Implementing Effective Information Security Policy 
Herbert J. Mattord, CISM, CISSP, CDP
Assistant Professor in Information Systems and Information Security and Assurance
Kennesaw State University
Presentation Abstract:
Policy management is a complex process responsible for designing, implementing and supporting effective information security policy. Since information security is primarily a management problem, not a technical one, policy can offer significant improvements in the security posture of an organization with only modest investments.
Bio:
Professor Mattord currently teaches undergraduate courses in Information Security, Data Communications, Local Area Networks, Database Technology, Project Management, Systems Analysis & Design, and Information Resources Management and Policy. He is also the Operations Manager of the KSU Center for Information Security Education (infosec.kennesaw.edu), as well as the coordinator for the KSU department of Computer Science and Information Systems Certificate in Information Security and Assurance.
He completed 24 years of IT industry experience before becoming a full-time academic in 2002. His experiences as an application developer, database administrator, project manager, and information security practitioner are a valuable background to his teaching role at Kennesaw State University. While engaged in his IT career, he worked as an adjunct professor at Kennesaw State University in Kennesaw Georgia, Southern Polytechnic State University in Marietta, Georgia, Austin Community College in Austin, Texas, and Texas State University-San Marcos. He was formerly the Manager of Corporate Information Technology Security at Georgia-Pacific Corporation, where his practical knowledge of information security implementation and management was acquired.
Herb is the co-author with Dr. Michael Whitman of Principles of Information Security, Management of Information Security, Principles of Incident Response and Disaster Recovery, Readings and Cases in the Management of Information Security, Readings and Cases in the management of Information Security: Volume II: Legal and Ethical Issues, Roadmap to Information Security Management for IT and InfoSec Professionals, and The Hands-on Information Security Lab Manual.
Herb is also currently enrolled in the Ph.D. in Information Systems program at Nova Southeastern University.








