Reference no: EM133418758
Question: How would you control for the conduct failure that occurred? Can you suggest a means of monitoring to improve these controls?
You can speak briefly on the following points in your discussion:
Analysis: Is it possible to improve on the existing controls (the established security system and staff training) to prevent unwanted access and card skimming?
Ethics: How do you feel about refusing to help a person in need with a minor and seemingly harmless request? How would you balance the needs of the organisation with those of human beings?
Reporting: Which stakeholders should be informed and consulted regarding such an incident? How would you report the event to these stakeholders?
Implementation: Can you suggest any further controls that may be useful in managing this risk? How could these then be monitored to ensure they are performing as intended?
Kimi is a compliance officer who has been asked to stress test an organisation that has just implemented a new access control solution. Employees, security officials, and custodial staff have recently been issued access cards. The cards are used for physical movement within the premises and access to printing services. All employees have been trained on the new access control processes and systems.
How can Kimi circumvent these controls as part of a stress test?
First, Kimi hires a pregnant actress to request a visitors' access card from the front desk security officer so that she can use the bathroom facilities that are behind an access-controlled turnstile. The security guard does not know how to program the card correctly, so he lets her use his card. However, Kimi has given the actress a card skimmer, which she used to copy the security guard's access card.
Kimi uses the cloned card to enter the building. Because security officials typically have access cards that allow access throughout entire premises, Kimi is able to gain sensitive information simply by walking around and taking photos after most employees leave work in the evening.
She notes that some staff members have written their new passwords on sticky notes placed in accessible areas (such as on a work-station monitor, or under a keyboard). This allows Kimi to employ an ethical hacker to access the data systems and copy valuable personal information and intellectual property.
Analyze the organizational structure and culture
: Analyze the organizational structure and culture for both organizations. What kind of leadership style these organizations prefer/follow?
|
Who and what most influences your political ideals
: Who and what most influences your political ideals and decisions: friends, family, religion, the media, or other factors? Why?
|
What do you believe the purpose of law should be
: Which of the following best describes how deviance is defined? -Deviance is defined by federal, state, and local laws. -Deviance is determined by religion only
|
What racial issues do you believe are facing sports today
: What racial issues do you believe are facing sports today? Do you believe Title VII has resulted in progress regarding racial discrimination in sports
|
How would you control for the conduct failure
: How would you control for the conduct failure that occurred? Can you suggest a means of monitoring to improve these controls
|
Some employers run credit checks on their candidates
: Some employers run credit checks on their candidates, before offering them a position within their organization. Do you think this practice is ethical?
|
Why is affirmative action in peril
: Why is Affirmative Action in Peril? One Man's DecisionLinks to an external site." in the New York Times (this article is also available directly in Canvas
|
Contribute to the bottom line immediately
: How do you defend, short term, investments in business ethics that may not positively contribute to the bottom line immediately? Keep in mind our short term
|
How you felt about yourself, how you felt about the world
: how you felt about yourself, how you felt about the world, what you wanted to be then versus what you want to be now. You can use visuals as representations
|