Security should be periodically reassessed

Assignment Help Basic Computer Science
Reference no: EM132359130

Answer Each Question in At Least 75 Words Per Question:

1. NIST 800-14 presents a significant point that "Security Should Be Periodically Reassessed"; what are the benefits of periodic review of security policy and how often should policy be reviewed?

2. In reference to risk management strategy and the security life cycle, what benefit does Certification and Accreditation provide to an information system? Is an Information with a Certification and Accreditation more secure than an information system without one?

3. Assessing Threats is a key element in Risk Assessment. In review of your home computing network answer the following assessment questions:

· Which threats are Internal and which are External?

· Which threats have the highest probability of success?

· Which threats could result in the greatest loss if successful?

· Which threats cost the most to protect against?

4. Select and provide an analysis of the Risk Control Practices and include why you would or would not choose this Risk Control Practice for your organization.

5. Select and provide an analysis of the Statement of Strategy and include how you would define/create a strategic statement for your organization.

6. Discuss the phases of the Security Systems Development Life Cycle to include the deliverables in each phase.

7. Select, review and discuss a Computer Fraud and Abuse Act (CFAA) charge/case. How does CFAA counter threats from computer related acts and offenses?

8. Describe the security practices implemented when hiring personnel to prevent the misuse of information and information technology. How is this information provided to existing company personnel to ensure retention?

9. Incident Response Planning involves the creation of three sets of standard operating procedures (SOP); During the Incident, After the Incident and Before the Incident. As the CISO of a small manufacturing business what are the tasks you would assign to both the Users and Technology Services in the SOP for During the Incident? Who are the key personnel that need to be notified?

10. Business Continuity is key in a major organization, discuss the differences between Hot sites, Warm sites and Cold sites to include: the benefits and disadvantages of each, what factors must be considered in choosing between each service and which service you would choose for a small manufacturing business?

11. The sphere of security shows how access controls can be implemented to defend against threats. Firewalls have been a significant control mechanism to control the flow of information. Select and discuss a firewall type from this week's reading. Include what factors you would include in a brief to your organizational leadership in selecting this firewall for your organization's network.

12. Discuss the difference between Symmetric and Asymmetric Encryption to include the process each uses to secure the information between the sender and receiver. Which is more secure?

13. As the CIO, your Information Security Policy (ISP) is set forth at your organization. The new policy was distributed three months ago, has been provided to each department in written text format and is available on the company's website. You have held mandatory training with each department to explain the policy and highlight the changes that have occurred. What if an employee refuses to explicitly agree to comply with the policy? Is there any laws an employee breaks by not complying with a company's ISP?

Reference no: EM132359130

Questions Cloud

What are the examples of social engineering activities : What are the examples of social engineering activities.
Describe how security professional would apply : Explain how you can apply this to your current job or describe how a security professional would apply what you have learned to their current role.
Discussions focused on military aircraft : Some virtual teams at Boeing have discussions focused on military aircraft. Do some Internet research on UC security mechanisms.
Information systems infrastructure-evolution and trends : Research at least two articles on the topic of Information systems infrastructure: evolution and trends.
Security should be periodically reassessed : IS311-Security Should Be Periodically Reassessed; what are the benefits of periodic review of security policy and how often should policy be reviewed?
Making risk assessment and security policy analysis : Design and develop systems architecture with proper contingency planning by making risk assessment and security policy analysis.
Justify characterizing data types according to task taxonomy : Justify characterizing data types according to task taxonomy.
Despite increases in computing power and network bandwidth : Despite increases in computing power and network bandwidth, many user interfaces are still largely text oriented, with a few icons and illustrations.
Introduced impact of the global digital divide : Introduced the impact of the global digital divide. According to the authors, countries that lag behind the rest of the world's ICT capabilities encounter

Reviews

Write a Review

Basic Computer Science Questions & Answers

  Identifies the cost of computer

identifies the cost of computer components to configure a computer system (including all peripheral devices where needed) for use in one of the following four situations:

  Input devices

Compare how the gestures data is generated and represented for interpretation in each of the following input devices. In your comparison, consider the data formats (radio waves, electrical signal, sound, etc.), device drivers, operating systems suppo..

  Cores on computer systems

Assignment : Cores on Computer Systems:  Differentiate between multiprocessor systems and many-core systems in terms of power efficiency, cost benefit analysis, instructions processing efficiency, and packaging form factors.

  Prepare an annual budget in an excel spreadsheet

Prepare working solutions in Excel that will manage the annual budget

  Write a research paper in relation to a software design

Research paper in relation to a Software Design related topic

  Describe the forest, domain, ou, and trust configuration

Describe the forest, domain, OU, and trust configuration for Bluesky. Include a chart or diagram of the current configuration. Currently Bluesky has a single domain and default OU structure.

  Construct a truth table for the boolean expression

Construct a truth table for the Boolean expressions ABC + A'B'C' ABC + AB'C' + A'B'C' A(BC' + B'C)

  Evaluate the cost of materials

Evaluate the cost of materials

  The marie simulator

Depending on how comfortable you are with using the MARIE simulator after reading

  What is the main advantage of using master pages

What is the main advantage of using master pages. Explain the purpose and advantage of using styles.

  Describe the three fundamental models of distributed systems

Explain the two approaches to packet delivery by the network layer in Distributed Systems. Describe the three fundamental models of Distributed Systems

  Distinguish between caching and buffering

Distinguish between caching and buffering The failure model defines the ways in which failure may occur in order to provide an understanding of the effects of failure. Give one type of failure with a brief description of the failure

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd