Reference no: EM132577821
Assignment 1: Developing IT Compliance Program
The IT compliance program cannot be conceived in isolation and devoid of the key links to non-IT and financial compliance. Effective IT compliance requires an aggregate vision and architecture to achieve compliance that goes beyond becoming infatuated with a given control framework.
As a group, provide a detailed plan of action based on life cycle concepts to develop and deploy an ongoing IT compliance process. Your plan should provide practical knowledge on what you should consider when developing and implementing an IT compliance program for key regulations such as Sarbanes-Oxley, HIPAA, Gramm-Leach-Bliley, PCI and others to achieve meaningful IT governance.
Your plan should include the following:
1. Discuss the challenges IT divisions face in achieving regulatory compliance
2. Assess how IT governance will improve the effectiveness of the IT Division to attain regulatory compliance
3. Develop a broad vision, an architecture, and a detailed plan of action that follows a life cycle concept
4. Assess all key business processes and IT compliance factors and link to all business processes (financial and non-IT) to develop an aggregate vision of IT compliance
5. Your detailed plan should include the following phases: initiate, plan, develop and implement.
Assignment -2
How does Network Security impact Data Security? Consider the ethical implications of intrusion detection? What might you consider and what ethical values might you identify?
Would you do things differently on your work or home network in the future because of these ethical considerations? This is not just an opinion question, back it with valid research.