Describe how and where the framework could be applied

Assignment Help Management Information Sys
Reference no: EM131264460

Assignment

At this point the management team is quite impressed with the work performed to this point. They like the basis you have provided to ensure compliance with State and Federal regulations and to prepare the organization for a Certification and Accreditation process. For the final deliverable, you have been asked to complete the Security Compliance Auditing Plan by providing information about the application of ISO27002 or DIACAP to their medium sized system.

Part 1 (Weeks 1-4)

You have already completed the following:

• Section 1 - Company Overview
• Section 2 - Federal and State Regulations, Directives, and Acts
• Section 3 - Compliance Plan
• Section 4 - Acceptable Use Policy
• Section 5 - Certification and Accreditation

Part 2- Finalize your Key Assignment

• Summarize DIACAP and ISO27002's framework and history.
• Choosing either DIACAP or ISO27002, update your plan to include the following:

o Describe how and where the framework could be applied.
o Include a discussion about how and if the concepts could be applied to a government or public company or is there a potential for overlap.
o Using the framework, show how it can be applied to a medium-sized system.

Add the discussion about the frameworks and their application to the section titled: Preparing for Certification.

Reference no: EM131264460

Questions Cloud

Identify performance metrics that will be measure for system : Identify the performance metrics that will be measured for the system. Discuss the collection process for the metrics and the tools that will be used.
Describe why do we prefer public key : Briefly describe why do we prefer public key certi_cates over public key authority - What means can a worm use to access remote systems to propagate?
Determine the maximum dynamic stress in the beam : The free end of the W250 × 67 steel cantilever beam is supported by a spring of stiffness k = 180 Kn/m. The 3.6-kg mass is dropped on the end of the beam from a height of 1.0 m. Determine the maximum dynamic stress in the beam. Use E = 200 GPa for..
New orleans most famous pralines sells pralines costing : Aunt Sally’s “New Orleans Most Famous Pralines” sells pralines costing $1.06 each to make. If Aunt Sally’s wants a 30% markup based on selling price and produces 35 pralines with an anticipated 11% spoilage, what should each praline be sold for? (Rou..
Describe how and where the framework could be applied : Describe how and where the framework could be applied. Include a discussion about how and if the concepts could be applied to a government or public company or is there a potential for overlap.
Determine the maximum dynamic stress and deflection : The S8 × 18:4 steel beam is used as a cantilever 6 ft long. The 100-lb weight falls through 6 in. before striking the free end of the beam. Determine the maximum dynamic stress and deflection caused by the impact. Use E = 29 × 106 psi for steel.
Raw material to be used in its manufacturing process : At December 31, 2017, Indigo Girls Company has outstanding noncancelable purchase commitments for 36,000 gallons, at $3.00 per gallon, of raw material to be used in its manufacturing process. The company prices its raw material inventory at cost or m..
Prepare a risk information sheet for five potential risks : Using the sample shown below, create a Risk Information Sheet for at least five potential risks that might be encountered during the conversion. At least three of the five risks you choose should be project management related.
What is the benefit-cost ratio of both alternatives : A company is considering replacing its air conditioner. Management has narrowed the choice to two alternatives that offer comparable performance and considerable savings over their present system. The effective annual interest rate is 8%. What is the..

Reviews

Write a Review

Management Information Sys Questions & Answers

  Knowledge management amp dynamic managementthe learning

knowledge management amp dynamic managementthe learning organizations uses advance technologies and knowledge

  Challenges of successful presentationstopic a please

challenges of successful presentationstopic a please discuss the followingwhat are the challenges that you personally

  Discuss the role of stakeholders in risk management

discuss the role of stakeholders in risk management

  Logistics - alignmentdiscuss the concept of alignment in

logistics - alignmentdiscuss the concept of alignment in the supply chain process. when transporting a product is the

  Give an example of a domain for a social security number

Give an example of a domain for a social security number and When defining a domain what are you trying to describe

  Issues and challenges encountered in general industry

Analyse and compare the suitability of these two IT architectural styles in meeting the current and future system integration challenges within the healthcare domain.

  Evaluation of the use of the security life cycle

Consider the systems development life cycle (SDLC), security systems life cycle, and information systems security certification and accreditation. Write a 3- to 5-page evaluation of the use of the security life cycle

  Isolating network traffic between the devices

Per the text, a VLAN is a broadcast domain created by using switches, isolating network traffic between the devices set on the VLAN

  Stored proceduresstored procedures in sql 2008 can be

stored procedures.stored procedures in sql 2008 can be written in a variety of languages.in 2-3 paragraphs complete the

  Should business move to the cloud

Should business move to the Cloud? Describe Zynga's approach. Compare to InterContinental Hotels. What about outages? Recommend how to select a provider

  Advantage of the global talent pool of software developers

Global organizations have branches that are located in multiple countries. Some of these organizations develop software and take advantage of the global talent pool of software developers while others have global technical support teams, customer ..

  Identify vulnerabilities relative to information assurance

How does an organization identify its vulnerabilities relative to information assurance and security. How do they identify the legalities and ethics involved. What should it do after it has identified them.

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd