Instruction
Assignment 1 (one short paragraph): Separation of Duties
Discuss examples of roles you would separate and why. For example, an administrator has full administrative server login access, and a network technician has limited administrative access but can view system login details. Payroll has access to employee financial records, but only payroll managers can approve raises. Submit a summary of your learning as a bulleted list that explains the importance of separation of duties for personnel.
Best Practices for IT Infrastructure Security Policies
Select one of the following topics as it pertains to IT infrastructure security policies. Submit a summary of best practices in that category.
♣ IT framework selection
♣ When to modify existing policies that belong to other organizations versus creating your own policies from scratch
♣ Policy flexibility
♣ Cohesiveness
♣ Coherency
♣ Ownership
Assignment 2: 2 pages double spaced
Scenario
You work as a junior security analyst for a governmental organization with Department of Defense (DoD) ties. Your manager has asked you to:
♣ Identify and explain three business considerations relating to security policy frameworks
♣ Describe the factors relating to them, especially for a DoD-focused organization
Your organization’s long-term strategic goal is to make DoD its primary focus of business. In doing so, your organization will be faced with a different set of business considerations, that is, DoD contracts, their security level requirements, and their time constraints.
Assignment Requirements
Create a table showing three DoD frameworks and align them to your firm’s business considerations and goal of becoming a DoD-focused organization. Include an introduction describing business considerations relating to a DoD-supplier organization. Be sure to include a conclusion and rationale.
Required Resources
♣ N/A
Submission Requirements
♣ Format: Microsoft Word
♣ Font: Times New Roman, 12-Point, Double-Space
♣ Citation Style: APA
♣ Length: 2-3 pages
Self-Assessment Checklist
♣ I created a report with an introduction, a table with three frameworks that apply to my organization, rationale for my selections, and a conclusion.
Assignment 3: 2 pages double spaced
Scenario
You are appointed as an information technology (IT) security manager in the XYZ health care organization. This large, publically traded health care organization has 25 sites across the region with 2,000 staff members and thousands of patients. Sean, your manager, has asked you to analyze the current state of the corporation and then identify an appropriate IT security policy framework. He wants to know how you would approach this task.
Assignment Requirements
Write a report on how you would analyze your organization and how you would select an appropriate security policy framework. Sean will compare your findings to his, and then move forward with the appropriate IT security policy framework.
Be sure to research these steps from the course textbook, your college library, or the Internet, and use these methods to formulate your recommendations. Complete a report no longer than three pages describing how you would approach the task above.
Required Resources
♣ Access to the Internet
Submission Requirements
♣ Format: Microsoft Word
♣ Font: Times New Roman, 12-Point, Double-Space
♣ Citation Style: APA
♣ Length: 2-3 pages
Self-Assessment Checklist
♣ I identified methods for analyzing the organization and selecting an IT security policy framework.