7. Project Plan

The project plan is outlined below however it should be noted that the objectives will continually be under review and will undoubtedly evolve. This flexibility and review is a necessary thing but underpinning it all will be the work on the policy, information handling and the best practice guidelines.

First quarter, May 2010 - September 2010
  • Set up project team, assist with recruitment of OxCERT post to enable release of resources from OxCERT
  • Work on consolidating the policies
  • Communications with ICTF - workshop at ICTF conference and article in the ICFT newsletter
  • Meeting of the Advisory Group (IS-AG)
  • Build Information Security Toolkit and maintain web pages
  • Trinity Term meeting of the ICTF - JA to present IS-AG report
Second quarter, October 2010 - January 2011
  • Finalise consolidated policy
  • Update the Self-Assessment Questionnaire in line with consolidated policy
  • Investigate procedure to give the policy legal status
  • Michaelmas Term meeting of the ICTF - JA to present IS-AG report
  • Meeting of the Advisory Group
  • Continue building Information Security Toolkit
Third quarter, February 2011- June 2011
  • Meeting of the Advisory Group
  • Investigate 'information handling' and sharing resources
  • Progress report submitted to PICT after 12 months (May 2011), make recommendations to PICT and receive guidance on how to proceed in the last six months
  • Consider running the Self-Assessment activity again (if agreed with PICT)
  • Hilary term meeting of the ICTF - JA to present IS-AG report
Fourth quarter, June 2011 - October 2011
  • Communications opportunities at the ICTF conference
  • Meeting of the Advisory Group
  • Possible Self-Assessment activity
  • Trinity Term meeting of the ICTF - JA to present IS-AG report
  • Update Information Security Toolkit
  • End of project - complete final report
  • Communicate progress and status of any follow up stage (via web, ICTF channels etc)

Back to main page: Project Planning

Up: Contents Previous: 6. Best Practice and ISO27001-27002