Challenges of enforcing information security policies

Assignment Help Management Information Sys
Reference no: EM131073452

Information security policies are the core internal guidance for an organization and must be enacted prior to the purchase of information security controls. There is a bit of a "chicken and egg" dispute in the information security community as to whether it is appropriate to first engage in risk assessment with policies created to address those findings or whether it is appropriate to first create policies against which a risk assessment can be performed. On a more granular level, security policy is meant to document what is important to a particular organization related to information technology assets, including data. This sequential order is critical to the success of an information security program because a successful program ensures that organizations do not spend too little or too much money when purchasing controls to enforce these policy decisions. For example, it is possible to purchase a certificate that uses DNA as the key to enforce an access control policy, but there are very few situations where that would be an appropriate or balanced choice.

You are a new information security officer for Metro City Community College. Metro City has a small urban campus in downtown Detroit and also offers their catalog of courses online. One of the first tasks you are assigned is to create the information security policies that will guide all subsequent security projects that you propose.

Use the study materials and engage in any additional research needed to fill in knowledge gaps. Write a 2-3 page paper that covers the following:

Describe the overall objectives of creating information security policy for this institution.

Analyze the benefits and challenges of enforcing information security policies within government agencies and organizations.

Evaluate how creation and enforcement of information security policies can impact customers and business partners that have a relationship with a government agency or organization.

Assignment Requirements

Written communication: Written communication is free of errors that detract from the overall message.

APA formatting: Resources and citations are formatted according to APA (6th edition) style and formatting.

Length of paper: 2-3 pages, excluding the references page.

Font and font size: Times New Roman, 12 point.

Reference no: EM131073452

Questions Cloud

Find the wacc of verizon : Verizon Co has 4 million shares of common stock selling at $45 each. It has $70 million (face value) of bonds, coupon 6%, maturing in 5 years, and selling at 90. Find the WACC of Verizon
What is their yield to call : Sadik Inc.'s bonds currently sell for $1,270 and have a par value of $1,000. They pay a $105 annual coupon and have a 15-year maturity, but they can be called in 5 years at $1,100. What is their yield to call (YTC)?
Calculate the magnitude(s) of applied stress(es) : calculate the magnitude(s) of applied stress(es) necessary to cause slip to occur on the (111) plane in each of the [110], [101] and [011] directions.d paste your question here...
Nursing home health care leadership : Which organization is responsible for addressing the issues presented? Who is ultimately responsible for rectifying not only the situation that occurred, but the system in which it occurred? How is that organization governed?
Challenges of enforcing information security policies : Describe the overall objectives of creating information security policy for this institution. Analyze the benefits and challenges of enforcing information security policies within government agencies and organizations.
Determine the force that needs to be applied : determine the force that needs to be applied on the plate to maintain this motion.
Otto maddick machine tool company produces two products : The Otto Maddick Machine Tool Company produces two products, muffler bearings and torque amplifiers. One muffler bearing requires 0.125 hr. of assembly labor, 0.25 hrs. in the stamping department and 9 square feet of sheet metal.
Identify one substantive audit procedure : Identify one substantive audit procedure for each of the account balances above that will provide sufficient appropriate audit evidence regarding the accuracy of that account balance
Determine and list all the things that went incorrect : 1. Determine and list all the things that went incorrect on Larry's first day. 2. The moment selecting an employee to do training, how much does seniority factor in on for you to decide, and why?

Reviews

Write a Review

Management Information Sys Questions & Answers

  Necessary hardware and networking resources

Describe how you would use some of the criteria below to choose a software application package for yourself or your organization. Necessary hardware and networking resources

  Information systems - sdlc principlesto improve the speed

information systems - sdlc principlesto improve the speed accuracy and reliability of their information system sewworld

  Resource planningallocation how many service technicians

resource planningallocation how many service technicians does it take?assumptionsfactors- available working hours 8am -

  Determining the competitive value of information technology

Identify three factors to consider in determining the competitive value of information technology. Justify the selected factors. Of the factors selected, determine if each factor is applicable to all businesses and industries, and explain why or why ..

  Identify emerging it trends through scholarly

Identify emerging IT trends through scholarly and/or trade literature. Understand the impact of innovative IT solutions on business

  Develop an information system

Suppose your college or organization is considering a new project to develop an information system that would allow all employees, students, and customers to access and maintain their own human resources information, such as address, marital statu..

  What is the role of a chief security officer

What benefits are associated with centralized governance of IT resources, and how do these differ from those associated with decentralized governance?

  Discuss the procedure for design using anthropometric data

Discuss the procedure for design using anthropometric data

  Analyze the privacy factors

Analyze the privacy factors raised as a result of this type of screening. Imagine that you are the CIO for a company of one hundred employees. Would you recommend the use of social media to screen employees? Why or why not

  How it increases the switching costhow could a business use

how it increases the switching costhow could a business use information technology to increase switching costs and lock

  Bcp versus drp revisited

BCP versus DRP Revisited-Take a position on whether BC or DR can survive without the other. Use a real-world example to support your position

  Evaluate the eoq/els for the two cases

Ordering and holding costs associated with the Director of Purchasing's policies and evaluate the EOQ/ELS for the following two cases. Include full calculations

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd