Challenges of enforcing information security policies

Assignment Help Computer Network Security
Reference no: EM131510350

Part A -

Throughout the course, you have researched information security legal and regulatory frameworks from international, national, state, and local laws. You have also researched the role of standards bodies and policies in the work of creating an information legal and regulatory framework.

Select a multinational company located in the United States that does business overseas.

Use the study materials and engage in any additional research needed to fill in knowledge gaps. Analyze cybersecurity laws that will impact this organization based on business locations. Research information security legal and regulatory frameworks from international, national, state, and local laws that effect this business and the role of standards bodies and policies in the work of creating an information legal and regulatory framework.

Key concepts to be covered in this essay:

  • Analyze cybersecurity laws that will impact this organization based on the type of organization (for example, public, private, government, or nonprofit).
  • Analyze cybersecurity laws that will impact this organization based on the industry standards and norms.
  • Recommend a strategy to ensure that this organization is in compliance with all relevant cybersecurity laws.

Assignment Requirements

  • Written communication: Written communication is free of errors that detract from the overall message.
  • APA formatting: Resources and citations are formatted according to APA (6th edition) style and formatting.
  • Length of paper: 4-5 pages, excluding the references page.
  • Font and font size: Times New Roman, 12 point.

Part B -

Information security policies are the core internal guidance for an organization and must be enacted prior to the purchase of information security controls. There is a bit of a "chicken and egg" dispute in the information security community as to whether it is appropriate to first engage in risk assessment with policies created to address those findings or whether it is appropriate to first create policies against which a risk assessment can be performed. On a more granular level, security policy is meant to document what is important to a particular organization related to information technology assets, including data. This sequential order is critical to the success of an information security program because a successful program ensures that organizations do not spend too little or too much money when purchasing controls to enforce these policy decisions. For example, it is possible to purchase a certificate that uses DNA as the key to enforce an access control policy, but there are very few situations where that would be an appropriate or balanced choice.

You are a new information security officer for Metro City Community College. Metro City has a small urban campus in downtown Detroit and also offers their catalog of courses online. One of the first tasks you are assigned is to create the information security policies that will guide all subsequent security projects that you propose.

Use the study materials and engage in any additional research needed to fill in knowledge gaps. Describe the overall objectives of creating information security policy for this institution. This essay needs to:

  • Analyze the benefits and challenges of enforcing information security policies within government agencies and organizations.
  • Evaluate how creation and enforcement of information security policies can impact customers and business partners that have a relationship with a government agency or organization.

Assignment Requirements

  • Written communication: Written communication is free of errors that detract from the overall message.
  • APA formatting: Resources and citations are formatted according to APA (6th edition) style and formatting.
  • Length of paper: 4-5 pages, excluding the references page.
  • Font and font size: Times New Roman, 12 point.

Reference no: EM131510350

Questions Cloud

Identify the business problems of each of the cases : Identify the business problems of each of the cases .Rank-order the critical issues stated in the cases.Evaluate the proposed solutions.
Examine the most significant benefits of radius : Suppose you are a Systems Administrator, and you have been tasked with implementing RADIUS to support authentication, authorization.
Explain what legal argument could raised in letishas defense : what legal arguments could be raised in Letisha's defense against the enforcement of the automatic renewal clause? Explain.
Analyse the impact of the environmental factors : Analyse the impact of the environmental factors.Evaluate the level of competition within the industry in which Tassaloperates.
Challenges of enforcing information security policies : Analyze the benefits and challenges of enforcing information security policies within government agencies and organizations
What challenge or opportunities might organization recognize : What challenges or opportunities might an organization recognize with regard to the government and corrupt practices in the region?
What we learned about each here in the materials and course : A newspaper columnist signs a contract with a newspaper chain. Several months later she is offered a position with another newspaper chain at a higher salary.
Operational budget for krona community hospital : As a member of the finance team, you have been asked to forecast the upcoming year's operational budget for Krona Community Hospital.
Examine manner in which apples supplier code of conduct help : Examine the manner in which Apple's Supplier Code of Conduct helps the organization operate as a socially responsible organization.

Reviews

Write a Review

Computer Network Security Questions & Answers

  An overview of wireless lan security - term paper

Computer Science or Information Technology deals with Wireless LAN Security. Wireless LAN Security is gaining importance in the recent times. This report talks about how vulnerable are wireless LAN networks without any security measures and also talk..

  Computer networks and security against hackers

This case study about a company named Magna International, a Canada based global supplier of automotive components, modules and systems. Along with the company analysis have been made in this assignment.

  New attack models

The Internet evolution is and is very fast and the Internet exposes the connected computers to attacks and the subsequent losses are in rise.

  Islamic Calligraphy

Islamic calligraphy or Arabic calligraphy is a primary form of art for Islamic visual expression and creativity.

  A comprehensive study about web-based email implementation

Conduct a comprehensive study about web-based email implementation in gmail. Optionally, you may use sniffer like wireshark or your choice to analyze the communication traffic.

  Retention policy and litigation hold notices

The purpose of this project is to provide you with an opportunity to create a document retention policy. You will also learn how to serve a litigation hold notice for an educational institute.

  Tools to enhance password protection

A report on Tools to enhance Password Protection.

  Analyse security procedures

Analyse security procedures

  Write a report on denial of service

Write a report on DENIAL OF SERVICE (DoS).

  Phising email

Phising email It is multipart, what are the two parts? The HTML part, is it inviting the recepient to click somewhere? What is the email proporting to do when the link is clicked?

  Express the shannon-hartley capacity theorem

Express the Shannon-Hartley capacity theorem in terms of where is the Energy/bit and is the psd of white noise.

  Modern symmetric encryption schemes

Pseudo-random generators, pseudo-random functions and pseudo-random permutations

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd