Identify the risks of most critical systems for organization

Assignment Help Computer Network Security
Reference no: EM131274171

Assignment

Description: Write a research paper (about 8-10 double spaced pages) based on your research and analysis of an organization of your choice.

1. It is best to choose an organization for which you have ability to do research - through interviews, publicly available information, audit reports, personal knowledge, reports and analyses done by other scholars. It is okay to use a generic name for an organization if you need to maintain confidentiality of the organization.

2. You may also choose a company or government agency that has suffered a data breach. Talk about breach and the cybersecurity issues before and after. How did they handle and protect data. Make recommendations. Think of OPM, Target, Neiman Marcus, Home Depot, Anthem, Community Health Systems, or almost any bank or Wall Street organization which has had data breaches for which a lot of information is readily available.

3. Identify the mission of the organization. As a cybersecurity professional you need to think of the business mission. Your primary role is to ensure success of the organization through a risk optimized digital strategy. In this section inform the reader what you feel is relevant for your story.

4. Identify the Risks of the most critical systems for the organization - this helps you to narrow down. For example the Point of Sale (POS) or the Patient Health Information Management system could be the most critical systems for some company. This will allow you to limit the scope of your analysis to the most critical systems. Otherwise the scope can become too large for a paper of this size.

5. Think of risks to data in all three states: Transmission, Processing, Storage

6. While identifying risks, discuss cybersecurity risks using Confidentiality, Integrity, and Availability terms. However tie it to overall business risks, which could be financial, market share, reputation loss, damages, legal fees, and other similar issues.

7. While identifying risks, while it is okay to concentrate on technical risks, do not ignore policy and people related risks.

8. Organizational structure and governance have been glaring weaknesses for many organizations such as OPM, Anthem, or Target. This is why looking at the cybersecurity leadership and overall organization structure of the organization may be very important to your analysis. For example are they missing key executives such as Chief Information Officer or Chief Information Security Officer. If these people are present, are they empowered to do their job or are some unqualified or inappropriate people such as a Chief Financial Officer overruling them at all times? Do they report to the CEO or board? When incidents happen who makes decisions? Who declares a disaster? Who informs law enforcement, media? Do they even have an Incident Response or Disaster Recovery Plan?

9. Your primary reading sources should be authoritative. NIST guidance is authoritative. Citable sources can be a judgment call - a couple of weaker sources for minor points when a whole bunch of other strong sources have been used for major points are frequently acceptable. CSO magazine would be a weak source - but may be usable to make a minor point. scholar.google.com and university library collections with IEEE/ACM papers and other research pieces are frequently good sources for scholarly pieces.

10. Include illustrations (figures) with APA compliant headings and citations to explain and support your arguments. Experiments data should be included while possible.

11. Prepare your paper in Word. Include a cover page, an abstract, and table of contents, introduction, main text with section headings and subheadings, conclusions, and a minimumof 7 references. Include in-text citations and a reference list at the end in APA compliant format.
The paper should your original writing. Use citations to support your work. Do not copy and paste entire paragraphs from other authors. While TurnitIn submission is no longer required, faculty has the option to check for paper originality rating. Plagiarism is seriously dealt with at UMUC.

Reference no: EM131274171

Questions Cloud

How you would implement such a plan logistically : Describe the characteristics of the culture you are planning a prevention program for. What is their background? Historically do they have a positive or a negative relationship with health care/prevention? Why is it important to implement a preve..
Describe the operations of drill down : Write a 2 to 3 page essay describing the use of an OLAP Data Cube. Your essay should also describe the operations of Drill Down, Roll Up, Slice, and Dice. Answer should be unique. Use APA format with proper citations.
Create a new project named stacktesting : Create a new project named StackTesting and create then the Stack interface and the two classes (ArrayStack and LinkedStack) written above.
Is addiction drug treatable using psychological techniques : What explanation can psychology give to explain the use of substances? Be sure to include the media influences that are represented in your poster (e.g., advertisements for the drug, or PSA clips against the drug) as well as information presented ..
Identify the risks of most critical systems for organization : Identify the Risks of the most critical systems for organization - this helps you to narrow down. For example Point of Sale or the Patient Health Information Management system could be most critical systems for some company.
Undergraduate discussion participation policies and rubric : Be sure to make your original post EARLY in the week. Return often throughout the week to reply and respond to your classmates. For more information about discussion grading criteria, visit the Undergraduate Discussion Participation Policies and Rubr..
Prepare aresearch paper on the pharmaceutical industry : Prepare aresearch paper on The Pharmaceutical Industry
Malware and secure coding : What should the average computer user (say, a college student like yourself) know about passwords, and what are good practices? Include choosing passwords, writing them down, letting a browser store them, changing them, and other aspects you can t..
Identify the independent and dependent variables : What were some variables the researchers controlled in their study? Why was this necessary? What evidence do the researchers offer as a test of their hypothesis? Is this evidence empirical (observable)? Is it valid? What explanation do the researcher..

Reviews

Write a Review

Computer Network Security Questions & Answers

  An overview of wireless lan security - term paper

Computer Science or Information Technology deals with Wireless LAN Security. Wireless LAN Security is gaining importance in the recent times. This report talks about how vulnerable are wireless LAN networks without any security measures and also talk..

  Computer networks and security against hackers

This case study about a company named Magna International, a Canada based global supplier of automotive components, modules and systems. Along with the company analysis have been made in this assignment.

  New attack models

The Internet evolution is and is very fast and the Internet exposes the connected computers to attacks and the subsequent losses are in rise.

  Islamic Calligraphy

Islamic calligraphy or Arabic calligraphy is a primary form of art for Islamic visual expression and creativity.

  A comprehensive study about web-based email implementation

Conduct a comprehensive study about web-based email implementation in gmail. Optionally, you may use sniffer like wireshark or your choice to analyze the communication traffic.

  Retention policy and litigation hold notices

The purpose of this project is to provide you with an opportunity to create a document retention policy. You will also learn how to serve a litigation hold notice for an educational institute.

  Tools to enhance password protection

A report on Tools to enhance Password Protection.

  Analyse security procedures

Analyse security procedures

  Write a report on denial of service

Write a report on DENIAL OF SERVICE (DoS).

  Phising email

Phising email It is multipart, what are the two parts? The HTML part, is it inviting the recepient to click somewhere? What is the email proporting to do when the link is clicked?

  Express the shannon-hartley capacity theorem

Express the Shannon-Hartley capacity theorem in terms of where is the Energy/bit and is the psd of white noise.

  Modern symmetric encryption schemes

Pseudo-random generators, pseudo-random functions and pseudo-random permutations

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd