Risk management and assess it risk in business terms

Assignment Help Other Subject
Reference no: EM132617183

Learning outcome 1: be able to justify the goals and various key terms used in risk management and assess IT risk in business terms.

Learning outcome 2: be able to apply both quantitative and qualitative risk management approaches and to compare and contrast the advantages of each approach.

Learning outcome 3: be able to critically analyse the various approaches for mitigating security risk, including when to use insurance to transfer IT risk.

TASK

SoftArc Engineering Ltd (SEL) is a civil engineering company which works across Australia as well as in New Zealand, Fiji, Vanuatu, Indonesia, Timor Leste and Papua New Guinea.

SEL has a small data centre at its main site in Bathurst where the company's servers and data storage is located. The company has the following server infrastructure:

2 x Active Directory domain controllers on Windows Server 2008 R2, (2 x Xeon 3.6GHZ, 8GB RAM, 140GB HDD);
3 x SQL Server 2003 database servers on Windows Server 2003 (2 x Xeon 2.8GHZ, 4GB RAM, 250GB RAID-5 array);
1 x Exchange 2007 email server on Windows Server 2008 R2 (2 x Xeon 3.6GHZ, 8GB RAM, 250GB RAID-1 array);
4 x Windows Server 2003 File and Print servers (2 x Xeon 2.8GHZ, 4GB RAM, 250GB RAID-1 array);
2 x Windows Server 2008 R2 running Microsoft SharePoint 2013 (2 x Xeon 2.8GHZ, 4GB RAM, 250GB RAID-5 array);
2 x Red Hat Enterprise 5 Linux servers running Apache and TomCat (2 x Xeon 2.8GHZ, 16GB RAM, 140GB HDD)
1 x Cisco ASA 5512-X firewall running v9.6 ASA software .

The company has some 70 engineering and support staff that work on different projects for clients in various locations in Australia and overseas. The support staff are mainly based in Bathurst, but engineering staff are located in different parts of Australia, New Zealand, an d Papua New Guinea. Most of the support staff have access to a PC, although some support staff share a PC with other staff. The engineering staff all connect remotely to the SEL data centre from their laptops. The SEL data centre infrastructure has not been updated for some time and the SEL Board is concerned that they may be exposed to a cyber attack as they are now starting to work on various Government projects in different countries.

Tasks:

You have been employed by SEL as their first ever Chief Information Security Officer (CISO). You have been tasked by the Board to conduct a review of the company's risks. You are required to produce for the next SEL Board meeting:

A document that summarises the major IT risks that SEL currently faces. This document should identify the major risks and their impact, likelihood and consequence. It should also discuss the possible controls to mitigate these risks.
A complete Risk Register for SEL. This risk register must contain, as a minimum:
A description of all risks identified for each IT asset, data set or process. This must not be restricted just to major risks.
A summary of the impact or consequence to each IT asset, data set or process, if the identified risk was to arise.
The likelihood of this risk occurring.
The inherent risk assessment (this is the assessed, raw/untreated risk inherent in a process or activity without doing anything to reduce the likelihood or consequence).
The key controls to mitigate the risk (NOTE: it is possible that there may be more than one (1) control needed. Each control should be listed on a separate line)
The residual risk assessment (this is the assessed risk in a process or activity, in terms of likelihood and consequence, after controls are applied to mitigate the risk)
Prioritisation of the risk (what is the priority order for the risks to be addressed).
Your Risk Register should be in table format using the following column headings:

Risk
Impact
Likelihood
Assessment
Controls
Residual Risk
Priority
Your summary document should provide references in APA 7 format.

Reference no: EM132617183

Questions Cloud

Write a critical evaluation of the premises : In this assignment, you will critically review 2 recent peer-reviewed articles in a minimum of 2 pages. You may wish to spend some time researching critical.
How much should the beard tax be : How much should the beard tax be? What is the structure of your beard tax: progressive? regressive, or flat? Provide 3 reasons why the beard tax is a "bad" tax.
Main concepts of strategic leadership and planning : Strategic Thinking - you were introduced to the main concepts of strategic leadership and planning.
Calculate lawrence pensionable taxable amounts : Calculate Lawrence's pensionable, insurable and taxable amounts. Then calculate CPP & EI deductions and look up the corresponding federal and provincial tax
Risk management and assess it risk in business terms : Justify the goals and various key terms used in risk management and assess IT risk in business terms and apply both quantitative and qualitative risk management
Discuss any four components of internal control : Discuss any four components of internal control and its importance in helping the organisation achieve its strategic objectives. Explain in detail with example.
Why would the investor be concerned : Why would the investor be concerned with the statement of cash flows when they have the income statement provided
Explain the term sufficient and appropriate evidence : Discuss four balance related objectives of the financial statement and determine how each is relevant in gathering sufficient and appropriate evidence
What is the year-end balance in retained earnings : The following information appears on the balance sheet of Barrel Corporation at year-end: What is the year-end balance in retained earnings

Reviews

Write a Review

Other Subject Questions & Answers

  Cross-cultural opportunities and conflicts in canada

Short Paper on Cross-cultural Opportunities and Conflicts in Canada.

  Sociology theory questions

Sociology are very fundamental in nature. Role strain and role constraint speak about the duties and responsibilities of the roles of people in society or in a group. A short theory about Darwin and Moths is also answered.

  A book review on unfaithful angels

This review will help the reader understand the social work profession through different concepts giving the glimpse of why the social work profession might have drifted away from its original purpose of serving the poor.

  Disorder paper: schizophrenia

Schizophrenia does not really have just one single cause. It is a possibility that this disorder could be inherited but not all doctors are sure.

  Individual assignment: two models handout and rubric

Individual Assignment : Two Models Handout and Rubric,    This paper will allow you to understand and evaluate two vastly different organizational models and to effectively communicate their differences.

  Developing strategic intent for toyota

The following report includes the description about the organization, its strategies, industry analysis in which it operates and its position in the industry.

  Gasoline powered passenger vehicles

In this study, we examine how gasoline price volatility and income of the consumers impacts consumer's demand for gasoline.

  An aspect of poverty in canada

Economics thesis undergrad 4th year paper to write. it should be about 22 pages in length, literature review, economic analysis and then data or cost benefit analysis.

  Ngn customer satisfaction qos indicator for 3g services

The paper aims to highlight the global trends in countries and regions where 3G has already been introduced and propose an implementation plan to the telecom operators of developing countries.

  Prepare a power point presentation

Prepare the power point presentation for the case: Santa Fe Independent School District

  Information literacy is important in this environment

Information literacy is critically important in this contemporary environment

  Associative property of multiplication

Write a definition for associative property of multiplication.

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd