IT Security
|
Pg. 03 |
|
Assignment 2 |
|
|
|
|
( Assignment 2 D eadline : Day 24 / 02 / 201 8 @ 23:59 [Total Mark for this Assignment is 4 ] ) ( IT Security and Policies IT409 )
( Instructions: This Assignment must be submitted on Blackboard ( WORD format only ) via the allocated folder. Email submission will not be accepted. You are advised to make your work clear and well-presented , marks may be reduced for poor presentation . This includes filling your information on the cover page. You MUST show all your work , and text must not be converted into an image, unless specified otherwise by the question. Late submission will result in ZERO marks being awarded. The work should be your own, copying from students or other resources will result in ZERO marks. Use Times New Roman font for all your answers. ) ( Student Details: Name: ### CRN : ### ID: ### )
College of Computing and Informatics
|
|
|
|
|
|
|
|
( 0 1 Marks ) ( Learning Outcome(s): LO 3 : Analyze, implement, and select the most appropriate solutions to problems related to the field of Security and Information Assurance ) Governance and Risk Management
Q1- Give one example for the different Risk Mitigation techniques.
( 01 Marks ) ( Learning Outcome(s): LO 4: Write security policies and put in place an effective security architecture that comprises modern hardware and software technologies and protocols. . ) Governance and Risk Management
Q2- When should a company develop a vender Information Security Policy?
Human Resources Security ( 0 1 Marks ) ( Learning Outcome(s): LO 3: Analyze, implement, and select the most appropriate solutions to problems related to the field of Security and Information Assurance. )
Q3- Some positions within a company require more detailed background checks than others. Provide an example of a high risk position within a company, and provide an example of a low risk position within a company. Why does the high risk position require a more detailed background check?
Human Resources Security ( 0 1 Marks ) ( Learning Outcome(s): LO 3: Analyze, implement, and select the most appropriate solutions to problems related to the field of Security and Information Assurance. )
Q4- Select a company/organization of your choice. Refer their website and identify what sort of privacy policy they use, regarding the employee data.