
Products
Learn more about STREAM - the comprehensive risk and
compliance management solution
Solutions
Learn about the different ways STREAM is used
Industries
Find out which industries benefit from using STREAM
Resources
Want to download a datasheet? Go to our resources page
Contact Us
Use our enquiry form to contact us
Webinar: Security Policy Framework: How to Meet Your Obligations

A Guide to Meeting Your Department’s Obligations Under the Security Policy Framework
Acuity is presenting a webinar on Tuesday 24th February to demonstrate to Government departments how to meet their obligations under the Security Policy Framework using STREAM compliance and risk management software.
To register, click this link: https://www1.gotomeeting.com/register/599077012.
In December 2008, the Cabinet Office released the Security Policy Framework (SPF), requiring all Government departments to implement it with immediate effect. Although the SPF is based on much previous guidance and requirements, it does present another new challenge to DSOs and ITSOs, particularly as they are also:
-
working to implement the Information Assurance Framework (Maturity Model) released in September 2008
-
continuing to address ISO 27001 compliance for security critical information systems
-
required to carry out regular risk assessments of information systems which process, store and communicate protectively marked data
-
striving to collate data on Information Assets across their organisations, and to update their information marking schemes and awareness programmes
On a positive note, Acuity Risk Management has been tracking the SPF and related standards and guidance, and has developed a profile of its ground-breaking STREAM compliance and risk management software, designed specifically to help UK Government Departments and Agencies to meet their obligations in respect of:
-
Security Policy Framework
-
ISO 27001 (information security management)
-
BS 25999 (for business continuity management)
-
Information Assurance Framework Maturity Model (released Sept 2008)
-
GSi Code of Connection (where it is applicable)
-
Any other related standards
Acuity’s webinar is on Tuesday 24th February at 10am, 1 hour in duration. Here's why you should attend:
-
We will show you how you can address all of these challenges in a simple, coordinated manner, using the STREAM software
-
You will see how STREAM addresses the SPF requirements to identify and classify all Information Assets and to track how effectively Information Assets are protected
-
We’ll demonstrate how STREAM implements a risk based approach, with risk appetites established across the organisation
-
You’ll appreciate how STREAM de-mystifies and makes accessible all of the traditionally difficult aspects of risk assessment and treatment, such as estimating threat likelihoods and business impacts, assessing controls objectively and measuring residual risk
-
You’ll see how managers can drill-down through STREAM’s intuitive interface to allow areas with high residual risk to be explored, and understand where there are still Information Protection weaknesses
-
You’ll see ready-to-use functionality in STREAM such as the familiar IS 1 impact scale (recommended and used across UK Government), and that STREAM is pre-loaded with all of the current control standards relevant to Government (which can easily be maintained to stay aligned with future changes and new requirements)
-
You’ll see how STREAM’s role based features allow a wide range of staff to deliver their responsibilities, including SIROs, managers, asset owners, security officers, risk owners, control owners, and internal auditors
-
We’ll explain how the cost of implementing STREAM is easily balanced by the resulting improvements in efficiency
-
Lastly, you’ll see how your existing investment in related standards such as ISO 27001 can be easily migrated into STREAM and then taken forward
Track record:
STREAM is already being used by UK Government departments and is proven to support formal certification against ISO 27001 and other standards
Who should attend:
SIROs, DSOs, ITSOs, DITSOs, Information security staff and internal auditors.
To register for this webinar:
To register, click this link: https://www1.gotomeeting.com/register/599077012. Once registered, you can also submit in advance any questions you would like answered in the webinar.
Any questions?
If you would like to find out more about this event or anything else about STREAM or Acuity, simply contact sales@acuityrm.com.
Date added: 17-02-09
Register for email news
Latest
-
Success story - UK Department for Education
The Department for Education uses STREAM to support its ISO 27001 compliance programme and reporting against the Information Assurance Maturity Model.
-
Information Security Europe 2010
Significant interest was expressed in the STREAM suite of products at Information Security 2010. It is clear that comprehensive risk and compliance management is becoming a key requirement for public and private organisations.
-
STREAM Seminar - Ljubljana May 2010
Richard Mayall presented a workshop in Ljubljana, Slovenia on 20 May 2010 on 'A better way to manage all your risks'. The workshop considered how STREAM can automate assurance management systems and support standards compliance.

