Reference no: EM132372283 , Length: word count:3000
Information Security Management Assignment -
Objectives - In this assessment task, you will analyse the scenario and discuss in a report as to how you apply the principles of information security risk management as well as information security certification and accreditation to the organisation in the given scenario.
Assessment Task - You are required to analyse and write a report on
a) guidelines for information security risk management
b) guidelines for information security certification and accreditation for the organisation described in the scenario.
You should ensure that you support your discussion with references and justify the content of your discussion.
Your report should include:
1. Executive Summary
2. Table of Contents
3. Introduction
4. Discussion
5. Conclusion
6. References
Note - Length: 3000 words (±500 words) and you must follow the Harvard citation and referencing guidelines.
The Scenario for Information Security Management Assessment Tasks
FuturePlus is a newly established, independent charity organisation helping disadvantaged Australian students to continue their education, giving them a chance to a future full of possibilities. To start with, the support includes payments for tuition fees and educational supplies, as well as for student accommodations. However, the organisation plans to develop and offer more programs to help the disadvantaged students, for example, early intervention and tutoring programs. The costs are covered through public donations. FuturePlus collects one-off as well as monthly donations through their website equipped with a secure payment system. They also run special fund-raising drives twice a year by advertising about the event on national television, on their website, and via SMS and e-mails sent to donor list extracted from their donor database.
To manage the operations of the organisation, they have recruited both full-time as well as casual staff. The full-time staff consist of an Operating Manager, an Accountant, a Planning Officer, two Case Officers, and three support staff. There are three casual staff providing extra support to the Case Officers with eligibility checks and visits to the candidate students, also providing updates on students who receive help from FuturePlus. However, the organisation is planned to grow in the number of staff members, and students they support in the next few years.
FuturePlus operates from Sydney CBD, occupying one floor of a high-rise building. They have got their network designed and rolled out by your company, with all the servers located in their premise, and have employed your company to provide them ongoing network support. Their office network site is connected to the Internet via 5G cellular wireless technology. They require their database servers and the website to be up and running 24/7. FuturePlus provides their casual staff with portable devices to take on-site case notes during their site visits and send these to the office via secure communications. Since they store sensitive information about their donors, students receiving donations, as well as payment details such as bank account and credit card information, it is of utmost importance that their servers and communications over the Internet are completely secure.
FuturePlus has requested your company's service of designing a suitable information security program for their organisation.