The purpose of this assignment is to develop a risk

The purpose of this assignment is to develop a risk model, define the risk program goals, and communicate the program implementation strategy.

Using the company selected for the Topic 5 and Topic 6 assignments, establish a comprehensive security risk program for the organization. Write a 750-1,000 word executive summary that contains the following information.

Introduction

Summarize the company security profile developed for the Topic 5 assignment.

Identify the regulatory compliance and control standards to which the company must adhere.

Risk Management Framework

Justify the selected risk management framework (e.g., NIST 800-37, OCTAVE Allegro, FAIR, FRAAP, NIST 800-30).

Define the steps within the risk management framework being adopted.

Include a workflow diagram (created from MS Vision, OpenDraw, or other drawing software) that illustrates how management will make effective decisions for each stage.

Describe how architecture and system updates will be selected and applied.

Risk Management Program

Explain how the SRR and TVM integrate into the framework (i.e. which steps are they integrated within, or which step do they follow after).

Discuss the life cycle for the program, including activities such as vulnerability management, risk identification, risk rating/prioritization, security risk review, architecture changes audits, etc.

Conclusion

Summarize the benefits of applying the framework for the company.

Prepare this assignment according to the guidelines found in the APA Style Guide, located in the Student Success Center. An abstract is not required.

You are required to submit this assignment to LopesWrite. A link to the LopesWrite technical support articles is located in Course Materials if you need assistance. 

Benchmark Information

This benchmark assignment assesses the following programmatic competencies:

MS Information Technology Management

3.3: Evaluate the components of IT governance frameworks to ensure regulatory compliance within organizations. 

MS Information Assurance and Cybersecurity

1.4: Evaluate the components of IT governance frameworks to ensure regulatory compliances within organizations.

Share This Post

Email
WhatsApp
Facebook
Twitter
LinkedIn
Pinterest
Reddit

Order a Similar Paper and get 15% Discount on your First Order

Related Questions

In a two-page paper, identify the physics principles contained within

  In a two-page paper, identify the physics principles contained within the following scenario. Explain how these principals connect to Einstein’s theory of relativity or in modern applications in physics. If you use a GPS option on your car or a mobile device, you are using Einstein’s theory of relativity.

Porter: Making Sense of Competitive Forces

 Option B: Case Study: An appreciation for the practical realities of implementing the business model/concept in the form of a case study. This can be about any business of your choosing. Data might be obtained online, from advertising information, business records etc, and students should show the practical realty and

Just write a reply to these two posts. Write in

 Just write a reply to these two posts. Write in your own words.   Your required replies to your classmates should include:  what you do agree and / or disagree with their post and do you have any questions about their perception of the sources?  Please differentiate which reply is which.  150

Thread. A word with which we all are familiar. The

Thread. A word with which we all are familiar. The first relevance that arrives in our minds is the sewing thread. But that’s not the focus here. Here we are discussing mechanical threads. Baffled yet? We’ll make it simple for you. In the mechanical industry, threads are valued massively. If

As part of your e-portfolio that is due in Week Four, you will include a statement of ethics. In this week’s blog post, please compose a statement of ethics of 250-500 words. Whereas the Professional Nursing Assignment Help

As part of your e-portfolio that is due in Week Four, you will include a statement of ethics. In this week’s blog post, please compose a statement of ethics of 250-500 words. Whereas the Professional Philosophy Statement (work statement) from Week One focused on specific knowledge, skills and experience, the

Now, think of a leader or presenter whose communication has

 Now, think of a leader or presenter whose communication has made an impact on you. (Maybe it’s a politician, a teacher, a coach, or a boss.) What communication techniques does this person use? Is there a particular technique you’ve learned this week that you would like to use in the

Directions: Vertigo often presents as dizziness, which can have many

Directions:  Vertigo often presents as dizziness, which can have many causes. In this discussion, we will examine causes and their related anatomy and physiology. Within the article, The Treatment and Natural Course of Peripheral and Central Vertigo, select one type of vertigo to read about. Focus on the anatomy and

Final Case Study – Similar to how you selected a

Final Case Study –  Similar to how you selected a large organization to study in the major project, select a new one for your team. Research, analyze, apply our concepts learned in this course and answer all of the questions below regarding the corporation. With this information, write a paper and a

Explain how you performed your research for the project with

   Explain how you performed your research for the project with the use of a minimum of 5 different research sources. The names of these research sources can be a website, a book, an eBook, a journal or a newspaper article. Do not give the website URL address in this

Telephony Signaling

 Use credible Internet resources of your choice as well as the study materials to explain the two main requirements for signaling and describe the three main categories of signaling, emphasizing the different types of signaling methods. Define the purpose of telephony signaling. Describe the evolution, applications, and trends in telephony

Create an Evaluation Matrix Chart in MS Excel comparing 3

Create an Evaluation Matrix Chart in MS Excel comparing 3 technology careers for each criterion.  What should be in the matrix: Three technology careers from Chapter Module 8. (i.e. system analysis, software engineer, help desk technician) to evaluate. Three criteria (all students must use these criteria).   Formulas in each cell

You work for a marketing department in a hospital within

You work for a marketing department in a hospital within a suburban location of a large metropolitan area. Though it neighbors million-dollar homes, the hospital’s mission includes providing care to underserved and indigent populations in the area. A new primary care physician moved into the area and approached your hospital

Please show your work in order to earn part marks.

Please show your work in order to earn part marks. Answers must have correct units. Accuracy should be to the nearest dollar, percentages to the nearest 0.1%, and decimal equivalents to the nearest 0.0001. The assignment should be submitted in document format. Each of your final answers should be in

SEU Chronic Disease Epidemiology Questions Nursing Assignment Help

Expert Solution Preview Introduction: As a medical professor, my role is multifaceted and involves designing and conducting lectures, evaluating student performance, and providing feedback through examinations and assignments. It is essential to create assignments that challenge and assess the knowledge, critical thinking skills, and practical application of medical college students.

For this discussion, in three to four paragraphs, contrast two

 For this discussion, in three to four paragraphs, contrast two nursing models and theories found in your reading. Discuss how they are similar or different in the way the define/discuss health and wellness, illness, the client, the environment, and nursing. Summarize by selecting the one model or theory that aligns

pick a company to analyze. The company should be publicly

pick a company to analyze. The company should be publicly traded and have at least one year of trading history and one set of annual financial statements. The company can be listed in any market.   Topics and Key Questions  I. Corporate Governance Analysis Is this a company where there