The primary responsibility of the Application Security Officer (ASO) function for SSO web applications is to ensure that the proper security administration controls are followed at their institution(s) by overseeing the regular access review process required by System Enterprise Applications.
Oversight of the member-level and department-level access reviews provides real security benefits to the A&M System, its member institutions, and its employees. The review also provides demonstrable proof of the System’s due diligence in regard to security, which could be important in the event of an external audit or a major security incident.
An institution’s ASO is required to provide the final verification of the review process for each period at the SSO Role Review Portal.
In addition, ASOs should have SSO Contact Admin role for their institution and take responsibility for maintaining the institution’s SSO Application Role Reviewer’s list.
Following is a suggested checklist for ASOs:
- If desired, create recurring calendar reminders for approximately January 11th and July 11th, with a link to this page, to serve as a backup reminder. (You should also receive an email reminder notification from the SSO application for this task).
- Navigate to the SSO Application Role Reviewer’s list , scroll down to your workstation, and verify that the expected people or departments are listed as contacts. If any changes are needed, please email support@tamus.edu, Subject: “Update Contact Info for SSO Application Role Reviewers”, and describe the additions, deletions or modifications needed.
- Launch the SSO Role Review Portal. You should see a Welcome Security Officer! greeting.
- As instructed under the greeting, create a filtered list of role reviews by clicking the Role Reviews checkmark on the top menu bar.
- On the left-hand side, under Filters, expand Workstation(s), find and select the workstation(s) you wish to review. The rows of the report will be filtered to display only those rows of interest.
- Each row represents a review that has been performed. For each review that has not yet been certified perform the following checks:
- If it is a Member Roles review type, which is due quarterly, verify that it was performed between the 1st and the 10th of the current month.
- If it is a Department Roles review, which is due semi-annually, verify that it was performed between the 1st and the 10th of the first month of the current semi-annual period.
- Verify that the expected Applications, such as HRConnect , SSO, FileDepot, etc. have been reviewed.
- For each review form, you can optionally add comments to the form by first selecting the Edit button. Save when finished.
- When finished reviewing the form, press the maroon Certify This Role Review button.
- If you do not see a full set of reviews, then contact your application role reviewers (ARRs) as necessary.
- You are finished when all of the Role Reviews for your workstation(s) have the Security Officer Certification Certified checked.
The Application Security Officers for SSO-related web applications are listed below:
East Texas A&M University
Jeremy Gamez
Interim Chief Information Officer
Jeremy.Gamez@tamuc.edu
903-886-5969 (phone)
Prairie View A&M University
Henry Rose
Senior Security Analyst
harose@pvamu.edu
936-261-9353 (phone)
Texas A&M AgriLife Extension Service
Donna Alexander
Assistant Agency Director, Finance
Donna.Alexander@ag.tamu.edu
979-845-7879 (phone)
Elizabeth Schwartz
Chief Human Resource Officer
elizabeth.schwartz@ag.tamu.edu
9793145727 (phone)
Texas A&M AgriLife Research
Debra Cummings
Assistant Director, Agency
dacummings@ag.tamu.edu
979-8454783 (phone)
Elizabeth Schwartz
Chief Human Resource Officer
elizabeth.schwartz@ag.tamu.edu
979-314-5727 (phone)
Texas A&M Engineering Experiment Station
Casey Bryan
Chief Information Officer
casey.bryan@tamu.edu
9794586840 (phone)
Jane Zhou
Assistant Chief Financial Officer
janezhou@tamu.edu
979-458-8992 (phone)
Texas A&M Engineering Extension Service
SEA Operations
System Enterprise Applications Operations
sea-devops-notify@tamus.edu
979-458-6320 (phone)
Prior to 10/1/2020: It Security & Chief Technology Officer Vince Riggins vince.riggins@teex.tamu.edu 979-458-6854
Texas A&M Forest Service
Justin Dudo
Information Resources Department Head
jdudo@tfs.tamu.edu
979-458-6607 (phone)
Texas A&M Health Science Center
Adam Mikeal
Associate Vice President
adam@tamu.edu
979-458-1342 (phone)
Texas A&M International University
Fred Juarez
Associate VP, Finance & Administration
fredjuarez@tamiu.edu
956-3262448 (phone)
Texas A&M System Offices
Andrew Fulton
System Offices ISO
afulton@cyber.tamus.edu
979-458-6454 (phone)
Texas A&M Transportation Institute
Anthony Schneider
Chief Information Officer
a-schneider@tti.tamu.edu
(979) 317-2778 (phone)
Texas A&M University
Adam Mikeal
Associate Vice President
adam@tamu.edu
979-458-1342 (phone)
Texas A&M University at Galveston
SEA Operations
System Enterprise Applications Operations
sea-devops-notify@tamus.edu
979-458-6320 (phone)
Senior Information Technology Professional I Tony Quigg quiggt@tamug.edu 409-740-4961
Texas A&M University-Central Texas
SEA Operations
System Enterprise Applications Operations
sea-devops-notify@tamus.edu
979-458-6320 (phone)
Prior to 10/1/2020: Information Security Officer (CAG) Kelly Moudy iso@columbiaadvisory.com 214-998-9949
SEA Operations
System Enterprise Applications Operations
sea-devops-notify@tamus.edu
979-458-6320 (phone)
Prior to 10/1/2020: Information Security Officer (CAG) David Maxwell dmaxwell@columbiaadvisory.com 214-247-7292
Texas A&M University-Corpus Christi
Kevin Glynn
Chief Information Security & Privacy Officer
Kevin.Flynn@tamucc.edu
361-825-2124 (phone)
Texas A&M University-Kingsville
Lonnie Nagel
Associate Chief Inform.Officer/Security Officer
lonnie.nagel@tamuk.edu
361-593-2420 (phone)
Texas A&M University-San Antonio
Jonathan Cooper
Executive Director
jcooper@tamusa.edu
2107844303 (phone)
Texas A&M University-Texarkana
David Maxwell
Chief Security Officer
ISO@columbiaadvisory.com
214-247-7292 (phone)
Texas A&M Veterinary Medical Diagnostic Laboratory
Elizabeth Schwartz
Chief Human Resource Officer
elizabeth.schwartz@ag.tamu.edu
979-314-5727 (phone)
SEA Operations
System Enterprise Applications Operations
sea-devops-notify@tamus.edu
979-458-6320 (phone)
Prior to 10/1/2020: Senior IT Manager Tammy Leimer Tammy.leimer@tvmdl.tamu.edu 979.845.3414
Texas Division of Emergency Management
Jeff Hensen
Chief of IT Infrastructure
Jeff.henson@tdem.texas.gov
512-437-4749 (phone)
West Texas A&M University
Shannon Ham
Director, Payroll & Benefits Administration
sham@wtamu.edu
806-651-2082 (phone)
Warren Pitt
Assistant Vice President, Human Resources
wpitt@wtamu.edu
806-651-2116 (phone)