Develop an it risk assessment opinion

Assignment Help Management Information Sys
Reference no: EM13920047 , Length: 30 Pages

An IT Risk Assessment Case Study in support of a significant technology decision that is to be taken by a fictional company called Aztek that operates in the Australian Financial Services sector.

Senior executives in both business and technology divisions within Aztec have collected a portfolio of projects from their respective strategists that could be potentially funded for deployment. The portfolio includes projects such as
Allowing employees to bring their own devices (laptops, tablets and mobile phones for example) into the workplace to be used as their main or sole devices in achieving their work tasks

Migrating business-critical applications and their associated data sources to an external Cloud hosting solution
Outsourcing key IT functionality such as the network, desktop management or application development to a third party

Upgrading or introducing a major technology such as mobile platforms and applications, migrating to an improved networking technology (such as IPv6), creating a corporate-wide email archive for compliance purposes, or upgrading applications and desktop operating systems.

Each of these potential projects carries significant IT risks which will need to be managed to support the business case as to whether the project should go forward. In this case study you are the IT Risk Assessment lead at Aztek, and your role is to be the interface between business stakeholders and technologists, translating potential technical difficulties into risk language to facilitate effective decision-making by stakeholders.

For the Aztek case study you will need to select one of the projects from the list above for a thorough IT Risk Assessment. You may select another project beyond those listed above with the approval of the subject coordinator, and you may wish to select a project that is relevant to your workplace for example.

IT Risk Assessment report, written for the intended audience of Aztek management providing a risk assessment of the project you have selected to consider.

Your report must be a Microsoft Word document, 15 - 25 pages in length at 12 point font and single spacing. The report must address the following criteria:

An Executive Summary at the beginning of the report which provides a clear statement of the IT technology project that is being assessed, and an overview of your recommendations to Aztek management as to the merits of the project based on your risk assessment (2 - 3 pages in length).

A review of the project with respect to the Financial Services sector, which would include any relevant government or industry regulation or compliance, and any established best practices (2 - 3 pages in length).

A review of the project impact on the current security posture of Aztec, as expressed by its current maturity against IT Security policies and procedures (3 - 5 pages in length)

A risk assessment based on threats, vulnerabilities and consequences derived from an IT control framework and any existing industry risk recommendations for the project. For example, there are several consortia for Cloud Computing that have created IT Risk Assessments for this technology (4 - 10 pages in length)

Specially address risks for Data Security from the viewpoint in the project of what data will be used, who will have access to the data and where will the data will flow (2 - 4 pages in length)

Rationale:

To assess that the student has a holistic grasp of IT Risk Assessment techniques and issues, which can then be applied to produce valuable support for decision-makers

Develop an IT Risk Assessment opinion from both a bottom-up perspective of assessing controls, threats and vulnerabilities, and translate these findings into business risk language.

Deliver an IT Risk Assessment based on a proposed business project that required technical risk to be assessed and managed.

Reference no: EM13920047

Questions Cloud

What is the terminal cash flow at the end of year : A firm is considering the acquisition of a new machine. The base price is $85,000 and it would cost $15,000 to install. The machine is MACRS 3 year class property and it will be sold after 3 years for $17,000. What is the terminal cash flow at the en..
Project should be chosen if the projects are independent : Consider two projects with the following cash flows: Project S is a 4 year project with initial (time 0) cash outflow of 3000 and time 1 through 4 cash inflows of 1500, 1200, 800 and 300 respectively. Project L is a 4 year project with initial (time ..
Exclusive projects-compute the IRR for project : Consider two mutually exclusive projects with the following cash flows: Project S is a 4 year project with initial (time 0) cash outflow of 3000 and time 1 through 4 cash inflows of 1500, 1200, 800 and 300 respectively. Project L is a 4 year project ..
Determine the percentage of assets that were provided : Determine the percentage of assets that were provided by retained earnings. How much cash is in the retained earnings account?
Develop an it risk assessment opinion : Develop an IT Risk Assessment opinion from both a bottom-up perspective of assessing controls, threats and vulnerabilities, and translate these findings into business risk language.
Consider two mutually exclusive projects with the cash flows : Consider two mutually exclusive projects with the following cash flows: Project S is a 4 year project with initial (time 0) cash outflow of 3000 and time 1 through 4 cash inflows of 1500, 1200, 800 and 300 respectively. Project L is a 4 year project ..
Resulting in a single free cash flow : Determine the IRR on the following projects: a. an initial outlay of $10,000 resulting in a single free cash flow of $1,844 after 11 years. b. an initial outlay of $10,000 resulting in a single free cash flow of $2,039 after 20 years. c. an initial o..
Considering increasing production after unexpected demand : Honda is considering increasing production after unexpected strong demand for its new motorbike. To evaluate the proposal, the company needs to calculate its cost of capital. You've collected the following information: The company wants to maintain i..
Appropriate required rate of return : Calculate the NPV given the following cash flows if the appropriate required rate of return is 8%. Should the project be accepted? YEAR CASH FLOWS 0 -$40,000 1 30,000 2 30,000 3 20,000 4 20,000 5 25,000 6 25,000

Reviews

Write a Review

Management Information Sys Questions & Answers

  Supporting mobile health clinics

Analyze Case Study : Supporting Mobile Health Clinics: The Children's Health Fund of New York City and Examine the case study, and develop the conclusions, recommendations, and implications.

  Who should lead the migration plan from an existing process

Leading Departmental Change - What should be included in the term "systems" as related to the department? Does the term include people? Explain.

  Purchasing and supply chain managementwhat are five things

purchasing and supply chain management.what are five things you would do to make a commercial difference?if you were

  How can hashing be used to ensure that file you have copied

How can hashing be used to ensure that a file you have copied from a website has been completely and accurately copied

  Analyze the role of a ceo or cio in health care organization

Analyze the role of a CEO or CIO in a health care organization. Based on your knowledge and experience, determine what you believe to be a significant characteristic of effective leadership, and elaborate on its importance to the success of the or..

  Compute average time a student spends in the waiting line

Compute the average time a student spends in the waiting line. The registrar has received complaints from students about the length of time they must wait to have their schedules approved. The registrar is considering several ways to reduce the wa..

  Analysis of the trends of technology for dect cordless

analysis of the trends of technology for dect cordless phoneswrite a short paper and include 2 scholarly references apa

  Define an information system and types of information system

Define an information system and types of information systems

  Preferred operating systemssome people believe that the

preferred operating systemssome people believe that the only reason that the microsoft windows operating system is so

  Describe the acceptance of technology by all divisions

Describe what you think are some of the technology positives and negatives at USA Today and How would you describe the acceptance of technology by all divisions?

  Describe the steps of the systems development life cycle

Your assignment should describe the steps of the Systems Development Life Cycle (SDLC) discussed in Topic 4 of the subject.

  Plan for the specific needs of an mis project

Accurately respond to and plan for the specific needs of an MIS project. Collaborate with your classmates and professor to discuss the following points related to Enterprise Resource Planning for the Woodworker Cabinets Web site upgrade project: Fu..

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd