Legal, ethical and professional issues-information security, Computer Network Security

Assignment Help:

LEGAL, ETHICAL AND PROFESSIONAL ISSUES

To minimize liabilities and reduce risks, information security practitioner should:
•    to understand current legal environment
•    to stay updated with laws and regulations
•    to watch for new issues which emerge.

The rules the members of a society to balance the right of the individual to self determination with the requirements of the society as a whole are called as laws.

Laws: Rulesaa which mandate or prohibit certain societal behavior.

Ethics: This defines socially acceptable behavior.

The basic difference between laws and ethics is which laws carry the sanctions of a governing authority and ethics do not. Ethics in turn based on cultural mores that fixed moral attitudes and customs of a particular group. The different types of laws are

Civil: Governs the nation or state.

Criminal: Addresses violations is harmful to society.

Tort:  Enables individuals to look for recourse against others in the event of personal, physical or financial injuries.

Private: Regulates relationship between individual and the organization, and encompasses family law, commercial law and labor law.

Public: Regulates structure and administration of government agencies and their relationships with citizens, employees, and other governments giving careful checks and balances.

Policy Versus Law: Most organizations develop and formalize a body of expectations known as policy. Policies serve as organizational laws complete with penalties and sanctions to require compliance.
To be enforceable, policy should be distributed, readily available, understood easily and acknowledged by employees.

Ethics and Information Security
The ethical issues particular to information security, follows the Ten Commandments of Computer Ethics. They are

The Ten Commandments of computer Ethics
From the Computer Ethics institute
1.  Not use a computer to harm other people.
2.  Not interfere with other people’s computer work
3.  Not snoop around in other people’s computer files.
4.  Not use a computer to steal.
5.  Not use a computer to bear false witness.
6.  Not copy or use proprietary software for which you haven’t paid.
7.  Not used other people’s computer resources   without authorization or proper      compensation.
8.  Not appropriate other people’s intellectual output.
9.  Not think about the social consequences of the program you are writing or the system you    are designing.
10. Always use a computer in ways which ensure consideration and respect for your fellow humans.

Ethical Differences Across Cultures
Cultural differences generate difficulty in determining what is and is not ethical especially when considering the use of computers. Difficulties occur when one nationality’s ethical behavior conflicts with the ethics of another national group. For instance: many of ways in which Asian cultures use computer technology is software piracy


Related Discussions:- Legal, ethical and professional issues-information security

Issue-specific security policy (issp), Issue-Specific Security Policy (ISSP...

Issue-Specific Security Policy (ISSP) The ISSP addresses specific areas of technology, needs frequent updates and having statement on organization’s position on a particular iss

The Security Systems Development Life Cycle (SecSDLCtle.., #Under what circ...

#Under what circumstances would the use of a SecSDLC be more appropriate than an SDLC?

Social network development in java , Social Network development in Java: ...

Social Network development in Java: Project Title: SUGGESTLOCAL (Nov 2006-April 2007) Role             : Developer Domain        : Social Network Client          :

Intercultural sensitivity: recognising differences, Intercultural sensitivi...

Intercultural sensitivity: recognising differences You represent a Mauritian computer company which is negotiating to buy hardware from a manufacturer in Japan. In your first

Ids-information security, IDS Intrusion is a attack on information assets...

IDS Intrusion is a attack on information assets in which instigator attempts to gain entry into or disrupt normal system with harmful intent Incident response is an identificatio

Risk determination, Risk Determination For purpose of relative risk asse...

Risk Determination For purpose of relative risk assessment, risk equals probability of vulnerability occurrence TIMES value MINUS percentage risk already controlled PLUS an elem

Calculate the minimum required signal strength, Question 1: (a) (i) Ra...

Question 1: (a) (i) Radio waves are subject to several propagation problems. Name any three of them. (ii) A Wi-Fi receiver requires a signal power of 50mW to operate correc

Datagram reassembly, DATAGRAM REASSEMBLY Recreation of original datagr...

DATAGRAM REASSEMBLY Recreation of original datagram is known as reassembly. Ultimate receiver acts reassembly as given below.Fragments can reach out of order. Header bit check

Legal, LEGAL, ETHICAL AND PROFESSIONAL ISSUES To minimize liabilities an...

LEGAL, ETHICAL AND PROFESSIONAL ISSUES To minimize liabilities and reduce risks, information security practitioner should: •    to understand current legal environment •    to s

Write Your Message!

Captcha
Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd