Should you approach regulations as a risk to information

Assignment Help Management Information Sys
Reference no: EM131748911

RESPOND TO THESE DISCUSSION POST BASED ON THE TOPIC "As a risk manager, should you approach regulations as a risk to information systems?

Do you see regulations as important measures to strengthen information security or as ways to exert unnecessary control over organizations?

In response to your peers, research any organization as a point of reference or use your own place of work in discussing why regulations are important measures or ways to exert unnecessary control over organizations."

(TWO (2) PARAGRAPHS EACH WITH REFERENCES ON EACH OF THEM SEPARATELY, NOT TOGETHER)

NOTE

APA reminders - In your Discussions and Assignments -

* Use less than 10% direct quotes

* Quotes over 40 words not allowed in this classes (by exception only ahead of time)

* Every quote needs a specific page or paragraph number

* Ideas and concepts from articles on websites need to be re-written in your own thoughts, vocabulary, and ideas and not simply paraphrased.

RESOURCE

· Read Chapter 3 in our text, Managing Risk in Information Systems (Gibson 2010).

· Watch the Podcast, in Module 2, The Path from Information Security Risk Assessment to Compliance (26:17)

1.AzlaH IMPOTNT OF LnR

Laws and regulations are put in place to protect companies and businesses from any harm that may come upon them or the clients that they support/work for. However, not every regulation that has been created works for everybody. As a risk manager, regulations need to be rolled out via compliance programs for detailed checks (Gibson, 2015, p. 58).

Regulations are important measures to strengthen information security. Without regulations, it would be hard for an organization to keep their employees on the same page when it comes to the security of the company.

An example of the importance of regulations can be found within the Health Insurance Portability and Accountability Act (HIPAA). HIPAA ensures that health information data is protected(Gibson, 2015, p. 61). Companies who take on this plan must also realize that they need to create their own compliance plan that works best for their organization. One of the steps in creating the compliance plan is to continuously monitor the regulations that have been put into place.

The fact that there is a step in creating a compliance plan that involves regulations shows the importance of regulations. Some may feel as if regulations are unnecessary for an organization because it puts rules in place. However, rules are beneficial. They keep order. For instance, without a regulation that states that medical numbers should be encrypted, employees may think that simply saving the numbers would be enough.

2.BrdKrw

Regulations are put in place for a reason and should be followed throughout the entire organization. These regulations help provide a better understanding of how to process information securely and effectively. They are meant to help streamline certain processes and should not be seen as a risk to information systems. An example of high-level regulations is HIPAA, the Health Insurance Portability and Accountability Act. If a company deals with highly sensitive personal information they are required to follow HIPAA guidelines and regulations.

This act "establishes a set of national standards for the protection of certain health information" (Secretary, 2013). The main priority of this rule is "assure that individuals' health information is properly protected while allowing the flow of health information needed to provide and promote high-quality health care and to protect the public's health and wellbeing" (Secretary, 2013).

By following these regulations a person's health records and other private information is secure against possible threats. If these regulations were not followed there are legal consequences a person or organization would have to face. As a risk manager, these regulations should not be seen as a risk and should be followed as closely as possible.

PLEASE READ THIS.IT IS VERY IMPORTANT

Allow your discussion posts to be detailed and capable of sharing knowledge, ideas and points. You must discuss the topic using your own words first. Using your own words indicate you understand the topic of discussions. Secondly, you must cite your sources in-text. This is necessary to justify your points. Sources from several sources showed good research abilities. Lastly, you must provide references at the bottom of your post.

A discussion post without justification with sources does not show proper research abilities. A terse and not detailed discussions represent post that would not provide enough sharing of knowledge or proper understanding of the topic. DO NOT just copy and paste a sentence from online with citation at the end as your own discussion. I have not asked for definitions, I asked for discussions and will not buy this. You must show understanding of the discussion topic by using your own words to describe the topic and then justify that with sources.

use double spacing, 12-point Times New Roman font, and one-inch margins. Sources should be cited according to APA citation method (citation should be relevant and current). Page-length requirements:2 PAPARAGRAPHS FOR EACH PROMPT ANSWER.

Make sure you cite if you take a piece of someone's work, very important and your reference should relate to your writing (don't cite a reference because it relates to the course and not this very paper) at least 2 current and relevant academic references. No heavy paraphrasing of others work.

Reference no: EM131748911

Questions Cloud

Establish a working model in simmultibody : Simplify the provided IGES model to establish a working model in SimMultibody - Make design changes to the present configuration and report recommendations
Discuss least convincing kind of casual argument identifies : The least convincing kind of casual argument identifies every link in the casual chain, showing how an initial cause leads step by step
Analyze the encryption protocols used in wireless networks : Assess how current encryption protocols have addressed the weaknesses of WEP and suggest the security advancements that are currently needed.
What is the depreciation recapture for the asset : The initial investment on a commercial building was $1M excluding the land. The building was occupied in March of the year in which it was purchased.
Should you approach regulations as a risk to information : As a risk manager, should you approach regulations as a risk to information systems?
What can you say to someone who says global weirding : What can you say to someone who says global weirding is not happening but is something designed by the scientific community or government to scare people?
Discuss would i experience culture shock when traveling : How is the culture of this country different than where I love
Explain your perspective on the workstation issue : You are an information security consultant and have recently been hired by a new client to update their information security program.
Explain differentia and integra calculus : Bylist and explain differentia and integra calculus

Reviews

Write a Review

Management Information Sys Questions & Answers

  Information technology and the changing fabric

Illustrations of concepts from organizational structure, organizational power and politics and organizational culture.

  Case study: software-as-a-service goes mainstream

Explain the questions based on case study. case study - salesforce.com: software-as-a-service goes mainstream

  Research proposal on cloud computing

The usage and influence of outsourcing and cloud computing on Management Information Systems is the proposed topic of the research project.

  Host an e-commerce site for a small start-up company

This paper will help develop internet skills in commercial services for hosting an e-commerce site for a small start-up company.

  How are internet technologies affecting the structure

How are Internet technologies affecting the structure and work roles of modern organizations?

  Segregation of duties in the personal computing environment

Why is inadequate segregation of duties a problem in the personal computing environment?

  Social media strategy implementation and evaluation

Social media strategy implementation and evaluation

  Problems in the personal computing environment

What is the basic purpose behind segregation of duties a problem in the personal computing environment?

  Role of it/is in an organisation

Prepare a presentation on Information Systems and Organizational changes

  Perky pies

Information systems to adequately manage supply both up and down stream.

  Mark the equilibrium price and quantity

The demand schedule for computer chips.

  Visit and analyze the company-specific web-site

Visit and analyze the Company-specific web-site with respect to E-Commerce issues

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd