure...

More information

Creating A-16 Compliant National Data Theme for Cultural Resources

Creating A-16 Compliant National Data Theme for Cultural Resources Creating A-16 Compliant National Data Theme for Cultural Resources Cultural Resource GIS Facility National Park Service John J. Knoerl Deidre McCarthy Paper 169 Abstract OMB Circular A-16 defines a set

More information

Tulare County Office of Education BTSA Induction Consortium

Tulare County Office of Education BTSA Induction Consortium Tulare County Office of Education BTSA Induction Consortium Biennial Report 5/17/10 Page 1 of 15 Local Educational Agency CD Code 54-10546 Section A, Part I: Contextual Information Biennial Report Contextual

More information

Oregon Department of Transportation. Geographic Information Systems. Implementation Plan. Adopted November, 2000 By the GIS Steering Committee

Oregon Department of Transportation. Geographic Information Systems. Implementation Plan. Adopted November, 2000 By the GIS Steering Committee Oregon Department of Transportation Geographic Information Systems Implementation Plan Adopted November, 2000 By the GIS Steering Committee Introduction The Oregon Department of Transportation (ODOT) GIS

More information

Canada s Experience with Chemicals Assessment and Management and its Application to Nanomaterials

Canada s Experience with Chemicals Assessment and Management and its Application to Nanomaterials Canada s Experience with Chemicals Assessment and Management and its Application to Nanomaterials European Chemicals Agency (ECHA) Topical Scientific Workshop: Regulatory Challenges in Risk Assessment

More information

8 th Arctic Regional Hydrographic Commission Meeting September 2018, Longyearbyen, Svalbard Norway

8 th Arctic Regional Hydrographic Commission Meeting September 2018, Longyearbyen, Svalbard Norway 8 th Arctic Regional Hydrographic Commission Meeting 11-13 September 2018, Longyearbyen, Svalbard Norway Status Report of the Arctic Regional Marine Spatial Data Infrastructures Working Group (ARMSDIWG)

More information

Mapping of potential for mini-hydro and mini-wind in the Southeast region of Sweden

Mapping of potential for mini-hydro and mini-wind in the Southeast region of Sweden IEE/07/797/S12.499715 acronym RURAL-RES Report: Mapping of potential for mini-hydro and mini-wind in the Southeast region of Sweden Region: Southeast Sweden with the Counties of Blekinge, Kronoberg and

More information

GIS ADMINISTRATOR / WEB DEVELOPER EVANSVILLE-VANDERBURGH COUNTY AREA PLAN COMMISSION

GIS ADMINISTRATOR / WEB DEVELOPER EVANSVILLE-VANDERBURGH COUNTY AREA PLAN COMMISSION GIS ADMINISTRATOR / WEB DEVELOPER EVANSVILLE-VANDERBURGH COUNTY AREA PLAN COMMISSION SALARY RANGE INITIATION $43,277 SIX MONTHS $45,367 POSITION GRADE PAT VI The Evansville-Vanderburgh County Area Plan

More information

The World Bank Mali Reconstruction and Economic Recovery (P144442)

The World Bank Mali Reconstruction and Economic Recovery (P144442) Public Disclosure Authorized AFRICA Mali Social, Urban, Rural and Resilience Global Practice Global Practice IBRD/IDA Emergency Recovery Loan FY 2014 Seq No: 7 ARCHIVED on 30-Jun-2017 ISR28723 Implementing

More information

USEPA's Comprehensive Geospatial Information Sharing Framework

USEPA's Comprehensive Geospatial Information Sharing Framework USEPA's Comprehensive Geospatial Information Sharing Framework An Overview ESRI Federal User Conference February 22, 2008 Agenda Background What is EPA s Geospatial Information Sharing Framework? Why was

More information

Summary Description Municipality of Anchorage. Anchorage Coastal Resource Atlas Project

Summary Description Municipality of Anchorage. Anchorage Coastal Resource Atlas Project Summary Description Municipality of Anchorage Anchorage Coastal Resource Atlas Project By: Thede Tobish, MOA Planner; and Charlie Barnwell, MOA GIS Manager Introduction Local governments often struggle

More information

Space Weather & Critical Infrastructures

Space Weather & Critical Infrastructures Space Weather & Critical Infrastructures Italy Organisers EC JRC, MSB, UK Met Office Date and Venue 29-30 November 2016, JRC Ispra, Background Our modern technological infrastructures on the ground and

More information

Peterborough Distribution Inc Ashburnham Drive, PO Box 4125, Station Main Peterborough ON K9J 6Z5

Peterborough Distribution Inc Ashburnham Drive, PO Box 4125, Station Main Peterborough ON K9J 6Z5 Peterborough Distribution Inc. 1867 Ashburnham Drive, PO Box 4125, Station Main Peterborough ON K9J 6Z5 November 15, 2017 Ontario Energy Board PO Box 2319 27 th Floor, 2300 Yonge St Toronto ON M4P 1E4

More information

Analysis of Regional Fundamental Datasets Questionnaire

Analysis of Regional Fundamental Datasets Questionnaire Permanent Committee on GIS Infrastructure for Asia and the Pacific Working Group 2 Regional Fundamental Data Summary Report on Analysis of Regional Fundamental Datasets Questionnaire ABBAS RAJABIFARD and

More information

Systematic Review Round 7 Application Form

Systematic Review Round 7 Application Form Systematic Review Round 7 Application Form SR7/1063 1. BASIC PROJECT INFO (i) Title of Proposed Review * Systematic review question.download detailed SR7 questions here Title of the study if more focused

More information

Dr. Steven Koch Director, NOAA National Severe Storms Laboratory Chair, WRN Workshop Executive Committee. Photo Credit: Associated Press

Dr. Steven Koch Director, NOAA National Severe Storms Laboratory Chair, WRN Workshop Executive Committee. Photo Credit: Associated Press Dr. Steven Koch Director, NOAA National Severe Storms Laboratory Chair, WRN Workshop Executive Committee 1 Photo Credit: Associated Press 1" 2" Much%Increased%Vulnerability%to% High6Impact%Weather% %even%before%2011!%

More information

Highlights. Situation Overview

Highlights. Situation Overview Situation report issued by NDMO Vanuatu This report covers the period from 10 March 2015 Highlights Tropical Cyclone Pam Cat 3 enters Vanuatu grid at 8:00 on 11 March 2013. The Vanuatu Met Services has

More information

Building a National Data Repository

Building a National Data Repository Building a National Data Repository Mladen Stojic, Vice President - Geospatial 1/30/2013 2012 Intergraph Corporation 1 Information has meaning and gives power only when shared and distributed. Information,

More information

GIS Needs Assessment. for. The City of East Lansing

GIS Needs Assessment. for. The City of East Lansing GIS Needs Assessment for The City of East Lansing Prepared by: Jessica Moy and Richard Groop Center for Remote Sensing and GIS, Michigan State University February 24, 2000 Executive Summary At the request

More information

ARGUS.net IS THREE SOLUTIONS IN ONE

ARGUS.net IS THREE SOLUTIONS IN ONE OVERVIEW H i g h l y c o n f i g u r a b l e s o f t w a r e a c c o m m o d a t e s a w i d e r a n g e o f c o l l e c t i o n s T h r e e s o l u t i o n s c o v e r P o r t a l s, C o l l e c t i o

More information

Marine Debris in the Gulf of Mexico

Marine Debris in the Gulf of Mexico Marine Debris in the Gulf of Mexico Peter Murphy NOAA Marine Debris Program / Genwest Biloxi, Mississippi October 25, 2009 Outline 1. Project Background 2. Process 3. 2006-2007 Alabama, Mississippi 4.

More information

David Lanter PhD GISP. Information Security Risks and Controls of Public Geospatial Datasets July 17, 2014

David Lanter PhD GISP. Information Security Risks and Controls of Public Geospatial Datasets July 17, 2014 David Lanter PhD GISP Information Security Risks and Controls of Public Geospatial Datasets July 17, 2014 This Presentation CDM Smith applies GIS and develops custom applications producing, deploying and

More information

HELCOM-VASAB Maritime Spatial Planning Working Group Twelfth Meeting Gdansk, Poland, February 2016

HELCOM-VASAB Maritime Spatial Planning Working Group Twelfth Meeting Gdansk, Poland, February 2016 HELCOM-VASAB Maritime Spatial Planning Working Group Twelfth Meeting Gdansk, Poland, 24-25 February 2016 Document title HELCOM database for the coastal and marine Baltic Sea protected areas (HELCOM MPAs).

More information

Author(s): Charles K. Cover, P.E. Federal Energy Regulatory Commission

Author(s): Charles K. Cover, P.E. Federal Energy Regulatory Commission Using GIS to Help Manage a National Energy Program Author(s): Charles K. Cover, P.E. Federal Energy Regulatory Commission The Federal Energy Regulatory Commission (FERC) has statutory oversight on key

More information

Four Basic Steps for Creating an Effective Demand Forecasting Process

Four Basic Steps for Creating an Effective Demand Forecasting Process Four Basic Steps for Creating an Effective Demand Forecasting Process Presented by Eric Stellwagen President & Cofounder Business Forecast Systems, Inc. estellwagen@forecastpro.com Business Forecast Systems,

More information

Project Charter. $58,000 See attached budget report. shapefile to track poles and pole attachments. Poles are defined as a support structure on

Project Charter. $58,000 See attached budget report. shapefile to track poles and pole attachments. Poles are defined as a support structure on Project Charter Title: Pole and Pole Attachment Geodatabase Design Sponsor: City of Philadelphia Streets Department Date: May 10, 2006 Estimated Start Date: June 1, 2006 Projected Finish Date: October

More information

R E A D : E S S E N T I A L S C R U M : A P R A C T I C A L G U I D E T O T H E M O S T P O P U L A R A G I L E P R O C E S S. C H.

R E A D : E S S E N T I A L S C R U M : A P R A C T I C A L G U I D E T O T H E M O S T P O P U L A R A G I L E P R O C E S S. C H. R E A D : E S S E N T I A L S C R U M : A P R A C T I C A L G U I D E T O T H E M O S T P O P U L A R A G I L E P R O C E S S. C H. 5 S O F T W A R E E N G I N E E R I N G B Y S O M M E R V I L L E S E

More information

US National Spatial Data Infrastructure A Spatial Framework for Governance and Policy Development to Enable a Location-Based Digital Ecosystem

US National Spatial Data Infrastructure A Spatial Framework for Governance and Policy Development to Enable a Location-Based Digital Ecosystem GeoPlatform Workshop 7 Dec 2016, Department of the Interior Washington, D.C. US National Spatial Infrastructure A Spatial Framework for Governance and Policy Development to Enable a Location-Based Digital

More information

USGS Mineral Information Systems: Current Capabilities and Future Developments

USGS Mineral Information Systems: Current Capabilities and Future Developments USGS Mineral Information Systems: Current Capabilities and Future Developments Dr. Steven M Fortier, Director National Minerals Information Center United States Geological Survey U.S. Department of the

More information

Overview of the Chemicals Management Working Group and Chemicals Management Module. Ethical Sourcing Forum New York City March 27-28, 2014

Overview of the Chemicals Management Working Group and Chemicals Management Module. Ethical Sourcing Forum New York City March 27-28, 2014 Overview of the Chemicals Management Working Group and Chemicals Management Module Ethical Sourcing Forum New York City March 27-28, 2014 Today s Objectives INFORM webinar attendees about the Chemicals

More information

POLICY ISSUE (INFORMATION)

POLICY ISSUE (INFORMATION) POLICY ISSUE (INFORMATION) August 12, 2011 SECY-11-0112 FOR: FROM: SUBJECT: The Commissioners Michael R. Johnson, Director /RA/ Office of New Reactors STAFF ASSESSMENT OF SELECTED SMALL MODULAR REACTOR

More information

Spatial Data Availability Energizes Florida s Citizens

Spatial Data Availability Energizes Florida s Citizens NASCIO 2016 Recognition Awards Nomination Spatial Data Availability Energizes Florida s Citizens State of Florida Agency for State Technology & Department of Environmental Protection Category: ICT Innovations

More information

7 GEOMATICS BUSINESS SOLUTIONS - ANNUAL REPORT 2006

7 GEOMATICS BUSINESS SOLUTIONS - ANNUAL REPORT 2006 7 GEOMATICS BUSINESS SOLUTIONS - ANNUAL REPORT 2006 The Planning and Economic Development Committee recommends the adoption of the recommendation contained in the following report November 30, 2006, from

More information

Project Plan for the City of Philadelphia Pole and Pole Attachment Geodatabase Design Project

Project Plan for the City of Philadelphia Pole and Pole Attachment Geodatabase Design Project Project Plan for the City of Philadelphia Pole and Pole Attachment Geodatabase Design Project Project Overview: The City of Philadelphia is experiencing data integrity problems caused by data format issues.

More information

TOP MARKET SURVEY INSTRUCTION SHEET. Requirements. Overview

TOP MARKET SURVEY INSTRUCTION SHEET. Requirements. Overview INSTRUCTION SHEET TOP SURVEY TOP SURVEY INSTRUCTION SHEET Overview For nearly 40 years, the ACA has surveyed member agencies and conducted the Top Collection Market Survey. This survey provides critical

More information

SWEDISH SDI DEVELOPMENT & IMPLEMENTATION OF INSPIRE

SWEDISH SDI DEVELOPMENT & IMPLEMENTATION OF INSPIRE SWEDISH SDI DEVELOPMENT & IMPLEMENTATION OF INSPIRE Christina Wasström, Lantmäteriet, 801 82 Gävle, Sweden, christina.wasstrom@lm.se ABSTRACT The Swedish Government and Parliament has given Lantmäteriet

More information

GIS Data Conversion: Strategies, Techniques, and Management

GIS Data Conversion: Strategies, Techniques, and Management GIS Data Conversion: Strategies, Techniques, and Management Pat Hohl, Editor SUB G6ttlngen 208 494219 98 A11838 ONWORD P R E S S V Contents SECTION 1: Introduction 1 Introduction and Overview 3 Ensuring

More information

Location Intelligence Infrastructure Asset Management. Confirm. Confirm Mapping Link to ArcMap Version v18.00b.am

Location Intelligence Infrastructure Asset Management. Confirm. Confirm Mapping Link to ArcMap Version v18.00b.am Location Intelligence Infrastructure Asset Management Confirm Confirm Mapping Link to ArcMap Version v18.00b.am Information in this document is subject to change without notice and does not represent a

More information

USGS National Geospatial Program Understanding User Needs. Dick Vraga National Map Liaison for Federal Agencies July 2015

USGS National Geospatial Program Understanding User Needs. Dick Vraga National Map Liaison for Federal Agencies July 2015 + USGS National Geospatial Program Understanding User Needs Dick Vraga National Map Liaison for Federal Agencies July 2015 + Topics 2 Background Communities of Use User Surveys National Map Liaisons Partnerships

More information

Flood Map. National Dataset User Guide

Flood Map. National Dataset User Guide Flood Map National Dataset User Guide Version 1.1.5 20 th April 2006 Copyright Environment Agency 1 Contents 1.0 Record of amendment... 3 2.0 Introduction... 4 2.1 Description of the Flood Map datasets...4

More information

CREATING CUSTOMIZED DATE RANGE COLLECTIONS IN PRESENTATION STUDIO

CREATING CUSTOMIZED DATE RANGE COLLECTIONS IN PRESENTATION STUDIO CREATING CUSTOMIZED DATE RANGE COLLECTIONS IN PRESENTATION STUDIO Date range collections are pre-defined reporting periods for performance data. You have two options: Dynamic date ranges automatically

More information

California GIS Strategic Plan Phase 2: Regional Participation. Generic All Workshops CA

California GIS Strategic Plan Phase 2: Regional Participation. Generic All Workshops CA California GIS Strategic Plan Phase 2: Regional Participation Generic All Workshops CA Collaboratives Represented Today? Bay Area Regional GIS Council Central Coast Joint Data Committee Channel Islands

More information

FINAL REPORT EVALUATION REVIEW OF TVA'S LOAD FORECAST RISK

FINAL REPORT EVALUATION REVIEW OF TVA'S LOAD FORECAST RISK Memorandum from the Office of the Inspector General Robert Irvin, WT 9C-K FINAL REPORT EVALUATION 2012-14507 REVIEW OF TVA'S LOAD FORECAST RISK As part of a series of reviews to evaluate the Tennessee

More information

GOVERNMENT MAPPING WORKSHOP RECOVER Edmonton s Urban Wellness Plan Mapping Workshop December 4, 2017

GOVERNMENT MAPPING WORKSHOP RECOVER Edmonton s Urban Wellness Plan Mapping Workshop December 4, 2017 GOVERNMENT MAPPING WORKSHOP 12.4.17 RECOVER Edmonton s Urban Wellness Plan Mapping Workshop December 4, 2017 In July of 2017, City Council directed administration to develop RECOVER, Edmonton s Urban Wellness

More information

The Group of Representative Bodies (GRB) Position Paper on the EC Expert Group on the Technical Pillar of the 4th Railway Package Topics

The Group of Representative Bodies (GRB) Position Paper on the EC Expert Group on the Technical Pillar of the 4th Railway Package Topics The Group of Representative Bodies (GRB) Position Paper on the EC Expert Group on the Technical Pillar of the 4th Railway Package Topics Brussels, 15.03.2017 1 P a g e Scope of this GRB position paper

More information

Strategic Plan for the Geospatial Teaching, Research, and Outreach in CNR. The CNR Geospatial Steering Committee, March 31, 2008

Strategic Plan for the Geospatial Teaching, Research, and Outreach in CNR. The CNR Geospatial Steering Committee, March 31, 2008 Strategic Plan for the Geospatial Teaching, Research, and Outreach in CNR The CNR Geospatial Steering Committee, March 31, 2008 Current Mission for the Geospatial Learning Center Established in 1995, the

More information

Report from the Geographic Information Coordinating Council

Report from the Geographic Information Coordinating Council Report from the Geographic Information Coordinating Council Presented by: Dr. Lee Mandell, Chair North Carolina Geographic Information Coordinating Council What is GIS? Geography plays a role in nearly

More information

Status of implementation of the INSPIRE Directive 2016 Country Fiches. COUNTRY FICHE Croatia

Status of implementation of the INSPIRE Directive 2016 Country Fiches. COUNTRY FICHE Croatia Status of implementation of the INSPIRE Directive 2016 Country Fiches COUNTRY FICHE Croatia Introduction... 1 1. State of Play... 2 1.1 Coordination... 2 1.2 Functioning and coordination of the infrastructure...

More information

Weather Information for Surface Transportation (WIST): Update on Weather Impacts and WIST Progress

Weather Information for Surface Transportation (WIST): Update on Weather Impacts and WIST Progress Weather Information for Surface Transportation (WIST): Update on Weather Impacts and WIST Progress Samuel P. Williamson Office of the Federal Coordinator for Meteorological Services and Supporting Research

More information

Digital Weft. InterPARES as common thread in Vancouver s Digital Preservation Programme. CITRA Oslo Sept 15, 2010

Digital Weft. InterPARES as common thread in Vancouver s Digital Preservation Programme. CITRA Oslo Sept 15, 2010 Digital Weft InterPARES as common thread in Vancouver s Digital Preservation Programme CITRA Oslo Sept 15, 2010 Presentation Structure Context and Background City of Vancouver Archives and Records Programmes

More information

U.S. Geological Survey Agency Briefing for MAPPS Mark L. DeMulder Director, National Geospatial Program. March 12, 2013

U.S. Geological Survey Agency Briefing for MAPPS Mark L. DeMulder Director, National Geospatial Program. March 12, 2013 + U.S. Geological Survey Agency Briefing for MAPPS Mark L. DeMulder Director, National Geospatial Program March 12, 2013 + 3D Elevation Program (3DEP) National Leadership The National Enhanced Elevation

More information

ICSM delivering benefits through collaboration

ICSM delivering benefits through collaboration ICSM delivering benefits through collaboration Russell Priebbenow Chair and Queensland Member Australia and New Zealand s Intergovernmental Committee on Surveying and Mapping Overview Who is ICSM & why

More information

The World Bank. Key Dates. Project Development Objectives. Components. Overall Ratings. Public Disclosure Authorized

The World Bank. Key Dates. Project Development Objectives. Components. Overall Ratings. Public Disclosure Authorized Public Disclosure Authorized Public Disclosure Copy AFRICA South Sudan Urban Development Global Practice IBRD/IDA Specific Investment Loan FY 2013 Seq No: 4 ARCHIVED on 11-Feb-2015 ISR18127 Implementing

More information

Report on the establishment of UN GGIM: Europe Item 14. 4th session of the Committee of Experts on UN-GGIM

Report on the establishment of UN GGIM: Europe Item 14. 4th session of the Committee of Experts on UN-GGIM Report on the establishment of UN GGIM: Europe Item 14 1 Why regional European committees of UN GGIM? In the ECOSOC resolution 2011/24 on the UN GGIM: Emphasizes the importance of promoting national, regional

More information

The Swedish National Geodata Strategy and the Geodata Project

The Swedish National Geodata Strategy and the Geodata Project The Swedish National Geodata Strategy and the Geodata Project Ewa Rannestig, Head of NSDI Co-ordination Unit, Lantmäteriet, ewa.rannstig@lm.se Ulf Sandgren, Project Manager Geodata Project, Lantmäteriet,

More information

What s the problem? A Modern Odyssey in Search of Relevance. The search for relevance. Some current drivers for new services. Some Major Applications

What s the problem? A Modern Odyssey in Search of Relevance. The search for relevance. Some current drivers for new services. Some Major Applications A Modern Odyssey in Search of Relevance FIG Working Week, Athens, 24 May 2004 Paul Kelly ANZLIC Executive Director The search for relevance 1. New expectations for spatial services 2. Are we ready to meet

More information

GEOGRAPHIC INFORMATION SYSTEM ANALYST I GEOGRAPHIC INFORMATION SYSTEM ANALYST II

GEOGRAPHIC INFORMATION SYSTEM ANALYST I GEOGRAPHIC INFORMATION SYSTEM ANALYST II CITY OF ROSEVILLE GEOGRAPHIC INFORMATION SYSTEM ANALYST I GEOGRAPHIC INFORMATION SYSTEM ANALYST II DEFINITION To perform professional level work in Geographic Information Systems (GIS) management and analysis;

More information

Miniature Fiber Optic Spectrometry StellarNet Tutorial

Miniature Fiber Optic Spectrometry  StellarNet Tutorial StellarNet Tutorial Using SpectraWiz VBA-NIST-CRI/CQS for MS Excel Contents This tutorial describes the basic measurement procedure for using a StellarNet SpectroRadiometer system with the free SpectraWiz

More information

ArcGIS Pro 3D Workflows. Zena Pelletier

ArcGIS Pro 3D Workflows. Zena Pelletier ArcGIS Pro 3D Workflows Zena Pelletier 3D as a GIS capability Core part of the platform Desktop Web Device Combine 2D and 3D in the same web GIS architecture Reuse dynamic services across clients Securely

More information

HIGHLANDS REGIONAL MASTER PLAN MONITORING PROGRAM FUTURE LAND USE TECHNICAL ADVISORY COMMITTEE MEETING

HIGHLANDS REGIONAL MASTER PLAN MONITORING PROGRAM FUTURE LAND USE TECHNICAL ADVISORY COMMITTEE MEETING CHRIS CHRISTIE Governor KIM GUADAGNO Lt. Governor State of New Jersey Highlands Water Protection and Planning Council 100 North Road (Route 513) Chester, New Jersey 07930-2322 (908) 879-6737 (908) 879-4205

More information

WEB-BASED SPATIAL DECISION SUPPORT: TECHNICAL FOUNDATIONS AND APPLICATIONS

WEB-BASED SPATIAL DECISION SUPPORT: TECHNICAL FOUNDATIONS AND APPLICATIONS WEB-BASED SPATIAL DECISION SUPPORT: TECHNICAL FOUNDATIONS AND APPLICATIONS Claus Rinner University of Muenster, Germany Piotr Jankowski San Diego State University, USA Keywords: geographic information

More information