Developing system security plans using guidance

Assignment Help Computer Engineering
Reference no: EM133550260

Question: A recent risk assessment highlighted the need for Red Clay to formalize the security measures required to protect information, information systems, and the information infrastructures for the company's headquarters and field offices. The CISO has proposed a plan of action which includes developing system security plans using guidance from NIST SP-800-18 Guide for Developing Security Plans for Federal Information Systems.

The CISO asked you to prepare a two page, draft briefing paper (5-7 paragraphs) for the IT Governance Board and Red Clay Renovations Board of Directors that introduces Security Control Classes and Security Control Families related to Red Clay risks. This audience is familiar with financial controls but has not yet been introduced to the use of controls in the context of IT security. You should leverage their knowledge in your explanations of the control classes and families. If necessary, research "financial controls" as well as IT security controls before writing this briefing paper.

Your draft briefing paper should include the following items:

  1. An introduction telling the IT Governance Board and the Red Clay Board of Directors the purpose of the draft briefing paper.
  2. A description of each control class (managerial, operation, and technical). THEN, write a descriptive paragraph explaining how three these specific control classes will work together to protect the Red Clay Renovations IT Infrastructure for the Wilmington, DE Offices (Headquarters).
  3. From the below table, choose one family control from each of the management, operational, and technical control classes.
  4. Write a description of each family control, THEN write a descriptive paragraph explaining how each family control will work to protect Red Clay's IT infrastructure.
  5. Select two sub-family controls (i.e., AC1 and AC6) from each family control. THEN, write a descriptive example of how this sub-family-control will protect the Red Clay infrastructure. Your examples should relate to the Red Clay case study.

Reference no: EM133550260

Questions Cloud

Discuss what you think should be included in network access : Based on your own knowledge and experience discuss what you think should be included in Network Access Policy? Should users be allowed to bring
Explain how leeuwenhoek observations and linnaeus : Explain how Leeuwenhoek's observations and Linnaeus's classification scheme led to the beginnings of microbiology. Compare and contrast prokaryotes
Which factors are most important in understanding diagnosis : Which factors are most important in understanding Baruti's cardiovascular disease diagnosis (for example, age, genetic predisposition, access to healthcare)?
Determining ancestry further back than a few generations : How good are tests and determining ancestry further back than a few generations? If your test determines you are 17% Irish and 35%
Developing system security plans using guidance : Developing system security plans using guidance from NIST SP-800-18 Guide for Developing Security Plans for Federal Information Systems
Explain actions purpose and benefits of this borrowing move : Provide a situation where the government may decide to borrow money. Explain this action's purpose and the benefits of this borrowing move.
Complete a? cause-and-effect diagram to reflect : Complete a? cause-and-effect diagram to reflect? "student dissatisfied with university registration? process." LOADING... Click the icon to view the partially
Identify how personal experience or interests shaped : Identify your chosen topic and what you know about it thus far. Identify how personal experience or interests shaped your choice of this topic over the other
Maximize business model through internet of things : Uses digital marketing, to optimize interactions between people and the business using social media, cloud, mobility and data only

Reviews

Write a Review

Computer Engineering Questions & Answers

  Mathematics in computing

Binary search tree, and postorder and preorder traversal Determine the shortest path in Graph

  Ict governance

ICT is defined as the term of Information and communication technologies, it is diverse set of technical tools and resources used by the government agencies to communicate and produce, circulate, store, and manage all information.

  Implementation of memory management

Assignment covers the following eight topics and explore the implementation of memory management, processes and threads.

  Realize business and organizational data storage

Realize business and organizational data storage and fast access times are much more important than they have ever been. Compare and contrast magnetic tapes, magnetic disks, optical discs

  What is the protocol overhead

What are the advantages of using a compiled language over an interpreted one? Under what circumstances would you select to use an interpreted language?

  Implementation of memory management

Paper describes about memory management. How memory is used in executing programs and its critical support for applications.

  Define open and closed loop control systems

Define open and closed loop cotrol systems.Explain difference between time varying and time invariant control system wth suitable example.

  Prepare a proposal to deploy windows server

Prepare a proposal to deploy Windows Server onto an existing network based on the provided scenario.

  Security policy document project

Analyze security requirements and develop a security policy

  Write a procedure that produces independent stack objects

Write a procedure (make-stack) that produces independent stack objects, using a message-passing style, e.g.

  Define a suitable functional unit

Define a suitable functional unit for a comparative study between two different types of paint.

  Calculate yield to maturity and bond prices

Calculate yield to maturity (YTM) and bond prices

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd