Develop a security policy

Assignment Help Other Subject
Reference no: EM132929123 , Length: 4000 Words

Assessment item - Develop a Security Policy

TASK

Read the DR Alarms case study document before attempting this assignment.

You are an ICT Security and Risk consultant and you have been approached by DR Alarms to help them recover from a cyber-attack. You have successfully isolated the machines affected by the attack and brought the company's system back into operation.

You have now completed a risk assessment for DR Alarms, and in your discussions with the Managing Director (MD) have indicated that they need a policy to protect their data and their Intellectual Property (IP) around their ICS and IoT monitoring systems. The MD has indicated that he thinks this is "being a bit excessive" and will "cost more than it's worth".

The company is the in process of developing some new IoT monitoring systems that have attracted considerable interest from some major industrial companies in Australia and overseas. The Engineering Manager is concerned about the designs for these new devices being stolen or hacked, but the MD still thinks that the company is too small to attract that sort of attention. However, one of the government organisations that intends to purchase the new IoT devices has asked the Engineering Manager to describe their level of cyber security maturity.

The DR Alarms MD is still not entirely convinced that this is necessary, but wants you to develop a proposal for some security policies, just in case they win a government contract.

Tasks:

You have been contracted by DR Alarms to discuss and propose security policies to protect their data and resources in view of their existing risk assessment.

1. Write a proposal for DR alarms that discusses:
a. The need for security policies at DR Alarms. The discussion should include how these policies (as outlined in Q1b.) will enhance DR Alarms security and help to raise their level of cyber security maturity,
b. Outline the following security policies:
1. A security policy that would act to preserve the Confidentiality,
Integrity and Availability of their data,
2. A security policy that would act to protect their data centre resources, and
3. A security policy that would act to educate DR Alarms staff in how they can protect the company's data and resources.
As part of the outline for each security policy your proposal should discuss:
a. The intent and rationale and scope of the policy,
b. The mandatory requirements for the rules or actions that you think are reasonable to place into this policy to meet its intent and rationale,
c. Any exemptions that you think are reasonable to place into this policy to meet its intent and rationale.
The reference list is not counted as part of the word count.

RATIONALE
This assessment task will assess the following learning outcome/s:
• be able to justify the goals and various key terms used in risk management and assess
IT risk in business terms.
• be able to apply both quantitative and qualitative risk management approaches and to compare and contrast the advantages of each approach.
• be able to critically analyse the various approaches for mitigating security risk, including when to use insurance to transfer IT risk.

PRESENTATION
When submitting your assignment be sure to meet the following presentation requirements:
• Assignments are required to be submitted in either Word format (.doc, or .docx), Open
Office format (.odf), or Rich Text File format (.rtf) format. Each assignment must be submitted as a single document.
• Assignments should be typed using a 12 point font.
• This assignment should be referenced using the APA 7th format.
• The reference list is not counted as part of the word count.

Word Count: 4000 words

Reference no: EM132929123

Questions Cloud

What the weight of ball corporation in portfolio is : What the weight of Ball Corporation in your portfolio is? uppose you invest $15,000 by purchasing 200 shares of Abbott Labs (ABT)
Constitution and court system : How does the Constitution grant authority to the government to regulate business? What is the system of federalism?
Find what the total value of the portfolio is : Find what the total Value of the portfolio is? You have $100,000 invested in Stock A, $250,000 in Stock B, and $150,000 invested in Stock C.
What is the company total cost of issuing the securities : The company's share price increased to $83 on the first day. What is the company's total cost of issuing the securities
Develop a security policy : Discussion should include how these policies (as outlined in Q1b.) will enhance DR Alarms security and help to raise their level of cyber security maturity
Internalize the persuasive nature of management : 1.internalize the persuasive nature of management and relate it to the social groups and the neighboring pillars
Describe the performance independence : 1.help analyze the strict limit allocation operations by the ministry to the exchequer management reinforcement
What share price would expect based on estimate : If Coca-Cola's equity cost of capital is 8%, what share price would you expect based on your estimate of the dividend growth rate?
How would you advise John to improve his approach : But when profits are low, he spends many hours analyzing the differences. How would you advise John to improve his approach to variance analysis

Reviews

Write a Review

Other Subject Questions & Answers

  Cross-cultural opportunities and conflicts in canada

Short Paper on Cross-cultural Opportunities and Conflicts in Canada.

  Sociology theory questions

Sociology are very fundamental in nature. Role strain and role constraint speak about the duties and responsibilities of the roles of people in society or in a group. A short theory about Darwin and Moths is also answered.

  A book review on unfaithful angels

This review will help the reader understand the social work profession through different concepts giving the glimpse of why the social work profession might have drifted away from its original purpose of serving the poor.

  Disorder paper: schizophrenia

Schizophrenia does not really have just one single cause. It is a possibility that this disorder could be inherited but not all doctors are sure.

  Individual assignment: two models handout and rubric

Individual Assignment : Two Models Handout and Rubric,    This paper will allow you to understand and evaluate two vastly different organizational models and to effectively communicate their differences.

  Developing strategic intent for toyota

The following report includes the description about the organization, its strategies, industry analysis in which it operates and its position in the industry.

  Gasoline powered passenger vehicles

In this study, we examine how gasoline price volatility and income of the consumers impacts consumer's demand for gasoline.

  An aspect of poverty in canada

Economics thesis undergrad 4th year paper to write. it should be about 22 pages in length, literature review, economic analysis and then data or cost benefit analysis.

  Ngn customer satisfaction qos indicator for 3g services

The paper aims to highlight the global trends in countries and regions where 3G has already been introduced and propose an implementation plan to the telecom operators of developing countries.

  Prepare a power point presentation

Prepare the power point presentation for the case: Santa Fe Independent School District

  Information literacy is important in this environment

Information literacy is critically important in this contemporary environment

  Associative property of multiplication

Write a definition for associative property of multiplication.

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd