Explain effective incident management system, Risk Management

Assignment Help:

Question 1:

(a) Explain what is meant by the term „incident handling? in the context of information security.

(b) Describe the main features of an effective incident management system.

(c) Explain the main goals of a Business Impact Assessment for management and its role in incident management.

(d) Explain the main phases of the OCTAVE method for risk assessment and the key success factors for its implementation.

Question 2:

You have just been appointed as Security Consultant, reporting directly to the Chief Executive Officer in a major bookstore which in addition to its main store also operates an interactive website where orders can be placed online by customers as well as accepting credit card payments online. Your role is to advise management on what needs to be done by the company to be compliant with section 6.6 of the Payment Card Industry Data Security Standard. Your answer should state the security requirements for section 6.6 of the PCI DSS and focus on the process and options that management need to consider in order to secure web-based applications to be compliant with section 6.6.


Related Discussions:- Explain effective incident management system

Determine about the bull-bear market risk, Bull-Bear Market Risk Thi...

Bull-Bear Market Risk This risk arises from the variability in the market returns resulting from alternating bull and bear market forces. Ø when security index rises fair

Determine the current market risk premium, Case: You are a partner in a...

Case: You are a partner in a first time PE fund. Against all chances, you have been able to raise $300M from investors. The business plan based on which you got the funds from

Risk Management project, Imagine you are the Chief Risk Officer of a newly-...

Imagine you are the Chief Risk Officer of a newly-formed bank, with a focus on corporate lending in Slovakia. The bank is largely funded by local deposits. The CEO (and so does t

Internal control systems need to be continuously monitored, QUESTION (a...

QUESTION (a) Internal control systems need to be continuously monitored. This is a process that assesses the quality of the performance of a system over time and is accomplishe

Hedging, Suppose a farmer is expecting that her crop of grapefruit will be ...

Suppose a farmer is expecting that her crop of grapefruit will be ready for harvest and sale as 150,000 pounds of grapefruit juice in 3 months time. She would like to use futures

Determine the optimal for investor, The investor has constant wealth 1 and ...

The investor has constant wealth 1 and is offered to invest in shares of a project that either gains 3/2 or loses 1 with equal probabilities. Therefore, if the investor obtains sha

Requirements to make a risk assessment useful in practice, Question: (a...

Question: (a) The site engineer of a building and civil engineering company, employing one hundred and ten employees on a five-storey building project, has decided to carry ou

Describe the term ecosystem, Question: (i). Describe the term ‘ecosyste...

Question: (i). Describe the term ‘ecosystem' (ii). What are the major ecosystems in the tropical marine environment. (iii). State and describe four main ecological/eco

Execution of a risk analysis, Question: (a) What are the various option...

Question: (a) What are the various options to mitigate risks in an Information Security Management System (ISMS)? For each option specify an instance where it can be used.

Finance question, Suppose you are running an international business and are...

Suppose you are running an international business and are concerned about converting foreign currencies (the Euro in particular) back into U.S. dollars in September. A) What po

Write Your Message!

Captcha
Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd