The Public GalleryToronto

General Government and Licensing Committee · 2022-04-29 · 2022.GL30.12

The filed record

Confirmation Program Response Rate - Addressing Cyber Risks

The Public Gallery wrote no story on this item. What follows is the city’s own record of what happened to it, as filed: nothing on this page is summarised or scored by us.

The decision

2022-05-11 · Toronto City Council · adopted

As filed

City Council on May 11 and 12, 2022, adopted the following: 1. City Council direct the Chief Information Security Officer to develop a process to periodically report to the General Government and Licensing Committee on instances of non-compliance and associated risk treatments and their associated Risk Treatment Plans (RTPs) for all risk assessments conducted by the Office of the Chief Information Security Officer, starting with critical systems.

Show the rest of As filed, 1,346 more characters as filed

2. City Council direct the Chief Information Security Officer to report periodically to the General Government and Licensing Committee the details of any City Agency or Corporation or entity that is deemed part of the Confirmation Program, that deviates from carrying out the objectives of the Confirmation Program. 3. City Council direct the City Manager to ensure that the heads of any City Agency or Corporation or entity that is deemed part of the Confirmation Program that has not submitted a remediation plan or signed risk treatment plans under the Confirmation Program or other risk assessments starting with critical systems, conducted by the Office of the Chief Information Security Officer, are available when required at the General Government and Licensing Committee meetings to answer questions on their item. 4. City Council direct that Confidential Attachment 1 to the report (April 14, 2022) from the Chief Information Security Officer remain confidential in its entirety, as it involves the security of property belonging to the City of Toronto. Confidential Attachment 1 to the report (April 14, 2022) from the Chief Information Security Officer remains confidential in its entirety in accordance with the provisions of the City of Toronto Act, 2006, as it pertains to the security of property belonging to the City of Toronto.

On the agenda

As the city filed it

The purpose of this report is to provide an update to the General Government and Licensing Committee on the Confirmation Program to address cyber risks identified in the City's divisions, agencies and corporations. This report contains one confidential attachment from the Office of the Chief Information Security Officer: Confidential Attachment 1 - Confirmation Program Response Rate provides a summary of the Confirmation

Show the rest of As the city filed it, 132 more characters as filed

Program, and highlights any City agency or corporation that has not yet submitted a remediation plan under the Confirmation Program.

Staff recommended

The Chief Information Security Officer recommends that: 1. City Council direct that Confidential Attachment 1 remain confidential in its entirety, as it involves the security of property belonging to the City of Toronto.

Considered

  • 2022-04-29 · General Government and Licensing Committee · amended

    Decision as filed

    The General Government and Licensing Committee recommends that: 1. City Council direct the Chief Information Security Officer to develop a process to periodically report to the General Government and Licensing Committee on instances of non-compliance and associated risk treatments and their associated Risk Treatment Plans (RTPs) for all risk assessments conducted by the Office of the Chief Information Security Officer, starting with critical systems.

    Show the rest of Decision as filed, 1,059 more characters as filed

    2. City Council direct the Chief Information Security Officer to report periodically to the General Government and Licensing Committee the details of any City Agency or Corporation or entity that is deemed part of the Confirmation Program, that deviates from carrying out the objectives of the Confirmation Program. 3. City Council direct the City Manager to ensure that the heads of any City Agency or Corporation or entity that is deemed part of the Confirmation Program that has not submitted a remediation plan or signed risk treatment plans under the Confirmation Program or other risk assessments starting with critical systems, conducted by the Office of the Chief Information Security Officer, are available when required at General Government and Licensing Committee meetings to answer questions on their item. 4. City Council direct that Confidential Attachment 1 to the report (April 14, 2022) from the Chief Information Security Officer remain confidential in its entirety, as it involves the security of property belonging to the City of Toronto.

  • 2022-05-11 · Toronto City Council · adopted

On the record

The item as the City filed it

More from this meeting

The whole meeting