Develop a plan to deploy public key infrastructure

Assignment Help Management Information Sys
Reference no: EM133714035

Assignment: PKI & Encryption at Work

Learning Objectives and Outcomes

Develop a plan to deploy public key infrastructure (PKI) and encryption solutions to protect data and information.

Task

In this assignment, you play the role of chief information technology (IT) security officer for the Quality Medical Company (QMC). QMC is a publicly traded company operating in the pharmaceutical industry.

QMC is expanding its arena of work through an increase in the number of clients and products. The senior management of the company is highly concerned about complying with the multitude of legislative and regulatory laws and issues in place. The company has an internal compliance and risk management team to take care of all compliance-related issues. The company needs to make important decisions about the bulk of resources it will need to meet the voluminous compliance requirements arising from the multidimensional challenge of expansion.

QMC will be required to conform to the following compliance issues:

1) Public company regulations, such as the Sarbanes-Oxley (SOX) Act

2) Regulations affecting financial companies, companies that make loans and charge interest, such as the U.S. Securities and Exchange Commission (SEC) rules and Gramm-Leach-Bliley Act (GLBA)

3) Regulations affecting healthcare privacy information, such as Health Insurance Portability and Accountability Act (HIPAA)

4) Intellectual Property Law is important for information asset protection, particularly for organizations in the pharmaceutical and technology industry.

5) Regulations affecting the privacy of information, including personal identification information, such as personally identifiable information (PII) regularly collected from employees, customers, and end-users

6) Corporate governance policies, including disclosures to the board of directors and the auditors and the policies related to human resources, governance, harassment, code of conduct, and ethics.

Compliance with regulatory requirements implies encrypting sensitive data at rest (DAR) and allowing access to role-holders in the enterprise who require access. It also implies that sensitive data in motion (DIM) or data being communicated via e-mail, instant message (IM), or even Web e-mail must be suitably protected and sent only to the individuals who have a right to view it. The company is conscious of the loss it may face in terms of penalty and brand damage if it fails to abide by the compliance laws, especially in the online information transfer phase. Therefore, as a dedicated employee, your task is to develop a content monitoring strategy using PKI as a potential solution. You must determine a process or method to identify multiple data types, processes, and organizational policies. Incorporate them into a plan, and select a PKI solution that will effectively address the content management needs of your company.

Reference no: EM133714035

Questions Cloud

What was attempted was passed with the social security act : Ultimately, some of what was attempted was passed with the Social Security Act, Medicare, Medicaid, CHIPs, and a host of other programs.
List and justify particular applications and protocols : Mock-up a simplified data classification plan. List and justify particular applications and protocols that should be allowed on the WLAN.
What models mean to the student in their leadership journey : This assignment is meant to compare and contrast the models and reflect on what these models mean to the student in their leadership journey.
Which a vpn is a better remote access solution than radius : Identify a situation in which RADIUS is better remote access solution than VPN. Identify situation in which VPN is a better remote access solution than RADIUS.
Develop a plan to deploy public key infrastructure : Develop a plan to deploy public key infrastructure (PKI) and encryption solutions to protect data and information.
How do integrate forgiveness-reconciliation into our lives : How do we integrate forgiveness and reconciliation into our lives? Provide at least 3 practical examples of what this might look like.
Identify five sub-cultures : The church planting strategy should be (1) adaptable, (2) identify the sub-cultural audience(s) the potential planter is attempting to reach.
Evaluate and apply current trends concerning online help : Evaluate and apply current trends concerning online help and tools for creating it. write and design a software tutorial, procedure, or reference guide
How does she define sin and particularly social sin : Essay, with a thesis statement on Suffering and Salvation in Ciudad Juarez, by Nancy Pineda-Madrid: How does she define sin and particularly social sin?

Reviews

Write a Review

Management Information Sys Questions & Answers

  What does having the unusual traffic going to mongolia add

What does having the unusual traffic going to Mongolia add to the complexity of resolving any potential incidents involving theft of intellectual property?

  Purchasing of computing systems in an organization

Discuss at least five factors that might influence purchasing of computing systems in an organization, and state why those factors may not apply to all types

  Provides a visual of the different components involved

As a consultant for an IT company, your retail client is having trouble envisioning components of their proposed cloud environment.

  Describe the key components of a data communication system

Describe the key components of a data communication system and Next, discuss the overall manner in which a company uses data communication in order to reduce its operations cost

  Where does the responsibility of is security typically lie

Where does the responsibility of IS security typically lie, and what are some of the ways corporate governance affects this responsibility?

  Compare and contrast a context diagram

Context Diagram vs. Case Diagram - use case diagramand Compare and contrast a context diagram

  Why is an erp system important to your organisation

Discuss how information technology plays a role in the competitive environment of your organisation. How do you describe the competition to attract and retain clients/customers for your organisation? How do you describe the threat of substitute in..

  Discuss about the applications of augmented reality

Augmented Reality tecimologies are being developed and pushed by those tech giants such as Microsoft and Faccbook.

  Supply chain management issueswe are developing a program

supply chain management issueswe are developing a program for a group experience supply chain managers and have drafted

  Write a summary of the case study that is about one page

Write a summary of the case study that is about one page. Research and describe at least 3 technologies that could be used to support or enhance the business in the case study.

  What is the lowest education level

What is the lowest education level an individual can have and still obtain an average yearly income ($50,000)

  What is at risk of happening

Description of the RISK (What is the risk? What is at risk of happening?) (This identifies the nature of the risk itself, not the task.)

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd