Develop an incident response policy for abc company

Assignment Help Management Information Sys
Reference no: EM131935331

Summary:

ABC Company is a manufacturing company that produces new technology that sells online directly to customers and retailers. The system they use is a core transactional Enterprise Resource Planning system called NEDS. NEDS is similar to many core systems that provide integrated applications on a common platform for financials, managing materials, sales distribution, and production planning (similar to Oracle or SAP).

NEDS is located in the Netherlands, while ABC Company is located in Florence, Kentucky.On June 15, 2016, James Hurd (ABC's Global Security Director) was notified that NEDSwas burglarized during business hours involving individuals stealing equipment including blackberries, iPhones, laptops and hard drives.

Local police were notified and the incident was reported on that date. A police report only included identification of specific hardware that was stolen and several bicycles.

The burglary notification that was mailed was sent to a branch office of ABC Company in Mexico. James Hurd was notified by the Mexico office via email which included an attached electronic version of the burglary notification and police report on June 20, 2016. James Hurd recognized that the incident actually occurred 5 days earlier.

The letter contained the following information about the incident:

• The incident occurred in the application area that provides customapplication development and reporting for the ABC Company.

• The area that was impacted involved "potential data" used for sales analysis. Data from the ABC Company had been placed on laptops while some diagnostics were being carried out.

• Compromised data could have included customer or retailer information from 2002-2014 consisting of names, address, bank account data or credit card numbers, SKU product numbers, descriptions, quantities, Purchase Order numbers, and purchase price.

You are James Hurd and need to respond to this incident by taking action immediately.

You will need to complete the following:

I. Develop an Incident Response Policy for ABC Company that will be used as your reference for your evaluation of this potential data incident(this is an attachment that should be included in your paper and referenced in your presentation).

II. Upon developing ABC Company's Incident Response Policy, evaluate the incident described above:

- Summarize the data incident and potential level of risk, include why?

- Upon identifying the types of data that could potentially be impacted and what laws/regulations could be in violation of non-compliance if this data was breached

- Develop your action plan to evaluate this data incident (include your rationale for why the steps were necessary)

- Describe how the Incident Response Policy supported your actions

- Identify any issues that made the evaluation more difficult

- Identify areas of future risk mitigation actions should a similar incident occur (look at the gaps or issues with this scenario)

- Close the incident (NOTE: The outcome of the incident did not surface any major risks or data breach to the company but it took the evaluation to get to this conclusion)

This presentation must be support by the research paper.

Please note the following criteria:

Research paper:

• Research Paper must be in APA Style

• Research Paper must have at least 5 works cited of which 2 must be peer reviewed works/articles (note your book can be included as a reference)

• Must be at least 5 double-spaced pages

• The Policy will be an Attachment and not count toward the 5 Page requirement

• Graphs, illustrations and spreadsheets are allowed, but will not count toward the 5 Page requirement

Completeness of the Topic (Policy, Processes, Action, Conclusion)

Presentation Delivery

Alignment of policy

Paper will be 100 points:

- Meets Standard Criteria

- Completeness/content

- Incident Risk Policy as Attachment

- Logic of Processes and Actions (Thoroughness)

- Alignment of the Incident Risk Policy components in completing and supporting the evaluation 

Reference no: EM131935331

Questions Cloud

What have been main causes of difficulties being experienced : What have been the main causes of the difficulties being experienced by Performance Plus team members? Do formal and informal design elements apply?
What the product is today : An explanation of the conditions under which the igneous rock was formed in the first place, What the product is today, where it is located, and why it is famou
Discuss problems affecting commodity countries : What are some possible problems affecting one commodity countries in the current global economy? What advantages or disadvantages might past colonies.
Examine an external environmental analysis : Examine an external environmental analysis. Discuss change management and innovation. Controlling Summarize the basic elements of the control process.
Develop an incident response policy for abc company : The incident occurred in the application area that provides customapplication development and reporting for the ABC Company.
List the possible risks and possible measures : Create the implementation plan. Identify the activities to be undertaken. List the possible risks and possible measures to address them.
Explain the potential personal liability to acme fireworks : Explain the potential personal liability to Acme Fireworks if a spectator is injured by a stray firework from a fireworks display.
Description of the image and video watermarking technology : Give a brief description of the image and video watermarking technology and discuss the different types of watermarking systems
How to add a new subnet to an existing network : They are having a hard time testing to see if there is overlap in a VLSM scheme on your network and troubleshooting problems that arise.

Reviews

Write a Review

Management Information Sys Questions & Answers

  Information technology and the changing fabric

Illustrations of concepts from organizational structure, organizational power and politics and organizational culture.

  Case study: software-as-a-service goes mainstream

Explain the questions based on case study. case study - salesforce.com: software-as-a-service goes mainstream

  Research proposal on cloud computing

The usage and influence of outsourcing and cloud computing on Management Information Systems is the proposed topic of the research project.

  Host an e-commerce site for a small start-up company

This paper will help develop internet skills in commercial services for hosting an e-commerce site for a small start-up company.

  How are internet technologies affecting the structure

How are Internet technologies affecting the structure and work roles of modern organizations?

  Segregation of duties in the personal computing environment

Why is inadequate segregation of duties a problem in the personal computing environment?

  Social media strategy implementation and evaluation

Social media strategy implementation and evaluation

  Problems in the personal computing environment

What is the basic purpose behind segregation of duties a problem in the personal computing environment?

  Role of it/is in an organisation

Prepare a presentation on Information Systems and Organizational changes

  Perky pies

Information systems to adequately manage supply both up and down stream.

  Mark the equilibrium price and quantity

The demand schedule for computer chips.

  Visit and analyze the company-specific web-site

Visit and analyze the Company-specific web-site with respect to E-Commerce issues

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd