Answered step by step
Verified Expert Solution
Link Copied!

Question

1 Approved Answer

Information security audit teams assess compliance with information security requirements and identify strengths, weaknesses, opportunities, and threats ( SWOT ) . Formal standards or frameworks

Information security audit teams assess compliance with information security requirements and identify strengths, weaknesses, opportunities, and threats (SWOT). Formal standards or frameworks such as, but not limited to, ISO27001, ISO22301, GDPR, and NIST can be used to support formal security gap analysis.
Working as a team, select a formal standard. Construct a gap analysis matrix that captures the top 10 information security requirements. The matrix should, at a minimum, include the following:
Columns for the critical level of the requirement
Level of compliance
Responsible organization
Findings
Recommendations
Assume 5 of the 10 requirements do not meet the compliance criteria.
Hypothesize the responsible accountable organization, findings, and recommendations for the noncompliant requirements.
image text in transcribed

Step by Step Solution

There are 3 Steps involved in it

Step: 1

blur-text-image

Get Instant Access to Expert-Tailored Solutions

See step-by-step solutions with expert insights and AI powered tools for academic success

Step: 2

blur-text-image

Step: 3

blur-text-image

Ace Your Homework with AI

Get the answers you need in no time with our AI-driven, step-by-step assistance

Get Started

Recommended Textbook for

Graph Databases New Opportunities For Connected Data

Authors: Ian Robinson, Jim Webber, Emil Eifrem

2nd Edition

1491930896, 978-1491930892

More Books

Students also viewed these Databases questions