Explain the use of corporate social media accounts policy

Assignment Help Management Information Sys
Reference no: EM132028023

Project : Manager's Deskbook

Company Background & Operating Environment

Red Clay Renovations is an internationally recognized, awarding winning firm that specializes in the renovation and rehabilitation of residential buildings and dwellings.

The company specializes in updating homes using "smart home" and "Internet of Things" technologies while maintaining period correct architectural characteristics. Please refer to the company profile (file posted in Week 1 > Content > CSIA 413 Red Clay Renovations Company Profile.docx) for additional background information and information about the company's operating environment.

Policy Issue & Plan of Action

The Manager's Deskbook contains issue specific policies and implementation procedures which are required to mitigate risks to the company and to otherwise ensure good governance of the company's operations.

The Chief Information Security Officer (CISO) and key CISO staff members held a kick-off meeting last week to identify issue specific policies which should be added to the company's policy system in the IT Governance category. The policies will be disseminated throughout the company by incorporating them into the Manager's Deskbook. The required issue specific policies are:

1. Data Breach Response Policy

2. Preventing / Controlling Shadow IT Policy

3. Management and Use of Corporate Social Media Accounts Policy

For the purposes of this assignment, you will create a policy recommendations briefing package (containing an Executive Summary and draft policies) and submit that to your instructor for grading.

Note: In a "real world" environment, the policy recommendations briefing package would be submitted to the IT Governance board for discussion and vetting.

After revisions and voting, a package containing the accepted policies would be sent to all department heads and executives for comment and additional vetting.

These comments would be combined and integrated into the policies and sent out for review again. It usually takes several rounds of review and comments before the policies can be sent to the Chief of Staff's office for forwarding to the Corporate Governance Board.

During the review & comments period, the policies will also be subjected to a thorough legal review by the company's attorneys. Upon final approval by the Corporate Governance Board, the policies will be adopted and placed into the Manager's Deskbook. This entire process can take 9 to 12 months, if not longer.

Your Task Assignment

As a staff member supporting the CISO, you have been asked to research and then draft an issue specific policy for each of the identified issues (three separate policies).

These policies are to be written for MANAGERS and must identify the issue, explain what actions must be taken to address the issue (the company's "policy"), state the required actions to implement the policy, and name the responsible / coordinating parties (by level, e.g. department heads, or by title on the organization chart).

After completing your research and reviewing sample policies from other organizations, you will then prepare an "approval draft" for each issue specific policy.

· The purpose of each issue specific policy is to address a specific IT governance issue that requires cooperation and collaboration between multiple departments within an organization.

· Each issue specific policy should be no more than two typed pages in length (single space paragraphs with a blank line between).

· You will need to be concise in your writing and only include the most important elements for each policy.

· You may refer to an associated "procedure" if necessary, e.g. a Procedure for Requesting Issuance of a Third Level Domain Name (under the company's Second Level Domain name) or a Procedure for Requesting Authorization to Establish a Social Media Account.

Your "approval drafts" will be combined with a one page Executive Summary (explaining why these issue specific policies are being brought before the IT Governance Board).

Research:

1. Review NIST's definition of an "Issue Specific Policy" and contents thereof in NIST SP 800-12 Section 5.3. This document provides information about the content of an issue specific policy (as compared to comprehensive system and enterprise security policies).

2. Review the weekly readings and resource documents posted in the classroom. Pay special attention to the resources which contain "issues" and "best practices" information for:

· Data Breach Response

· Preventing / Controlling Shadow IT

· Social Media

3. Review NIST guidance for required / recommended security controls (see NIST SP 800-12, NIST SP 800-53, and NIST SP 800-100). Some suggested control families are:

· Access Control (AC) control family (for Social Media policy)

· Incident Response (IR) control family (for Data Breach policy)

· System and Services Acquisition (SA) control family (Domain Name, Shadow IT, Website Governance)

4. Find and review additional authoritative / credible sources on your own which provide information about IT security issues (related to data breaches / responses, shadow IT, and/or social media use) which require policy solutions.

Reference no: EM132028023

Questions Cloud

Relationship between drinking and liver cirrhosis : The OR for people with Hep B= 2.38; The OR for those without HEP B = 2.56. Is Hepatitis B a cofounder in the relationship between drinking and liver cirrhosis?
How do the given numbers differ from other countries : Identify the bacteria that caused the highest number of drug-resistant infections in the U.S. How do these numbers differ from other countries?
Is national debt indicate that federal government is too big : Compose a 600 word essay in response to the assignment question - Is the national debt an indication that the Federal government is too big
Dependent sample with two variables : What inferential statistic would you use for a independent sample with two variables?
Explain the use of corporate social media accounts policy : The policies will be disseminated throughout the company by incorporating them into the Manager's Deskbook.
Independent variable and dependent variable : Springfield Massachusetts has long been known as a top vacation spot in the country, due largely to its beautiful weather, the Basketball Hall of Fame
What new problems might be created : Which people and what institutions might be most seriously harmed by a technological solution? What new problems might be created because we have solved.
Which test did he do better relative to the rest : He received a score of 72 on a biology test for which the class mean was 70 with standard deviation 8. On which test did he do better relative to the rest
How relevant are the new skills to your current profession : Base on the course content, discuss new skills you acquired from this class? How relevant are the new skills to your current and/or future profession?

Reviews

Write a Review

Management Information Sys Questions & Answers

  Information technology and the changing fabric

Illustrations of concepts from organizational structure, organizational power and politics and organizational culture.

  Case study: software-as-a-service goes mainstream

Explain the questions based on case study. case study - salesforce.com: software-as-a-service goes mainstream

  Research proposal on cloud computing

The usage and influence of outsourcing and cloud computing on Management Information Systems is the proposed topic of the research project.

  Host an e-commerce site for a small start-up company

This paper will help develop internet skills in commercial services for hosting an e-commerce site for a small start-up company.

  How are internet technologies affecting the structure

How are Internet technologies affecting the structure and work roles of modern organizations?

  Segregation of duties in the personal computing environment

Why is inadequate segregation of duties a problem in the personal computing environment?

  Social media strategy implementation and evaluation

Social media strategy implementation and evaluation

  Problems in the personal computing environment

What is the basic purpose behind segregation of duties a problem in the personal computing environment?

  Role of it/is in an organisation

Prepare a presentation on Information Systems and Organizational changes

  Perky pies

Information systems to adequately manage supply both up and down stream.

  Mark the equilibrium price and quantity

The demand schedule for computer chips.

  Visit and analyze the company-specific web-site

Visit and analyze the Company-specific web-site with respect to E-Commerce issues

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd