13 Aug Operations Security Course Project
For this project, explain how to apply the information technology security policies to a large organization, based on that organization’s type.
There are three types basic types of organizations:
· Government Facility
· Hospital/Large Clinic
· Business
Choose an organization type and consider that the basis of your scenario. Imagine you are creating information technology security policies in this scenario. You will create a short paper describing the relevant needs and issues, the recommended structure, and how security policies should be implemented. See the outline below for specific content requirements.
There is a word limit—1000-1500 words is the target. It will be difficult to fully address each topic in the outline in a short way, but keeping writing concise and organized is an important workforce skill. To keep within the target word-count range, limit yourself to 100-150 words per section of the outline. An exception is outline #6, which would require 300 or more words.
Outline of Paper, with Specific Content Requirements:
1. Identify the relevant business drivers for your chosen scenario. A business driver is something that affects whether an organization can be successful. The textbook lists things like cost and customer satisfaction. Consider especially business drivers relevant to IT security, like mitigating risk exposure, mitigating liability of the organization, etc.
2. For each of the laws in chapter 3, first identify whether the law must be applied to your scenario, and second why or why not this law is relevant. Consider especially industrial standards, like PCI DSS, No. 16 (SSAE16), and ITIL.
3. Discuss the Seven Domains of IT Responsibility and their application. Identify which domains are MOST applicable and explain why. If that domain is not very applicable, explain why not.
4. Identify what policy implementation issues may affect your scenario, such as motivation, leadership, values, whether the organization is likely hierarchical or flat, etc.
5. Every business is a little different, so for this item on the outline, review chapter 6 and select which framework aspects you would focus on for that scenario’s security policy. Identify and justify based on the scenario the appropriate type of IT security policy frameworks that should be implemented. Also include information assurance considerations—confidentiality, integrity, and availability.
6. Identify how to design, organize, implement, and maintain appropriate IT security policies. Since there are so many policies possible, choose just 4-5 policies to focus on for this section. Also include how you would organize the document of policies. For reference, see pages 182-190 for guidelines of what would be included in a policy and how it would be organized. Do not write the polices themselves—you do not have detailed information about the scenario to enable you to do that. Just briefly explain the process. Possible policies:
a.
b. Acceptable Use
c. Access Control
d. Asset Protection/Management
e. Continuity & Disaster Recovery
f. Data Classification Standard & Encryption
g. Internet Ingress/Egress Traffic
h. Mandated Security Awareness Training
i. Production Data Backup
j. Remote Access
k. Vulnerability Management & Vulnerability Window
l. Threat Assessment & Management
m. WAN Service Availability
7.
8. Identify the IT security policy framework approach you would use and why. Also include the User domain policy you would use and the most appropriate IT infrastructure security policy.
9. For a Risk Management policy and Incident Response Team (IRT) policies, identify the type of policy you would select for each and justify why.
10. Discuss the appropriate method to implement and maintain the IT security policy framework, including compliance technologies needed.
There are usually multiple ways apply the course content to your scenario. You will be graded on how well you explain and justify your choices based on the needs of your scenario.
Our website has a team of professional writers who can help you write any of your homework. They will write your papers from scratch. We also have a team of editors just to make sure all papers are of HIGH QUALITY & PLAGIARISM FREE. To make an Order you only need to click Ask A Question and we will direct you to our Order Page at WriteDemy. Then fill Our Order Form with all your assignment instructions. Select your deadline and pay for your paper. You will get it few hours before your set deadline.
Fill in all the assignment paper details that are required in the order form with the standard information being the page count, deadline, academic level and type of paper. It is advisable to have this information at hand so that you can quickly fill in the necessary information needed in the form for the essay writer to be immediately assigned to your writing project. Make payment for the custom essay order to enable us to assign a suitable writer to your order. Payments are made through Paypal on a secured billing page. Finally, sit back and relax.
About Writedemy
We are a professional paper writing website. If you have searched a question and bumped into our website just know you are in the right place to get help in your coursework. We offer HIGH QUALITY & PLAGIARISM FREE Papers.
How It Works
To make an Order you only need to click on “Order Now” and we will direct you to our Order Page. Fill Our Order Form with all your assignment instructions. Select your deadline and pay for your paper. You will get it few hours before your set deadline.
Are there Discounts?
All new clients are eligible for 20% off in their first Order. Our payment method is safe and secure.