Developing a security management plan

Assignment Help Management Information Sys
Reference no: EM133670652 , Length: 4 Pages

Assignment Content

As the CISO for a health care organization, you are tasked with:

  • Choosing a risk management framework and associated systemic process that measures and evaluates risks that may impact the organization's assets and data
  • Developing a security management plan that is aligned to the health care organization's goals and objectives

The goals are:

  • Patient Satisfaction: Patient satisfaction is the foundational strategy by which the health care organization will attain its mission. It encompasses patient outcomes, compliance scores, and patient and visitor experiences within the health care organization.
  • Increase Revenue: Providing excellent care requires money. The health care organization seeks to maximize revenue wherever ethically possible through a strategy that captures, retains, and grows revenue.
  • Maximize Operational Efficiencies: Maximizing operational efficiencies helps the health care organization get the most value out of each dollar of revenue. Efficient operations also directly affect the patient experience and overall patient and visitor satisfaction.
  • Gain positive returns on capital investments.
  • Ensure that new initiatives show a tangible return on investment (ROI).

The objectives are:

  • Leverage assets and resources for centralizing and automating processes.
  • Reduce the total cost of ownership (TCO) with respect to the IT infrastructure and IT systems.
  • Improve the security of IT systems in order to protect the confidentiality, integrity, and availability of its data, assets, and systems.
  • Improve compliance with regulatory requirements, such as HIPAA, Food and Drug Administration (FDA), and Payment Card Industry Data Security Standard.

Part A

Develop a five to seven slide Microsoft® PowerPoint® presentation for the health care organization's senior leadership that recommends a risk management framework.

Address the following:

  • Define the chosen risk management framework for the organization to implement as part of its risk management program.
  • Illustrate the associated risk management processes.
  • Justify your choice for the risk management framework.
  • Provide references

Note: The chosen risk management framework will be included in the security management plan in Part B.

Part B

Develop a three to four page security management plan that documents the health care organization's information security governance and the risk management components of the enterprise information security program.

Include the following:

  • Description of the health care organization's security management program
  • Alignment of security objectives to the health care organization's goals and objectives
  • Information security governance major activities
  • Legal and regulatory compliance requirements
  • Corporate compliance and security roles and responsibilities (CEO, CFO, CIO, CISO)
  • Risk management framework and major processes
  • List of required information security policies
  • Provide references

Reference no: EM133670652

Questions Cloud

Explain what the proper moral choice should be : In 900 to 1200 words argumentative paper explaining what the proper moral choice should be. Shows that you are aware of opposing points of view.
What is rsv-bronchiolitis : What is RSV/Bronchiolitis. Signs and symptoms and actions. Risks and complications. When to go to ER.
Which one of the social episode was carl breaking : Carl was pleased that he was invited to a company party. Which one(s) of the Social Episode was Carl Breaking? Explain. List and explain the 5 Social Episodes.
What are potential areas of resistance to corrective actions : What are three potential areas of resistance to your recommended corrective actions, and what ameliorative suggestions can you offer to reduce such resistance?
Developing a security management plan : Developing a security management plan that is aligned to the health care organization's goals and objectives.
What are your thoughts on how the other phases of dmaic help : What are your thoughts on how the other phases of DMAIC help you understand what specific unwanted consequences you may need to control?
Develop a foreign policy doctrine to characterize : Develop a foreign policy doctrine to characterize their administration's primary foreign policy goal (Bush Doctrine, Monroe Doctrine, Truman Doctrine).
Importance of epidemiological data in healthcare planning : Explain the importance of epidemiological data in healthcare planning and policy development.
Discuss the portrayal of women in one or more of the stories : Discuss the portrayal of women in one or more of the stories we've read so far. Are they flat or round characters? Static or dynamic?

Reviews

Write a Review

Management Information Sys Questions & Answers

  Information technology and the changing fabric

Illustrations of concepts from organizational structure, organizational power and politics and organizational culture.

  Case study: software-as-a-service goes mainstream

Explain the questions based on case study. case study - salesforce.com: software-as-a-service goes mainstream

  Research proposal on cloud computing

The usage and influence of outsourcing and cloud computing on Management Information Systems is the proposed topic of the research project.

  Host an e-commerce site for a small start-up company

This paper will help develop internet skills in commercial services for hosting an e-commerce site for a small start-up company.

  How are internet technologies affecting the structure

How are Internet technologies affecting the structure and work roles of modern organizations?

  Segregation of duties in the personal computing environment

Why is inadequate segregation of duties a problem in the personal computing environment?

  Social media strategy implementation and evaluation

Social media strategy implementation and evaluation

  Problems in the personal computing environment

What is the basic purpose behind segregation of duties a problem in the personal computing environment?

  Role of it/is in an organisation

Prepare a presentation on Information Systems and Organizational changes

  Perky pies

Information systems to adequately manage supply both up and down stream.

  Mark the equilibrium price and quantity

The demand schedule for computer chips.

  Visit and analyze the company-specific web-site

Visit and analyze the Company-specific web-site with respect to E-Commerce issues

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd