Develop an it risk assessment opinion

Assignment Help Management Information Sys
Reference no: EM13919859 , Length: 22 Pages

An IT Risk Assessment Case Study in support of a significant technology decision that is to be taken by a fictional company called Aztek that operates in the Australian Financial Services sector.

Senior executives in both business and technology divisions within Aztec have collected a portfolio of projects from their respective strategists that could be potentially funded for deployment. The portfolio includes projects such as
Allowing employees to bring their own devices (laptops, tablets and mobile phones for example) into the workplace to be used as their main or sole devices in achieving their work tasks

Migrating business-critical applications and their associated data sources to an external Cloud hosting solution 

Outsourcing key IT functionality such as the network, desktop management or application development to a third party

Upgrading or introducing a major technology such as mobile platforms and applications, migrating to an improved networking technology (such as IPv6), creating a corporate-wide email archive for compliance purposes, or upgrading applications and desktop operating systems.
Each of these potential projects carries significant IT risks which will need to be managed to support the business case as to whether the project should go forward. In this case study you are the IT Risk Assessment lead at Aztek, and your role is to be the interface between business stakeholders and technologists, translating potential technical difficulties into risk language to facilitate effective decision-making by stakeholders.

For the Aztek case study you will need to select one of the projects from the list above for a thorough IT Risk Assessment. You may select another project beyond those listed above with the approval of the subject coordinator, and you may wish to select a project that is relevant to your workplace for example. 

IT Risk Assessment report, written for the intended audience of Aztek management providing a risk assessment of the project you have selected to consider. 

Your report must be a Microsoft Word document, 15 - 25 pages in length at 12 point font and single spacing. The report must address the following criteria:

An Executive Summary at the beginning of the report which provides a clear statement of the IT technology project that is being assessed, and an overview of your recommendations to Aztek management as to the merits of the project based on your risk assessment (2 - 3 pages in length).

A review of the project with respect to the Financial Services sector, which would include any relevant government or industry regulation or compliance, and any established best practices (2 - 3 pages in length).

A review of the project impact on the current security posture of Aztec, as expressed by its current maturity against IT Security policies and procedures (3 - 5 pages in length)

A risk assessment based on threats, vulnerabilities and consequences derived from an IT control framework and any existing industry risk recommendations for the project. For example, there are several consortia for Cloud Computing that have created IT Risk Assessments for this technology (4 - 10 pages in length)

Specially address risks for Data Security from the viewpoint in the project of what data will be used, who will have access to the data and where will the data will flow (2 - 4 pages in length)

Rationale:

To assess that the student has a holistic grasp of IT Risk Assessment techniques and issues, which can then be applied to produce valuable support for decision-makers

Develop an IT Risk Assessment opinion from both a bottom-up perspective of assessing controls, threats and vulnerabilities, and translate these findings into business risk language. 

Deliver an IT Risk Assessment based on a proposed business project that required technical risk to be assessed and managed.

Reference no: EM13919859

Questions Cloud

What are the basic elements of cash forecast : Why are sales forecasts important to developing a firm’s financial forecast? Give some examples of spontaneous and discretionary sources of financing. What are the basic elements of a cash forecast? How is a cash budget used in financial forecasting?..
Determine the current as a function : The current i(t) in an electrical circuit is given by the following differential Equation with initial conditions i(0) = 0, i'(0) = 0. Determine the current as a function of t.
Record the preceding transaction in the horizontal statement : Record the preceding transactions in the horizontal statements model. Also, in the Cash Flows column, classify the cash flows as operating activities (OA), investing activities (IA), or financing activities (FA). The first event is shown as an exampl..
Types of performance benchmarking : 1. What are the three types of performance benchmarking? Which type is most commonly used by the purchasing function? 2. What is the benefit of developing performance measures that focus on cost versus purchase price?
Develop an it risk assessment opinion : Develop an IT Risk Assessment opinion from both a bottom-up perspective of assessing controls, threats and vulnerabilities, and translate these findings into business risk language.
What must unit sales price be in year 1 for ibn corporation : What will be the Year 1 operating profit if selling prices are increased as before, but unit sales increase by 10% rather than 30%? (Selling costs would go up by only 1/3 of the amount projected previously.)
Assignment annual report : Find the company selected for the Week 2 assignment's annual report from SEC.gov or the investor relations section of the company's website. Be careful not to use quarterly reports.
Considering new automated cleaning equipment : A company is considering new automated cleaning equipment. The engineer for the company has been asked to calculate the present worth of the proposed alternative. The market value at the end of the five year study period is 12.5% of the initial cost...
Differences between horizontal, vertical-conglomerate merger : Discuss the differences between horizontal, vertical and conglomerate mergers and how those differ from a joint venture. Prepare a 350- to 1,050- word paper detailing the findings of your discussion.

Reviews

Write a Review

Management Information Sys Questions & Answers

  Categorize computers into groups such as personal computers

It is common practice to categorize computers into groups such as personal computers, network servers, network computers, and technical workstations.

  Developing a new line of ovens

Developing a new line of ovens that uses controlled-laser technology. The research and testing costs associated with the new ovens is said to arise from

  The root beer game simulationbullwhips and root beerwhy

the root beer game simulationbullwhips and root beerwhy supply chain management is so difficultby michael beanthe basic

  Analyze the key functions a chief information officer

Analyze the key functions a Chief Information Officer (CIO) performs to define, develop, implement, and support ongoing security countermeasures

  Implement new system in your business

Successfully implementing new system in your business - What strategy would you use to get the project back on track?

  Why is this important in the development of database systems

Stored Procedures - Stored procedures in SQL 2008 can be written in a variety of languages

  Identify a theory or idea from a non-business course

Identify a theory or idea from a non-business/non-MIS course that relates to concepts in IT. Explain where it came from, what it is, and how it relates to MIS/IT.

  Explain what is the organization''s structure

What is the organization's structure? How decentralized or centralized is it and What are the lines of authority and communication?

  Supply management chainsis leagility possible on all supply

supply management chainsis leagility possible on all supply chains? discuss possible situations where leagility has

  Implementation of electronic health records

From the e-Activity, determine a key factor that has delayed the widespread implementation of electronic health records in health care organizations. Provide an example of the effects of each factor to support your rationale

  What is a multimedia framework

Have a coding or scripting language to handle user interaction and internal logic. It might have its own "easy to learn" language, or a platform neutral language (e.g. C)

  Provide an example of an organization

Businesses that use technology to change its level of learning and provide an example of an organization

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd