Expert Answers

Expert Answers

1.     A security program should address issues from a strategic, tactical, and operational view. The security program should be integrated at every level of the enterprise’s architecture. List a security program in each level and provide a list of security activities or controls applied in these levels. Support your list with real-world application data.

2.     The objectives of security are to provide availability, integrity, and confidentiality protection to data and resources. List examples of these security states where an asset could lose these security states when attacked, compromised, or became vulnerable. Your examples could include fictitious assets that have undergone some changes.

3.     Risk assessment can be completed in a qualitative or quantitative manner. Explain each risk assessment methodology and provide an example of each.

CSIA 485 Project #4 Detailed Assignment Description

Develop a Security Plan and Recommendation Memo to the CIO.  The Plan must communicate the security strategy and technologies (minimum of 3) you are recommending from P1/P2/P3.  Include a brief description of the technologies you are proposing with associated costs, expected return on investment (ROI), mitigation of risks, barriers to success. You must also include a detailed Network Diagram illustrating how this technology fits into the infrastructure.

The Recommendation Memo is a one page Executive Memo to the CIO summarizing and introducing the Plan. The recommendation memo will be on plain white background and carry the same formatting as a formal letter. You may use one of the MS Office or similar memo styles that meet this requirement. The Plan (your second deliverable for this assignment) will be a minimum 5 page, double-spaced paper using Times New Roman 12 font and APA style formatting for citations and references. It will also include a minimum of 5 references. The Title/Cover page, illustrations (tables/charts/graphs), network diagram, and references are not part of the page count but are required for the assignment. The grading rubric provides additional details as to what should be included in the paper. Your instructor may provide an APA style template to use for this paper.

Powered by