Are there going to be legal and ethical considerations

Assignment Help Management Information Sys
Reference no: EM132157682

Risk Mitigation and the Law

In the litigious society of the United States in the 21st century, it is a miracle we can say or do anything. Are there going to be legal and ethical considerations for your chosen project organization? Yes, of course.

This activity will assist in your understanding of the creation of policy and strategy to manage risk within the legal and regulatory requirements for IT security. (Think about legislation and regulation such as FISMA, GLBA, SOX, HIPPA, FERPA, ECPA, CFAA, and PCI.)

Remember that laws are made by politicians, and politicians are driven by public and media reaction to specific incidents. Laws and legal judgments, therefore, are piecemeal in nature.

When these laws reach a critical mass, lawmakers conclude that the emerging patchwork of related, but often inconsistent, laws and regulations require an omnibus law to create consistency and greater predictability, which is not in existence in the United States.

In the absence of such unifying federal law, particular industries or sectors are targeted for regulation as perceived problems in those industries become public. Laws and regulations covering targeted industries are gradually expanded through civil litigation and regulatory action that are limited only by the patience of judges and the imagination of plaintiffs' lawyers, prosecutors, and regulators.

For information security practitioners, this is a good news and bad news situation. Often, attempts at comprehensive regulation turn out to be a jumbled mess, particularly when multiple economic sectors with differing operational environments and needs are being regulated.

Because the private sector often has time-tested best practices, such regulation can be particularly ineffective when circulated before the private sector implements a workable solution.

A patchwork of different federal, state, and international laws and regulations (as is the current state of information security law) can be confusing, so careful, case-specific legal analysis and advice from qualified and experienced counsel are at a premium.

This means that certified and qualified INFOSEC professionals are extremely sought after for their experience and skill in navigating this mass of regulatory law and technobabble of lawyers and regulators.

There is a difference between regulatory compliance and legal requirements for doing business. INFOSEC professionals have to bridge the gap, balancing the law and ethics in an easy-to-understand dialogue when communicating with the target organization.

Discussion Question

What is the impact of computer legislation and case law on information security management?

In your post, consider the following factors:

How the various laws and regulations affect IT professionals, both individually and their profession as a whole.

Possible approaches to improving the protection of personal privacy and the advantages and disadvantages of such approaches.

Significance of digital signature legislation.

Reference no: EM132157682

Questions Cloud

Knowledge of statistics and regression analysis : Based on your knowledge of statistics and regression analysis, how would you explain what happened?
Details the functional and non-functional requirements : Develop a requirements definition document that details the functional and non-functional requirements.
Evaluate existing regulatory compliance tools and controls : There are layers of security policy, regulations, and laws that play a part in risk assessment and management.
Explain the horatio alger myth : Explain the Horatio Alger myth What are the strengths about this theory? What are the weaknesses?
Are there going to be legal and ethical considerations : Are there going to be legal and ethical considerations for your chosen project organization? Yes, of course.
Compensation and reimbursement plans : Examine the three types of inpatient or outpatient reimbursement systems?
What was your main term course : Reflect on connection between knowledge or concepts from this courses and how those have been or could be applied in the work place.
Examples of behavior controls-output and input controls : Describe and discuss examples of behavior controls, output controls, and input controls. Provide at least one example of each control.
How does the price affect the behavior of buyers : How does the price affect the behavior of buyers when it comes to markets that are emerging?

Reviews

Write a Review

Management Information Sys Questions & Answers

  Information technology and the changing fabric

Illustrations of concepts from organizational structure, organizational power and politics and organizational culture.

  Case study: software-as-a-service goes mainstream

Explain the questions based on case study. case study - salesforce.com: software-as-a-service goes mainstream

  Research proposal on cloud computing

The usage and influence of outsourcing and cloud computing on Management Information Systems is the proposed topic of the research project.

  Host an e-commerce site for a small start-up company

This paper will help develop internet skills in commercial services for hosting an e-commerce site for a small start-up company.

  How are internet technologies affecting the structure

How are Internet technologies affecting the structure and work roles of modern organizations?

  Segregation of duties in the personal computing environment

Why is inadequate segregation of duties a problem in the personal computing environment?

  Social media strategy implementation and evaluation

Social media strategy implementation and evaluation

  Problems in the personal computing environment

What is the basic purpose behind segregation of duties a problem in the personal computing environment?

  Role of it/is in an organisation

Prepare a presentation on Information Systems and Organizational changes

  Perky pies

Information systems to adequately manage supply both up and down stream.

  Mark the equilibrium price and quantity

The demand schedule for computer chips.

  Visit and analyze the company-specific web-site

Visit and analyze the Company-specific web-site with respect to E-Commerce issues

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd