Developing the corporate strategy for information security

Assignment Help Computer Network Security
Reference no: EM13819946

imagine that you are working for a startup technology organization that has had overnight success. The organization's immediate growth requires for it to formulate a corporate strategy for information security. You have been recruited to serve as part of a team that will develop this strategy.

As part of the Information Security Strategy development, you are required to define specific Information Technology Security roles that will optimize and secure the organization's data assets.

Review the following Website titled "Information Technology (IT) Security Essential Body of Knowledge (EBK): A Competency and Functional Frame-work for IT Security Workforce Development" for additional information necessary to complete this assignment.
Write a five to seven (5-7) page paper in which you do the following, based on the scenario described below:

1. The Chief Information Security Officer (CISO) is responsible for several functions within an organization.

a. Examine three (3) specific functions a CISO and provide examples of when a CISO would execute these functions within the

organization.

b. Specify at least three (3) competencies that the CISO could perform using the provided Website titled, " Information Technology
(IT) Security Essential Body of Knowledge (EBK): A Competency and Functional Frame-work for IT Security Workforce

Development."

2. The Chief Information Officer (CIO) is responsible for several accountability functions within an organization:

a. Identify at least four (4) functions of the CIO using the EBK as a guide. Provide examples of how the CIO would execute these

functions within an organization.

b. Classify at least two (2) security assurances that could be achieved by the CIO developing a formal security awareness, training,
and educational program.

c. Suggest methods, processes, or technologies that can be used by the CIO to certify the security functions and data assets of an
organization on a day-to-day basis.

3. Describe how the digital forensics function complements the overall security efforts of the organization.

4. Evaluate the operational duties of digital forensic personnel and how these help qualify the integrity of forensic investigations within the enterprise and industry.

5. List at least three (3) technical resources available to the digital forensics professional to perform forensic audits and investigations.

6. Use at least three (3) quality resources in this assignment. Note: Wikipedia and similar Websites do not qualify as quality resources.

Your assignment must follow these formatting requirements:

Be typed, double spaced, using Times New Roman font (size 12), with one-inch margins on all sides; citations and references must follow APA or school-specific format. Check with your professor for any additional instructions.

Include a cover page containing the title of the assignment, the student's name, the professor's name, the course title, and the date.

The cover page and the reference page are not included in the required assignment page length.

The specific course learning outcomes associated with this assignment are:

Describe and apply the 14 areas of common practice in the Department of Homeland Security (DHS) Essential Body of Knowledge.

Describe best practices in cybersecurity.

Identify and analyze the role of the Chief Information Officer, Information Security Officer, and IT Security Compliance Officer in the context of cybersecurity.

Compare and contrast the functional roles of an organization in the context of cybersecurity.

Describe the corollary roles of security in an enterprise.

Evaluate the ethical concerns inherent in cybersecurity and how these concerns affect organizational policies.

Use technology and information resources to research issues in cybersecurity.

Write clearly and concisely about topics associated with cybersecurity using proper writing mechanics and technical style conventions.

Reference no: EM13819946

Questions Cloud

Information systems fundamentals : INFORMATION SYSTEMS FUNDAMENTALS
Federal support programs to determine : Assess the federal support programs to determine which would be the most beneficial and which would be the least beneficial for a small business found in your community. Provide a rationale for your choices.
Question regarding the health care ethics : What is the difference between common sense and practical wisdom in health care? What are some emerging models and roles for healthcare providers, and how do these new models and roles underscore the need to understand how to use common sense or p..
What volume of solution in ml : Calculate % of FesO4.7H2O in given sample and What Volume of solution in ml will be required to react with 0.158 gm of Na2S2O3?
Developing the corporate strategy for information security : Developing the Corporate Strategy for Information Security
Resistance to change paper : Prepare a 1,400- to 2,100-word paper identifying both organizational and individual causes of resistance to change. Describe how Lewin's theory of change can be used to overcome resistance to change.
Best buy draft statment : Assume you are a strategic consultant for Best Buy. Create a draft statement of your preliminary findings to the board of directors that summarizes your long-term strategic action, if any.
Explanation of the basis for your indentification : Conduct a 5-year financial statement forecast of Abbvie. In the short memo, provide an explanation of the basis for your indentification of the most important forecasting parameters and the logic behind the values you assigned to each parameter.
How is targeted advertising done wirelessly : How is targeted advertising done wirelessly

Reviews

Write a Review

Computer Network Security Questions & Answers

  Security suppose you have recently responded to your first

suppose you have recently responded to your first computer forensic incident based on the results of your investigation

  What should be minimum key size increase to meet objective

Considering the continuous increase in computer speed, the company decided to increase the size of the encryption key so that the time to break the encryption become more than 250 hours. What should be the minimum key size increase to meet this ob..

  Determine primary security risk that users must acknowledge

Based on the article by Lenning (2005), determine a primary security risk that users must acknowledge when using macros? Why is it significant to educate users of these risks once their dilemma is resolved?

  What changes to the network topology or design must be made

After running for several months with a single router and a single Internet Service Provider, Netstack College wants to improve the reliability of their Internet connection. They have contracted with a second ISP so they will have two connections ..

  How would you divide up your network to satisfy requirements

You are an ISP that has been assigned a class B network with the address 145.34.0.0. You know you will service 200 to 250 small companies.

  Describe the secure communication scenarios

Both IPsec and SSL provide encrypted network communication, but at different layers in the Internet protocol stack, and for different purposes. Compare and contrast these two protocols, and describe the secure communication scenarios they are best..

  Implementation phase of a project

Assume you are in implementation phase of a assignment and your customer indicates they require a specific change to the project that changes the scope of the deliverables.

  Please type a three- to five-page 800 to 1200 words paper

please type a three- to five-page 800 to 1200 words paper. using apa style assess the importance of developing a

  Detailed network security recommendations

As the company's subject matter expert/consultant, the CEO wants a 4-6 page report at the end of your assignment. The CEO tells you they will have remote users, so firewall and VPN technologies are needed.

  Network management in network management why is it

network management in network management why is it important to carefully consider decisions that will lock the firm

  Research and devise a plan to thwart malicious code

Research and devise a plan to thwart malicious code and activity by implementing countermeasures and prevention techniques for dealing with viruses, worms, logic bombs, Trojan horses and other related forms of intentionally created deviant code

  The weakest areas of the cyber security policy

From a FIPS 200 perspective, what are the weakest areas of the cyber security policy associated with the organization you selected? Discuss at least two weak areas and describe why.

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd