State and Local Solutions
Roadmap for Risk Management
Many states and urban areas are using a risk management model to set Homeland Security priorities and optimize resources. In order to implement a successful program, Digital Sandbox can help your organization establish a core set of capabilities to:
- Create and maintain an accurate Critical Infrastructure and Key Resources (CIKR) catalog
- Build and maintain localized threat and frequency profiles
- Perform multiple types of CIKR surveys and assessments
- Maintain and analyze its own risk profile
- Align prevention, protection, response, and recovery capabilities to the risk profile
- Make investments based on qualified capability gaps
- Improve competitive performance in Homeland Security and infrastructure grant programs and budget justifications.
Our roadmap includes the following tools to tailor your risk management system to your unique requirements:
Concept of Operations (CONOPS)
A CONOPS clearly lays out the operation of your risk management program. It evaluates business strategies and processes, and develops workflow, standard operating procedures, and decision points. This enables management to create program guidelines, define metrics and establish reporting requirements to track progress and success. The CONOPS also defines any required RAC integration with your IT environment and public safety systems.
Data Collection
A successful risk management program starts with a representative set of data on threats, assets, vulnerabilities, and risks. Working with your experts, we identify your internal sources of information, and then combine your data with other authoritative sources to build a CIKR catalog of your top 100-1,000 assets.
Initial Risk Baseline
Your preliminary risk baseline defines risk metrics for your CIKR catalog and threat/hazard ratings. Using these values, specialized software performs risk calculations to produce a high-level view of your risk, and then launches your assessment program. Your risk profile is continuously refined and improved as new assessments are factored in.
System Initialization
We configure our Risk Analysis Center (RAC) with the business process and technical requirements identified during CONOPS, then preload your initial data baselines. Once role-based interfaces are defined for and extended to your user community, your system is ready.
Training
Digital Sandbox thoroughly trains users on your business processes before they are implemented. Basic, advanced, and train-the-trainer instruction is available.
Ongoing Risk Management Services
Your risk management program can be enhanced with additional capabilities, including:
- DHS data call automation and support
- Automated CIKR catalog integration
- Custom integration with existing systems
- Specialized and updated risk baselines
- Resource allocation modeling
- Survey and assessment assistance
- Private sector coordination.
