Describe the overall objectives of creating security policy

Assignment Help Management Information Sys
Reference no: EM132099906 , Length: 2

The Role of Information Security Policy

Information security policies are the core internal guidance for an organization and must be enacted prior to the purchase of information security controls.

There is a bit of a "chicken and egg" dispute in the information security community as to whether it is appropriate to first engage in risk assessment with policies created to address those findings or whether it is appropriate to first create policies against which a risk assessment can be performed.

On a more granular level, security policy is meant to document what is important to a particular organization related to information technology assets, including data.

This sequential order is critical to the success of an information security program because a successful program ensures that organizations do not spend too little or too much money when purchasing controls to enforce these policy decisions.

For example, it is possible to purchase a certificate that uses DNA as the key to enforce an access control policy, but there are very few situations where that would be an appropriate or balanced choice.

You are a new information security officer for Metro City Community College. Metro City has a small urban campus in downtown Detroit and also offers their catalog of courses online. One of the first tasks you are assigned is to create the information security policies that will guide all subsequent security projects that you propose.

Use the study materials and engage in any additional research needed to fill in knowledge gaps. Write a 2-3 page paper that covers the following:

Describe the overall objectives of creating information security policy for this institution.

Analyze the benefits and challenges of enforcing information security policies within government agencies and organizations.

Evaluate how creation and enforcement of information security policies can impact customers and business partners that have a relationship with a government agency or organization.

Assignment Requirements

Written communication: Written communication is free of errors that detract from the overall message.

APA formatting: Resources and citations are formatted according to APA (6th edition) style and formatting.

Length of paper: 2-3 pages, excluding the references page.

Font and font size: Times New Roman, 12 point.

Reference no: EM132099906

Questions Cloud

Explain your personal characteristics and traits : In this paper you will explain your personal characteristics and traits, elaborate on how they have helped you in life.
What are two structures or anatomical features : What are two structures or anatomical features that could be found in each of the following sites relative to the ribs: superior, inferior
Please help me understand how does homeostasis : Please help me understand how does homeostasis and the control systems apply to the thirst sensation dehydration as a negative or positive control system?
Name the three different types of bone cells : Name the three different types of bone cells and give their functions.
Describe the overall objectives of creating security policy : Analyze the benefits and challenges of enforcing information security policies within government agencies and organizations.
In terms of pricing regarding software packages : In terms of pricing regarding software packages, what are the two factors that determine price?
Identify the roles and responsibilities that are appropriate : Describe the steps to choosing the appropriate security policy selection and organization that an organization will implement.
What is meant by logical requirements : Provide three positive aspects of retaining an outside consultant and three negatives. What is meant by logical requirements?
Identify at least one scripture or passage central : Identify at least one Scripture or passage central to the foundation of your Christian worldview.

Reviews

Write a Review

Management Information Sys Questions & Answers

  What roles can computerized maintenance management systems

How can a manager evaluate the effectiveness of the maintenance function? -  How does machine design contribute to either increasing or alleviating the maintenance problem?

  Discuss about the business continuity planning

Write a report focusing on the advantages and disadvantages of Business Continuity Planning in a financial organization under the Incident Command System

  Discuss in scholarly detail concepts behind differentiation

Discuss in scholarly detail concepts behind differentiation and evaluate a business's differentiation opportunities using skills, resources and organizational requirements.

  What are the goals of your policy

What do you think is the best course for health policy to follow in the future?What are the goals of your policy?

  Prepare a complete risk mitigation and management plan

Prepare a complete Risk Mitigation and Management Plan (RMMM) for his/her projects including a Task Network which clearly shows the tasks and dependencies in a diagrammatic form.

  Provide a narrative describing your diagram

Using Microsoft Visio or an open source alternative such as Dia, create a domain model class diagram for the RMO CSMS marketing subsystem.

  Discuss about the emerging enterprise network applications

Write a brief synthesis and summary of the two articles. How are the topics of the two articles related?

  Implement a successful behavioral change

Implement a Successful Behavioral Change - what are the keys to implementing successful behavioral change

  Customer relationship management

Customer Relationship Management

  Identify the means of hacking web browsers

Identify the means of hacking Web browsers. Summarize the manner in which database servers and applications are compromised and examine the steps that can be taken to mitigate such risks (e.g., SQL injection).

  Problems with electronic orders and vendors

Problems that May Occur With Electronic Orders and Vendors - Show the potential problems that may occur when a company uses electronic order placement with a vendor or vendors.

  How a standard such as the ois model assists networks

The developers of the OSI model envisioned a detailed specification of interfaces. Instead, it has become a common reference model that is used by developers to standardize interfaces. Give your opinion on what you believe would happen to networks..

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd