Explain effective incident management system, Risk Management

Assignment Help:

Question 1:

(a) Explain what is meant by the term „incident handling? in the context of information security.

(b) Describe the main features of an effective incident management system.

(c) Explain the main goals of a Business Impact Assessment for management and its role in incident management.

(d) Explain the main phases of the OCTAVE method for risk assessment and the key success factors for its implementation.

Question 2:

You have just been appointed as Security Consultant, reporting directly to the Chief Executive Officer in a major bookstore which in addition to its main store also operates an interactive website where orders can be placed online by customers as well as accepting credit card payments online. Your role is to advise management on what needs to be done by the company to be compliant with section 6.6 of the Payment Card Industry Data Security Standard. Your answer should state the security requirements for section 6.6 of the PCI DSS and focus on the process and options that management need to consider in order to secure web-based applications to be compliant with section 6.6.


Related Discussions:- Explain effective incident management system

Risk management and financial institutions, On September 25,2008 a portfoli...

On September 25,2008 a portfolio worth $10 million consisting of investments in four stock indices: DJIA, FTSE 100, CAC 40 and NIKKEI 225. The value of the investment in each index

Show additively of betas, Q. Show Additively of betas? it is indicated ...

Q. Show Additively of betas? it is indicated earlier that any risk unique to an individual security can be removed by diversification, however as diversification increases, the

What is industry risk, What is Industry Risk An industry may be view...

What is Industry Risk An industry may be viewed as group of companies which compete with each other to market a homogeneous product. Industry risk is that portion of an  inv

Explain what is meant by the term single sign-on, Question: (a) Explain...

Question: (a) Explain what is meant by the term Single sign-on in the context of access control? Give three examples of single sign-on technologies. (b) Describe how the Ker

Macroeconomic impacts of the crisis, No one thought that the financial syst...

No one thought that the financial system could collapse. It was assumed that sufficient safeguards were in place. Prosperity and stability were evidence that the system worked. Inf

Requirements to make a risk assessment successful, Question : (a) The ...

Question : (a) The garage manager of a motor vehicle mechanical repair workshop has decided to carry out a risk assessment to ensure compliance with the Occupational Safety an

Develop strategies to eliminate risk, Develop strategies to eliminate, miti...

Develop strategies to eliminate, mitigate, deflect or accept risk • Risk treatment strategies: Risk avoidance, reduction, transfer and retention • The types of controls that can

Risk management, Risk Management Many organization and investors engag...

Risk Management Many organization and investors engage in activities designed to manage the risks they face. In the corporate world the managers' search to control business ri

Political risk analysis, Political risk analysis is conducted by a company ...

Political risk analysis is conducted by a company considering international operations and normally focuses on the  political and cultural differences between the home and targ

Write Your Message!

Captcha
Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd