Technical standards in a policy definition document

Assignment Help Basic Computer Science
Reference no: EM13987632

1. For each of the seven domains of a typical IT infrastructure, describe a policy you would write and implement for each domain.

2. How does separation of duties throughout an IT infrastructure mitigate risk for an organization?

3. When using a layered security approach to system administration, who would have the highest access privileges?

4. Why do you only want to refer to technical standards in a policy definition document?

5. Explain why the seven domains of a typical IT infrastructure help organizations align to separation of duties.

6. Why is it important for an organization to have a policy definition for business continuity and disaster recovery?

7. Create a security management policy that addresses the management and the separation of duties throughout the seven domains of a typical IT infrastructure. You are to define what the information systems security responsibility is for each of the seven domains of a typical IT infrastructure. From this definition, you must incorporate a definition for the separation of duties into the Procedures section of the policy definition template that you will fill out later in this step.

The scenario you are to work with is for the mock Lone Star Credit Union/Bank:

• The organization is a regional Lone Star Credit Union/Bank that has multiple branches and locations throughout the region.

• Online banking and use of the Internet are the bank's strengths, given its limited human resources.

• The customer service department is the organization's most critical business function.

• The organization wants to be in compliance with the Gramm-Leach-Bliley Act (GLBA) and IT security best practices regarding its employees.

• The organization wants to monitor and control use of the Internet by implementing content filtering.

• The organization wants to eliminate personal use of organization-owned IT assets and systems.

• The organization wants to monitor and control use of the e-mail system by implementing e-mail security controls.

• The organization wants to implement this policy for all the IT assets it owns and to incorporate this policy review into its annual security awareness training.

• The organization wants to define a policy framework, including a security management policy defining the separation of duties for information systems security.

Using the following template, create a security management policy with defined separation of duties for the Lone Star Credit

Union/Bank organization (this should not be longer than two pages):

Lone Star Credit Union

Policy Name

Policy Statement

{Insert policy verbiage here.}

Purpose/Objectives

{Insert the policy's purpose as well as its objectives; include a bulleted list of the policy definitions.}

Scope

{Define whom this policy covers and its scope. Which of the seven domains of a typical IT infrastructure are impacted? All seven must be included in the scope. What elements, IT assets, or organization-owned assets are within the scope of this policy? In this case, you are concerned about which IT assets and elements in each of the domains require information systems security management.}

Standards

{Does this policy point to any hardware, software, or configuration standards? If so, list them here and explain the relationship of this policy to these standards. You need to reference technical hardware, software, and configuration standards for IT assets throughout the seven domains of a typical IT infrastructure.}

Procedures

{Explain how you intend to implement this policy for the entire organization. This is the most important part of the policy definition because you must explain and define your separation of duties throughout the seven domains of a typical IT infrastructure. All seven domains must be listed in this section as well as who is responsible for ensuring CIA and security policy implementation within that domain.}

Guidelines

{Explain any roadblocks or implementation issues that you must overcome in this section and how you will surmount them per defined policy guidelines. Any disputes or gaps in the definition and separation of duties and responsibilities may need to be addressed in this section.}

Reference no: EM13987632

Questions Cloud

Tax treatment of interest expense : Robin is on the accrual basis, and Isabelle and Peter are on the cash basis. Isabelle and Peter each loaned the Robin Corporation $40,000 out of their separate funds. On December 31, 2015, Robin accrued interest at 7% on both loans. The interest w..
What are the tax consequences to brittany : Brittany Callihan sold stock (basis of $184,000) to her son, Ridge, for $160,000, the fair market value. a. What are the tax consequences to Brittany?
What is the velocity of the two balls after the collision : A ball moving with a velocity of 8.3 m/s collided with a ball of the same mass but moving at a velocity of - 6.5 m/s. If the coefficient of restitution of the collision is 0.80. What is the velocity of the two balls after the collision?
Tax position of the parties : a. Calculate Elisa and Clyde's AGI. b. Can Chelsie deduct the $1,000 payment on her tax return? Explain. c. How could the tax position of the parties be improved?
Technical standards in a policy definition document : For each of the seven domains of a typical IT infrastructure, describe a policy you would write and implement for each domain.
Method of allocating property taxes and interest : Compute Anna's net rent income or loss and the amounts she can itemize on her tax return, using the court's approach to allocating property taxes and interest. How would your answer in part (a) differ using the IRS's method of allocating property t..
Why do you think the product or service was a great deal : Think about the last time you bought something that you felt was a "great deal." Why do you think the product or service was a great deal? Do you think the firm you acquired the product or service from considered the transaction "great"? Why or wh..
Rental of the vacation cabin : a. What effect does the rental of the vacation cabin have on Sarah's AGI? b. What expenses can Sarah deduct, and how are they classified (i.e., for or from AGI)?
State each step of the proof : Let G be the set of the fifth roots of unity. Use de Moivre's formula to verify that the fifth roots of unity form a group under complex multiplication, showing all work. Prove that G is isomorphic to Z5 under addition by doing the following: State e..

Reviews

Write a Review

Basic Computer Science Questions & Answers

  Identifies the cost of computer

identifies the cost of computer components to configure a computer system (including all peripheral devices where needed) for use in one of the following four situations:

  Input devices

Compare how the gestures data is generated and represented for interpretation in each of the following input devices. In your comparison, consider the data formats (radio waves, electrical signal, sound, etc.), device drivers, operating systems suppo..

  Cores on computer systems

Assignment : Cores on Computer Systems:  Differentiate between multiprocessor systems and many-core systems in terms of power efficiency, cost benefit analysis, instructions processing efficiency, and packaging form factors.

  Prepare an annual budget in an excel spreadsheet

Prepare working solutions in Excel that will manage the annual budget

  Write a research paper in relation to a software design

Research paper in relation to a Software Design related topic

  Describe the forest, domain, ou, and trust configuration

Describe the forest, domain, OU, and trust configuration for Bluesky. Include a chart or diagram of the current configuration. Currently Bluesky has a single domain and default OU structure.

  Construct a truth table for the boolean expression

Construct a truth table for the Boolean expressions ABC + A'B'C' ABC + AB'C' + A'B'C' A(BC' + B'C)

  Evaluate the cost of materials

Evaluate the cost of materials

  The marie simulator

Depending on how comfortable you are with using the MARIE simulator after reading

  What is the main advantage of using master pages

What is the main advantage of using master pages. Explain the purpose and advantage of using styles.

  Describe the three fundamental models of distributed systems

Explain the two approaches to packet delivery by the network layer in Distributed Systems. Describe the three fundamental models of Distributed Systems

  Distinguish between caching and buffering

Distinguish between caching and buffering The failure model defines the ways in which failure may occur in order to provide an understanding of the effects of failure. Give one type of failure with a brief description of the failure

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd