Update: Security professionals form CSO council
Their plan is for the new organization to fight online security challenges
IDG News Service - A group of information security professionals has formed the Global Council of CSOs in an effort to better address online security challenges.
The council was formally unveiled today at an event in San Francisco hosted by a founding member, eBay Inc.'s chief information security officer (CISO), Howard Schmidt, who has also served as White House cybersecurity adviser and Microsoft Corp.'s chief security officer (CSO).
The group seeks to improve online security by bringing together expertise from academic, corporate and government backgrounds, according to a statement announcing the council. Although all initial members are U.S.-based experts, the council is open to others, an eBay spokesman said yesterday.
One of the goals of the organization is to foster a better partnership between the private sector and the government on cybersecurity issues, Schmidt said during a teleconference this afternoon to discuss the organization's efforts.
"We are bringing together selective expertise from the private sector, academia and the government to continue the dialogue and to make sure that [cybersecurity] remains a Tier 1 issue," he said. "We plan to use the collective expertise of all the members of the council to really continue the momentum we have seen over the last couple of years" as it relates to cybersecurity initiatives.
The new group represents a good balance between the technology sector and consumers of technology, said Mary Ann Davidson, CSO at Oracle Corp. "I think that balance will be a particularly important factor to success," she said.
The council will work as a professional organization, bringing together information security professionals so they can better define their roles and work on the issues that are part of the online world, the eBay spokesman said. "Cybersecurity is an evolving space. You need to stay ahead of the game," he said.
Among the initial 10 council members is Scott Charney, chief security strategist at Microsoft.
"To address the issues that are presented in the modern cybersecurity arena, you really need actions across the spectrum. It is critical for businesses to band together," said Philip Reitinger, senior security strategist at Microsoft and a member of Charney's staff.
"We all have to recognize that cybersecurity is not just a technical issue or government issue; it is a management issue," Reitinger said. "CSOs have a critical responsibility for providing the security of the IT infrastructure of businesses. Getting such a group together can further secure those businesses and generally secure infrastructure across the board."
Other charter council members are Bill Boni, CISO at Motorola Inc.; Vinton Cerf, senior vice presidentof technology strategy at MCI (WorldCom Inc.); Dave Cullinane, CISO at Washington Mutual Inc.; Mary Ann Davidson, CSO at Oracle Corp.; Whitfield Diffie, security specialist and former CSO at Sun Microsystems Inc.; Steve Katz, former CISO at Citigroup Inc.; Rhonda MacLean, director of corporate information security at Bank of America Corp.; and Will Pelgrin, director of the New York state Office of Cyber Security & Critical Infrastructure Coordination.
Computerworld's Jai Vijayan contributed to this report.



- Excel 2010 Cheat Sheet
- Register for this Computerworld Insider Cheat Sheet and gain access to hundreds of premium content articles, guides, product reviews and more.
- Overcome Top 7 Admin Challenges of Active Directory
- As Active Directory's role in the enterprise has drastically increased, so has the need to secure the data. Gain insight on creating repeatable,...
- Insiders Can Ruin Your Company. Take Action.
- Did you know that 80 percent of threats to an organization come from the inside? The threat from insiders is often overlooked in...
- Top Solutions and Tools to Prevent Devastating Malware
- Custom malware frequently goes undetected. According to Forrester Research, the best way to reduce risk of breach is to deploy file integrity monitoring...
- X-Ray of the PCI Process-4 Proactive Steps
- This white paper from Forrester Research Inc., helps break PCI into understandable components. Security and risk professionals will gain knowledge and insight into...
- Identity Governance: The Business Imperatives
- This white paper describes the business challenges and opportunities that are driving interest in Identity Governance while discussing considerations your organization should make... All Security White Papers
- Live Webcast
Playing Defense: Staying on Top of Your Disaster Recovery Game - When it comes to disaster recovery, rapidly growing data volumes, distributed computing models, and new technologies all combine to present an ever-changing playing...
- Introduction to VMware vCenter Site Recovery Manager 5
- Traditional disaster recovery solutions are often too expensive, complex and unreliable to meet business requirements. As a result, IT departments are hesitant to...
- The Top Ten Secrets to Avoiding SAN Performance Problems
- Maintaining peak performance while simultaneously addressing the root cause of SAN errors is challenging. Learn the most common SAN problems and explore new...
- Deduplication Without Compromise
- Go inside Quantum's scalable, high-performance, multi-protocol new DXi deduplication appliances, designed to make backup much more effective. Discover how the new future-proof DXi6700...
- Director of Disk Products Discusses DXi6700
- Discover how the new DXi 6700 series of deduplication appliances provide investment protection and a future-proof feature set, all while delivering fast, scalable,...
- Playing Defense: Staying on Top of Your Disaster Recovery Game
- When it comes to disaster recovery, rapidly growing data volumes, distributed computing models, and new technologies all combine to present an ever-changing playing... All Security Webcasts