How is an Information Security Officer (ISO) designated?
The ISO is designated by submittal of the ISO and back-up ISO name, title, and contact information to the Chief Information Security Officer (CISO) biennially by the agency head. For additional details see the Information Security Standard (SEC 501-01) – “Key Information Security Roles and Responsibilities”. If the submission is sent by email, the submittal will be accepted from someone other than the agency head, if the agency head is copied. For contact information, see response #1.
Related Questions
- When are agencies required to submit the designation of an Information Security Officer (ISO) to the California Office of Information Security (OIS)?
- Who does an USG institutions Information Security Officer (ISO) or designee call when a security incident occurs?
- Who does an agencys Information Security Officer (ISO) call when a security incident occurs?