Chat with us, powered by LiveChat Discussion questions for security strategy and policy | WriteDemy

Question Description

1. "Importance of Security Policies" Please respond to the following:

  • Explain the significance of information systems security policies and the challenges and issues associated with ineffective or nonexistent policies in an organization.
  • Propose three methods that organizations can use to increase the acceptance of policies within their organization. Explain the potential challenges to implementing these methods.

2. "Security Controls and Security Policies" Please respond to the following:

  • Examine the classifications of security controls (physical, administrative, and technical) and the types of security controls (preventive, detective, and corrective). Explain how these different types of controls are used to enforce security policies within an organization.
  • Explain the classifications and the type of security controls that are most challenging to implement. Include suggestions for overcoming these challenges.

3. "CIPA" Please respond to the following:

  • From the e-Activity, describe the purpose of CIPA and whom it applies to. Determine why it is important for people attending schools and libraries affected by CIPA to know which schools and libraries must comply with CIPA versus those that do not.
  • From the e-Activity, determine some of the legal and technical challenges and issues with the implementation of CIPA.

LINK TO THE E-ACTIVITY: Organizations must be aware of the different regulations that apply to their organization and business sector, such as HIPAA, FERPA, CIPA, and others. The Children’s Internet Protection Act (CIPA) is one law that attempts to limit the exposure of children to sexually explicit material at libraries and schools. Review the information located at http://www.fcc.gov/guides/childrens-internet-protection-act. Be prepared to discuss.

4. "Domains of IT Responsibility" Please respond to the following:

  • Select one of the seven domains of IT responsibility and describe what is encompassed within that domain from a security perspective. Include an explanation of the common security controls implemented within the domain that you selected.
  • Describe the business challenges associated with the domain you selected. Determine the security controls and policies needed to overcome these challenges.

5. "Policy Implementation Issues" Please respond to the following:

  • Describe the basic elements of human nature and how they affect information security policy development and impact information security policy implementation issues.
  • Propose at least three ways that organizations can overcome these policy development and implementation issues.

6. "ISO / IEC 27000 Series and NIST" Please respond to the following:

  • Determine the part of an IT security program that you believe is the most challenging for organizations to implement. Justify your reasoning.
  • Analyze the business considerations, information assurance, and information systems security considerations that impact the area that you identified as being most challenging to implement. Provide at least two recommendations for IT management to implement to align the information assurance and security considerations with the business goals.

7. "Principles for Policy and Standards Development" Please respond to the following:

  • Select two principles for policy and standards development (accountability, awareness, ethics, multidisciplinary, proportionality, integration, defense-in-depth, timeliness, reassessment, democracy, internal control, adversary, least privilege, continuity, simplicity, and policy-centered security). Examine how these principles would be the same and different for a health care organization and a financial organization.
  • Determine which type of organization would have the most difficulty implementing the principles you selected. Support your answer.

8. "OCTAVE" Please respond to the following:

  • From the e-Activity, provide a brief explanation of the Operationally, Critical Threat, Asset, and Vulnerability Evaluation (OCTAVE) methods. Explain how they are beneficial for organizations developing their IT risk management approaches.
  • From the e-Activity, explain how the size of the organization impacts the OCTAVE method utilized. Determine the factors that large organizations, as opposed to small organizations, are most concerned with.

LINK TO THE E-ACTIVITY: Operationally, Critical Threat, Asset, and Vulnerability Evaluation (OCTAVE) is a commonly used methodology for risk-based information security assessment and planning. Review the information located at http://www.cert.org/octave/. Be prepared to discuss.

Our website has a team of professional writers who can help you write any of your homework. They will write your papers from scratch. We also have a team of editors just to make sure all papers are of HIGH QUALITY & PLAGIARISM FREE. To make an Order you only need to click Ask A Question and we will direct you to our Order Page at WriteDemy. Then fill Our Order Form with all your assignment instructions. Select your deadline and pay for your paper. You will get it few hours before your set deadline.

Fill in all the assignment paper details that are required in the order form with the standard information being the page count, deadline, academic level and type of paper. It is advisable to have this information at hand so that you can quickly fill in the necessary information needed in the form for the essay writer to be immediately assigned to your writing project. Make payment for the custom essay order to enable us to assign a suitable writer to your order. Payments are made through Paypal on a secured billing page. Finally, sit back and relax.

Do you need an answer to this or any other questions?

About Writedemy

We are a professional paper writing website. If you have searched a question and bumped into our website just know you are in the right place to get help in your coursework. We offer HIGH QUALITY & PLAGIARISM FREE Papers.

How It Works

To make an Order you only need to click on “Place Order” and we will direct you to our Order Page. Fill Our Order Form with all your assignment instructions. Select your deadline and pay for your paper. You will get it few hours before your set deadline.

Are there Discounts?

All new clients are eligible for 20% off in their first Order. Our payment method is safe and secure.

Hire a tutor today CLICK HERE to make your first order