Contenu connexe Similaire à Keeping Your Data Clean (20) Plus de Resolver Inc. (20) Keeping Your Data Clean1. Keeping Your Data Clean
Reduced Risk Through Data Integrity
Stephen W. Di Rito
Sr. Manager
Enterprise Security Programs
2. Contents
©2018 Discover Financial Services 2
Keeping Your Data Clean
Background: Challenges for Discover 3
What is Data Integrity 6
Records Systems and Customization 7
Internal Procedures 17
Oversight through Metrics 22
External Data Visualization 27
3. Some Background…
©2018 Discover Financial Services 3
Keeping Your Data Clean
• The Terrorist Watchlist (TSDB)
–Multiple databases created by
different vendors
–Requires accurate information which
balances between privacy and
protecting the nation
• Bomb Technician Response Notifications
- Internally developed FBI mobile application linked to a custom database
- Required flexibility to quickly change as developed new information sharing protocols
4. Initial Assessment of Discover’s Incident Tracking
©2018 Discover Financial Services 4
Keeping Your Data Clean
• Used Perspective over many years
• Database hosted on internal server vs. cloud
• Little customization other than adding new
incident categories
• No custom queries/No custom reports
• No oversight or formal incident review process
• DFS previously focused on medical response
Insert ES
Officer
photo
5. How Do We Get Better?
©2018 Discover Financial Services 5
Keeping Your Data Clean
• Discover is merging incident tracking and
investigations data into Perspective. Why?
⎯ Ability to connect individuals between workgroups
⎯ Ability to isolate Internal Investigation records
⎯ Ability to customize w/o vendor cost
⎯ Advanced customization through Resolver for fee
⎯ Consolidation into single GSOC aided by Dispatch
⎯ Modest price point compared to other solutions
6. What is Data Integrity?
©2018 Discover Financial Services 6
Keeping Your Data Clean
25%
Records
System
50%
Internal
Procedures
25%
Oversight
Combination of Several Factors
7. The Category (CCST) Challenge
©2018 Discover Financial Services 7
Keeping Your Data Clean – Records System
• Collect accurate incident information
⎯ Provides meaningful metrics
⎯ Ability to analyze data
⎯ Ability to identify officer training needs
• Choose your categories carefully
⎯ Use limited number of categories & expand modestly in Sub-Category/Type
⎯ Incidents should not fit multiple categories
Class
Category
Sub-Category
Type
8. Which Category to Choose?
©2018 Discover Financial Services 8
Put yourself in the GSOC operator’s role
Keeping Your Data Clean – Records System
Security Kidnapping Employee Criminal
Security Kidnapping Employee Terrorist
Security Intellectual Property Competitive Intelligence
Security Intellectual Property Compromise
Security Intellectual Property Counter Intelligence
Security Intellectual Property Electronic Eavesdropping
Security Intellectual Property Patent Infringement
Security Intellectual Property Theft of Information
Security Intellectual Property Trademark Infringement
How to Decide??
Criminal or Terrorist? Does it
matter?
Do my security officers know the
difference between these?
If you use categories like this,
make sure they are well defined
9. Example: 1041 Medical categories
• Types of injuries only limited by imagination
–Abrasions, Animal bite, Bug bite, Crushing, Cuts,
Heart attack, Stroke, etc., etc., etc.
–Most sub-categorized by the part of body affected
• Security should not be diagnosing medical events
• No consistency in how an event is categorized
–Facility, Life Safety, Medical, Safety, Travel Security,
Work Related Injury, Work Related Illness
• Now only one medical category with three sub-
categories (escorted to health services, treated at
scene, and transported off site)
©2018 Discover Financial Services 9
Keeping Your Data Clean – Records System
WORK RELATED INJURYAbrasion Caught Between Back
WORK RELATED INJURYAbrasion Caught Between Face
WORK RELATED INJURYAbrasion Caught Between Groin
WORK RELATED INJURYAbrasion Caught Between Left Ankle
WORK RELATED INJURYAbrasion Caught Between Left Arm
WORK RELATED INJURYAbrasion Caught Between Left Elbow
WORK RELATED INJURYAbrasion Caught Between Left Eye
WORK RELATED INJURYAbrasion Caught Between Left Fingers
WORK RELATED INJURYAbrasion Caught Between Left Foot
WORK RELATED INJURYAbrasion Caught Between Left Hand
WORK RELATED INJURYAbrasion Caught Between Left Knee
WORK RELATED INJURYAbrasion Caught Between Left Lower Leg
WORK RELATED INJURYAbrasion Caught Between Left Shoulder
WORK RELATED INJURYAbrasion Caught Between Left Upper Leg
WORK RELATED INJURYAbrasion Caught Between Left Wrist
WORK RELATED INJURYAbrasion Caught Between Right Ankle
WORK RELATED INJURYAbrasion Caught Between Right Arm
WORK RELATED INJURYAbrasion Caught Between Right Elbow
WORK RELATED INJURYAbrasion Caught Between Right Eye
WORK RELATED INJURYAbrasion Caught Between Right Fingers
WORK RELATED INJURYAbrasion Caught Between Right Foot
WORK RELATED INJURYAbrasion Caught Between Right Hand
WORK RELATED INJURYAbrasion Caught Between Right Knee
WORK RELATED INJURYAbrasion Caught Between Right Lower Leg
WORK RELATED INJURYAbrasion Caught Between Right Shoulder
WORK RELATED INJURYAbrasion Caught Between Right Upper Leg
WORK RELATED INJURYAbrasion Caught Between Right Wrist
10. How does Discover add medical detail?
• Occupational Health analyst reviews all medical incidents, gathers additional
details and updates record
–One person with medical training provides consistency and better accuracy
–Use Involvements/Persons sub-tab
©2018 Discover Financial Services 10
Keeping Your Data Clean – Records System
11. ©2018 Discover Financial Services 11
Keeping Your Data Clean – Records System
How does Discover add medical detail?
Select to Add Injury Detail
12. ©2018 Discover Financial Services 12
Keeping Your Data Clean – Records System
Allows entry of multiple injuries
Injury Cause
Severity
13. Use Flags to aid in gathering statistical data
• Flags only visible/Accessible to
OHS analyst
• Analyst determines custom flag
names
• Build count queries based on Flags
• Build detail reports based on Flags
©2018 Discover Financial Services 13
Keeping Your Data Clean – Records System
14. Flags and User Defined Fields
• Workplace Violence related
incidents or Investigations
–Single person making decisions
–Exclude visibility to others
• Ability to track special cases
–Aids in metrics reporting
• YOU decide what is important to
your company
©2018 Discover Financial Services 14
Keeping Your Data Clean – Records System
15. ©2018 Discover Financial Services 15
Keeping Your Data Clean – Records System
• OLD
⎯ 106 Activities
⎯ 1267 Incidents
• NEW
⎯ 15 Activities
⎯ 16 Incidents
1373 Categories Reduced to 31
Count of Incident Number Column Labels
Row Labels Greenwood Houston Lake Park New Albany New Castle Phoenix Pittsford Riverwoods UPC (blank) Grand Total
Security - NEW 2 2 29 40 15 57 3 15 13 56 232
Access Control Violation 2 1 15 18
Battery 2 1 3
Damage/Vandalism of Property 1 1 2 2 6
Drug/Alcohol 1 1 2
Facility 1 1 2 1 2 7
Medical 2 9 9 1 10 4 3 38
Public Disturbance 1 1 2
Service Rendered -Emergency (non-medical) 1 1
Suspicious Incident 3 7 7 3 4 4 28
System Outage 1 1 2 5 9
Theft 1 3 2 1 7
Threat - including self-harm 7 13 9 19 1 49 98
Vehicle Accident 4 2 1 5 1 13
April 2018
16. Are There Fields You Do Not Use? Hide Them
©2018 Discover Financial Services 16
Default Modified
Keeping Your Data Clean – Records System
17. ©2018 Discover Financial Services 17
Keeping Your Data Clean – Internal Procedures
Internal Review -
Start with a Flowchart
• Who reviews incidents?
–Includes multiple reviews
–Identifies pathway for correcting
reports
–Accompanied by instructions for
assigning record to next person
in the flowchart
–Requires separate query to
identify records not assigned
18. How Does Incident Record Get Reviewed?
©2018 Discover Financial Services 18
Keeping Your Data Clean – Internal Procedures
• Each individual in the flowchart completes review
⎯ Reassigns record back to originator for correction OR
⎯ Assigns record to next person in the flowchart
• If followed, each record is reviewed at least two times
• HQ review % of some incidents such as Threats, Battery, etc.
• Use the Controls Tab, Assignments sub-tab
19. 1. Go to Controls Tab
2. Choose Assignments Sub-Tab
3. Select Add New
4. Choose Assignment Type
(note types are customized)
5. Select Ok and Save
Adding an Assignment
©2018 Discover Financial Services 19
Keeping Your Data Clean – Internal Procedures
20. What happens when I add an assignment?
©2018 Discover Financial Services 20
Keeping Your Data Clean – Internal Procedures
Assignment
shows up in
both receiver
and sender’s
dashboard
21. Controls to Identify Unassigned Records
©2018 Discover Financial Services 21
Keeping Your Data Clean – Internal Procedures
• Identify incidents created in last xx days not assigned to supervisor
⎯ Can build custom queries; Assigned to = null
⎯ Can export data to Excel and run multiple calculations externally
22. ©2018 Discover Financial Services 22
Keeping Your Data Clean – Oversight
Activities & Incidents: 2017 – Q1 2018
2,411 2,279 2,430 2,605 2,739 2,499
1,734
2,301 2,411
4,157
3,576
4,460
6,239
5,801
6,834
276 241
372
501
922 1,493
1,260
1,338 1,253
1,194
1,047
756
907
1,077
1,114
-
1,000
2,000
3,000
4,000
5,000
6,000
7,000
8,000
9,000
JAN FEB MAR APR MAY JUN JUL AUG SEP OCT NOV DEC JAN FEB MAR
2017 2018
Enterprise Securities Activities and Incidents
Activity Incident
25. Business Unit Name or Logo
Export for Detailed Analysis – Example Tableau
©2018 Discover Financial Services 25
Keeping Your Data Clean – External Data Visualization
28. Tableau Live Demo on Public space
https://public.tableau.com/profile/albert.chung#!/vizhome/SecurityDemo/Dashboard1