Reference no: EM132477035
Assignment -
1. Introduction to the Management of Information Security: Explain the importance of Information Technology, Information security and explain why we should protect company's information assets
2. Key Components of Information Security Management
Organizational Planning for Information Security: Demonstrate the importance of developing a strategic information security plan that matches company's mission and vision. And why business should always include as part of the organization planning process.
Information Security Policy: Illustrate the different types of information security policy, and how to develop one. Providing examples of some good InfoSec policies. Explain what makes an information security policy good?
Risk management: accessing and treating risks: Discuss the concept of risk management. How does it affect the business operations? And what tools/frameworks should be employed to control the risks against company Information assets?
Security management models and practices: Briefly explain the nature and the complexity of security management models and illustrate how it is being integrated into the business. Also explain why the security management have certain impacts on company's employment practices.
Planning for Contingencies: Introduction to Contingency Planning and explain the steps in contingency planning. Give an example of a successful Disaster Recovery Plan that's Information security related.
Security Maintenance: Introduction to Security maintenance. Explain the key elements and the importance of a Security Maintenance Model.
3. Conclusion.