Loading...

Components of a Strong Information Security Program

What are the major components of a modern ISP? What’s the most effective way for an ISP to be structured? How does the ISP flow together? Let’s discuss!

Upcoming
Friday, September 19th, 2025
10:00 am - 11:30 am
Presented by Lynda Hartup
$299.00 or 1 Token

Includes: Live Access, 30 Days OnDemand Playback, Presenter Materials and Handouts

  • Information Technology/Security
  • Technology/Security
  • IT Professional
  • Privacy Officer/Information Security Professional
  • Security Officer
  • Training Manager
  • Trainer

Save on annual training costs with our Webinar Subscription Service and share webinars across your entire organization.

Become a subscriber

Learn about upcoming events, webinars and discounts.

Sign Up For Email Notifications

Since the Gramm-Leach-Bliley Act was passed in November of 1999, financial institutions in the US have been required to build and manage an Information Security Program (ISP), based on a risk assessment, that ensures the safety of confidential customer information.

ISPs have evolved a bit over the last 20 years, however. Some of the biggest questions we hear about an ISP include: What are the major components of a modern ISP? What’s the most effective way for an ISP to be structured? How does the ISP flow together? Let’s discuss!

What You'll Learn

  • Regulatory requirements of an Information Security Program
  • Major components of an ISP
  • Policies vs. procedure vs. standards vs. guidelines
  • How to write auditable ISP policies
  • Separating out procedure from policy
  • ISP reporting requirements
  • Building an ISP framework than can handle anything you throw at it

Who Should Attend

This session is ideal for IT and IS professionals who are responsible for their organization’s information security program. Attendees will gain valuable insights into current cybersecurity threats, regulatory guidance, and best practices for developing a robust ISP.


Lynda Hartup

Instructor Bio

Lynda Hartup is a Senior Information Security Consultant at SBS CyberSecurity (SBS), a company dedicated to helping organizations identify and understand cybersecurity risks to make more informed and proactive decisions.

Lynda maintains her Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM), and Certified Banking Security Manager (CBSM) certifications. She received her Bachelor of Interdisciplinary Studies from the University of Southern Mississippi and completed the Graduate School of Banking at Louisiana State University.

Lynda has 20 years of financial institution experience in various positions, including Information Security Officer and dedicated IT Examiner. She also served for seven years as a Bank Examiner-IT Specialist for the Mississippi Department of Banking. Her specialties lie in IT governance, risk management, and regulatory compliance.