SlideShare una empresa de Scribd logo
1 de 26
MICHAEL W. MEISSNER, RCDD
PROGRAM AND PROJECT MANAGEMENT SERVICES
PROGRAM MANAGEMENT AND GOVERNANCE
PROJECT MANAGEMENT
IT STRATEGY
MICHAEL W. MEISSNER
EXECUTIVE SUMMARY
• MICHAEL W. MEISSNER IS A HIGHLY MOTIVATED PROGRAM AND PROJECT MANAGER AND HAS OVER THIRTY YEARS OF EXPERIENCE MANAGING
PROGRAMS AND PROJECTS.
• MEISSNER LEADS ETHERNAUTICS, INC.'S PROGRAMS AND PROJECTS OFFICE. MR. MEISSNER HAS BROAD SKILL SET AND DEPTH OF KNOWLEDGE
GAINED THRU DECADES OF INFORMATION TECHNOLOGY, ENGINEERING AND MANAGEMENT EXPERIENCE.
• EXECUTED MULTIPLE END TO END PROGRAM MANAGEMENT AND PROJECT MANAGEMENT OF LARGE AND/OR MULTIPLE LARGE PROJECTS.
• EXPERIENCED WITH PROGRAM GOVERNANCE.
• MANAGED PROJECTS FROM A FEW INDIVIDUALS TO TEAMS OF OVER 100 INDIVIDUALS AND VENDORS. (INCLUDING OFFSHORE AND UNION).
• EXPERIENCE WORKING IN A COMPLEX, MULTI TASKING TYPE ENVIRONMENTS.
• HIGHLY ORGANIZED, RESULTS-ORIENTED AND ATTENTIVE TO DETAILS.
• SELF-MOTIVATED, PROACTIVE, INDEPENDENT AND RESPONSIVE.
• REQUIRES LITTLE OR NO SUPERVISORY ATTENTION.
©1994-2016 Copyright Michael W. Meissner –
Ethernautics, Inc.
Author: Michael W. Meissner
Last revised: 02/15/2016 1:53:59 PM PDT
(UTC/GMT –7)
2
MICHAEL W. MEISSNER
EXECUTIVE SUMMARY
• MICHAEL W. MEISSNER EXCELLENT PRESENTATION, FACILITATION AND DIPLOMACY SKILLS.
• ABLE TO EXPRESS A CLEAR UNDERSTANDING OF THE BUSINESS, OPERATIONAL AND HUMAN IMPACT OF TECHNOLOGY AND THE ORGANIZATIONAL
CHALLENGES THEY EXPOSE.
• EXCEPTIONAL CLIENT SERVICE AND COMMUNICATION SKILLS WITH A DEMONSTRATED ABILITY TO DEVELOP AND MAINTAIN OUTSTANDING CLIENT
RELATIONSHIPS.
• DEMONSTRATED TRACK RECORD ASSISTING CLIENTS WITH IDENTIFYING AND ASSESSING INFORMATION SYSTEM RELATED RISKS AND DEFINING
BEST PRACTICES AS A TRUSTED ADVISER.
• MEISSNER HAS EXECUTED PROJECTS THRU THEIR COMPLETE LIFE-CYCLES (SDLC).
• IT PROCESSES (I.E., ITIL) INCLUDING INCIDENT, PROBLEM, DEFECT, CHANGE AND RELEASE MANAGEMENT.
• EXPERIENCE WITH STRATEGIES, ARCHITECTURES, AND METHODS
• DESIGNS AND IMPLEMENTS ALL FACETS OF PROJECTS THROUGH PROGRAMMATIC AND TECHNICAL DETAIL MANAGEMENT TO ENSURE
DELIVERABLES ARE MET WITHIN SCHEDULE, BUDGET, AND QUALITY GOALS. HANDS-ON EXPERIENCE WITH INDUSTRY STANDARDS AND
TECHNOLOGY
• EXPERTISE IN IT POLICY AND PROCEDURE DEVELOPMENT.
©1994-2016 Copyright Michael W. Meissner –
Ethernautics, Inc.
Author: Michael W. Meissner
Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT
–7)
3
SYSTEMS DEVELOPMENT LIFECYCLE (SDLC)
PLANNING
ANALYSIS
(REQUIREMENTS)
MAINTENANCE
IMPLEMENTATION DESIGN
PROJECT MANAGEMENT
Michael W. Meissner has managed programs and projects across the
SDLC. Michael Meissner has skills rooted in technical experience,
performing technical tasks at each stage of the SDLC as well as
overall management of the project evolution.
©1994-2016 Copyright Michael W. Meissner –
Ethernautics, Inc.
Author: Michael W. Meissner
Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT
–7)
4
SYSTEMS DEVELOPMENT LIFECYCLE (SDLC)
Michael W. Meissner has managed complex programs across the SDLC. Meissner manages both
small projects with few resources and limited scope to large programs with multiple complex
projects concurrently. Increasing in complexity, budgets and personnel, often requiring
significantly more governance.
PLANNING
ANALYSIS
(REQUIRE
MENTS)
MAINTENA
NCE
IMPLEMEN
TATION
DESIGN
PROJECT MANAGEMENT
PLANNING
ANALYSIS
(REQUIRE
MENTS)
MAINTENA
NCE
IMPLEMEN
TATION
DESIGN
PROJECT MANAGEMENT
PLANNING
ANALYSIS
(REQUIRE
MENTS)
MAINTENA
NCE
IMPLEMEN
TATION
DESIGN
PROJECT MANAGEMENT
PROGRAM MANAGEMENT & GOVERNANCE
©1994-2016 Copyright Michael W. Meissner –
Ethernautics, Inc.
Author: Michael W. Meissner
Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT
–7)
5
SYSTEMS DEVELOPMENT LIFECYCLE (SDLC)
Michael W. Meissner
successfully completes
complex programs across
the SDLC, due the
provenance of deep hands-
on skills and decades of
experience in every aspect
of system development and
deployment.
©1994-2016 Copyright Michael W. Meissner –
Ethernautics, Inc.
Author: Michael W. Meissner
Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT
–7)
6
PROGRAM AN PROJECT MANAGEMENT
DOMAINS
• MICHAEL MEISSNER HAS EXPERTISE WITH THE FOLLOWING PROGRAM AND PROJECT MANAGEMENT DOMAINS:
• PROGRAM AND PROJECT GOVERNANCE
• CYBER SECURITY
• REQUIREMENTS ANALYSIS
• SOFTWARE ENGINEERING AND DEVELOPMENT
• DATABASE ENGINEERING
• SYSTEMS ENGINEERING
• INFRASTRUCTURE ARCHITECTURE
• SOLUTIONS ARCHITECTURE
• CONSTRUCTION AND FIELD ENGINEERING
• RISK RESPONSE & RECOVERY
• COMMUNICATIONS INFRASTRUCTURE (TERRESTRIAL AND WIRELESS)
• ARCHITECTURE & MODELS
• MEISSNER MAINTAINS EXPERIENCE IN SEVERAL INDUSTRY VERTICALS
©1994-2016 Copyright Michael W. Meissner –
Ethernautics, Inc.
Author: Michael W. Meissner
Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT
–7)
7
PROGRAM AN PROJECT MANAGEMENT
SOFTWARE DEVELOPMENT METHODS
• MICHAEL MEISSNER HAS EXPERTISE WITH THE FOLLOWING PROGRAM AND PROJECT MANAGEMENT SOFTWARE
DEVELOPMENT METHODS:
• SDLC
• WATERFALL
• CASCADE
• SOFTWARE ENGINEERING AND DEVELOPMENT
• DATABASE ENGINEERING
• SYSTEMS ENGINEERING
• INFRASTRUCTURE ARCHITECTURE
• SOLUTIONS ARCHITECTURE
• CONSTRUCTION AND FIELD ENGINEERING
• RISK RESPONSE & RECOVERY
• COMMUNICATIONS INFRASTRUCTURE (TERRESTRIAL AND WIRELESS)
• ARCHITECTURE & MODELS
• MEISSNER MAINTAINS EXPERIENCE IN SEVERAL INDUSTRY VERTICALS
©1994-2016 Copyright Michael W. Meissner –
Ethernautics, Inc.
Author: Michael W. Meissner
Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT
–7)
8
WORK HISTORY
08/2007 - Present Ethernautics, Inc. California Water Services
Areva
Computer Sciences Corporation
Telcordia
Global Telcom Limited (GTL)
US Cellular
Urenco/LES
ETUS
STP – South Texas Project
Verizon Wireless
JoAnn’s Stores
01/2007 – 08/2007 NetCracker,
Technologies
US Army
Time Warner
One Communications
Covad
Telus
Nextel/Sprint
Verizon Business
Horry Telephone Cooperative
Comcast
11/1993 – 01/2007 Information
Mechanics, Inc.
Comcast (TCI)
AT&T Broadband
MetroList
Mobeo
GTE
AT&T Wireless
Bell South
Continental Cable
Lafarge Concrete
Denver Post
US Park Service
Across Media Networks
Telcordia (Belcore) – SAIC
TECO/Peoples Gas
Cable Services Group (CSG)
AMDOCS
Cable Data
Kenan
AT&T Broadband
MediaOne
USWest/Qwest
Ticketmaster/Pacer Cats, AMC, United Artist
02/1992 – 11/1993 Berger & Co Region Transportation District (RTD)
Lipper Analytical
Aspen Ski Corp
Obeymeyer Sports
USWest
Jones Cable
Xcel Energy
Frontier Communications
Optimus Technologies
Ticketmaster/Pacer Cats
Trinidad Benham
Territory Agent IBM – Oil & Gas/Mining/AEC
05/1987 – 02/1992 IBM Department of Transportation
Department of Health and Human Services
Department of Labor
Rocky Flats – Rockwell International
Public Service Company of Colorado
Kaiser Permanente
St. Anthony’s Hospital
St. Luke’s Hospital, Veterans Hospital
Colorado School of Mines
05/1987 – 10/1988 Colorado School of
Mines
Research Development
Data Center Management
06/1985 – 05/1987 Schlumberger Measurement While Drilling (MWD)
01/1988 – 06/1985 Mammoth
Information Services
Calaway Oil & Gas
Bird Oil Corporation
Amselco Minerals
Amoco
Microgeophysical Corp
Max P. Arnold & Associates
* See Project References for details: (Click
©1994-2016 Copyright Michael W. Meissner –
Ethernautics, Inc.
Author: Michael W. Meissner
Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT
9
GOVERNANCE
PROGRAM AND PROJECT MANAGEMENT
• PROGRAM LEADERSHIP AND
MANAGEMENT
• STRATEGY
• PROJECT MANAGEMENT
• REGULATORY COMPLIANCE
• POLICY AND PROCEDURE
DEVELOPMENT
• CHANGE MANAGEMENT -
CONFIGURATION MANAGEMENT
• TECHNICAL SPECIFICATIONS AND
BEST PRACTICE DEVELOPMENT
• INCIDENT RESPONSE DISASTER
RECOVERY
• REPORTING AND KPI’S
©1994-2016 Copyright Michael W. Meissner –
Ethernautics, Inc.
Author: Michael W. Meissner
Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT
–7)
10
GOVERNANCE
PROGRAM AND PROJECT MANAGEMENT
• CUSTOMER FACING – WORKS ACROSS
ORGANIZATION
• PROJECT MANAGEMENT
• DEVELOP AND TRACK SCHEDULES
• TRACK RESOURCES
• TRACK REQUIREMENTS
• TRACK DELIVERABLES
• KPI’S
• RFP PREPARATION, BID PREPARATION AND
RESPONSE
• JOB COSTING AND BUDGET TRACKING
• PROFICIENT IN DESIGN, PRESENTATION, AND
PROJECT MANAGEMENT TOOLS (MS OFFICE,
WORD, EXCEL, POWER POINT, VISIO,
PROJECT)
• PROJECT AND CONSTRUCTION
MANAGEMENT, IT ENGINEERING
MANAGEMENT, FIELD ENGINEERING AND
“CRAFT” MANAGEMENT
• LABOR/UNION RELATIONS
©1994-2016 Copyright Michael W. Meissner –
Ethernautics, Inc.
Author: Michael W. Meissner
Last revised: 02/15/2016 1:53:59 PM PDT
(UTC/GMT –7)
11
TECHNICAL CAPABILITIES
• LOW VOLTAGE DESIGN - REGISTERED
COMMUNICATIONS DISTRIBUTION DESIGNER
(RCDD) CERTIFICATION
• OUTSIDE PLANT DESIGN
• ELECTRONIC SAFETY AND SECURITY
SYSTEMS DESIGN (LIFE SAFETY)
• WIRELESS DESIGN (DAS, CELLULAR, ANALOG
RADIO)
• INTELLIGENT BUILDINGS, BUILDING
AUTOMATION, UTILITY MONITORING
DESIGNS
• CYBER SECURITY DESIGN – CISSP
CERTIFICATIONS
• RIGHTS OF WAY, PERMITTING, AND
AUTHORITIES HAVING JURISDICTION (AHJ)
• CUSTOMER FACING SALES AND SUPPORT –
TECHNICAL PRESENTATIONS
• PROFICIENT IN DESIGN TOOLS (ACAD, VISIO,
EXCEL)
• FIELD ENGINEERING, DESIGN VERIFICATION,
AND "AS-BUILTS"
• CYBER-PHYSICAL SYSTEMS
• CYBER SECURITY ASSESSMENT
©1994-2016 Copyright Michael W. Meissner –
Ethernautics, Inc.
Author: Michael W. Meissner
Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT
–7)
12
TECHNICAL CAPABILITIES – SOLUTIONS
ARCHITECTURE
• SOFTWARE ENGINEERING MANAGEMENT
• SYSTEMS ENGINEERING MANAGEMENT
• CYBER-PHYSICAL SYSTEMS - ELECTRONIC
SAFETY AND SECURITY SYSTEMS DESIGN
(LIFE SAFETY) PROJECT MANAGEMENT
• WIRELESS DESIGN (DAS, CELLULAR, ANALOG
RADIO) – ENCRYPTION PROJECT
MANAGEMENT
• CYBER SECURITY PROGRAM AND DESIGN
PROJECT MANAGEMENT
• PROGRAM COMPLIANCE WITH REGULATORY
AND BUSINESS REQUIREMENT
• CUSTOMER FACING SALES AND SUPPORT –
TECHNICAL PRESENTATIONS
• RISK ASSESSMENT
• CRITICAL DIGITAL ASSET MANAGEMENT
• CYBER SECURITY ASSESSMENT
©1994-2016 Copyright Michael W. Meissner –
Ethernautics, Inc.
Author: Michael W. Meissner
Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT
13
CYBER SECURITY ENGINEERING
SECURITY-BY-DESIGN SERVICES
• CYBER SECURITY ENGINEERING
• CYBER SECURITY ARCHITECTURES (PCI, NIST, ISO
ETC.)
• BUSINESS AND REGULATORY REQUIREMENTS
• SYSTEM ANALYSIS USING MULTIPLE TECHNOLOGIES
IN HETEROGENEOUS ARCHITECTURES AND WIDE
SYSTEM FUNCTIONALITY
• ELECTRONIC SAFETY AND SECURITY (ESS) -
PHYSICAL SECURITY SYSTEMS AND LIFE SAFETY
SYSTEMS
• CRITICAL DIGITAL ASSET DETERMINATION
• ANALYZES NETWORK SECURITY DESIGN
• RISK ASSESSMENT AND MANAGEMENT
• WORK WITH CLIENTS IN IDENTIFYING AND
ASSESSING INFORMATION SYSTEM RELATED
RISKS RELATED TO CYBER SECURITY.
• CREATING STRATEGIES RELATED TO CYBER
SECURITY RISK MANAGEMENT.
• PLANS AND CONDUCTS VULNERABILITY
ASSESSMENTS
• CREATED AND TUNED VULNERABILITY SCAN
GROUPS AND CONFIGURATIONS.
• IDENTIFICATION OF ATTACK VULNERABILITIES
(OWASP) AND (ISO/IEC 15408-1:2009)
• EVALUATION OF SYSTEM SECURITY
CONFIGURATIONS
• DEVELOPMENT AND EVALUATION OF ATTACK
SCENARIOS
• EVALUATES FINDINGS AND CONDUCTS ROOT CAUSE
ANALYSIS
• CONDUCT PENETRATION TESTING, ROUTINE
EXPLOIT ANALYSIS, SYSTEMS MONITORING.
• CYBER SECURITY CONTROLS CATALOG
• REMEDIATION AND MITIGATION
©1994-2016 Copyright Michael W. Meissner –
Ethernautics, Inc.
Author: Michael W. Meissner
Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT
14
IT PROGRAM AND PROJECT MANAGEMENT
SERVICES SYSTEMS ENGINEERING SERVICES
• MEISSNER HAS EXPERIENCE WITH DESIGNING THE FOLLOWING SECURITY RELATED SYSTEMS:
• NETWORK SECURITY DESIGN (LAN/WAN)
• APPLICATION SECURITY DESIGN
• DATA SECURITY
• ELECTRONIC SAFETY AND SECURITY (ESS) - PHYSICAL SECURITY SYSTEMS AND LIFE SAFETY
SYSTEMS
• SECURE WIRELESS
• RADIO ENCRYPTION
• DATA
• VOICE (PUSH-TO-TALK)
• INTEGRATES SECURITY TECHNICAL CONTROLS FOR MULTIPLE PROJECTS/PRODUCTS WITH DEFINED
REQUIREMENTS
• DESIGN TEST PLANS TO EVALUATE CONTROL OBJECTIVES AND IDENTIFY WEAKNESSES IN THE
INFORMATION TECHNOLOGY CONTROL STRUCTURE.
• SECURITY OPERATION CENTERS (SOC), NETWORK OPERATION CENTERS (NOC), DATA CENTERS,
TELECOM EQUIPMENT ROOMS,
• ENGINEERING DRAWINGS - (T-EQP, T-PHY, T-PHY)
• IDENTITY ACCESS MANAGEMENT AND AUTHORIZATION
• PLANT CONTROL SYSTEMS (PCS, ICS) AND SCADA SYSTEMS IN NUCLEAR
POWER PLANTS, CHEMICAL PROCESSING AND WATER
TREATMENT/DISTRIBUTION CRITICAL INFRASTRUCTURE
• DESIGN OVERALL DEFENSE-IN-DEPTH ARCHITECTURE FOR PLANT SYSTEMS
(NIST CYBER SECURITY FRAMEWORK AND ISO/IEC 27001 COMPLIANCE
COBIT, COSO).
• SUPPORTING INFRASTRUCTURES (TELCOM, POWER, HVAC, DATA CENTER,
CLOSETS, DAS, DISTRIBUTION SYSTEMS)
• OUTSIDE PLANT (OSP)
• SECURE STRUCTURED CABLING
• DEFINES SECURITY PRODUCT SPECIFICATIONS
• DEFINE INTRUSION/DATA LOSS TECHNIQUES.
• DESIGNS, INTEGRATES AND CONFIGURES CONTROLS.
• RESPONSIBLE FOR IMPLEMENTING AND TUNING THE TECHNICAL SOLUTION
USED TO IDENTIFY AND MANAGE THE CONFIGURATIONS AND CONTROLS
• PATCH MANAGEMENT- SATELLITE, SCCM, WSUS, SHAVLIK, SECUNIA,
LANDESK
©1994-2016 Copyright Michael W. Meissner –
Ethernautics, Inc.
Author: Michael W. Meissner
Last revised: 02/15/2016 1:53:59 PM PDT
(UTC/GMT –7)
15
CYBERSECURANCETM
PROJECT MANAGEMENT FOR DIGITAL CYBER SECURITY
DESIGN AND SYSTEMS ENGINEERING SERVICES
• GOVERNANCE – NIST
• NETWORK SECURITY DEPLOYMENT OF NETWORK AND
APPLICATION SECURITY AND AUTHORIZATION FOR PLANT
CONTROL AND REPORTING SYSTEMS.
• FIREWALLS
• DATA DIODES
• CREDIT CARDS
• DMZ’S
• ENCRYPTION
• IAM
• SIEMS
• IDS/IPS
©1994-2016 Copyright Michael W. Meissner –
Ethernautics, Inc.
Author: Michael W. Meissner
Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT
–7)
16
Michael W. Meissner has experience with Managing Programs and Projects
designing and implementing the following Security related systems:
CYBERSECURANCETM
IT PROGRAM AND PROJECT MANAGEMENT SERVICES
• ERP
• BILLING/OSS SYSTEMS
• PROVISIONING SYSTEMS (AUTHORIZATION AND CONTROL)
• CUSTOMER CARE
• SUBSCRIBER MANAGEMENT
• WORK FORCE MANAGEMENT (WFM) AND DISPATCH
• ORDER PROCESSING
• SERVICES CATALOG
• ASSET MANAGEMENT
• INVENTORY MANAGEMENT
• BIM
• PHYSICAL SECURITY SYSTEMS
• LIFE/SAFETY SYSTEMS – ESS SYSTEMS
• PLANT CONTROL SYSTEMS
• BUILDING AUTOMATION & UTILITY MONITORING
• DATA CENTER DESIGN
• CABLE DESIGN – STRUCTURED CABLING
• OUTSIDE PLANT - OSP
• NETWORK DESIGN
• CYBER SECURITY ENGINEERING
• PROJECT MANAGEMENT
©1994-2016 Copyright Michael W. Meissner –
Ethernautics, Inc.
Author: Michael W. Meissner
Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT
–7)
17
Michael W. Meissner has experience with Managing Programs and Projects of the
following types:
IT ENGINEERING PROJECT MANAGEMENT TOOLS
• PROFICIENT WITH OFFICE SUITE (WORD,
EXCEL, POWERPOINT
• MS PROJECT
• MS VISIO
• MS SHAREPOINT
• PRIMAVERA
• BENTLEY AUTOPLANT
• REVIT
• REQUIREMENTS TRACKING
• UML
• REMEDY
• RECORD MANAGEMENT SYSTEMS
• MASTER EQUIPMENT LIST
©1994-2016 Copyright Michael W. Meissner –
Ethernautics, Inc.
Author: Michael W. Meissner
Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT –
7)
18
PROGRAM AND PROJECT MANAGEMENT
REGULATORY REQUIREMENTS AND BEST PRACTICES
Name: Regulation, Pub, Doc #: Website:
PCI DSS Payment Card Industry Data Security Standard https://en.wikipedia.org/wiki/Payment_Card_Industry_Data_Secu
rity_Standard
ISO 27001:2013 Specification for an information security management system (ISMS) https://en.wikipedia.org/wiki/ISO/IEC_27001:2013
HIPAA Health Insurance Portability and Accountability Act of 1996 https://en.wikipedia.org/wiki/Health_Insurance_Portability_and_Acco
untability_Act
NIST Special Publication 800-53 Revision 4 NIST Special Publication 800-53 http://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-
53r4.pdf
NIST Special Publication 800-37 Revision 1 NIST Special Publication 800-37 Revision 1 http://csrc.nist.gov/publications/nistpubs/800-37-rev1/sp800-37-
rev1-final.pdf
Managing Information Security Risk NIST Special Publication 800-39 http://csrc.nist.gov/publications/nistpubs/800-39/SP800-39-final.pdf
Introduction to NISTIR 7628 Guidelines for Smart Grid Cyber Security NISTIR 7628 http://www.nist.gov/smartgrid/upload/nistir-7628_total.pdf
Electric Infrastructure Protection and Substation Perimeter Security. CIP-014 https://secureusa.net/energy-sector-cip-014-compliance/
Third part (of 8) of the open international standard IEC
61131 for programmable logic controllers,
IEC 61131-3 http://en.wikipedia.org/wiki/IEC_61131-3
Role Engineering and RBAC Standards Role Based Access Control (RBAC) http://csrc.nist.gov/groups/SNS/rbac/standards.html
Security techniques -- Evaluation criteria for IT security -- Part 1:
Introduction and general model
ISO/IEC 15408-1:2009 http://www.iso.org/iso/catalogue_detail.htm?csnumber=50341
* Meissner has experience with many regulatory and best practice requirements related to Cyber Security
** Non-Exhaustive List: Requirements vary by Industry, Business Risk, and Local AHJ
*** Ethernautics, Inc. – Meissner: Cyber Security Standards, Best Practices and PRADL for Water Utilities http://wp.me/p2xZpH-1g
©1994-2016 Copyright Michael W. Meissner –
Ethernautics, Inc.
Author: Michael W. Meissner
Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT
–7)
19
CYBER SECURITY ENGINEERING
SECURITY-BY-DESIGN
REGULATORY REQUIREMENTS AND BEST PRACTICES
Name: Regulation, Pub, Doc #: Website:
ITIL Information Technology Infrastructure Library https://en.wikipedia.org/wiki/ITIL
10 CFR 73.54 “Cyber Security Rule https://en.wikipedia.org/wiki/ISO/IEC_27001:2013
Safe Guards (10 CFR 73.51) https://en.wikipedia.org/wiki/Health_Insurance_Portability_and_Acco
untability_Act
NIST Special Publication 800-53 Revision 4 http://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-
53r4.pdf
Cyber Security Training and Awareness http://csrc.nist.gov/publications/nistpubs/800-37-rev1/sp800-37-
rev1-final.pdf
NIST And other security frameworks. http://csrc.nist.gov/publications/nistpubs/800-39/SP800-39-final.pdf
PRINCE PRojects IN Controlled Environments, version 2 https://en.wikipedia.org/wiki/PRINCE2
* Non-Exhaustive List: Requirements vary by Industry, Business Risk, and
Local AHJ©1994-2016 Copyright Michael W. Meissner –
Ethernautics, Inc.
Author: Michael W. Meissner
Last revised: 02/15/2016 1:53:59 PM PDT
(UTC/GMT –7)
20
DESIGN STANDARDS
• MEISSNER HAS EXPERIENCE WITH THE FOLLOWING DESIGN STANDARDS:
• ANSI/TIA/EIA STANDARDS
• ANSI/TIA/EIA-568-C: COMMERCIAL BUILDING TELECOMMUNICATIONS CABLING STANDARD
• ANSI/TIA/EIA-569-C: TELECOMMUNICATIONS PATHWAYS AND SPACES
• ANSI/TIA/EIA-606-B: CABLE LABELING STANDARDS
• ANSI/TIA/EIA-607-C: GENERIC TELECOMMUNICATIONS GROUNDING (EARTHING) AND BONDING FOR CUSTOMER PREMISES
• ANSI/TIA/EIA-942: TELECOMMUNICATIONS INFRASTRUCTURE STANDARD FOR DATA CENTERS
• TELECOMMUNICATIONS DESIGN MANUAL (TDM) - BICSI (BUILDING INDUSTRY CONSULTING SERVICE INTERNATIONAL)
• NATIONAL ELECTRIC CODE (NFPA 70) - NEC
• MASTER FORMAT
• DIVISION 27
• DIVISION 28
• ASHRAE GUIDELINES
• STANDARD 135 – BACNET - A DATA COMMUNICATION PROTOCOL FOR BUILDING AUTOMATION AND CONTROL NETWORKS
• STANDARD 189.1 – STANDARD FOR THE DESIGN OF HIGH PERFORMANCE, GREEN BUILDINGS EXCEPT LOW-RISE RESIDENTIAL BUILDINGS
• LEED – USBC US GREEN BUILDING COUNCIL
©1994-2016 Copyright Michael W. Meissner –
Ethernautics, Inc.
Author: Michael W. Meissner
Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT
–7)
21
REGISTRATIONS AND CERTIFICATIONS
• REGISTERED COMMUNICATIONS DISTRIBUTION DESIGNER (RCDD)
• ELECTRONIC SAFETY AND SECURITY (ESS) – IN PROCESS
• OUTSIDE PLANT SPECIALIST (OSP) – IN PROCESS
• CERTIFIED NETWORK ASSOCIATE (CAN) – IN PROCESS
• CERTIFIED INFORMATION SYSTEMS SECURITY PROFESSIONAL (CISSP) – IN
PROCESS
• PMP – PROJECT MANAGEMENT PROFESSIONAL – IN PROCESS
• LEEDS – LEADERSHIP IN ENERGY AND ENVIRONMENTAL DESIGN – IN PROCESS
©1994-2016 Copyright Michael W. Meissner –
Ethernautics, Inc.
Author: Michael W. Meissner
Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT
–7)
22
CLIENTS
©1994-2016 Copyright Michael W. Meissner –
Ethernautics, Inc.
Author: Michael W. Meissner
Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT
–7)
23
REFERENCE PROJECTS
• MICHAEL W. MEISSNER WITH ETHERNAUTICS, INC. CONTRACTED TO CALIFORNIA WATER SERVICES
GROUP (CWS) FOR CYBER SECURITY PROGRAM DEVELOPMENT, SCADA NETWORK SECURITY,
VULNERABILITY MITIGATION FOR PROTECTION OF CRITICAL ASSETS IN WATER
TREATMENT/DISTRIBUTION PLANTS. (2015) (CLICK HERE)
• MICHAEL W. MEISSNER WITH ETHERNAUTICS, INC. CONTRACTED THROUGH AREVA, NP TO SOUTH
TEXAS PROJECT (STP) FOR PROGRAM IMPLEMENTATION OF 10CF73.54 PROTECTION OF CRITICAL
ASSETS IN NUCLEAR POWER PLANTS. (2012-2015) (CLICK HERE)
• MICHAEL W. MEISSNER WITH ETHERNAUTICS, INC. CONTRACTED THROUGH CSC TO URENCO-
USA/(LES) FOR PROGRAM IMPLEMENTATION AND PROTECTION OF CRITICAL ASSETS IN NUCLEAR
ENRICHMENT FACILITIES.(2007-2012) (CLICK HERE)
• MICHAEL W. MEISSNER WITH INFORMATION MECHANICS, INC. CONTRACTED BY
TELECOMMUNICATION CORPORATION INC. (TCI) FOR DEVELOPMENT OF SECURE ENCRYPTED
COMMUNICATIONS TO DIGITAL SET TOP BOXES (CLICK HERE) - ADDRESSABILITY SYSTEMS: US
PATENT NUMBER #6070001 (CLICK HERE)©1994-2016 Copyright Michael W. Meissner –
Ethernautics, Inc.
Author: Michael W. Meissner
Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT –
7)
24
PATENTS AND PUBLISHED ARTICLES
Expert Systems and Knowledge
Engineering
IBM RedBook 1988
A Business Case for an
Education Network Channel
Jones International University 1993
Addressability Systems US Patent #6070001 1993
Product, Packages, and
Promotions Functions
Telecommunications Inc. Business Function
Document
1994
Triple Play Billing Telecommunications Inc. Business Function
Document
1994
Designing for Performance in
Credit Card Transactions
Telecommunications Inc. Business Function
Document
1994
The Pitfalls of Automating
Inefficient Processes
Information Mechanics, Inc. 1996
Data Centre Design and
Consolidation
Information Mechanics, Inc. 1997
Best Practices in Service Catalog NetCracker Marketing 2006
Best Practices on OSS
Deployment
NetCracker Marketing 2007
Best Practices in SLA’s NetCracker Marketing 2007
Defined KPI’s
• MTBF – Mean Time Between
Failure
• MTTR – Mean Time To Repair
• SCCT – Supply Chain Cycle Time
• IRCT – Inventory Replenishment
Cycle Time
• IMOS- Inventory Months of
Supply
• ITO – Inventory Turnover
www.kpilibrary.com 2008
Cabling Specifications Urenco Ltd – Design Document 2009
Cable Testing Specifications Urenco Ltd – Design Document 2010
PLC’s – The greatest Cyber
Security Risk to the Nation’s
Infrastructure
DEF CON Presentation 2012
©1994-2016 Copyright Michael W. Meissner –
Ethernautics, Inc.
Author: Michael W. Meissner
Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT
–7)
25
PATENTS AND PUBLISHED ARTICLES
Title Address Year
Wikipedia Articles
• Electrode ionization
• Addressability
• Addressability Systems
• Cable Converter Box
• Descramble
• Solutions Architect
• FTTLA
• SWU
Wikipedia.com
http://en.wikipedia.org/wiki/Electrodeionization
http://en.wikipedia.org/wiki/Addressability
http://en.wikipedia.org/wiki/Addressable_system
s
http://en.wikipedia.org/wiki/Cable_Converter_Bo
x
http://en.wikipedia.org/wiki/Descramble
http://en.wikipedia.org/wiki/Solutions_Architect
http://en.wikipedia.org/wiki/FTTLA
http://en.wikipedia.org/wiki/SWU
2008-2012
Ethernautics, Inc.: Cyber
Security Database Threats
https://ethernautics.wordpress.com/2015/
06/13/database-security-threats/
2013
Glossary of Terms - Cyber
Security At Nuclear Power Plants
http://wp.me/p2xZpH-c 2013
Secure Encrypted
communications to Digital Set
Top Boxes - Addressability
Systems: US Patent Number
#6070001
http://wp.me/p2xZpH-V
http://patents.com/us-6070001.html
https://en.wikipedia.org/wiki/Addressability
1993
Ethernautics, Inc. – Meissner:
Cyber Security Standards, Best
Practices and PRADL for
Water Utilities
http://wp.me/p2xZpH-1g 2015
Cyber Security in the
Automobile:
Automobile/Vehicle Protocol
Buses
http://infrastructurecybersecurity.blogspot.
com/2015/06/automobilevehicle-protocol-
buses.html
2014
Communications Protocols
Utilized in Plant Control
Systems are a key component in
the development of a Cyber
Security Controls Catalog -
Quora
https://industrial-cyber-
security.quora.com/Communications-
Protocols-Utilized-in-Plant-Control-
Systems-are-a-key-component-in-the-
development-of-a-Cyber-
Security?srid=7rIp&share=1
2014
©1994-2016 Copyright Michael W. Meissner –
Ethernautics, Inc.
Author: Michael W. Meissner
Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT –
7)
26

Más contenido relacionado

Último

Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024The Digital Insurer
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024The Digital Insurer
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...apidays
 
Top 5 Benefits OF Using Muvi Live Paywall For Live Streams
Top 5 Benefits OF Using Muvi Live Paywall For Live StreamsTop 5 Benefits OF Using Muvi Live Paywall For Live Streams
Top 5 Benefits OF Using Muvi Live Paywall For Live StreamsRoshan Dwivedi
 
GenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdfGenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdflior mazor
 
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...Neo4j
 
Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...
Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...
Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...Principled Technologies
 
Exploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone ProcessorsExploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone Processorsdebabhi2
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Drew Madelung
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodJuan lago vázquez
 
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, AdobeApidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobeapidays
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProduct Anonymous
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingEdi Saputra
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAndrey Devyatkin
 
Artificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsArtificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsJoaquim Jorge
 
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherRemote DBA Services
 
A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?Igalia
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationRadu Cotescu
 

Último (20)

Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
 
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...
 
Top 5 Benefits OF Using Muvi Live Paywall For Live Streams
Top 5 Benefits OF Using Muvi Live Paywall For Live StreamsTop 5 Benefits OF Using Muvi Live Paywall For Live Streams
Top 5 Benefits OF Using Muvi Live Paywall For Live Streams
 
GenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdfGenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdf
 
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
 
Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...
Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...
Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...
 
Exploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone ProcessorsExploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone Processors
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
 
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, AdobeApidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
Artificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsArtificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and Myths
 
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a Fresher
 
A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organization
 

Destacado

AI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdfAI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdfmarketingartwork
 
PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024Neil Kimberley
 
Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)contently
 
How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024Albert Qian
 
Social Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie InsightsSocial Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie InsightsKurio // The Social Media Age(ncy)
 
Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024Search Engine Journal
 
5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summarySpeakerHub
 
ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd Clark Boyd
 
Getting into the tech field. what next
Getting into the tech field. what next Getting into the tech field. what next
Getting into the tech field. what next Tessa Mero
 
Google's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search IntentGoogle's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search IntentLily Ray
 
Time Management & Productivity - Best Practices
Time Management & Productivity -  Best PracticesTime Management & Productivity -  Best Practices
Time Management & Productivity - Best PracticesVit Horky
 
The six step guide to practical project management
The six step guide to practical project managementThe six step guide to practical project management
The six step guide to practical project managementMindGenius
 
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...RachelPearson36
 
Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...
Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...
Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...Applitools
 
12 Ways to Increase Your Influence at Work
12 Ways to Increase Your Influence at Work12 Ways to Increase Your Influence at Work
12 Ways to Increase Your Influence at WorkGetSmarter
 

Destacado (20)

AI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdfAI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdf
 
Skeleton Culture Code
Skeleton Culture CodeSkeleton Culture Code
Skeleton Culture Code
 
PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024
 
Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)
 
How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024
 
Social Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie InsightsSocial Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie Insights
 
Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024
 
5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary
 
ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd
 
Getting into the tech field. what next
Getting into the tech field. what next Getting into the tech field. what next
Getting into the tech field. what next
 
Google's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search IntentGoogle's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search Intent
 
How to have difficult conversations
How to have difficult conversations How to have difficult conversations
How to have difficult conversations
 
Introduction to Data Science
Introduction to Data ScienceIntroduction to Data Science
Introduction to Data Science
 
Time Management & Productivity - Best Practices
Time Management & Productivity -  Best PracticesTime Management & Productivity -  Best Practices
Time Management & Productivity - Best Practices
 
The six step guide to practical project management
The six step guide to practical project managementThe six step guide to practical project management
The six step guide to practical project management
 
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
 
Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...
Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...
Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...
 
12 Ways to Increase Your Influence at Work
12 Ways to Increase Your Influence at Work12 Ways to Increase Your Influence at Work
12 Ways to Increase Your Influence at Work
 
ChatGPT webinar slides
ChatGPT webinar slidesChatGPT webinar slides
ChatGPT webinar slides
 
More than Just Lines on a Map: Best Practices for U.S Bike Routes
More than Just Lines on a Map: Best Practices for U.S Bike RoutesMore than Just Lines on a Map: Best Practices for U.S Bike Routes
More than Just Lines on a Map: Best Practices for U.S Bike Routes
 

Michael W. Meissner Program and Project Management Biography

  • 1. MICHAEL W. MEISSNER, RCDD PROGRAM AND PROJECT MANAGEMENT SERVICES PROGRAM MANAGEMENT AND GOVERNANCE PROJECT MANAGEMENT IT STRATEGY
  • 2. MICHAEL W. MEISSNER EXECUTIVE SUMMARY • MICHAEL W. MEISSNER IS A HIGHLY MOTIVATED PROGRAM AND PROJECT MANAGER AND HAS OVER THIRTY YEARS OF EXPERIENCE MANAGING PROGRAMS AND PROJECTS. • MEISSNER LEADS ETHERNAUTICS, INC.'S PROGRAMS AND PROJECTS OFFICE. MR. MEISSNER HAS BROAD SKILL SET AND DEPTH OF KNOWLEDGE GAINED THRU DECADES OF INFORMATION TECHNOLOGY, ENGINEERING AND MANAGEMENT EXPERIENCE. • EXECUTED MULTIPLE END TO END PROGRAM MANAGEMENT AND PROJECT MANAGEMENT OF LARGE AND/OR MULTIPLE LARGE PROJECTS. • EXPERIENCED WITH PROGRAM GOVERNANCE. • MANAGED PROJECTS FROM A FEW INDIVIDUALS TO TEAMS OF OVER 100 INDIVIDUALS AND VENDORS. (INCLUDING OFFSHORE AND UNION). • EXPERIENCE WORKING IN A COMPLEX, MULTI TASKING TYPE ENVIRONMENTS. • HIGHLY ORGANIZED, RESULTS-ORIENTED AND ATTENTIVE TO DETAILS. • SELF-MOTIVATED, PROACTIVE, INDEPENDENT AND RESPONSIVE. • REQUIRES LITTLE OR NO SUPERVISORY ATTENTION. ©1994-2016 Copyright Michael W. Meissner – Ethernautics, Inc. Author: Michael W. Meissner Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT –7) 2
  • 3. MICHAEL W. MEISSNER EXECUTIVE SUMMARY • MICHAEL W. MEISSNER EXCELLENT PRESENTATION, FACILITATION AND DIPLOMACY SKILLS. • ABLE TO EXPRESS A CLEAR UNDERSTANDING OF THE BUSINESS, OPERATIONAL AND HUMAN IMPACT OF TECHNOLOGY AND THE ORGANIZATIONAL CHALLENGES THEY EXPOSE. • EXCEPTIONAL CLIENT SERVICE AND COMMUNICATION SKILLS WITH A DEMONSTRATED ABILITY TO DEVELOP AND MAINTAIN OUTSTANDING CLIENT RELATIONSHIPS. • DEMONSTRATED TRACK RECORD ASSISTING CLIENTS WITH IDENTIFYING AND ASSESSING INFORMATION SYSTEM RELATED RISKS AND DEFINING BEST PRACTICES AS A TRUSTED ADVISER. • MEISSNER HAS EXECUTED PROJECTS THRU THEIR COMPLETE LIFE-CYCLES (SDLC). • IT PROCESSES (I.E., ITIL) INCLUDING INCIDENT, PROBLEM, DEFECT, CHANGE AND RELEASE MANAGEMENT. • EXPERIENCE WITH STRATEGIES, ARCHITECTURES, AND METHODS • DESIGNS AND IMPLEMENTS ALL FACETS OF PROJECTS THROUGH PROGRAMMATIC AND TECHNICAL DETAIL MANAGEMENT TO ENSURE DELIVERABLES ARE MET WITHIN SCHEDULE, BUDGET, AND QUALITY GOALS. HANDS-ON EXPERIENCE WITH INDUSTRY STANDARDS AND TECHNOLOGY • EXPERTISE IN IT POLICY AND PROCEDURE DEVELOPMENT. ©1994-2016 Copyright Michael W. Meissner – Ethernautics, Inc. Author: Michael W. Meissner Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT –7) 3
  • 4. SYSTEMS DEVELOPMENT LIFECYCLE (SDLC) PLANNING ANALYSIS (REQUIREMENTS) MAINTENANCE IMPLEMENTATION DESIGN PROJECT MANAGEMENT Michael W. Meissner has managed programs and projects across the SDLC. Michael Meissner has skills rooted in technical experience, performing technical tasks at each stage of the SDLC as well as overall management of the project evolution. ©1994-2016 Copyright Michael W. Meissner – Ethernautics, Inc. Author: Michael W. Meissner Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT –7) 4
  • 5. SYSTEMS DEVELOPMENT LIFECYCLE (SDLC) Michael W. Meissner has managed complex programs across the SDLC. Meissner manages both small projects with few resources and limited scope to large programs with multiple complex projects concurrently. Increasing in complexity, budgets and personnel, often requiring significantly more governance. PLANNING ANALYSIS (REQUIRE MENTS) MAINTENA NCE IMPLEMEN TATION DESIGN PROJECT MANAGEMENT PLANNING ANALYSIS (REQUIRE MENTS) MAINTENA NCE IMPLEMEN TATION DESIGN PROJECT MANAGEMENT PLANNING ANALYSIS (REQUIRE MENTS) MAINTENA NCE IMPLEMEN TATION DESIGN PROJECT MANAGEMENT PROGRAM MANAGEMENT & GOVERNANCE ©1994-2016 Copyright Michael W. Meissner – Ethernautics, Inc. Author: Michael W. Meissner Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT –7) 5
  • 6. SYSTEMS DEVELOPMENT LIFECYCLE (SDLC) Michael W. Meissner successfully completes complex programs across the SDLC, due the provenance of deep hands- on skills and decades of experience in every aspect of system development and deployment. ©1994-2016 Copyright Michael W. Meissner – Ethernautics, Inc. Author: Michael W. Meissner Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT –7) 6
  • 7. PROGRAM AN PROJECT MANAGEMENT DOMAINS • MICHAEL MEISSNER HAS EXPERTISE WITH THE FOLLOWING PROGRAM AND PROJECT MANAGEMENT DOMAINS: • PROGRAM AND PROJECT GOVERNANCE • CYBER SECURITY • REQUIREMENTS ANALYSIS • SOFTWARE ENGINEERING AND DEVELOPMENT • DATABASE ENGINEERING • SYSTEMS ENGINEERING • INFRASTRUCTURE ARCHITECTURE • SOLUTIONS ARCHITECTURE • CONSTRUCTION AND FIELD ENGINEERING • RISK RESPONSE & RECOVERY • COMMUNICATIONS INFRASTRUCTURE (TERRESTRIAL AND WIRELESS) • ARCHITECTURE & MODELS • MEISSNER MAINTAINS EXPERIENCE IN SEVERAL INDUSTRY VERTICALS ©1994-2016 Copyright Michael W. Meissner – Ethernautics, Inc. Author: Michael W. Meissner Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT –7) 7
  • 8. PROGRAM AN PROJECT MANAGEMENT SOFTWARE DEVELOPMENT METHODS • MICHAEL MEISSNER HAS EXPERTISE WITH THE FOLLOWING PROGRAM AND PROJECT MANAGEMENT SOFTWARE DEVELOPMENT METHODS: • SDLC • WATERFALL • CASCADE • SOFTWARE ENGINEERING AND DEVELOPMENT • DATABASE ENGINEERING • SYSTEMS ENGINEERING • INFRASTRUCTURE ARCHITECTURE • SOLUTIONS ARCHITECTURE • CONSTRUCTION AND FIELD ENGINEERING • RISK RESPONSE & RECOVERY • COMMUNICATIONS INFRASTRUCTURE (TERRESTRIAL AND WIRELESS) • ARCHITECTURE & MODELS • MEISSNER MAINTAINS EXPERIENCE IN SEVERAL INDUSTRY VERTICALS ©1994-2016 Copyright Michael W. Meissner – Ethernautics, Inc. Author: Michael W. Meissner Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT –7) 8
  • 9. WORK HISTORY 08/2007 - Present Ethernautics, Inc. California Water Services Areva Computer Sciences Corporation Telcordia Global Telcom Limited (GTL) US Cellular Urenco/LES ETUS STP – South Texas Project Verizon Wireless JoAnn’s Stores 01/2007 – 08/2007 NetCracker, Technologies US Army Time Warner One Communications Covad Telus Nextel/Sprint Verizon Business Horry Telephone Cooperative Comcast 11/1993 – 01/2007 Information Mechanics, Inc. Comcast (TCI) AT&T Broadband MetroList Mobeo GTE AT&T Wireless Bell South Continental Cable Lafarge Concrete Denver Post US Park Service Across Media Networks Telcordia (Belcore) – SAIC TECO/Peoples Gas Cable Services Group (CSG) AMDOCS Cable Data Kenan AT&T Broadband MediaOne USWest/Qwest Ticketmaster/Pacer Cats, AMC, United Artist 02/1992 – 11/1993 Berger & Co Region Transportation District (RTD) Lipper Analytical Aspen Ski Corp Obeymeyer Sports USWest Jones Cable Xcel Energy Frontier Communications Optimus Technologies Ticketmaster/Pacer Cats Trinidad Benham Territory Agent IBM – Oil & Gas/Mining/AEC 05/1987 – 02/1992 IBM Department of Transportation Department of Health and Human Services Department of Labor Rocky Flats – Rockwell International Public Service Company of Colorado Kaiser Permanente St. Anthony’s Hospital St. Luke’s Hospital, Veterans Hospital Colorado School of Mines 05/1987 – 10/1988 Colorado School of Mines Research Development Data Center Management 06/1985 – 05/1987 Schlumberger Measurement While Drilling (MWD) 01/1988 – 06/1985 Mammoth Information Services Calaway Oil & Gas Bird Oil Corporation Amselco Minerals Amoco Microgeophysical Corp Max P. Arnold & Associates * See Project References for details: (Click ©1994-2016 Copyright Michael W. Meissner – Ethernautics, Inc. Author: Michael W. Meissner Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT 9
  • 10. GOVERNANCE PROGRAM AND PROJECT MANAGEMENT • PROGRAM LEADERSHIP AND MANAGEMENT • STRATEGY • PROJECT MANAGEMENT • REGULATORY COMPLIANCE • POLICY AND PROCEDURE DEVELOPMENT • CHANGE MANAGEMENT - CONFIGURATION MANAGEMENT • TECHNICAL SPECIFICATIONS AND BEST PRACTICE DEVELOPMENT • INCIDENT RESPONSE DISASTER RECOVERY • REPORTING AND KPI’S ©1994-2016 Copyright Michael W. Meissner – Ethernautics, Inc. Author: Michael W. Meissner Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT –7) 10
  • 11. GOVERNANCE PROGRAM AND PROJECT MANAGEMENT • CUSTOMER FACING – WORKS ACROSS ORGANIZATION • PROJECT MANAGEMENT • DEVELOP AND TRACK SCHEDULES • TRACK RESOURCES • TRACK REQUIREMENTS • TRACK DELIVERABLES • KPI’S • RFP PREPARATION, BID PREPARATION AND RESPONSE • JOB COSTING AND BUDGET TRACKING • PROFICIENT IN DESIGN, PRESENTATION, AND PROJECT MANAGEMENT TOOLS (MS OFFICE, WORD, EXCEL, POWER POINT, VISIO, PROJECT) • PROJECT AND CONSTRUCTION MANAGEMENT, IT ENGINEERING MANAGEMENT, FIELD ENGINEERING AND “CRAFT” MANAGEMENT • LABOR/UNION RELATIONS ©1994-2016 Copyright Michael W. Meissner – Ethernautics, Inc. Author: Michael W. Meissner Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT –7) 11
  • 12. TECHNICAL CAPABILITIES • LOW VOLTAGE DESIGN - REGISTERED COMMUNICATIONS DISTRIBUTION DESIGNER (RCDD) CERTIFICATION • OUTSIDE PLANT DESIGN • ELECTRONIC SAFETY AND SECURITY SYSTEMS DESIGN (LIFE SAFETY) • WIRELESS DESIGN (DAS, CELLULAR, ANALOG RADIO) • INTELLIGENT BUILDINGS, BUILDING AUTOMATION, UTILITY MONITORING DESIGNS • CYBER SECURITY DESIGN – CISSP CERTIFICATIONS • RIGHTS OF WAY, PERMITTING, AND AUTHORITIES HAVING JURISDICTION (AHJ) • CUSTOMER FACING SALES AND SUPPORT – TECHNICAL PRESENTATIONS • PROFICIENT IN DESIGN TOOLS (ACAD, VISIO, EXCEL) • FIELD ENGINEERING, DESIGN VERIFICATION, AND "AS-BUILTS" • CYBER-PHYSICAL SYSTEMS • CYBER SECURITY ASSESSMENT ©1994-2016 Copyright Michael W. Meissner – Ethernautics, Inc. Author: Michael W. Meissner Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT –7) 12
  • 13. TECHNICAL CAPABILITIES – SOLUTIONS ARCHITECTURE • SOFTWARE ENGINEERING MANAGEMENT • SYSTEMS ENGINEERING MANAGEMENT • CYBER-PHYSICAL SYSTEMS - ELECTRONIC SAFETY AND SECURITY SYSTEMS DESIGN (LIFE SAFETY) PROJECT MANAGEMENT • WIRELESS DESIGN (DAS, CELLULAR, ANALOG RADIO) – ENCRYPTION PROJECT MANAGEMENT • CYBER SECURITY PROGRAM AND DESIGN PROJECT MANAGEMENT • PROGRAM COMPLIANCE WITH REGULATORY AND BUSINESS REQUIREMENT • CUSTOMER FACING SALES AND SUPPORT – TECHNICAL PRESENTATIONS • RISK ASSESSMENT • CRITICAL DIGITAL ASSET MANAGEMENT • CYBER SECURITY ASSESSMENT ©1994-2016 Copyright Michael W. Meissner – Ethernautics, Inc. Author: Michael W. Meissner Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT 13
  • 14. CYBER SECURITY ENGINEERING SECURITY-BY-DESIGN SERVICES • CYBER SECURITY ENGINEERING • CYBER SECURITY ARCHITECTURES (PCI, NIST, ISO ETC.) • BUSINESS AND REGULATORY REQUIREMENTS • SYSTEM ANALYSIS USING MULTIPLE TECHNOLOGIES IN HETEROGENEOUS ARCHITECTURES AND WIDE SYSTEM FUNCTIONALITY • ELECTRONIC SAFETY AND SECURITY (ESS) - PHYSICAL SECURITY SYSTEMS AND LIFE SAFETY SYSTEMS • CRITICAL DIGITAL ASSET DETERMINATION • ANALYZES NETWORK SECURITY DESIGN • RISK ASSESSMENT AND MANAGEMENT • WORK WITH CLIENTS IN IDENTIFYING AND ASSESSING INFORMATION SYSTEM RELATED RISKS RELATED TO CYBER SECURITY. • CREATING STRATEGIES RELATED TO CYBER SECURITY RISK MANAGEMENT. • PLANS AND CONDUCTS VULNERABILITY ASSESSMENTS • CREATED AND TUNED VULNERABILITY SCAN GROUPS AND CONFIGURATIONS. • IDENTIFICATION OF ATTACK VULNERABILITIES (OWASP) AND (ISO/IEC 15408-1:2009) • EVALUATION OF SYSTEM SECURITY CONFIGURATIONS • DEVELOPMENT AND EVALUATION OF ATTACK SCENARIOS • EVALUATES FINDINGS AND CONDUCTS ROOT CAUSE ANALYSIS • CONDUCT PENETRATION TESTING, ROUTINE EXPLOIT ANALYSIS, SYSTEMS MONITORING. • CYBER SECURITY CONTROLS CATALOG • REMEDIATION AND MITIGATION ©1994-2016 Copyright Michael W. Meissner – Ethernautics, Inc. Author: Michael W. Meissner Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT 14
  • 15. IT PROGRAM AND PROJECT MANAGEMENT SERVICES SYSTEMS ENGINEERING SERVICES • MEISSNER HAS EXPERIENCE WITH DESIGNING THE FOLLOWING SECURITY RELATED SYSTEMS: • NETWORK SECURITY DESIGN (LAN/WAN) • APPLICATION SECURITY DESIGN • DATA SECURITY • ELECTRONIC SAFETY AND SECURITY (ESS) - PHYSICAL SECURITY SYSTEMS AND LIFE SAFETY SYSTEMS • SECURE WIRELESS • RADIO ENCRYPTION • DATA • VOICE (PUSH-TO-TALK) • INTEGRATES SECURITY TECHNICAL CONTROLS FOR MULTIPLE PROJECTS/PRODUCTS WITH DEFINED REQUIREMENTS • DESIGN TEST PLANS TO EVALUATE CONTROL OBJECTIVES AND IDENTIFY WEAKNESSES IN THE INFORMATION TECHNOLOGY CONTROL STRUCTURE. • SECURITY OPERATION CENTERS (SOC), NETWORK OPERATION CENTERS (NOC), DATA CENTERS, TELECOM EQUIPMENT ROOMS, • ENGINEERING DRAWINGS - (T-EQP, T-PHY, T-PHY) • IDENTITY ACCESS MANAGEMENT AND AUTHORIZATION • PLANT CONTROL SYSTEMS (PCS, ICS) AND SCADA SYSTEMS IN NUCLEAR POWER PLANTS, CHEMICAL PROCESSING AND WATER TREATMENT/DISTRIBUTION CRITICAL INFRASTRUCTURE • DESIGN OVERALL DEFENSE-IN-DEPTH ARCHITECTURE FOR PLANT SYSTEMS (NIST CYBER SECURITY FRAMEWORK AND ISO/IEC 27001 COMPLIANCE COBIT, COSO). • SUPPORTING INFRASTRUCTURES (TELCOM, POWER, HVAC, DATA CENTER, CLOSETS, DAS, DISTRIBUTION SYSTEMS) • OUTSIDE PLANT (OSP) • SECURE STRUCTURED CABLING • DEFINES SECURITY PRODUCT SPECIFICATIONS • DEFINE INTRUSION/DATA LOSS TECHNIQUES. • DESIGNS, INTEGRATES AND CONFIGURES CONTROLS. • RESPONSIBLE FOR IMPLEMENTING AND TUNING THE TECHNICAL SOLUTION USED TO IDENTIFY AND MANAGE THE CONFIGURATIONS AND CONTROLS • PATCH MANAGEMENT- SATELLITE, SCCM, WSUS, SHAVLIK, SECUNIA, LANDESK ©1994-2016 Copyright Michael W. Meissner – Ethernautics, Inc. Author: Michael W. Meissner Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT –7) 15
  • 16. CYBERSECURANCETM PROJECT MANAGEMENT FOR DIGITAL CYBER SECURITY DESIGN AND SYSTEMS ENGINEERING SERVICES • GOVERNANCE – NIST • NETWORK SECURITY DEPLOYMENT OF NETWORK AND APPLICATION SECURITY AND AUTHORIZATION FOR PLANT CONTROL AND REPORTING SYSTEMS. • FIREWALLS • DATA DIODES • CREDIT CARDS • DMZ’S • ENCRYPTION • IAM • SIEMS • IDS/IPS ©1994-2016 Copyright Michael W. Meissner – Ethernautics, Inc. Author: Michael W. Meissner Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT –7) 16 Michael W. Meissner has experience with Managing Programs and Projects designing and implementing the following Security related systems:
  • 17. CYBERSECURANCETM IT PROGRAM AND PROJECT MANAGEMENT SERVICES • ERP • BILLING/OSS SYSTEMS • PROVISIONING SYSTEMS (AUTHORIZATION AND CONTROL) • CUSTOMER CARE • SUBSCRIBER MANAGEMENT • WORK FORCE MANAGEMENT (WFM) AND DISPATCH • ORDER PROCESSING • SERVICES CATALOG • ASSET MANAGEMENT • INVENTORY MANAGEMENT • BIM • PHYSICAL SECURITY SYSTEMS • LIFE/SAFETY SYSTEMS – ESS SYSTEMS • PLANT CONTROL SYSTEMS • BUILDING AUTOMATION & UTILITY MONITORING • DATA CENTER DESIGN • CABLE DESIGN – STRUCTURED CABLING • OUTSIDE PLANT - OSP • NETWORK DESIGN • CYBER SECURITY ENGINEERING • PROJECT MANAGEMENT ©1994-2016 Copyright Michael W. Meissner – Ethernautics, Inc. Author: Michael W. Meissner Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT –7) 17 Michael W. Meissner has experience with Managing Programs and Projects of the following types:
  • 18. IT ENGINEERING PROJECT MANAGEMENT TOOLS • PROFICIENT WITH OFFICE SUITE (WORD, EXCEL, POWERPOINT • MS PROJECT • MS VISIO • MS SHAREPOINT • PRIMAVERA • BENTLEY AUTOPLANT • REVIT • REQUIREMENTS TRACKING • UML • REMEDY • RECORD MANAGEMENT SYSTEMS • MASTER EQUIPMENT LIST ©1994-2016 Copyright Michael W. Meissner – Ethernautics, Inc. Author: Michael W. Meissner Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT – 7) 18
  • 19. PROGRAM AND PROJECT MANAGEMENT REGULATORY REQUIREMENTS AND BEST PRACTICES Name: Regulation, Pub, Doc #: Website: PCI DSS Payment Card Industry Data Security Standard https://en.wikipedia.org/wiki/Payment_Card_Industry_Data_Secu rity_Standard ISO 27001:2013 Specification for an information security management system (ISMS) https://en.wikipedia.org/wiki/ISO/IEC_27001:2013 HIPAA Health Insurance Portability and Accountability Act of 1996 https://en.wikipedia.org/wiki/Health_Insurance_Portability_and_Acco untability_Act NIST Special Publication 800-53 Revision 4 NIST Special Publication 800-53 http://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800- 53r4.pdf NIST Special Publication 800-37 Revision 1 NIST Special Publication 800-37 Revision 1 http://csrc.nist.gov/publications/nistpubs/800-37-rev1/sp800-37- rev1-final.pdf Managing Information Security Risk NIST Special Publication 800-39 http://csrc.nist.gov/publications/nistpubs/800-39/SP800-39-final.pdf Introduction to NISTIR 7628 Guidelines for Smart Grid Cyber Security NISTIR 7628 http://www.nist.gov/smartgrid/upload/nistir-7628_total.pdf Electric Infrastructure Protection and Substation Perimeter Security. CIP-014 https://secureusa.net/energy-sector-cip-014-compliance/ Third part (of 8) of the open international standard IEC 61131 for programmable logic controllers, IEC 61131-3 http://en.wikipedia.org/wiki/IEC_61131-3 Role Engineering and RBAC Standards Role Based Access Control (RBAC) http://csrc.nist.gov/groups/SNS/rbac/standards.html Security techniques -- Evaluation criteria for IT security -- Part 1: Introduction and general model ISO/IEC 15408-1:2009 http://www.iso.org/iso/catalogue_detail.htm?csnumber=50341 * Meissner has experience with many regulatory and best practice requirements related to Cyber Security ** Non-Exhaustive List: Requirements vary by Industry, Business Risk, and Local AHJ *** Ethernautics, Inc. – Meissner: Cyber Security Standards, Best Practices and PRADL for Water Utilities http://wp.me/p2xZpH-1g ©1994-2016 Copyright Michael W. Meissner – Ethernautics, Inc. Author: Michael W. Meissner Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT –7) 19
  • 20. CYBER SECURITY ENGINEERING SECURITY-BY-DESIGN REGULATORY REQUIREMENTS AND BEST PRACTICES Name: Regulation, Pub, Doc #: Website: ITIL Information Technology Infrastructure Library https://en.wikipedia.org/wiki/ITIL 10 CFR 73.54 “Cyber Security Rule https://en.wikipedia.org/wiki/ISO/IEC_27001:2013 Safe Guards (10 CFR 73.51) https://en.wikipedia.org/wiki/Health_Insurance_Portability_and_Acco untability_Act NIST Special Publication 800-53 Revision 4 http://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800- 53r4.pdf Cyber Security Training and Awareness http://csrc.nist.gov/publications/nistpubs/800-37-rev1/sp800-37- rev1-final.pdf NIST And other security frameworks. http://csrc.nist.gov/publications/nistpubs/800-39/SP800-39-final.pdf PRINCE PRojects IN Controlled Environments, version 2 https://en.wikipedia.org/wiki/PRINCE2 * Non-Exhaustive List: Requirements vary by Industry, Business Risk, and Local AHJ©1994-2016 Copyright Michael W. Meissner – Ethernautics, Inc. Author: Michael W. Meissner Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT –7) 20
  • 21. DESIGN STANDARDS • MEISSNER HAS EXPERIENCE WITH THE FOLLOWING DESIGN STANDARDS: • ANSI/TIA/EIA STANDARDS • ANSI/TIA/EIA-568-C: COMMERCIAL BUILDING TELECOMMUNICATIONS CABLING STANDARD • ANSI/TIA/EIA-569-C: TELECOMMUNICATIONS PATHWAYS AND SPACES • ANSI/TIA/EIA-606-B: CABLE LABELING STANDARDS • ANSI/TIA/EIA-607-C: GENERIC TELECOMMUNICATIONS GROUNDING (EARTHING) AND BONDING FOR CUSTOMER PREMISES • ANSI/TIA/EIA-942: TELECOMMUNICATIONS INFRASTRUCTURE STANDARD FOR DATA CENTERS • TELECOMMUNICATIONS DESIGN MANUAL (TDM) - BICSI (BUILDING INDUSTRY CONSULTING SERVICE INTERNATIONAL) • NATIONAL ELECTRIC CODE (NFPA 70) - NEC • MASTER FORMAT • DIVISION 27 • DIVISION 28 • ASHRAE GUIDELINES • STANDARD 135 – BACNET - A DATA COMMUNICATION PROTOCOL FOR BUILDING AUTOMATION AND CONTROL NETWORKS • STANDARD 189.1 – STANDARD FOR THE DESIGN OF HIGH PERFORMANCE, GREEN BUILDINGS EXCEPT LOW-RISE RESIDENTIAL BUILDINGS • LEED – USBC US GREEN BUILDING COUNCIL ©1994-2016 Copyright Michael W. Meissner – Ethernautics, Inc. Author: Michael W. Meissner Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT –7) 21
  • 22. REGISTRATIONS AND CERTIFICATIONS • REGISTERED COMMUNICATIONS DISTRIBUTION DESIGNER (RCDD) • ELECTRONIC SAFETY AND SECURITY (ESS) – IN PROCESS • OUTSIDE PLANT SPECIALIST (OSP) – IN PROCESS • CERTIFIED NETWORK ASSOCIATE (CAN) – IN PROCESS • CERTIFIED INFORMATION SYSTEMS SECURITY PROFESSIONAL (CISSP) – IN PROCESS • PMP – PROJECT MANAGEMENT PROFESSIONAL – IN PROCESS • LEEDS – LEADERSHIP IN ENERGY AND ENVIRONMENTAL DESIGN – IN PROCESS ©1994-2016 Copyright Michael W. Meissner – Ethernautics, Inc. Author: Michael W. Meissner Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT –7) 22
  • 23. CLIENTS ©1994-2016 Copyright Michael W. Meissner – Ethernautics, Inc. Author: Michael W. Meissner Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT –7) 23
  • 24. REFERENCE PROJECTS • MICHAEL W. MEISSNER WITH ETHERNAUTICS, INC. CONTRACTED TO CALIFORNIA WATER SERVICES GROUP (CWS) FOR CYBER SECURITY PROGRAM DEVELOPMENT, SCADA NETWORK SECURITY, VULNERABILITY MITIGATION FOR PROTECTION OF CRITICAL ASSETS IN WATER TREATMENT/DISTRIBUTION PLANTS. (2015) (CLICK HERE) • MICHAEL W. MEISSNER WITH ETHERNAUTICS, INC. CONTRACTED THROUGH AREVA, NP TO SOUTH TEXAS PROJECT (STP) FOR PROGRAM IMPLEMENTATION OF 10CF73.54 PROTECTION OF CRITICAL ASSETS IN NUCLEAR POWER PLANTS. (2012-2015) (CLICK HERE) • MICHAEL W. MEISSNER WITH ETHERNAUTICS, INC. CONTRACTED THROUGH CSC TO URENCO- USA/(LES) FOR PROGRAM IMPLEMENTATION AND PROTECTION OF CRITICAL ASSETS IN NUCLEAR ENRICHMENT FACILITIES.(2007-2012) (CLICK HERE) • MICHAEL W. MEISSNER WITH INFORMATION MECHANICS, INC. CONTRACTED BY TELECOMMUNICATION CORPORATION INC. (TCI) FOR DEVELOPMENT OF SECURE ENCRYPTED COMMUNICATIONS TO DIGITAL SET TOP BOXES (CLICK HERE) - ADDRESSABILITY SYSTEMS: US PATENT NUMBER #6070001 (CLICK HERE)©1994-2016 Copyright Michael W. Meissner – Ethernautics, Inc. Author: Michael W. Meissner Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT – 7) 24
  • 25. PATENTS AND PUBLISHED ARTICLES Expert Systems and Knowledge Engineering IBM RedBook 1988 A Business Case for an Education Network Channel Jones International University 1993 Addressability Systems US Patent #6070001 1993 Product, Packages, and Promotions Functions Telecommunications Inc. Business Function Document 1994 Triple Play Billing Telecommunications Inc. Business Function Document 1994 Designing for Performance in Credit Card Transactions Telecommunications Inc. Business Function Document 1994 The Pitfalls of Automating Inefficient Processes Information Mechanics, Inc. 1996 Data Centre Design and Consolidation Information Mechanics, Inc. 1997 Best Practices in Service Catalog NetCracker Marketing 2006 Best Practices on OSS Deployment NetCracker Marketing 2007 Best Practices in SLA’s NetCracker Marketing 2007 Defined KPI’s • MTBF – Mean Time Between Failure • MTTR – Mean Time To Repair • SCCT – Supply Chain Cycle Time • IRCT – Inventory Replenishment Cycle Time • IMOS- Inventory Months of Supply • ITO – Inventory Turnover www.kpilibrary.com 2008 Cabling Specifications Urenco Ltd – Design Document 2009 Cable Testing Specifications Urenco Ltd – Design Document 2010 PLC’s – The greatest Cyber Security Risk to the Nation’s Infrastructure DEF CON Presentation 2012 ©1994-2016 Copyright Michael W. Meissner – Ethernautics, Inc. Author: Michael W. Meissner Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT –7) 25
  • 26. PATENTS AND PUBLISHED ARTICLES Title Address Year Wikipedia Articles • Electrode ionization • Addressability • Addressability Systems • Cable Converter Box • Descramble • Solutions Architect • FTTLA • SWU Wikipedia.com http://en.wikipedia.org/wiki/Electrodeionization http://en.wikipedia.org/wiki/Addressability http://en.wikipedia.org/wiki/Addressable_system s http://en.wikipedia.org/wiki/Cable_Converter_Bo x http://en.wikipedia.org/wiki/Descramble http://en.wikipedia.org/wiki/Solutions_Architect http://en.wikipedia.org/wiki/FTTLA http://en.wikipedia.org/wiki/SWU 2008-2012 Ethernautics, Inc.: Cyber Security Database Threats https://ethernautics.wordpress.com/2015/ 06/13/database-security-threats/ 2013 Glossary of Terms - Cyber Security At Nuclear Power Plants http://wp.me/p2xZpH-c 2013 Secure Encrypted communications to Digital Set Top Boxes - Addressability Systems: US Patent Number #6070001 http://wp.me/p2xZpH-V http://patents.com/us-6070001.html https://en.wikipedia.org/wiki/Addressability 1993 Ethernautics, Inc. – Meissner: Cyber Security Standards, Best Practices and PRADL for Water Utilities http://wp.me/p2xZpH-1g 2015 Cyber Security in the Automobile: Automobile/Vehicle Protocol Buses http://infrastructurecybersecurity.blogspot. com/2015/06/automobilevehicle-protocol- buses.html 2014 Communications Protocols Utilized in Plant Control Systems are a key component in the development of a Cyber Security Controls Catalog - Quora https://industrial-cyber- security.quora.com/Communications- Protocols-Utilized-in-Plant-Control- Systems-are-a-key-component-in-the- development-of-a-Cyber- Security?srid=7rIp&share=1 2014 ©1994-2016 Copyright Michael W. Meissner – Ethernautics, Inc. Author: Michael W. Meissner Last revised: 02/15/2016 1:53:59 PM PDT (UTC/GMT – 7) 26