Ask Question, Ask an Expert

+61-413 786 465

info@mywordsolution.com

Ask Business Management Expert

Successful information assurance programs apply industry standards and best practices to identify security risk and then form dynamic, crossfunctional teams, when required, to develop a plan to address these gaps in a way that is sensitive to the needs of key stakeholders.

To prepare for the Project in this Week, assume that the fictitious organization is large and growing rapidly, with both internal and external IT risks involving employees, customers, business partners, suppliers, and contractors. Clearly state any other assumptions you make.

You have been asked to assess risks associated with access and authorization in your organization. Develop a brief scenario that depicts a threat related to access and authorization. Below are two example use cases for a single scenario to guide you. You will need to develop your own scenario as well as your own use cases.

Use Case 1: Employee Provisioning-There needs to be an enterprise process for employee account provisioning. This should include setting up employees with the correct access rights, based on their role. When employees change roles, their access should be appropriately changed. Today, employees are given access to resources using Active Directory groups. When they go to a new job, the old access rights often are not removed like they should be, and this is a security concern.

Use Case 2: Separation of Duties-Administrators need a high level of access for their jobs. Today, their credentials allow them to administer servers and create accounts locally on the servers and in Active Directory. They can also edit log files and delete accounts and groups in Active Directory. This is a security concern, and roles should be set up so server administrators can do their job but not the job of an Active Directory administrator. The role that is allowed to create accounts should not be able to create new roles, and managers should approve new accounts. Keeping an administrator's access in line with his or her role is a best practice, and it may be required by regulations such as Sarbanes-Oxley.

Please develop at least two others and explain them.

Write a 5- to 7-page paper about the risk assessment process that you plan to perform. Cover the following points:

  • Your introduction should include the following background information:
    • The country where the headquarters is located
    • The nature of the organization's operations
    • The general organizational structure
    • The country/ies in which the organization operates
  • In describing the scenario and the two use cases you created, you should include the following regarding risk assessment planning:
    • How your team plans to perform the risk assessment and identify the gap
    • What other teams would be involved in a successful risk assessment
    • How poor access and authorization management affects security risk and business processes
    • Who the stakeholders are and the most important activities they may perform that involve accessing data and resources

Business Management, Management Studies

  • Category:- Business Management
  • Reference No.:- M92034379
  • Price:- $30

Priced at Now at $30, Verified Solution

Have any Question?


Related Questions in Business Management

Example of a company using forecasting for operations

Example of a company using forecasting for operations management in supply chain management.

What value to your future career in business is supported

What value to your future career in business is supported by research, analysis and communication (writing and speaking)?

According to firestions tire recall case discuss and

According to Firestion's tire recall case, discuss and evaluate the role of leadership when commercial realities conflict with public concerns, ethical dilemmas that ensue for leaders in such situation and how you sugges ...

What is the purpose of dual career systems what can you do

What is the purpose of dual career systems? What can you do to ensure that dual career systems are effective?

1 ann owed 2500 to barry for services barry rendered to ann

1. Ann owed $2,500 to Barry for services Barry rendered to Ann. The debt was due June 30, 2011. In March 2012, the debt was still unpaid. Barry was in urgent need of ready cash and told Ann that if she would pay $1,500 o ...

The sudkurier is a regional daily newspaper in

The Sudkurier is a regional daily newspaper in south-western Germany. On average 310,000 people in the area read the newspaper regularly. The great majority of those readers subscribe to its home delivery service, which ...

You play the following game against your friend you have 2

You play the following game against your friend. You have 2 urns and 4 balls. One of the balls is black and the other 3 are white. You can place the balls in the urns any way that you'd like, including leaving an urn emp ...

Refer to the 2017 annual report of jb hi-fi limited on its

Refer to the 2017 annual report of JB Hi-Fi Limited on its website, www.jbhifi.com.au and answer the following questions: What is the group's current liability for dividends to ordinary shareholders? If you owned only 10 ...

In this discussion topic we will explore some resources

In this discussion topic, we will explore some resources that are designed to help students understand the concept of a literature review. Please browse these resources and then complete the discussion post below. The ar ...

What is lean six sigma and what is used for in

What is Lean Six Sigma and what is used for in management?

  • 4,153,160 Questions Asked
  • 13,132 Experts
  • 2,558,936 Questions Answered

Ask Experts for help!!

Looking for Assignment Help?

Start excelling in your Courses, Get help with Assignment

Write us your full requirement for evaluation and you will receive response within 20 minutes turnaround time.

Ask Now Help with Problems, Get a Best Answer

Why might a bank avoid the use of interest rate swaps even

Why might a bank avoid the use of interest rate swaps, even when the institution is exposed to significant interest rate

Describe the difference between zero coupon bonds and

Describe the difference between zero coupon bonds and coupon bonds. Under what conditions will a coupon bond sell at a p

Compute the present value of an annuity of 880 per year

Compute the present value of an annuity of $ 880 per year for 16 years, given a discount rate of 6 percent per annum. As

Compute the present value of an 1150 payment made in ten

Compute the present value of an $1,150 payment made in ten years when the discount rate is 12 percent. (Do not round int

Compute the present value of an annuity of 699 per year

Compute the present value of an annuity of $ 699 per year for 19 years, given a discount rate of 6 percent per annum. As