How your team plans to perform the risk assessment

Assignment Help Other Subject
Reference no: EM132668674

Assignment: How your team plans to perform the risk assessment

Successful information assurance programs apply industry standards and best practices to identify security risk and then form dynamic, crossfunctional teams, when required, to develop a plan to address these gaps in a way that is sensitive to the needs of key stakeholders.

To prepare for the Project in this Week, assume that the fictitious organization is large and growing rapidly, with both internal and external IT risks involving employees, customers, business partners, suppliers, and contractors. Clearly state any other assumptions you make.

You have been asked to assess risks associated with access and authorization in your organization. Develop a brief scenario that depicts a threat related to access and authorization. Below are two example use cases for a single scenario to guide you. You will need to develop your own scenario as well as your own use cases.

Use Case 1: Employee Provisioning-There needs to be an enterprise process for employee account provisioning. This should include setting up employees with the correct access rights, based on their role. When employees change roles, their access should be appropriately changed. Today, employees are given access to resources using Active Directory groups. When they go to a new job, the old access rights often are not removed like they should be, and this is a security concern.

Use Case 2: Separation of Duties-Administrators need a high level of access for their jobs. Today, their credentials allow them to administer servers and create accounts locally on the servers and in Active Directory. They can also edit log files and delete accounts and groups in Active Directory. This is a security concern, and roles should be set up so server administrators can do their job but not the job of an Active Directory administrator. The role that is allowed to create accounts should not be able to create new roles, and managers should approve new accounts. Keeping an administrator's access in line with his or her role is a best practice, and it may be required by regulations such as Sarbanes-Oxley.

Please develop at least two others and explain them.

Write a 5- to 7-page paper about the risk assessment process that you plan to perform. Cover the following points:

• Your introduction should include the following background information:

• The country where the headquarters is located

• The nature of the organization's operations

• The general organizational structure

• The country/ies in which the organization operates

• In describing the scenario and the two use cases you created, you should include the following regarding risk assessment planning:

• How your team plans to perform the risk assessment and identify the gap

• What other teams would be involved in a successful risk assessment

• How poor access and authorization management affects security risk and business processes

• Who the stakeholders are and the most important activities they may perform that involve accessing data and resources

Reference no: EM132668674

Questions Cloud

Leaders use communication to guide their organizations : You will research the different ways that managers and leaders use communication to guide their organizations.
Provide schedule of lease payments for mars ltd : Prepare journal entries to record the lease transactions for the year ended 30 June 2011 in the record of both companies. Provide schedule of lease payments.
Design the main dimensions - stator and rotor : Design the main dimensions, stator and rotor of a 75 kW,3000V,3 phase,8 pole,50 Hz, star connected slip ring induction motor. Assume an efficiency of 85
Prepare a single-step income statement for the year ended : Prepare a single-step income statement for the year ended December 31, 2020, including calculation of EPS. Expenses should be shown by function
How your team plans to perform the risk assessment : How your team plans to perform the risk assessment? Successful information assurance programs apply industry standards and best practices to identify security.
Design oil immersed natural cooled type power transformer : Design a 500 kVA, 400V/11kV, /Y oil immersed natural cooled type power transformer. Mean temperature rise not to exceed 35?. Maximum temperature rise
What is the make-whole call premium : If the Kendal bond has a make-whole call premium of 140 basis points above the U.S. Treasury rate, what is the make-whole call premium?
Explain how the organization started in the it industry : The IT industry is always evolving and IT plays a very important role in business. Several of the technology companies that have dominated IT are Fortune 500.
Calculate the price-book ratio and price-earnings ratio : At the end of the year, Smashville stock sold for $52 per share. Calculate the price-book ratio, price-earnings ratio, and price-cash flow ratio.

Reviews

Write a Review

Other Subject Questions & Answers

  Cross-cultural opportunities and conflicts in canada

Short Paper on Cross-cultural Opportunities and Conflicts in Canada.

  Sociology theory questions

Sociology are very fundamental in nature. Role strain and role constraint speak about the duties and responsibilities of the roles of people in society or in a group. A short theory about Darwin and Moths is also answered.

  A book review on unfaithful angels

This review will help the reader understand the social work profession through different concepts giving the glimpse of why the social work profession might have drifted away from its original purpose of serving the poor.

  Disorder paper: schizophrenia

Schizophrenia does not really have just one single cause. It is a possibility that this disorder could be inherited but not all doctors are sure.

  Individual assignment: two models handout and rubric

Individual Assignment : Two Models Handout and Rubric,    This paper will allow you to understand and evaluate two vastly different organizational models and to effectively communicate their differences.

  Developing strategic intent for toyota

The following report includes the description about the organization, its strategies, industry analysis in which it operates and its position in the industry.

  Gasoline powered passenger vehicles

In this study, we examine how gasoline price volatility and income of the consumers impacts consumer's demand for gasoline.

  An aspect of poverty in canada

Economics thesis undergrad 4th year paper to write. it should be about 22 pages in length, literature review, economic analysis and then data or cost benefit analysis.

  Ngn customer satisfaction qos indicator for 3g services

The paper aims to highlight the global trends in countries and regions where 3G has already been introduced and propose an implementation plan to the telecom operators of developing countries.

  Prepare a power point presentation

Prepare the power point presentation for the case: Santa Fe Independent School District

  Information literacy is important in this environment

Information literacy is critically important in this contemporary environment

  Associative property of multiplication

Write a definition for associative property of multiplication.

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd