Develop a pii strategy proposal for the das mylicence portal

Assignment Help Other Subject
Reference no: EM131669053

Assignment

Task

Scenario

The Department of Administrative Services (DAS) provides a number of services to other departments in an Australian State Government. These services include HR and personnel management, payroll, contract tendering management, contractor management, and procurement. These services have all been provided from the Department's own data centres.

As a result of a change in Government policy, DAS is moving to a "Shared Services" approach. This approach will mean that DAS will centralise a number of services for the whole of Government (WofG). This means that each Department or Agency that runs one of these services for its own users, will be required to migrate its data to DAS so that it can be consolidated into the DAS centralised database. DAS will then provide these consolidated services to all other Departments and Agencies within the Government.

DAS has now started its move to the Government's "Cloud first" policy and is in the process of implementing the following Shared Services:

• A SaaS HR and Personnel management suite,
• A SaaS Contractor management suite,
• A COTS Payroll solution that is implemented in the AWS Cloud,
• A PaaS SharePoint platform that forms the basis of the intended WofG Intranet platform.

Your team has workshopped and researched the Threat and Risk analysis for these projects and has developed the policy strategies and controls for Privacy and Data Protection which are required.

The Government has now decided that they want to centralise the application and renewal of licenses from a number of different agencies into one single web portal. The portal will be branded as MyLicence. The Government's strategy is that the process of licence application or renewal for virtually all licences follows an almost identical workflow, even though some of the data may differ for different types of licences. Their aim is to have a single workflow for all licences, with some additional steps in case of special requirements for a particular type of license.
The Government also sees the opportunity to gain a better view of what licences each citizen holds, and wants to link that data to other data that they hold about each citizen. In order to achieve this, the Government plans to encourage citizens to register on the MyLicence portal and create their own informal digital identity. This will allow all the licences, renewal dates, and other associated information for that digital identity to be available for viewing on a single page. This data, particularly when linked to a citizen's digital identity, can then be used for more effective planning and decision making by Government and other public agencies.

The plan also has the advantage of simplifying the process of acquiring and renewing licences for its citizens so that they only need to go to a single web portal to acquire the licenses that they require.

Tasks

After the successful engagement of your team to develop privacy and personal data protection strategies for DAS, the team has now been engaged to develop a Personally Identifiable Information (PII) privacy and personal data protection strategy for DAS.

Team Setup

This assignment is the last of the team assignments for this subject. The rationale for using a team approach is that most IT policy formulations are normally conducted by teams of between 2-5 Architects, Information Security experts, Operations and Business leaders for each problem. You are already assigned to a team and the team, as a whole, will be responsible for the development of the policies.

Team Member Responsibilities

Each team member will be assessed on:

• The final privacy and personal data protection strategies presented by the team;
• The individual contributions that they have made to the policy formulation. This will be shown by the entries that they have made in the

Team forum;

Team members should note that:

• A total of 20% of the total marks for this assignment are for individual contributions. These include:

o Contributions to the development of privacy and data protection policies (10%), and
o Reasoning behind the development of privacy and data protection policies (10%)

• A team member without any individual contributions in the Team Forum will be regarded as having not contributed to the risk assessment. This will result in either reduced marks or no marks being awarded to that team member for this assignment.

The task:

Your team is to:

1. Develop a Threat and Risk Assessment (TRA) for PII data for the MyLicence portal. This TRA should consider both the privacy and data protection aspects of PII data in the portal.

2. Develop a PII strategy proposal for the DAS MyLicence portal. The strategy should consider the threats and risks to both Privacy and data protection for the PII data collected in the MyLicence portal as well as possible controls to mitigate the identified risks.

3. Develop a strategy to protect the informal Digital Identity that a user may create in the MyLicence portal. You should consider both the privacy and data protection aspects for a digital identity as well as possible controls to mitigate the identified risks. (20 marks)

4. Develop an outline plan for the Governance of:

1. PII data and digital identities for users of the MyLicence portal.
2. Personal data and PII data for DAS users of the HR Personnel Management suite.
3. Personal data and PII data for contractors in the Contractor Management suite.
4. PII data and financial data for users and DAS staff in the COTS payroll suite.
5. Create a PowerPoint slide deck that gives a comprehensive overview of the above tasks. This slide deck is not to exceed 30 slides.

Presentation

The team is to submit the following documents to complete this assessment:

• A PowerPoint presentation that gives a comprehensive overview of the four tasks.

o The presentation should be a maximum of 30 slides, including introduction, conclusions and recommendations.
o Each slide should have speaking notes in the Notes section which expand on the information in the slide.
o The slides should give refer to the additional information contained in the appendices.
o Images and quotations used in slides must be referenced on that slide.
o The slide deck does not require a reference list.

• The TRA is to be attached in a separate Word document marked as Appendix A. The TRA can be presented in tabular format or similar.

• The PII strategy is to be attached in a separate Word document marked as Appendix B. This document should be fully referenced in APA 6th edition format, and should not exceed 5 pages.

• The Digital Identity is to be attached in a separate Word document marked as Appendix C. This document should be fully referenced in APA 6th edition format, and should not exceed 5 pages.

• The Governance plan is to be attached in a separate Word document marked as Appendix D. This document should be fully referenced in APA 6th edition format, and should not exceed 10 pages.

• A copy of the discussions in the team forum should be exported into a single Word document marked as Appendix E.

All parts of the submission are to be loaded into the team Resource Area in Interact.

Rationale

This assignment aligns with the following learning outcomes of this subject:

• be able to examine the legal, business and privacy requirements for a cloud deployment model;
• be able to evaluate the risk management requirements for a cloud deployment model;
• be able to critically analyse the legal, ethical and business concerns for the security and privacy of data to be deployed to the cloud;
• be able to develop and present a series of proposed security controls to manage the security and privacy of data deployed to the cloud;
• be able to develop and present a cloud governance framework to underpin the cloud operations for an enterprise.
Identifying, assessing and explaining threats, security and risk for computer applications in the real world requires that you interact with colleagues, peers and various stakeholders, therefore team work has been incorporated into these assessments to facilitate this.

Reference no: EM131669053

Questions Cloud

Average number of games played regardless of winner : Baseball's World Series is a maximum of seven games, with the winner being the first team to win four games. Assume that the Atlanta Braves are playing.
What was the cause of the metrolink accident : Is the money spent to regulate railroad safety being spent in the most efficient way to reduce the risks of death and injury in society?
Disadvantages of chain versus independents : Explain this statement through the concepts of ease of entry and the competitive advantages and disadvantages of chain versus independents?
Describe the special characteristic of retailing : Describe the special characteristic of retailing.
Develop a pii strategy proposal for the das mylicence portal : Develop a PII strategy proposal for DAS MyLicence portal. Develop a strategy to protect informal Digital Identity that a user may create in MyLicence portal.
Discuss the use of the inputbox function : Discuss the use of the InputBox function. Can you think of some disadvantages to using this as a means to accept user input?
Explain implications of various economic theories pertaining : Explain the significance and implications of various economic theories pertaining to profit, consumer choice, demand and supply, forecasting and optimization.
Concept of competitive advantages as applied to retailing : Discuss the concept of competitive advantages as applied to retailing?
Common types of data stored on a server : What are 7 common types of data stored on a server storage system such as Windows Server? Individually, what are each type used for?

Reviews

Write a Review

Other Subject Questions & Answers

  Explain the problems presented in the divine command theory

Explain the problems presented in Plato's rebuttal of the Divine Command theory

  Ability to produce amino acids

A cell suddenly loses the ability to produce amino acids. Predict what would happen to this cell and explain the prediction.

  Concern with humanity exploding population

Water quality is an increasing concern with humanity's exploding population. From oil spills, to illegal chemical dumping, and beyond, the quality of water available for drinking is going down, leading to growing concerns over water shortages and ..

  Two key variables that segment the competition

Select an industry with many competitors. Select two key variables that segment the competition.

  Healthy older adults without demnia

Are healthy older adults without demnia more affected by sensory or cognitive changes?

  Describe the julio-claudian emperors

Describe the Julio-Claudian emperors and describe the Roman Empire through the Julio-Claudian emperor

  Why do we study sociology

Why do we study sociology? Do you think that sociologists should try to reform society or to study it without influence?

  Discus the problems caused by an ageing population

Identify, with specific examples, some of the problems caused by an ageing population and an aged care system under enormous strain.

  Eplore the roots of political philosophy

Eplore the roots of political philosophy ? What is the true definition of democracy?

  Deteremine the tax treatment

Anne sells a rental house for $100,000 (adjusted basis of $55,000). During her ownership, $60,000 of losses have been suspended under the passive activity loss rules. Deteremine the tax treatment to Anne on the diposition of the property.

  Do you think switch to ghs labels will improve understanding

Is (or was) it easy to understand? Do you think the switch to GHS labels will improve understanding or make things more confusing?

  According to ethnolographic research

According to ethnolographic research conducted by Murray Leaf, the Green Revolution has been successfully implemented in:

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd