Answered step by step
Verified Expert Solution
Link Copied!

Question

1 Approved Answer

Scenario You recently stepped into the role of information security manager at a medium-sized e-commerce company with roughly 500 to 1,000 employee's organization-wide. The company

Scenario You recently stepped into the role of information security manager at a medium-sized e-commerce company with roughly 500 to 1,000 employee's organization-wide. The company has hired a third-party consultant to evaluate its information security posture. The consultant has concluded the evaluation and noted several high security risks. These action items must be addressed to ensure that the companys information assets are secure. Your task is to provide recommendations to address multiple identified security risks and explain your decisions to your leadership team. Directions Memo Template: To communicate the identified information security risks and your recommendations and explanations, you will generate a memo to your leadership team. Your recommendations do not have to address all information security risks; however, they must address multiple risks. Be mindful that your leadership team is considered a nontechnical audience. You must complete each of the following sections: Introduction: Describe how addressing the evaluated elements of information security will support the companys business objectives. Laws and Regulations: Explain how laws and regulations influence information security policies and procedures within this company. Technical Controls: Describe the technical controls that you would recommend addressing the multiple indicated information security risks from the consultants findings. Administrative Controls: Describe the administrative controls that you would recommend addressing the multiple indicated information security risks from the consultants findings. Physical Controls: Describe the physical controls that you would recommend addressing the multiple indicated information security risks from the consultants findings. Business Impact: Explain how your recommendations impact current information security policies and practices within this company. Conclusion: Explain why leadership should act on these control recommendations to improve the companys information security posture. Your conclusion can also include a brief summary, although it is not required.

Step by Step Solution

There are 3 Steps involved in it

Step: 1

blur-text-image

Get Instant Access to Expert-Tailored Solutions

See step-by-step solutions with expert insights and AI powered tools for academic success

Step: 2

blur-text-image_2

Step: 3

blur-text-image_3

Ace Your Homework with AI

Get the answers you need in no time with our AI-driven, step-by-step assistance

Get Started

Recommended Textbook for

Management

Authors: Stephen P Robbins, Mary Coulter

11th Edition

9780273752776, 132163845, 273752774, 978-0132163842

More Books

Students also viewed these General Management questions