Scenario Padgett-Beale Inc.’s (PBI) insurance company, CyberOne Business and Casualty

  

Scenario

Padgett-Beale Inc.’s (PBI) insurance company, CyberOne Business and Casualty Insurance Ltd, sent an audit team to review the company’s security policies, processes, and plans. The auditors found that the majority of PBI’s operating units did not have specific plans in place to address data breaches and, in general, the company was deemed “not ready” to effectively prevent and/or respond to a major data breach. The insurance company has indicated that it will not renew PBI’s cyber insurance policy if PBI does not address this deficiency by putting an effective data breach response policy and plan in place. PBI’s executive leadership team has established an internal task force to address these problems and close the gaps because they know that the company cannot afford to have its cyber insurance policy cancelled.

Unfortunately, due to the sensitivity of the issues, no management interns will be allowed to shadow the task force members as they work on this high priority initiative. The Chief of Staff (CoS), however, is not one to let a good learning opportunity go to waste … especially for the management interns. Your assignment from the CoS is to review a set of news articles, legal opinions, and court documents for multiple data breaches that affected a competitor, Marriott International (Starwood Hotels division). After you have done so, the CoS has asked that you write a research report that can be shared with middle managers and senior staff to help them understand the problems and issues arising from legal actions taken against Marriott International in response to this data breach in one of its subsidiaries (Starwood Hotels).

Research

1. Read / Review the readings for Weeks 1, 2, 3, and 4.

2. Research the types of insurance coverage that apply to data breaches. Pay attention to the security measures required by the insurance companies before they will grant coverage (“underwriting requirements”) and provisions for technical support from the insurer in the event of a breach. Here are three resources to help you get started.

a.  https://woodruffsawyer.com/wp-content/uploads/2019/06/40842_Woodruff-Sawyer-Cyber-Buying-Guide_Final.pdf 

b. https://www.travelers.com/cyber-insurance

c. https://wsandco.com/cyber-liability/cyber-basics/ 

3. Read / Review at least 3 of the following documents about the Marriott International / Starwood Hotels data breach and liability lawsuits.

a. https://www.insurancejournal.com/news/national/2018/12/03/510811.htm 

b. https://ico.org.uk/about-the-ico/news-and-events/news-and-blogs/2019/07/statement-intention-to-fine-marriott-international-inc-more-than-99-million-under-gdpr-for-data-breach/ 

c. https://www.bbc.com/news/technology-54748843

d. http://starwoodstag.wpengine.com/wp-content/uploads/2019/05/us-en_First-Response.pdf 

e. https://www.consumer.ftc.gov/blog/2018/12/marriott-data-breach 

f. https://news.marriott.com/2019/07/marriott-international-update-on-starwood-reservation-database-security-incident/ 

4. Find and review at least one additional resource on your own that provides information about data breaches and/or best practices for preventing and responding to such incidents. 

5. Using all of your readings, identify at least 5 best practices that you can recommend to Padgett-Beale’s leadership team as it works to improve its data breach response policy and plans. 

Write

Write a three to five (3-5) page report using your research. At a minimum, your report must include the following:

1. An introduction or overview of the problem (cyber insurance company’s audit findings regarding the company’s lack of readiness to respond to data breaches). This introduction should be suitable for an executive audience and should explain what cyber insurance is and why the company needs it.

2. An analysis section in which you discuss the following:

a. Specific types of data involved in the Starwood Hotels data breaches and the harm 

b. Findings by government agencies / courts regarding actions Starwood Hotels / Marriott International should have taken 

c. Findings by government agencies / courts regarding liability and penalties (fines) assessed against Marriott International.

3. A review of best practices which includes 5 or more specific recommendations that should be implemented as part of Padgett-Beale’s updated data breach response policy and plans. Your review should identify and discuss at least one best practice for each of the following areas: people, processes, policies and technologies. (This means that one of the four areas will have two recommendations for a total of 5.)

4. A closing section (summary) in which you summarize the issues and your recommendations for policies, processes, and/or technologies that Padgett-Beale, Inc. should implement.

Submit for Grading

Submit your research paper in MS Word format (.docx or .doc file) using the Research Report #1 Assignment in your assignment folder. (Attach your file to the assignment entry.)

Additional Information

1. To save you time, a set of appropriate resources / reference materials has been included as part of this assignment. You must incorporate at least five of these resources into your final deliverable. You must also include one resource that you found on your own.

2. Your research report should be professional in appearance with consistent use of fonts, font sizes, margins, etc. You should use headings to organize your paper. The CSIA program recommends that you follow standard APA formatting since this will give you a document that meets the “professional appearance” requirements. APA formatting guidelines and examples are found under Course Resources > APA Resources. An APA template file (MS Word format) has also been provided for your use.

3. You are expected to write grammatically correct English in every assignment that you submit for grading. Do not turn in any work without (a) using spell check, (b) using grammar check, (c) verifying that your punctuation is correct and (d) reviewing your work for correct word usage and correctly structured sentences and paragraphs.  

4. You are expected to credit your sources using in-text citations and reference list entries. Both your citations and your reference list entries must follow a consistent citation style (APA, MLA, etc.). 

Share This Post

Email
WhatsApp
Facebook
Twitter
LinkedIn
Pinterest
Reddit

Order a Similar Paper and get 15% Discount on your First Order

Related Questions

Contingency Planning Contingency planning is a risk mitigation process for

 Contingency Planning Contingency planning is a risk mitigation process for developing back-up plans in anticipation of events (scenarios) that might disrupt ‘business as usual’. Business continuity planning is an expanded version of contingency planning that typically encompasses a more comprehensive and extended response plan for getting back to ‘business as

Assignment 1

Use MS Word to complete “Questions to be Graded: Exercise 27” in Statistics for Nursing Research: A Workbook for Evidence-Based Practice.  Submit your work in SPSS by copying the output and pasting into the Word Document. In addition to the SPSS output, Please include explanations of the results where appropriate.

SOAP is an acronym that stands for Subjective, Objective, Assessment,

SOAP is an acronym that stands for Subjective, Objective, Assessment, and Plan. The comprehensive SOAP note is to be written using the attached template below.Comprehensive Women’s H & P Template.docx Download Comprehensive Women’s H & P Template.docx  With your instructor’s permission, you may write an episodic SOAP note in place

Research what a single-payer healthcare system is and the differences

 Research what a single-payer healthcare system is and the differences of this delivery model to the current American healthcare system delivery model and its service-for-fee payment setup. Are one of these systems better than the other? Why or why not? Do you think a single-payer healthcare system in the U.S.

Feminist Criticism in “The Lays of Marie de France”

Length/Format Requirements: Your final project must be at least three pages of essay plus a works cited page; the essay and works cited page must be in MLA8. The essay must include direct quotations from the literature as support for the argument. The works cited page should only list the

Select ONE (1) of the following questions to answer. Make

  Select ONE (1) of the following questions to answer. Make sure to incorporate evidence from this week’s readings to support your argument: One of the core elements of the African American community after the end of slavery was education. Generally, African Americans hungered for learning and placed a high

Crime and Punishment, novel by Fyodor Dostoyevsky,… discussion board

 In class this week, you consider the following scenario: Dostoyevsky’s novel Crime and Punishment the main character plots and carries out the murder of an old woman who has a considerable amount of money in her apartment. After killing her, he steals the money. He argues that She is a

Overview An essential part of developing critical analysis skills is

  Overview An essential part of developing critical analysis skills is self-reflection. In this activity, you will have the opportunity to consider how critically analyzing your example within an area of popular culture has affected your life and how you view the world around you. This activity is your time

APA Format 1) Minimum 2 full pages and full grid

   APA Format  1) Minimum  2  full pages and full grid (No word count per page)- Follow the 3 x 3 rule: minimum three paragraphs per page 2)¨******APA norms          All paragraphs must be narrative and cited in the text- each paragraph          Bulleted responses are not accepted          Don’t write in the

Module 01 Assignment – Presentation on Dementia Scenario As a

  Module 01 Assignment – Presentation on Dementia Scenario As a manager on a medical surgical unit, part of the job responsibility includes chart audits. A trend noted during the most recent audit was the overuse of the term “dementia.” The nurse manager notes that there may be a lack

Please see attached image for all requirements! On one page,

Please see attached image for all requirements! On one page, create a table to be a job aid comparing the different types of homicides. Your table should look something like this: Classification of HomicidesDefinitionExampleCriminal (Felonious)  Murder (First, Second, or Third Degree)  Manslaughter (Voluntary or Involuntary)  Noncriminal (Non-Felonious)  Excusable Homicide  Justifiable

In 300-400 words, answer the questions below. Remember, be sure

  In 300-400 words, answer the questions below.    Remember, be sure to use your own words, and refer to the course materials. What are some exploitative practices that we find in the garment industry?  Why would companies send their factories overseas if they treat their workers so poorly and

Foundation Society and Culture

Essay Structure 1200 word essay, with a minimum of 1,000 words. It is important to ensure your work is within range. Words exceeding the word count will not receive credit. For example, if the introduction and methodology are very long and the method and data collection is not reached by

Scenario You are working as a nurse consultant for the

  Scenario You are working as a nurse consultant for the World Health Organization (WHO). You are asked to create an action plan for an awareness campaign surrounding a major global health issue.Create an action plan for your awareness campaign. Sections of the plan should include: Background and significance of