Summarize the issues and your recommendations for policies

Assignment Help Business Management
Reference no: EM133715615

Assignment: Research Report- Data Breach Incident Analysis and Report

Scenario

Padgett-Beale Inc.'s (PBI) insurance company, CyberOne Business and Casualty Insurance Ltd, sent an audit team to review the company's security policies, processes, and plans. The auditors found that the majority of PBI's operating units did not have specific plans in place to address data breaches and, in general, the company was deemed "not ready" to effectively prevent and/or respond to a major data breach. The insurance company has indicated that it will not renew PBI's cyber insurance policy if PBI does not address this deficiency by putting an effective data breach response policy and plan in place. PBI's executive leadership team has established an internal task force to address these problems and close the gaps because they know that the company cannot afford to have its cyber insurance policy cancelled.

Unfortunately, due to the sensitivity of the issues, no management interns will be allowed to shadow the task force members as they work on this high priority initiative. The Chief of Staff (CoS), however, is not one to let a good learning opportunity go to waste ... especially for the management interns. Your assignment from the CoS is to review a set of news articles, legal opinions, and court documents for multiple data breaches that affected a competitor, Marriott International (Starwood Hotels division). After you have done so, the CoS has asked that you write a research report that can be shared with middle managers and senior staff to help them understand the problems and issues arising from legal actions taken against Marriott International in response to this data breach in one of its subsidiaries (Starwood Hotels).

Research

I. Read / Review the readings.

II. Research the types of insurance coverage that apply to data breaches. Pay attention to the security measures required by the insurance companies before they will grant coverage ("underwriting requirements") and provisions for technical support from the insurer in the event of a breach. Here are three resources to help you get started.

1. Woodruff Sawyer- Guide to Cyber Liability Insurance

2. Prepare Your Business with Cyber Insurance Coverage and Solutions

3. Woodruff Sawyer- Cyber 101: Understand the Basics of Cyber Liability Insurance

III. Read / Review at least 3 of the following documents about the Marriott International / Starwood Hotels data breach and liability lawsuits.

1. Marriott Starwood Data Breach Highlights Silent Cyber Risk in Acquisitions

2. Marriott Hotels fined £18.4m for data breach that hit millions

3. Marriott First Response Letter

4. What every hotel owner (and operator) needs to know about "data security" after the Wyndham Worldwide case

5. The Marriott data breach

6. Marriott International Update on Starwood Reservation Database Security Incident

IV. Find and review at least 2 additional resources on your own that provide information about data breaches and/or best practices for preventing and responding to such incidents.

Write

Write a 4 to 5 page report using your research. At a minimum, your report must include the following:

I. An introduction or overview of the problem (cyber insurance company's audit findings regarding the company's lack of readiness to respond to data breaches). This introduction should be suitable for an executive audience and should explain what cyber insurance is and why the company needs it.

II. An analysis section in which you discuss the following:

1. Specific types of data involved in the Starwood Hotels data breaches and the harm

2. Findings by government agencies / courts regarding actions Starwood Hotels / Marriott International should have taken

3. Findings by government agencies / courts regarding liability and penalties (fines) assessed against Marriott International.

III. A review of best practices which includes 8 or more specific recommendations that should be implemented as part of Padgett-Beale's updated data breach response policy and plans. Your review should identify and discuss at least 2 best practices for each of the following areas: people, processes, policies, and technologies. Be sure to describe the difference between processes and policies.

IV. A closing section (summary) in which you summarize the issues and your recommendations for policies, processes, and/or technologies that Padgett-Beale, Inc. should implement.

Reference no: EM133715615

Questions Cloud

What is your opinion of ai is technology currently available : What is your definition of AI? Explain. What is your opinion of AI, is the technology currently available? Why or why not?
Clients lose weight prior to surgery : Dr. Anderson is a nutritionist who helps clients lose weight prior to surgery. a male client who is planning on undergoing a heart transplant.
Explore the sections on applications as well as software : Explore the sections on applications as well as software. Find names of at least three additional packages for data mining and text mining.
Spring cleaning his garage and sees clear : Jeremy, a healthy 30-year-old, is spring cleaning his garage and sees clear signs of mice having spent the winter months inside.
Summarize the issues and your recommendations for policies : Summarize the issues and your recommendations for policies, processes, and/or technologies that Padgett-Beale, Inc. should implement.
Describe the pathophysiology of mechanical ventilation. : Describe the pathophysiology of mechanical ventilation. Explain nursing assessment of patients during mechanical ventilation
Successful communication in healthcare organization : The appropriate and effective use of industry-specific terminology is essential to successful communication in a healthcare organization.
Address concerns about the impacts of possible cyberattacks : Address concerns about the impacts of possible cyberattacks. Recently there have been news reports describing cyberattacks on the hospitality industry.
Standard medical treatment alone improve quality of life : In patients with congestive heart failure, does regular aerobic exercise compared to standard medical treatment alone improve quality of life

Reviews

Write a Review

Business Management Questions & Answers

  Caselet on michael porter’s value chain management

The assignment in management is a two part assignment dealing 1.Theory of function of management. 2. Operations and Controlling.

  Mountain man brewing company

Mountain Man Brewing, a family owned business where Chris Prangel, the son of the president joins. Due to increase in the preference for light beer drinkers, Chris Prangel wants to introduce light beer version in Mountain Man. An analysis into the la..

  Mountain man brewing company

Mountain Man Brewing, a family owned business where Chris Prangel, the son of the president joins. An analysis into the launch of Mountain Man Light over the present Mountain Man Lager.

  Analysis of the case using the doing ethics technique

Analysis of the case using the Doing Ethics Technique (DET). Analysis of the ethical issue(s) from the perspective of an ICT professional, using the ACS Code of  Conduct and properly relating clauses from the ACS Code of Conduct to the ethical issue.

  Affiliations and partnerships

Affiliations and partnerships are frequently used to reach a larger local audience? Which options stand to avail for the Hotel manager and what problems do these pose.

  Innovation-friendly regulations

What influence (if any) can organizations exercise to encourage ‘innovation-friendly' regulations?

  Effect of regional and corporate cultural issues

Present your findings as a group powerpoint with an audio file. In addition individually write up your own conclusions as to the effects of regional cultural issues on the corporate organisational culture of this multinational company as it conducts ..

  Structure of business plan

This assignment shows a structure of business plan. The task is to write a business plane about a Diet Shop.

  Identify the purposes of different types of organisations

Identify the purposes of different types of organisations.

  Entrepreneur case study for analysis

Entrepreneur Case Study for Analysis. Analyze Robin Wolaner's suitability to be an entrepreneur

  Forecasting and business analysis

This problem requires you to apply your cross-sectional analysis skills to a real cross-sectional data set with the goal of answering a specific research question.

  Educational instructional leadership

Prepare a major handout on the key principles of instructional leadership

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd