Challenges of enforcing information security policies

Assignment Help Management Information Sys
Reference no: EM131073452

Information security policies are the core internal guidance for an organization and must be enacted prior to the purchase of information security controls. There is a bit of a "chicken and egg" dispute in the information security community as to whether it is appropriate to first engage in risk assessment with policies created to address those findings or whether it is appropriate to first create policies against which a risk assessment can be performed. On a more granular level, security policy is meant to document what is important to a particular organization related to information technology assets, including data. This sequential order is critical to the success of an information security program because a successful program ensures that organizations do not spend too little or too much money when purchasing controls to enforce these policy decisions. For example, it is possible to purchase a certificate that uses DNA as the key to enforce an access control policy, but there are very few situations where that would be an appropriate or balanced choice.

You are a new information security officer for Metro City Community College. Metro City has a small urban campus in downtown Detroit and also offers their catalog of courses online. One of the first tasks you are assigned is to create the information security policies that will guide all subsequent security projects that you propose.

Use the study materials and engage in any additional research needed to fill in knowledge gaps. Write a 2-3 page paper that covers the following:

Describe the overall objectives of creating information security policy for this institution.

Analyze the benefits and challenges of enforcing information security policies within government agencies and organizations.

Evaluate how creation and enforcement of information security policies can impact customers and business partners that have a relationship with a government agency or organization.

Assignment Requirements

Written communication: Written communication is free of errors that detract from the overall message.

APA formatting: Resources and citations are formatted according to APA (6th edition) style and formatting.

Length of paper: 2-3 pages, excluding the references page.

Font and font size: Times New Roman, 12 point.

Reference no: EM131073452

Questions Cloud

Find the wacc of verizon : Verizon Co has 4 million shares of common stock selling at $45 each. It has $70 million (face value) of bonds, coupon 6%, maturing in 5 years, and selling at 90. Find the WACC of Verizon
What is their yield to call : Sadik Inc.'s bonds currently sell for $1,270 and have a par value of $1,000. They pay a $105 annual coupon and have a 15-year maturity, but they can be called in 5 years at $1,100. What is their yield to call (YTC)?
Calculate the magnitude(s) of applied stress(es) : calculate the magnitude(s) of applied stress(es) necessary to cause slip to occur on the (111) plane in each of the [110], [101] and [011] directions.d paste your question here...
Nursing home health care leadership : Which organization is responsible for addressing the issues presented? Who is ultimately responsible for rectifying not only the situation that occurred, but the system in which it occurred? How is that organization governed?
Challenges of enforcing information security policies : Describe the overall objectives of creating information security policy for this institution. Analyze the benefits and challenges of enforcing information security policies within government agencies and organizations.
Determine the force that needs to be applied : determine the force that needs to be applied on the plate to maintain this motion.
Otto maddick machine tool company produces two products : The Otto Maddick Machine Tool Company produces two products, muffler bearings and torque amplifiers. One muffler bearing requires 0.125 hr. of assembly labor, 0.25 hrs. in the stamping department and 9 square feet of sheet metal.
Identify one substantive audit procedure : Identify one substantive audit procedure for each of the account balances above that will provide sufficient appropriate audit evidence regarding the accuracy of that account balance
Determine and list all the things that went incorrect : 1. Determine and list all the things that went incorrect on Larry's first day. 2. The moment selecting an employee to do training, how much does seniority factor in on for you to decide, and why?

Reviews

Write a Review

Management Information Sys Questions & Answers

  Important goals and considerations of information security

Why are information security and privacy important considerations in the design, development, and maintenance of HRIS. What are the important goals and considerations of information security

  Applying information security and sdlc to business

Applying Information Security and SDLC to Business

  Selection process of an erp solutionduring the selection

selection process of an erp solutionduring the selection process of an erp solution like oracle or sap who are normally

  Cost benefits analysis for new systemsassume that the

cost benefits analysis for new systemsassume that the benefits of a new system were to decrease the average amount of

  Supply chain management questiondetails canbide managers

supply chain management questiondetails canbide managers and directors came up with some topics that you are required

  Medical information technologyhow should i prepare my

medical information technologyhow should i prepare my health care organization for the future of medical information

  Write about the example of it leveraging business advantage

Write a research report on actual example of IT leveraging business advantage at a managerial level. Your report will be judged on the quality of your research and report presentation.

  What is the role of a chief security officer

What benefits are associated with centralized governance of IT resources, and how do these differ from those associated with decentralized governance?

  Transnational and multinational organizationsit is

transnational and multinational organizationsit is important that there be clarity in the use of terms used to describe

  Cincinnati flow technology

Cincinnati Flow Technology: Relevant Costs and Benefit - Were the analysis prepared by Cincinnati Flow Technology's engineering, manufacturing, and accounting departments and their recommendation to continue purchasing the pumps correct?

  Impact of new technology on customers - end users or

impact of new technology on customers - end users or outside customers. must be about a specific technology for a

  What does the position of enterprise architect entail

What does the position of enterprise architect entail. What qualifications or experiences would you think a good enterprise architect should have. Support your answer with examples from the case.

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd