Background
The Technology Infrastructure Standards Assessment (TISA) for fiscal
year 2011 for Group 1 Agencies is being replaced by an IT Security
Assessment facilitated by SISPO. Agencies participating in the pilot
are not required to complete a TISA survey for FY 2011.
Purpose
The purpose of the SISPO assessment is to:
Assess vulnerabilities of internal and external devices;
Assess policy compliance against statewide IT Security policies
and standards
Identify integrity of Internet gateway, key web applications and
web portals
Remediate high risk vulnerabilities immediately
Reduce the States security risk through prioritized mitigation
plans that result from the assessment.
Follow-up with quarterly vulnerability scans to measure compliance
Questions
For access to the TISA application
or general questions, contact Sherri Eshkibok, SISPO Operations
Manager at 480-335-7642 or
seshkibok@azgita.gov. For specific questions regarding IT
security standards compliance, contact the Chief Information
Security Officer at 602-364-4771 or
jryan@azgita.gov.