Evaluates the cybersecurity policy of their organization

Assignment Help Management Information Sys
Reference no: EM131684713

Competency: Problem solving

Individual Assignment : Evaluating Cybersecurity Policies

Objective:Analyze the range of organizational policies (the policy framework) that are needed to effectively manage cybersecurity risks.

Individual Assignment

In 8-10 double-spaced pages, evaluates the cybersecurity policy of their or another organization in terms of completeness, compliance, organization and organization related interests, and other aspects, such as how to prevent its failure. Discuss how the policy addresses the cybersecurity issues discussed in the vulnerability identification & exploitation materials presented in the Erickson and Weidman texts.

Select an organization you admire (public sector, private sector, professional association, limited liability corporation, entrepreneurial, other) and solicit its cybersecurity policy.

Such document(s) may be available as a link on its homepage, part of the organization's policies and procedures (P&P) manual, the subject or reference used in an academic or trade journal case study in information systems, or any other source-human or Internet.

The cybersecurity policy may not necessarily reside as a single document and thus you may find it necessary to synthesize elements to have a resource that reasonably articulates the organization's cybersecurity policy.

Take special note that there is a minimum of three critical aspects to this assignment. One, as emphasized above, is to identify an organization whose cybersecurity policy is available. Federal civil sector organizations may be candidates. A company where you are currently or would like to be employed may be a candidate.

Also consider an organization that routinely deals in information gathering and dissemination for the public good, such as a library using content filtering software to curtail questionable Internet browsing by its visitors. Start your search for a suitable organization early and anticipate that you may have to browse several before finding one suitable for this assignment.

A second critical aspect is to identify evaluation criteria or performance measures for the cybersecurity policy. Refer to applicable government, industry, and regulatory standards. In some cases, you may need to consider criminal or civil liability issues, and thus evaluation criteria may emanate from the judicial guidance.

A third critical aspect is application of your evaluation criteria to elements of the cybersecurity policy identified for analysis. Such analysis is likely to be qualitative for some aspects; quantitative for other aspects; and a hybrid for still other aspects of the policy. As such, your choice of measures and analytical techniques must be reasonable and justifiable.

Based on your accumulated reading and knowledge,

1. Evaluate the strengths and weaknesses of the organization's cybersecurity policy along attributes to include the following:

• completeness/thoroughness,

• compliance with recognized industry, government, and regulatory standards,

• the organization's product/service and customers/clients/citizenry, and

• system failure prevention and mitigation aspects.

2. Recommend specific changes to the cybersecurity policy

The assignment is due at the end of Week 6.

Prepare your paper in either Word format as your instructor requires. It should be double-spaced with one-inch margins all around. The citations and the reference list in the paper should be formatted in accordance with APA 6th edition guidelines. References are NOT included in the page count.

The paper must have a Table of contents and Abstract sections at the beginning of the paper.

The paper must have a Summary and Conclusion section as the last section of the paper.

The paper must have at least eight (8) professional/scholarly quality references (professional journal or refereed academic conference) or more.

Provide originality report.

In 8-10 double-spaced pages, evaluates the cybersecurity policy of their or another organization in terms of completeness, compliance, organization and organization related interests, and other aspects, such as how to prevent its failure. Discuss how the policy addresses the cybersecurity issues discussed in the vulnerability identification & exploitation materials presented in the Erickson and Weidman texts.

Select an organization you admire (public sector, private sector, professional association, limited liability corporation, entrepreneurial, other) and solicit its cybersecurity policy.

Such document(s) may be available as a link on its homepage, part of the organization's policies and procedures (P&P) manual, the subject or reference used in an academic or trade journal case study in information systems, or any other source-human or Internet.

The cybersecurity policy may not necessarily reside as a single document and thus you may find it necessary to synthesize elements to have a resource that reasonably articulates the organization's cybersecurity policy.

Take special note that there is a minimum of three critical aspects to this assignment. One, as emphasized above, is to identify an organization whose cybersecurity policy is available.

Federal civil sector organizations may be candidates. A company where you are currently or would like to be employed may be a candidate.

Also consider an organization that routinely deals in information gathering and dissemination for the public good, such as a library using content filtering software to curtail questionable Internet browsing by its visitors. Start your search for a suitable organization early and anticipate that you may have to browse several before finding one suitable for this assignment.

A second critical aspect is to identify evaluation criteria or performance measures for the cybersecurity policy. Refer to applicable government, industry, and regulatory standards.

In some cases, you may need to consider criminal or civil liability issues, and thus evaluation criteria may emanate from the judicial guidance.

A third critical aspect is application of your evaluation criteria to elements of the cybersecurity policy identified for analysis.

Such analysis is likely to be qualitative for some aspects; quantitative for other aspects; and a hybrid for still other aspects of the policy.

As such, your choice of measures and analytical techniques must be reasonable and justifiable.

Based on your accumulated reading and knowledge,

1. Evaluate the strengths and weaknesses of the organization's cybersecurity policy along attributes to include the following:

• completeness/thoroughness,

• compliance with recognized industry, government, and regulatory standards,

• the organization's product/service and customers/clients/citizenry, and

• system failure prevention and mitigation aspects.

2. Recommend specific changes to the cybersecurity policy

The assignment is due at the end of Week 6.

Prepare your paper in either Word format as your instructor requires. It should be double-spaced with one-inch margins all around. The citations and the reference list in the paper should be formatted in accordance with APA 6th edition guidelines. References are NOT included in the page count.

The paper must have a Table of contents and Abstract sections at the beginning of the paper.

The paper must have a Summary and Conclusion section as the last section of the paper.

The paper must have at least eight (8) professional/scholarly quality references (professional journal or refereed academic conference) or more.

Provide originality report.

Reference no: EM131684713

Questions Cloud

Why many people do not realize the natural areas : Many people do not realize the natural areas that are within short distances of where they live
Explain how change in fluid will affect the rate of flow : Explain how this change in fluid will affect: the rate of flow and pressure at the pump discharge and the size of the pump motor
How negatively affecting local and global communities : What changes could the city make in order to obtain power while causing fewer negative impacts
How time-variant data can be properly captured : Prepare an example on how time-variant data can be properly captured and maintained within a database system.
Evaluates the cybersecurity policy of their organization : Evaluates the cybersecurity policy of their or another organization in terms of completeness, compliance, organization and organization.
Define modeling or describing the intrinsic biotic potential : Growth curve modeling or describing the intrinsic biotic potential; exponential growth curve
Discuss about the management overview : The Business Continuity Plan will be organized as follows: Management overview , Business Continuity Plan deployment instructions.
What types of information systems are involved : Your research strategy should be focused around answering the following questions/goals: Provide a description of the subject area (what is it?)
Discuss about the entity relationship model : Identify at least two relationship strength types that can be used within the entity relationship model.Defining relationships within a database can improve.

Reviews

Write a Review

Management Information Sys Questions & Answers

  Information technology and the changing fabric

Illustrations of concepts from organizational structure, organizational power and politics and organizational culture.

  Case study: software-as-a-service goes mainstream

Explain the questions based on case study. case study - salesforce.com: software-as-a-service goes mainstream

  Research proposal on cloud computing

The usage and influence of outsourcing and cloud computing on Management Information Systems is the proposed topic of the research project.

  Host an e-commerce site for a small start-up company

This paper will help develop internet skills in commercial services for hosting an e-commerce site for a small start-up company.

  How are internet technologies affecting the structure

How are Internet technologies affecting the structure and work roles of modern organizations?

  Segregation of duties in the personal computing environment

Why is inadequate segregation of duties a problem in the personal computing environment?

  Social media strategy implementation and evaluation

Social media strategy implementation and evaluation

  Problems in the personal computing environment

What is the basic purpose behind segregation of duties a problem in the personal computing environment?

  Role of it/is in an organisation

Prepare a presentation on Information Systems and Organizational changes

  Perky pies

Information systems to adequately manage supply both up and down stream.

  Mark the equilibrium price and quantity

The demand schedule for computer chips.

  Visit and analyze the company-specific web-site

Visit and analyze the Company-specific web-site with respect to E-Commerce issues

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd