Identify concerns you feel the bank will need to focus

Assignment Help Management Information Sys
Reference no: EM131188722

Application: Aligning Security with Business Objectives

The security policy of an organization is not an one-for-all solution; it varies with the organization. As you begin your exploration of information assurance and risk management, consider how organizations in different countries, and even different states, are distinct, with their own structures, culture, and dynamics, as well as unique security-related regulations. Some of this may be due to the nature of the organization, its size, and its business use cases-that is, situations in which a technique may be used profitably. Other concerns can be attributed to the laws, regulations, and industry standards for its location. Even organizations doing business on the Internet may face regulations when doing business in another country or state.

To prepare for this Assignment, assume the role of a consultant working for a bank in your home country that is expanding its online banking to mobile devices. At the same time, it will be opening its first branch office in another country. Choose the location of the new office and use the Internet as well as the Learning Resources in this unit to research regulations and industry standards relevant to the new location. Also research the privacy laws (including Internet privacy regulations) that apply for both the locations. Examples could be the Gramm-Leach-Bliley Act (financial services regulation in United States) or the California Breach Notification Law applicable for United States scenarios. You will need to refer to Brotby, "Layered Security" and "An Introduction to ISO 27001, ISO 27002....ISO 27008" in addition to other reading resources.

Write a 5- to 7-page paper explaining how to align the security policy of the organization with its business objectives, keeping in mind the regulations, privacy laws, and industry standards you have identified. Clearly state any assumptions, and provide citations for reputable sources used in your research.
Cover the following points:

• Explain how the regulations, privacy-related laws, and industry standards you identified apply to this scenario.

• Identify concerns you feel the bank will need to focus on because of expanding its online banking to mobile devices and opening its international branch office. Identify three areas where you will need to apply security controls to manage the risk involved in the scenario.

• For each of these three areas, develop a key goal indicator (KGI) as explained in the textbook

• For each KGI, indicate the security controls (these involve policies, processes, and tools) that will need to be developed and applied.

• Justify how the key goal indicators and the security controls you have chosen align with business objectives and enable business processes.

• Explain how industry standards and best practices are beneficial to implementing security policies that are aligned with business objectives.

Reference no: EM131188722

Questions Cloud

Prepared required documents for the manager : Paraphrase those followings from the resume and  make it very professional.- Prepared required documents for the manager.
Americans pay for typical goods and services : Business profits account for nearly one-third of the price Americans pay for typical goods and services. More than 75% of what Americans buy is made in the United States. The United States is a relatively closed economy. Americans are among the mo..
Find the final weight volume and pressure of the gas : find the final weight, volume and pressure of the gas.
Justification for job training programs : Problem 1.2 A justification for job training programs is that they improve worker productivity. Suppose that you are asked to evaluate whether more job training makes workers more productive. However, rather than having data on individual worker..
Identify concerns you feel the bank will need to focus : Identify concerns you feel the bank will need to focus on because of expanding its online banking to mobile devices and opening its international branch office.
Write a program which takes two digits : Write a program which takes 2 digits, X,Y as input and generates a 2-dimensional array. The element value in the i-th row and j-th column of the array should be i * j
10 leading causes of death in the world in 2000 and 2012 : Explain how the type of disease influences the 3 levels of prevention (primary, secondary, and tertiary) that should be considered.
Could criminal charges be brought against pestinikas : The state can prove that the 92-year-old man's death was caused by this failure and that the man died of malnutrition and exposure. Under the criminal code of your state, could criminal charges be brought against Pestinikas? What possible charge ..
What that means to your education and your career : This week you learned about personal branding and what that means to your education and your career. Your assignment this week is to define your personal brand.

Reviews

Write a Review

Management Information Sys Questions & Answers

  The purpose of the system and the problem

In an organization that you are familiar with, identify the systems being used in terms of the purpose of the system and the problem it helped in solving

  Describe the concept of an information system

The Wal-Mart case study introduced you to how that company used information systems to become the world's leading retailer. Wal-Mart has continued to innovate and is still looked to as a leader in the use of technology

  Purchase and implementation of such a program

Important information about HR Information Systems - What evaluation criteria would you recommend when considering the purchase and implementation of such a program?

  How does your solution address wireless security issues

Why use a mobile application (and wireless technology) and not a wired application for the business you suggest? What are the advantages and disadvantages? Why use the specific technology and infrastructure you recommend? What are the advantages an..

  How do the differences have a direct impact on employees

How are the theories you have selected different from each other? How do the differences have a direct impact on employees or managers? Is their impact stronger on the employees or the managers? Why?

  What changes the system brought to the business world

Identify five different IT systems that have affected business in the past few years. For each system, briefly note the following: The system's name, The area of business it affects and What changes the system brought to the business world

  Discuss statement in context of present economic environment

"The growth of information and the growth of intensity of information is directly related to the changing structure of organisations" Discuss this statement in the context of the present economic environment.

  Are there any days in violation of the confidence limit

Develop an appropriate control chart for the days. -  Are there any days in violation of the confidence limits?

  What is an example of a data mining concept what is the

what is an example of a data mining concept? what is the key benefit of a data warehouse? what is the caveat of

  How are information systems transforming business

How are information systems transforming business and what is their relationship to globalization

  Describe how protection efforts will vary over time

Describe how protection efforts will vary over time

  Information technology and capital investment

Information Technology and Capital Investment - main difficulty in measuring the return on such an investment falters because of the inability to effectively and accurately quantify the benefits and their related value?

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd