Technical standards in a policy definition document

Assignment Help Basic Computer Science
Reference no: EM13987632

1. For each of the seven domains of a typical IT infrastructure, describe a policy you would write and implement for each domain.

2. How does separation of duties throughout an IT infrastructure mitigate risk for an organization?

3. When using a layered security approach to system administration, who would have the highest access privileges?

4. Why do you only want to refer to technical standards in a policy definition document?

5. Explain why the seven domains of a typical IT infrastructure help organizations align to separation of duties.

6. Why is it important for an organization to have a policy definition for business continuity and disaster recovery?

7. Create a security management policy that addresses the management and the separation of duties throughout the seven domains of a typical IT infrastructure. You are to define what the information systems security responsibility is for each of the seven domains of a typical IT infrastructure. From this definition, you must incorporate a definition for the separation of duties into the Procedures section of the policy definition template that you will fill out later in this step.

The scenario you are to work with is for the mock Lone Star Credit Union/Bank:

• The organization is a regional Lone Star Credit Union/Bank that has multiple branches and locations throughout the region.

• Online banking and use of the Internet are the bank's strengths, given its limited human resources.

• The customer service department is the organization's most critical business function.

• The organization wants to be in compliance with the Gramm-Leach-Bliley Act (GLBA) and IT security best practices regarding its employees.

• The organization wants to monitor and control use of the Internet by implementing content filtering.

• The organization wants to eliminate personal use of organization-owned IT assets and systems.

• The organization wants to monitor and control use of the e-mail system by implementing e-mail security controls.

• The organization wants to implement this policy for all the IT assets it owns and to incorporate this policy review into its annual security awareness training.

• The organization wants to define a policy framework, including a security management policy defining the separation of duties for information systems security.

Using the following template, create a security management policy with defined separation of duties for the Lone Star Credit

Union/Bank organization (this should not be longer than two pages):

Lone Star Credit Union

Policy Name

Policy Statement

{Insert policy verbiage here.}

Purpose/Objectives

{Insert the policy's purpose as well as its objectives; include a bulleted list of the policy definitions.}

Scope

{Define whom this policy covers and its scope. Which of the seven domains of a typical IT infrastructure are impacted? All seven must be included in the scope. What elements, IT assets, or organization-owned assets are within the scope of this policy? In this case, you are concerned about which IT assets and elements in each of the domains require information systems security management.}

Standards

{Does this policy point to any hardware, software, or configuration standards? If so, list them here and explain the relationship of this policy to these standards. You need to reference technical hardware, software, and configuration standards for IT assets throughout the seven domains of a typical IT infrastructure.}

Procedures

{Explain how you intend to implement this policy for the entire organization. This is the most important part of the policy definition because you must explain and define your separation of duties throughout the seven domains of a typical IT infrastructure. All seven domains must be listed in this section as well as who is responsible for ensuring CIA and security policy implementation within that domain.}

Guidelines

{Explain any roadblocks or implementation issues that you must overcome in this section and how you will surmount them per defined policy guidelines. Any disputes or gaps in the definition and separation of duties and responsibilities may need to be addressed in this section.}

Reference no: EM13987632

Questions Cloud

Tax treatment of interest expense : Robin is on the accrual basis, and Isabelle and Peter are on the cash basis. Isabelle and Peter each loaned the Robin Corporation $40,000 out of their separate funds. On December 31, 2015, Robin accrued interest at 7% on both loans. The interest w..
What are the tax consequences to brittany : Brittany Callihan sold stock (basis of $184,000) to her son, Ridge, for $160,000, the fair market value. a. What are the tax consequences to Brittany?
What is the velocity of the two balls after the collision : A ball moving with a velocity of 8.3 m/s collided with a ball of the same mass but moving at a velocity of - 6.5 m/s. If the coefficient of restitution of the collision is 0.80. What is the velocity of the two balls after the collision?
Tax position of the parties : a. Calculate Elisa and Clyde's AGI. b. Can Chelsie deduct the $1,000 payment on her tax return? Explain. c. How could the tax position of the parties be improved?
Technical standards in a policy definition document : For each of the seven domains of a typical IT infrastructure, describe a policy you would write and implement for each domain.
Method of allocating property taxes and interest : Compute Anna's net rent income or loss and the amounts she can itemize on her tax return, using the court's approach to allocating property taxes and interest. How would your answer in part (a) differ using the IRS's method of allocating property t..
Why do you think the product or service was a great deal : Think about the last time you bought something that you felt was a "great deal." Why do you think the product or service was a great deal? Do you think the firm you acquired the product or service from considered the transaction "great"? Why or wh..
Rental of the vacation cabin : a. What effect does the rental of the vacation cabin have on Sarah's AGI? b. What expenses can Sarah deduct, and how are they classified (i.e., for or from AGI)?
State each step of the proof : Let G be the set of the fifth roots of unity. Use de Moivre's formula to verify that the fifth roots of unity form a group under complex multiplication, showing all work. Prove that G is isomorphic to Z5 under addition by doing the following: State e..

Reviews

Write a Review

Basic Computer Science Questions & Answers

  The right-hand side of this equation be written in vba

How would the right-hand side of this equation be written in VBA?

  Storage system that best fits the needs

An information technology recruiting firm has been growing rapidly over the past few years. The number of clients over the past year has quadrupled, and the number of employees has doubled.

  Develop a candidate architecture to meet the functional

Analyse the Case Study documents and develop a candidate architecture to meet the functional and non-functional requirements you have identified in Assignment 1 and Part A of Assignment 2. Document this candidate architecture with:i. An Archite..

  Write a program that translates a number

Write a program (called Grades) that translates a number between 0 and 4 into the closest letter grade. For example, the number 2.8 (which might have been the average of several grades) would be converted to B-. Break ties in favor of the better g..

  Each letter of a three-letter word stored in memory

Write an LC3 program that "increments" each letter of a three-letter word stored in memory following the program. 'a' becomes 'd', 'n' becomes 'q', 'z' becomes 'c', etc. Make sure you comment your code! This is the Julius Caesar Cipher. Assume that a..

  Smartphones and the great digital divide

Smartphones and the Great Digital Divide on page 282 in the text and answer the questions below. APA formatting guidelines require a title page, abstract page, and reference page in addition to the body of the paper.

  Three students sit in a circle in a classroom

Three students sit in a circle in a classroom. Each student is wearing a hat, either red or white. A student can see the hat (and identify the colour) on the heads of the other two students but on his or her own head. Suppose all the students are wea..

  Overview of query optimization in relational systems

The contents must also conform to IEEE Conference Papers. Specifically, the conclusion must include your critical comments on the topic - Write a Paper on an overview of Query Optimization in Relational Systems

  Integration layers

Integration layers

  Find the big theta for execution time of recurrence

How to find the big theta for execution time of recurrence algorithm and the big theta for memory.

  Identifying potential malicious attacks

You have just been hired as an Information Security Engineer for a video game development company. The organization network structure is identified in the below network diagram and specifically contains:

  Develop the logic for a program

The exact number of household records has not yet been determined, but you know that Marengo has fewer than 300 households. Develop the logic for a program that allows a user to enter each household size and dtermine the mean and median household ..

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd