Explain the necessary components within a security policy

Assignment Help Computer Network Security
Reference no: EM131155797

Remote Access Security Policy

Organization: XYZ Health Care Provider:

XYZ Health Care is a provider of health services to senior citizens. It performs its mission with a virtual force of Registered Nurses and Nurse Practitioners. The nurses visit their elderly patients in their homes and monitor their health. At the end of the day, the nurses are required to connect back to corporate networks and upload all of the patient records for the day. Keep in mind that this organization is subjected to HIPAA rules and its required to make the data available to its patients and authorized patient representatives within 48 hours.

Some of the RISKS:

• Brute force user ID and password attacks
• Users or employees unaware of the risks, threats, and dangers of the Internet and shard WI-FI or broadband Internet Access
• Multiple Access attempts and logon retries
• Unauthorized access to IT Systems, applications, and data
• Privacy data or confidential data is compromised remotely
• Data leakage occurs in violation of data classification standard
• A remote worker's laptop is stolen
• A remote worker requires access to the patient medical records system through the Public Internet

Scope: Control Identification and Creation of a Remote Access Policy

Using or textbooks, internet and other resources, identify the necessary components / sections within a security policy and then craft the actual policy for XYZ Healthcare and address the risks within policy that are prevalent with Remote Access.

Your submission must include the following:

1) Control Matrix: A listing of the risk and 1 or more countermeasure to address the risk.

2) A Section that identifies the necessary components of the policy and why they are important: This does not refer to the controls but more specifically sections within the policy. (You may research the Internet or SANS for sample policies, the sections were also discussed in class).

3) The actual policy, when developing the policy please ensure that it can be used at XYZ Healthcare.

4) Based on the white paper provided? What are the four goals of effective metrics as defined in the paper. In your own words explain your understanding of the metric and where and how it can be beneficial.

Paper Requirements

1) APA Format (Where applicable)
2) Minimum of 3 - 5 references
3) Safe - Assignment comparison will be done

Reference no: EM131155797

Questions Cloud

Describe three examples in which databases could be used : Describe three (3) examples in which databases could be used to support decision making in a large organizational environment. Describe three (3) examples in which data warehouses and data mining could be used to support data processing and trend a..
Improve the reliability of supply chain : Jill has heard that in order to improve the reliability of her supply chain that she should add a capacity cushion. But, exactly what is a capacity cushion and why would a manufacturing company desire to have a large one? Discuss the advantages an..
What fraction of water vapor is removed from the air : Your dehumidifier removes water vapor from air by cooling the air to 12 °C. What fraction of water vapor is removed from the air?
Determine the number of kanban card : In setting up a kanban control system you need to determine the number of kanban card sets needed. If the expected demand during lead time is 25 per hour, the safety stock is 20 percent of the demand during lead time, the container size is 5, and ..
Explain the necessary components within a security policy : Using or textbooks, internet and other resources, identify the necessary components / sections within a security policy and then craft the actual policy for XYZ Healthcare and address the risks within policy that are prevalent with Remote Access.
Processes referring to realistic examples : Provide a discussion on how an operations manager can "Green" service processes referring to realistic examples.
Design a relational database so that it is at least in 3nf : Explain typical situations when denormalizing a table is acceptable. Provide one (1) example of denormalizing a database table to justify your response. Explain the significant manner in which business rules impact both database normalization and..
What is the relative humidity of the stream : The stream is to be cooled to 25 °C at constant pressure. To avoid condensation, the exhaust stream is mixed with dry air prior to cooling. How much air is needed? Report the result in moles of dry air per mole of gas.
Utilization of the washing machine : Yesterday, three employees were sick and only 2,100 pounds of clothes were washed. What was the utilization of the washing machine yesterday?


Write a Review

Computer Network Security Questions & Answers

  An overview of wireless lan security - term paper

Computer Science or Information Technology deals with Wireless LAN Security. Wireless LAN Security is gaining importance in the recent times. This report talks about how vulnerable are wireless LAN networks without any security measures and also talk..

  Computer networks and security against hackers

This case study about a company named Magna International, a Canada based global supplier of automotive components, modules and systems. Along with the company analysis have been made in this assignment.

  New attack models

The Internet evolution is and is very fast and the Internet exposes the connected computers to attacks and the subsequent losses are in rise.

  Islamic Calligraphy

Islamic calligraphy or Arabic calligraphy is a primary form of art for Islamic visual expression and creativity.

  A comprehensive study about web-based email implementation

Conduct a comprehensive study about web-based email implementation in gmail. Optionally, you may use sniffer like wireshark or your choice to analyze the communication traffic.

  Retention policy and litigation hold notices

The purpose of this project is to provide you with an opportunity to create a document retention policy. You will also learn how to serve a litigation hold notice for an educational institute.

  Tools to enhance password protection

A report on Tools to enhance Password Protection.

  Analyse security procedures

Analyse security procedures

  Write a report on denial of service

Write a report on DENIAL OF SERVICE (DoS).

  Phising email

Phising email It is multipart, what are the two parts? The HTML part, is it inviting the recepient to click somewhere? What is the email proporting to do when the link is clicked?

  Express the shannon-hartley capacity theorem

Express the Shannon-Hartley capacity theorem in terms of where is the Energy/bit and is the psd of white noise.

  Modern symmetric encryption schemes

Pseudo-random generators, pseudo-random functions and pseudo-random permutations

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd