The purpose of this assignment is to develop a risk

The purpose of this assignment is to develop a risk model, define the risk program goals, and communicate the program implementation strategy.

Using the company selected for the Topic 5 and Topic 6 assignments, establish a comprehensive security risk program for the organization. Write a 750-1,000 word executive summary that contains the following information.

Introduction

Summarize the company security profile developed for the Topic 5 assignment.

Identify the regulatory compliance and control standards to which the company must adhere.

Risk Management Framework

Justify the selected risk management framework (e.g., NIST 800-37, OCTAVE Allegro, FAIR, FRAAP, NIST 800-30).

Define the steps within the risk management framework being adopted.

Include a workflow diagram (created from MS Vision, OpenDraw, or other drawing software) that illustrates how management will make effective decisions for each stage.

Describe how architecture and system updates will be selected and applied.

Risk Management Program

Explain how the SRR and TVM integrate into the framework (i.e. which steps are they integrated within, or which step do they follow after).

Discuss the life cycle for the program, including activities such as vulnerability management, risk identification, risk rating/prioritization, security risk review, architecture changes audits, etc.

Conclusion

Summarize the benefits of applying the framework for the company.

Prepare this assignment according to the guidelines found in the APA Style Guide, located in the Student Success Center. An abstract is not required.

You are required to submit this assignment to LopesWrite. A link to the LopesWrite technical support articles is located in Course Materials if you need assistance. 

Benchmark Information

This benchmark assignment assesses the following programmatic competencies:

MS Information Technology Management

3.3: Evaluate the components of IT governance frameworks to ensure regulatory compliance within organizations. 

MS Information Assurance and Cybersecurity

1.4: Evaluate the components of IT governance frameworks to ensure regulatory compliances within organizations.

Share This Post

Email
WhatsApp
Facebook
Twitter
LinkedIn
Pinterest
Reddit

Order a Similar Paper and get 15% Discount on your First Order

Related Questions

Crisis in Theatre: Examining two of the core syllabus plays, discuss

1.Examining two of the core syllabus plays, discuss how contemporary playwrights have conveyed the urgency of current or impending social crises through formal experimentation and argue as to the effectiveness of their representational methods. 2.A number of the plays we are examining highlight the concern of mental health crisis. Drawing

Misplaced Affections: Discharge for Sexual Harassment, Pages 116 (Chapter 3

    Misplaced Affections: Discharge for Sexual Harassment, Pages 116 (Chapter 3 ). . Read the Case Study entitled, “Misplaced Affections: Discharge for Sexual Harassment”       several times to get a good understanding of the case…   Write a COVER PAGE, then, write a short summary of the case, then,  answer all of the

Week 1 DiscussionDiscussion Topic Overdue – Last Thu at 11:59

  Week 1 DiscussionDiscussion Topic Overdue – Last Thu at 11:59 PMBefore beginning work on this discussion forum, please review the link “Doing Discussion Questions Right,” the expanded grading rubric for the forum, and any specific instructions for this topic. Before the end of the week, begin commenting on at

Using the same design challenge that you selected in Week

Using the same design challenge that you selected in Week 6 and completed the Week 7 assignment on, develop an Innovation Metric. Focusing only on understanding the job at this point (there should be no discussion of solutions, ideas, or concepts in this assignment) develop the following four slides: You will need to

THE HISTORY OF BUSINESS ETHICS AND STAKEHOLDER THEORY IN AMERICA

   THE HISTORY OF BUSINESS ETHICS AND STAKEHOLDER THEORY IN AMERICA Based on your readings, describe what you consider to be the responsibility of top leadership in a large organization with respect to reaching a balance between profits and stakeholder concerns. Please support your position by giving some examples from

no cover page and no reference page needed….. due in

no cover page and no reference page needed….. due in 8 hours Based on Business Administration managing cultural diversity Answer the following question:  What is the role of socialization in women’s and men’s “choice” of occupations and how do these relationships affect sex segregation and the wage gap? Half page

I need this paraphrased, provide turnitin.com report under 10%. This

  I need this paraphrased, provide turnitin.com report under 10%. This week’s Unit 5 lab was to conduct penetration testing on a pfsense firewall, in order to detect open vulnerabilities in an environment. The tool used for this was Nessus. We created a Basic network Scan template and specified it for

STUDIO ART SHORT ESSAY – Premium Paper Help

Premium Paper Help is a professional writing service that provides original papers. Our products include academic papers of varying complexity and other personalized services, along with research materials for assistance purposes only. All the materials from our website should be used with proper references.

The goal of protecting patient information privacy often conflicts with

 The goal of protecting patient information privacy often conflicts with the goal of providing the improved healthcare that EMRs can support. Provisions in HIPAA provide some confidentiality protection, but not enough. Potential for a major privacy breach lies in the system of primary or secondary users. Please review: Rodriguez, L.

First, explain to the class the relationship between victimization and

First, explain to the class the relationship between victimization and offending (section II), making certain to draw support from the readings for your explanation. Then, you will need to conduct a 20-30 minute internet investigation and locate an empirical research article focused on female offenders or female victims. Summarize the

Insurance Providers As a manager, you have been chosen to

Insurance Providers  As a manager, you have been chosen to present information on two choices for your company’s new health insurance carrier for employees. Assume you are also able to use an insurer within the Gulf Cooperation Council. Research the various providers in Saudi Arabia and choose one that meets

Regardless of political affiliation, individuals often grow concerned

Regardless of political affiliation, individuals often grow concerned when considering perceived competing interests of government and their impact on topics of interest to them. The realm of healthcare is no different. Some people feel that local, state, and federal policies and legislation can be either helped or hindered by interests

PLEASE POST EACH DISCUSSION SEPARATELY!!!! Discussion 1 (1 PAGE 1)

PLEASE POST EACH DISCUSSION SEPARATELY!!!! Discussion 1 (1 PAGE 1) Explain, briefly, one of the major theories of development. 2) Describe how you will use the information learned in this class to further yourself professionally. Discussion 2 (1 PAGE) 1) Discuss the way in which the various sensory systems develop