Reference no: EM133751339
Promote Workplace Cyber Security
ASSESSMENT 1
Please discuss risks associated with workplace cyber security.
Describe strategies and techniques for promoting workplace cyber security.
Describe some techniques that you can incorporate for implementing and promoting workplace cyber security awareness in your organization as a cyber security manager.
What could be some techniques as a cyber security professional, that you can adopt to convince and advocate your management about facilitating training that promotes cyber security awareness, including the use of simulated activities.
Mention the Australian government sources of information on current threats associated with cyber security.
Please develop general organisational policies and procedures relating to following, that can be utilized by a small to medium sized business in Australia.
securely storing, sharing, and managing information
encryption, and protocols for its uses
data classification and management
media/document labelling
data governance
acceptable use
bring your own device.
What are the legislative requirements in Australia for data protection? How do they apply on Government and non-Government sectors?
What are the implications of Notifiable Data Breach legislation on an organization in Australia? And what are other associated Australian privacy laws?
What kind of international legislation is there that apply to organizations and businesses with cyber security?
What is PCI DSS and how it applies to Australian Businesses?
ASSESSMENT 2
Task - 1 Develop cyber security awareness in work area.
During this task you are to develop cybersecurity awareness in Ford College. Use the scenario of Ford College provided with the Assessment Tool.
Task 1A
Prepare a set of questions for employees of an organization to understand their awareness about cybersecurity at workplace. There should be at least 10 questions including open ended and closed questions.
Take the survey with a group of 5 students in your class. Provide your analysis of the awareness of students your surveyed.
Task 1B
You are required to create cyber security awareness program that reflects organization- wide best practice. You are required to discuss risks and threats on following practices in your program:
A. Email handling and security requirements
B. Password policy
C. Physical security of the premises
D. Security of online documents
Assign a version control to your document and suggest the next review date. Also, add peer review records in your document control.
Task 1C
Please develop cyber security policies and procedures on following, and communicate to your trainer as your manager, and obtain their approval on the policy.
A. Email handling and security requirements
B. Password policy
C. Physical security of the premises
D. Security of online documents
E. Device Security
F. Mobile Security
G. Secure Wi-Fi and Network Connectivity
H. Use of Anti-Virus, Anti-Spam and Anti-Malware software
ASSESSMENT 3
Please prepare an information page and brief training program (perhaps a presentation) to develop awareness, policies, and procedures about following:
How to use Multifactor Authentication (MFA)
Be wary of Business Email Compromise (BEC) and CEO attacks.
Prepare a 6-question quiz to test the knowledge of your students after the training.
Once you have developed the training material, make a group of a total of five students.
In a group round-table style discussion with a student group of five, you will present your cyber security program and policies and procedures. Other students in your group will also present their training which will allow you to collaborate as a team and to gain further insights into cyber security awareness.
Take notes so you can complete Section 2 Project Portfolio after the meeting.
Each person will have a turn (approximately 15 minutes per person) to present:
Their cyber security program promotes awareness and best practices.
The latest cyber security threats and trends and that impact businesses.
Their policy and procedures that addresses cyber security awareness and practices.
Changes you have made to your own behavior based on your learnings.
Your assessor will be looking to see that you can:
demonstrate effective communication skills including:
Speaking clearly and concisely
Using non-verbal communication to assist with understanding.
Asking questions to identify the required information.
Responding to questions as required.
Using active listening techniques to confirm understanding.
Once each person has presented their program and policy and procedures, as a group you are to discuss:
Any gaps that you still think there are in your awareness about cyber security awareness and practices and the impact these gaps might have on a workplace.
Feedback regarding the program that each of you delivered (each person must be provided with feedback).
Improvements that should be made to cyber security practices based on your learnings from your own research and analysis as well as others' programs.
You will record the discussion above in your portfolio.
This can either be viewed in person by your assessor or you may like to video record the session for your assessor to watch later. Your assessor can provide you with more details at this step. Make sure you follow the instructions above and meet the timeframes allocated.
Task 2
Based on your training session delivery, present a report that will cover all activities you have performed and include the material you have developed. Please include your observation of how the training will impact on the participants from the perspective of their practices at their workforce. Will they be better informed and aware of dealing with any relevant threats and risks after your training?
Task 3 Review cyber security awareness in work area
Task 3A
Please perform your research on contemporary cyber security threats and trends impacting organizations.
Task 3B
Document outcomes of your review and provide a set of recommendations to your superior (your trainer for purpose of this exercise) for improvements for consideration in current cyber security policies and procedures.
Task 3C
Prepare a report to communicate your review outcomes and cyber security improvement requirements according to organizational policies and procedures.