Describe the process of performing a risk assessment

Assignment Help Management Information Sys
Reference no: EM131262567

• Assignment: Organizational Risk Appetite and Risk Assessment

Imagine that a software development company has just appointed you to lead a risk assessment project. The Chief Information Officer (CIO) of the organization has seen reports of malicious activity on the rise and has become extremely concerned with the protection of the intellectual property and highly sensitive data maintained by your organization. The CIO has asked you to prepare a short document before your team begins working. She would like for you to provide an overview of what the term "risk appetite" means and a suggested process for determining the risk appetite for the company. Also, she would like for you to provide some information about the method(s) you intend to use in performing a risk assessment.

Write a two to three (2-3) page paper in which you:

1. Analyze the term "risk appetite". Then, suggest at least one (1) practical example in which it applies.

2. Recommend the key method(s) for determining the risk appetite of the company.

3. Describe the process of performing a risk assessment.

4. Elaborate on the approach you will use when performing the risk assessment.

5. Use at least three (3) quality resources in this assignment. Note: Wikipedia and similar Websites do not qualify as quality resources.
Your assignment must follow these formatting requirements:

o Be typed, double spaced, using Times New Roman font (size 12), with one-inch margins on all sides; citations and references must follow APA or school-specific format. Check with your professor for any additional instructions.

o Include a cover page containing the title of the assignment, the student's name, the professor's name, the course title, and the date. The cover page and the reference page are not included in the required assignment page length.

The specific course learning outcomes associated with this assignment are:

o Describe the components and basic requirements for creating an audit plan to support business and system considerations.

o Describe the parameters required to conduct and report on IT infrastructure audit for organizational compliance.

o Use technology and information resources to research issues in security strategy and policy formation.

o Write clearly and concisely about topics related to information technology audit and control using proper writing mechanics and technical style conventions.

Reference no: EM131262567

Questions Cloud

Determinants of performance-declarative knowledge : Briefly describe the three determinants of performance-declarative knowledge, procedural knowledge, and motivation-and based on the information provided, give examples of each for both Maria and Brian.
Apply the cascade algorithm to the dilation equation : Apply the cascade algorithm to the dilation equation for D4(t). After a few iterations, choose six values for t on the interval (0, 3]. Test the dilation equation for those values to see if the equation is satisfied, or, if not, how close it is to..
Microsoft word-individual assignments it innovation : Tidd & Bessant (2013) point to how radical innovation is associated with high levels of uncertainty. Your task is to both discuss the challenges that organizational members that champion a radical innovation may face in their organization, and pro..
Discuss the product development process at kodak : What kind of new product was EasyShare 1?  -  Discuss the product development process at Kodak. -  Place Kodak's digital cameras in the product life cycle.
Describe the process of performing a risk assessment : Describe the components and basic requirements for creating an audit plan to support business and system considerations. Describe the parameters required to conduct and report on IT infrastructure audit for organizational compliance. Use technology a..
Did the police have probable cause to arrest ayers : Did the police have probable cause to arrest Ayers? If they did have probable cause, should they have conducted the arrest?
Drawing on the material in the background readings : Does the paper fully address all Keys to the Assignment? Are the concepts behind the Keys to the Assignment addressed accurately and precisely using sound logic? Does the paper meet minimum length requirements?
Responsible for detecting fraud within an organisation : Who is responsible for detecting fraud within an organisation? What is the auditor’s responsibility? What should they do to meet their responsibility? Give specific examples.
Balance of the sales account in the general ledger : Freya started her business on 1 September. During September she made cash sales of $6,400 and issued credit sales invoices for $10,200 of which $8,600 had been paid. What would be the balance of the sales account in the general ledger at the end of S..

Reviews

Write a Review

Management Information Sys Questions & Answers

  Explain the purpose of a university security policy

Explain the purpose of a university security policy and indicate the major reasons why they are necessary. Provide your opinion as to whether a university security policy is more or less important to have than a business security policy

  Selecting appropriate softwareerp systems are complicated

selecting appropriate softwareerp systems are complicated and the executive wants the warehouse manager to join the

  Explain which strategies they could use

Strategies that competitors can use with a computer company using a proprietary operating system - Explain which strategies they could use, and explain why.

  Internet relating to the idea of a mcjob

What information can you find on the internet relating to the idea of a McJob and List two web sources that you find and say why you found these to be the most interesting/helpful in terms of understanding the concept (and answering Question 1) an..

  Explain the risks that businesses get exposed

CIS 560 - Determine whether employees should be allowed to bring personal wireless devices (such as the Apple iPad or the Motorola Xoom) to the workplace and access the Internet via the company's network to conduct business functions.

  Describe difference between bosu product and indorow product

Describe major differences between the Bosu product and the Indo-Row product. Consider product use, product price, customer resistance, competition, competitive threats, and other factors related to market acceptance.

  Procedures encourages fraudulent behavior

What about this organization's operating procedures encourages fraudulent behavior

  Description of the information systems type and its benefits

For each information systems type identified in the table, include the following in the appropriate columns: A description of the information systems type and its benefits

  Assignment on automated teller machine

Assignment on Automated Teller Machine

  Clarify the major role each department plays with is

Clarify the major role each department plays with IS. Explain the importance of information systems management

  What are consequences of someone entering an incorrect rule

What are the consequences of someone entering an incorrect rule? Offer both mundane and drastic examples. Considering your answer to part b, if you managed the reservation system at THL.

  Important information about enterprise resource

important information about enterprise resource planningreview the hartman industries llc web page by following the

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd