Operations security course project

Assignment Help Basic Computer Science
Reference no: EM132357354

For this project, explain how to apply the information technology security policies to a large organization, based on that organization's type.

There are three types basic types of organizations:

- Government Facility

- Hospital/Large Clinic

- Business

Choose an organization type and consider that the basis of your scenario. Imagine you are creating information technology security policies in this scenario. You will create a short paper describing the relevant needs and issues, the recommended structure, and how security policies should be implemented. See the outline below for specific content requirements.

There is a word limit-1000-1500 words is the target. It will be difficult to fully address each topic in the outline in a short way, but keeping writing concise and organized is an important workforce skill. To keep within the target word-count range, limit yourself to 100-150 words per section of the outline. An exception is outline #6, which would require 300 or more words.

Outline of Paper, with Specific Content Requirements:

1. Identify the relevant business drivers for your chosen scenario. A business driver is something that affects whether an organization can be successful. The textbook lists things like cost and customer satisfaction. Consider especially business drivers relevant to IT security, like mitigating risk exposure, mitigating liability of the organization, etc.

2. For each of the laws in chapter 3, first identify whether the law must be applied to your scenario, and second why or why not this law is relevant. Consider especially industrial standards, like PCI DSS, No. 16 (SSAE16), and ITIL.

3. Discuss the Seven Domains of IT Responsibility and their application. Identify which domains are MOST applicable and explain why. If that domain is not very applicable, explain why not.

4. Identify what policy implementation issues may affect your scenario, such as motivation, leadership, values, whether the organization is likely hierarchical or flat, etc.

5. Every business is a little different, so for this item on the outline, review chapter 6 and select which framework aspects you would focus on for that scenario's security policy. Identify and justify based on the scenario the appropriate type of IT security policy frameworks that should be implemented.Also include information assurance considerations-confidentiality, integrity, and availability.

6. Identify how to design, organize, implement, and maintain appropriate IT security policies. Since there are so many policies possible, choose just 4-5 policies to focus on for this section. Also include how you would organize the document of policies. For reference, see pages 182-190 for guidelines of what would be included in a policy and how it would be organized.Do not write the polices themselves-you do not have detailed information about the scenario to enable you to do that. Just briefly explain the process. Possible policies:

a. Acceptable Use

b. Access Control

c. Asset Protection/Management

d. Continuity & Disaster Recovery

e. Data Classification Standard & Encryption

f. Internet Ingress/Egress Traffic

g. Mandated Security Awareness Training

h. Production Data Backup

i. Remote Access

j. Vulnerability Management & Vulnerability Window

k. Threat Assessment & Management

l. WAN Service Availability

7. Identify the IT security policy framework approach you would use and why. Also include the User domain policy you would use and the most appropriate IT infrastructure security policy.

8. For a Risk Management policy and Incident Response Team (IRT) policies, identify the type of policy you would select for each and justify why.

9. Discuss the appropriate method to implement and maintain the IT security policy framework, including compliance technologies needed.
There are usually multiple ways apply the course content to your scenario. You will be graded on how well you explain and justify your choices based on the needs of your scenario.

Reference no: EM132357354

Questions Cloud

Define locard exchange principle and the daubert test : Define Locard's Exchange Principle and the Daubert Test and explain their role in Computer Forensics and Investigations.
Wikis for learning and collaboration : Different kinds of environments need different scheduling techniques. A high-volume environment is typically done through line design and balancing.
Use of another intellectual property : On the discussion forum, describe an instance of plagiarism or other use of another's intellectual property with which you are familiar.
Project management in operations management : Project Management in Operations Management Project management is considered one of the most important functions of an operations manager.
Operations security course project : ISOL 631-For a Risk Management policy and Incident Response Team (IRT) policies, identify the type of policy you would select for each and justify why.
Wikis for learning and collaboration : Different kinds of environments need different scheduling techniques. A high-volume environment is typically done through line design and balancing.
Organizational design and your assessment of effectiveness : Introduction of the organization, including history and background. Organizational strategy. Organizational design and your assessment of effectiveness.
Demonstrate connection to your current work environment : Demonstrate a connection to your current work environment. If you are not employed, demonstrate a connection to your desired work environment.
Difference between pre-versus post-attack response : You examined the security principle of Response. Discuss the importance of incidence response and the difference between pre-versus post-attack response.

Reviews

Write a Review

Basic Computer Science Questions & Answers

  Identifies the cost of computer

identifies the cost of computer components to configure a computer system (including all peripheral devices where needed) for use in one of the following four situations:

  Input devices

Compare how the gestures data is generated and represented for interpretation in each of the following input devices. In your comparison, consider the data formats (radio waves, electrical signal, sound, etc.), device drivers, operating systems suppo..

  Cores on computer systems

Assignment : Cores on Computer Systems:  Differentiate between multiprocessor systems and many-core systems in terms of power efficiency, cost benefit analysis, instructions processing efficiency, and packaging form factors.

  Prepare an annual budget in an excel spreadsheet

Prepare working solutions in Excel that will manage the annual budget

  Write a research paper in relation to a software design

Research paper in relation to a Software Design related topic

  Describe the forest, domain, ou, and trust configuration

Describe the forest, domain, OU, and trust configuration for Bluesky. Include a chart or diagram of the current configuration. Currently Bluesky has a single domain and default OU structure.

  Construct a truth table for the boolean expression

Construct a truth table for the Boolean expressions ABC + A'B'C' ABC + AB'C' + A'B'C' A(BC' + B'C)

  Evaluate the cost of materials

Evaluate the cost of materials

  The marie simulator

Depending on how comfortable you are with using the MARIE simulator after reading

  What is the main advantage of using master pages

What is the main advantage of using master pages. Explain the purpose and advantage of using styles.

  Describe the three fundamental models of distributed systems

Explain the two approaches to packet delivery by the network layer in Distributed Systems. Describe the three fundamental models of Distributed Systems

  Distinguish between caching and buffering

Distinguish between caching and buffering The failure model defines the ways in which failure may occur in order to provide an understanding of the effects of failure. Give one type of failure with a brief description of the failure

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd