Security awareness metrics

Assignment Help Business Management
Reference no: EM131310534

Security Awareness Metrics

Each phase of the security awareness program creation process is important. Design, development and implementation are all critical. However, the work does not end with implementation. By monitoring, measuring, and assessing the effectiveness of your SAP, you can ensure that the program gets the right information to the right people. As a result, employees will know how to implement the program to keep your organization's information secure. In addition, these measurements can help improve your program by identifying weaknesses and incorporating new techniques and technologies. To get started with this part of the development process, you need to analyze metrics and measurement methods to determine which will work best for your particular situation.

For this Discussion, you will evaluate security metrics based on what you know and have put together for Advanced Topologies, Inc. The "Information Security Metrics: Legal and Ethical Issues" case study from your textbook in this unit's Learning Resources provides information on existing metrics and developing security metrics. 

Post a 350- to 500-word evaluation of the metrics in the case study. Include a description of at least two features of the security awareness plan you developed for Advanced Topologies, along with corresponding metrics that you feel would work well to measure them.  Evaluate the security awareness metrics from the case study and determine which ones you would employ to keep Advanced Topologies on track. Make sure to justify your recommendations.

Readings

  • Whitman, M., & Mattord, H. (2012). High-assurance computing: Topics & case studies. Boston, MA: Course Technology/Cengage Learning.
    • Chapter 7, "Security Management Practices" (pp. 247-274)
      This chapter describes key components and trends in information security management practices. You will examine how organizations meet reciprocal U.S. and international standards of practice.
    • Case 3, "Information Security Metrics: Legal and Ethical Issues" (pp. 399-411)
      In this chapter, you will focus on risk reduction and the development of security measures. You will explore security metrics, case studies, risk management programs, and spheres of control.
  • Wilson, M., & Hash, J. (2003). Building an information technology security awareness and training program (NIST Special Publication 800-50). Retrieved from https://csrc.nist.gov/publications/nistpubs/800-50/NIST-SP800-50.pdf
    • Chapter 6, "Post-Implementation" (pp. 35-39) 
      This chapter provides a step-wise guide for tasks you will need to perform once an awareness training program has been implemented.

Reference no: EM131310534

Questions Cloud

Evaluating an sap after a disaster : When disaster strikes, an organization can deteriorate into chaos very quickly. Whether it's a natural disaster like an earthquake or a man-made disaster such as a system security breach, how well your organization will respond is absolutely depen..
Calculate the following in each of the measured vessels : Note that the vessels downstream from the heart receive only a portion of its volumetric output, due to branching of vessels. The percentages given here are ballpark estimates.
Determine the composition of the exiting liquid stream : Determine the composition of the exiting liquid stream; the ratio of the actual Ls/Gs is larger than the minimum Ls/Gs.
Design a relational database so that it is at least in 3nf : Design a relational database so that it is at least in 3NF.Explain typical situations when denormalizing a table is acceptable. Provide one (1) example of denormalizing a database table to justify your response.Explain the significant manner in wh..
Security awareness metrics : Each phase of the security awareness program creation process is important. Design, development and implementation are all critical. However, the work does not end with implementation.
Determine the composition of the exiting liquid stream : Determine the composition of the exiting liquid stream; the ratio of the actual Ls/Gs is larger than the minimum Ls/Gs.
How long will it take the object to reach its maximum height : MATH233 Unit 2: Polynomial Functions- How long will it take the object to reach its maximum height? How long will it take the object to hit the ground? What is the velocity of the object when it hits the ground?
Find the maximum possible spacing between pumping station : The crude oil has SG = 0.93, and its viscosity at the pumping temperature is μ = 0.017 Ns/m2. For these conditions, determine the maximum possible spacing between pumping stations.
What decides to use tcp or udp : Network switches provide essential connectivity in local and wide area networks. Some of them run in multilayer between layers 2 and 3. What protocol unit is being used in layer 2?The backbone of the Internet is structured by the Internet Protocol ..

Reviews

Write a Review

Business Management Questions & Answers

  Explain the term avoidance strategy

Explain the term avoidance strategy as used in the business management.

  Sales management-practices

You were recently promoted to a sales manager position for ABC Company, whichoffers customized software for physicians, dentists, and veterinarians.

  Produce report which evaluates methods use to identify needs

Produce a report which evaluates the methods used to identify and meet learning needs with reference to organisational factors, including complying with policies on equal opportunities and factors to do with the target audience.

  Define the term due diligence

Define the term due diligence

  Explain how the organization divides work

Differentiate between span of control and span of managerial responsibility within the organization. Decide whether the organization would be better run as a bureaucracy or an adhocracy. Explain your decision. Explain how the organization divides wor..

  Question about fmc green river and fmc aberdeen

Question about FMC Green River and FMC Aberdeen - What strategies will Kenneth Daily need to consider as he plans to build inter-group relations and further develop the Green River facility organizationally?

  Explain what sources of employment law

Explain what sources of employment law you would have to research to attempt to answer this question

  Write an e-mail or a meeting request

You have recently been named the new vice president for operations of Wisconsin Frozen Delights, a regional ice cream manufacturing firm located just outside a large metropolitan area in Wisconsin. Establish the agenda for the meeting. Write an e-m..

  Information systems vulnerable to destruction

Why are information systems vulnerable to destruction, error, and abuse?

  Picture of systems analysis and systems development

How does the Internet, and more specifically the World Wide Web, fit into the picture of systems analysis and systems development?

  Illustrate what happens if the data entered is wrong

Illustrate what happens if the data entered is wrong? Analytical tools suffer from the GIGO (garbage in, garbage out) weaknesses and thus an analysis based on these numbers can be flawed.

  Record of daily cash transactions in a text file

Question 1: A store owner keeps a record of daily cash transactions in a text file. Each line contains three items: The invoice number, the cash amount, and the letter P if the amount was paid or R if it was received.

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd