Define the scope and boundaries for the plan

Assignment Help Risk Management
Reference no: EM13821364

Introduction:

As discussed so far in this course, risk management is an important process for all organizations. This is particularly true in information systems, which provides critical support for organizational missions. The heart of risk management is a formal risk management plan. This activity allows you to fulfill the role of an employee participating in the risk management process in a specific business situation.

Scenario:

You are an information technology (IT) intern working for the Defense Logistics Information Service (DLIS) in Battle Creek, Michigan. DLIS is an organization within the Defense Logistics Agency (DLA), which is the largest logistics combat support agency for the Department of Defense. DLIS creates, manages, and disseminates logistics information to military and government customers using the latest technology.
Senior management at DLIS decided that the existing risk management plan for the organization is out of date, and that a new risk management plan must be developed. Because of the importance of risk management to the organization, senior management is committed to and supportive of the project to develop a new plan. You have been assigned to develop this new plan.

Project Part 1

Project Part 1 Task 1: Draft Risk Management Plan

For the first part of the assigned project, you must create an initial draft of the final risk management plan.

To do so, you must:

1. Develop and provide an introduction to the plan by explaining its purpose and importance.

2. Create an outline for the completed risk management plan.

3. Define the scope and boundaries of the plan.

4. Research and summarize compliance laws and regulations that pertain to the organization.

5. Identify the key roles and responsibilities of individuals and departments within the organization as they pertain to risk management.

6. Develop a proposed schedule for the risk management planning process.

7. Create a professional report detailing the information above as an initial draft of the risk management plan.

Write an initial draft of the risk management plan as detailed in the instructions above. Your plan should be made using a standard word processor format compatible with Microsoft Word.

IS3110 Risk Management in Information Technology Security STUDENT COPY: Project © ITT Educational Services, Inc.

All Rights Reserved.

Project Part 1 Task 2: Risk Assessment Plan

After creating an initial draft of the risk management plan, the second part of the assigned project requires you to create an initial draft of the final RA plan. To do so, you must:

1. Develop an introduction to the plan explaining its purpose and importance.

2. Create an outline for the completed RA plan.

3. Define the scope and boundaries for the plan.

4. Research and summarize RA approaches.

5. Identify the key roles and responsibilities of individuals and departments within the organization as they pertain to RA.

6. Develop a proposed schedule for the RA process.

7. Create a professional report detailing the information above as an initial draft of the RA plan.

Project Part 1 Task 3: Risk Mitigation Plan

Senior management at DLIS decided that the risk manager and his/her team should continue and develop a risk mitigation plan based on inputs provided by the team in earlier project deliverables.

Management has also allocated funds for a risk mitigation plan. Because of the importance of risk management to the organization, senior management is committed to and supportive of the project to develop a new plan. You have been assigned to develop this new plan.

Project Part 2

Project Part 2 Task 1: Introduction and Business Impact Analysis Plan

As discussed so far in this course, risk management is an important process for all organization. This is particularly true for information systems, which provide critical support for organizational missions. The heart of risk management is a formal risk management plan.
This part of the project is a continuation of the Project Part 1 where you prepared RA plan and a risk mitigation plan for the DLIS. Senior management at DLIS decided that the risk manager and his/her team should continue and develop a RA plan based on inputs provided by the team in earlier project deliverables. Management has also allocated funds for a risk mitigation plan and a BIA plan. Because of the importance of risk management to the organization, senior management is committed to and supportive of the project to develop a new plan. You have been assigned to develop this new plan.

IS3110 Risk Management in Information Technology Security STUDENT COPY: Project © ITT Educational Services, Inc.

All Rights Reserved.

Project Part 2 Task 2: Business Continuity Plan

After having reviewed and being impressed by your Project Part 1 on Risk Management, the senior management at DLIS decided that your team must also develop a BCP as your team is doing so well.

Management has also allocated all funds for a BCP and your team has their full support, as well as free reign to call on any of them for participation or inclusion in your BCP plan. You have been assigned to develop this new plan after taking into consideration the following additional information on DLIS IT infrastructure.

DLIS has a global reach and at least 50 file servers and various databases (12) running everything from an enterprise resource planning (ERP) system to the organization payroll system that has an electronic funds transfer (EFT) capability. Other things worth noting are a warm site within 50 miles of the headquarters data center. No plans exist for it. You will want to use it in your BCP planning. Currently back-ups are done with an outside vendor. However your team will want to recommend a new process (vendor), and develop a new back-up plan for  approximately five terabyte (TB) of critical classified data.

Do not forget to develop a testing plan for your team's BCP.

You can refer to the following additional resources that will help you and your team to develop a BCP

Reference no: EM13821364

Questions Cloud

Academic freedom and collegiality : Academic Freedom and Collegiality
Potential drawbacks of inward investment : What is the value that CEMEX brings to the host economy? Can you see any potential drawbacks of inward investment by CEMEX in an economy?
Define potential to transform one''s political sensibilities : Identify two films not presented in class that you believe have the potential to transform one's political sensibilities pertaining to deep differences
Potential drawbacks of inward investment : What is the value that CEMEX brings to the host economy? Can you see any potential drawbacks of inward investment by CEMEX in an economy?
Define the scope and boundaries for the plan : Define the scope and boundaries for the plan. Research and summarize RA approaches. Identify the key roles and responsibilities of individuals and departments within the organization as they pertain to RA.
Determine the expected value of perfect information : Place-Plus, a real estate development firm, is considering several alternative development projects. These include building and leasing an office park, purchasing a parcel of land and building an office building to rent, buying and leasing a wareh..
How much money did metropolitan raise : On January 20, Metropolitan, Inc., sold 8 million shares of stock in an SEO. The market price of Metropolitan at the time was $42.50 per share. Of the 8 million shares sold, 5 million shares were primary shares being sold by the company, and the r..
What networking and communications changes : What networking and communications changes were introduced in the past decade (2000s), and what were their implications - what factors are involved in selecting the architecture that is right for your organization?
Explain the various steps of the project procurement process : PROJ 410:  Explain the various steps of the project procurement process.  Part 2: Using the simple decision of packing and moving your home furnishing from the east coast to the west coast, provide an example of what you would do under each of the si..

Reviews

Write a Review

Risk Management Questions & Answers

  Discuss how political risk differs from country risk

Discuss how political risk differs from country risk and in what ways political events in a foreign country can affect local financial operations of an MNC.

  Define risk profile and cumulative risk profile for strategy

Develop risk profile and cumulative risk profile for each strategy Indicate which strategy dominate the others and explain why. Indicate type of the dominance

  What is the maximum amount of money

Suppose earthquakes are predicted based on the seismic test information;i.e., an earthquake is predicted if a fault line is 1 mile or less away, and no earthquake is predicted otherwise. What is the maximum amount of money you are willing to pay f..

  Identify information assets and prioritize identified assets

Identify information assets and prioritize identified assets. Define risks and prioritize the risks. Identify the critical asset(s) and its associated risks

  Risk factors invest in international vs domnesatic company

Risk Factors invest in International vs domnesatic company-Determine the most significant risk factors associated with investing in a foreign traded company as compared with investing in a domestic company

  Risk management and hedging strategy using swaps

Risk Management and Hedging Strategy Using Swaps:Debt for Equity Swaps - Identify from the perspectives of the Japanese and Brazilian Governments what are the advantages and disadvantages of this proposal. Could this Debt for Equity Swap Work?

  What are some risks of not performing the type of test

Discuss the importance of including good comments in your code. What are some things you should avoid when including comments in code. Discuss why you should always test a program by predicting results for sample data. What are some risks of not p..

  What is meant by the risk-return trade-off

What is meant by the risk-return trade-off? What is the risk-free rate of return? From your instructor: Risk can be defined in many ways and means different things to all of us.

  Risk management plan including contingency plans

Write a draft of no more than 1,800 words of the strategic plan for your organization, including the following

  The process of developing and implementing ergonomics

Through the process of developing and implementing their ergonomics programs these persons have gained a good working knowledge of the ergonomic risk factors that are most likely to be present in their workplaces.

  1 examine the nature of risk within a firm through losses

1. examine the nature of risk within a firm through losses and opportunities with a focus on the mitigation of risk2.

  Create a risk breakdown structure

Now add one or more risk plan reviews to your risk breakdown structure. A risk review evaluates the effectiveness of the current plan and explores for possible risks not identified in earlier sessions.

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd