|
Points: 125
|
Case Study 1: Mitigating Cloud Computing Risks
|
|
Criteria
|
Unacceptable
Below 70% F
|
Fair
70-79% C
|
Proficient
80-89% B
|
Exemplary
90-100% A
|
|
1. Provide a summary analysis of the most recent research that is available in this area.
Weight: 20%
|
Did not submit or incompletely provideda summary analysis of the most recent research that is available in this area.
|
Partially provided a summary analysis of the most recent research that is available in this area.
|
Satisfactorily provided a summary analysis of the most recent research that is available in this area.
|
Thoroughly provideda summary analysis of the most recent research that is available in this area.
|
|
2. Examine the risks and vulnerabilities associated with public clouds, private clouds, and hybrids; include primary examples applicable from the case studies you previously reviewed.
Weight: 25%
|
Did not submit or incompletely examined the risks and vulnerabilities associated with public clouds, private clouds, and hybrids; did not submit or incompletely included primary examples applicable from the case studies you previously reviewed.
|
Partially examined the risks and vulnerabilities associated with public clouds, private clouds, and hybrids; partially included primary examples applicable from the case studies you previously reviewed.
|
Satisfactorily examined the risks and vulnerabilities associated with public clouds, private clouds, and hybrids; satisfactorily included primary examples applicable from the case studies you previously reviewed.
|
Thoroughly examined the risks and vulnerabilities associated with public clouds, private clouds, and hybrids; thoroughly included primary examples applicable from the case studies you previously reviewed.
|
|
3. Suggest key controls that organizations could implement to mitigate these risks and vulnerabilities.
Weight: 20%
|
Did not submit or incompletely suggested key controls that organizations could implement to mitigate these risks and vulnerabilities.
|
Partially suggested key controls that organizations could implement to mitigate these risks and vulnerabilities.
|
Satisfactorily suggested key controls that organizations could implement to mitigate these risks and vulnerabilities.
|
Thoroughly suggested key controls that organizations could implement to mitigate these risks and vulnerabilities.
|
|
4. Develop a list of IT audit tasks that address a cloud computing environment based on the results from the analysis of the case studies, the risks and vulnerabilities, and the mitigation controls.
Weight: 20%
|
Did not submit or incompletely developed a list of IT audit tasks that address a cloud computing environment based on the results from the analysis of the case studies, the risks and vulnerabilities, and the mitigation controls.
|
Partially developed a list of IT audit tasks that address a cloud computing environment based on the results from the analysis of the case studies, the risks and vulnerabilities, and the mitigation controls.
|
Satisfactorily developed a list of IT audit tasks that address a cloud computing environment based on the results from the analysis of the case studies, the risks and vulnerabilities, and the mitigation controls.
|
Thoroughly developed a list of IT audit tasks that address a cloud computing environment based on the results from the analysis of the case studies, the risks and vulnerabilities, and the mitigation controls.
|
|
5. 3 references
Weight: 5%
|
No references provided
|
Does not meet the required number of references; some or all references poor quality choices.
|
Meets number of required references; all references high quality choices.
|
Exceeds number of required references; all references high quality choices.
|
|
6. Clarity, writing mechanics, and formatting requirements
Weight: 10%
|
More than 6 errors present
|
5-6 errors present
|
3-4 errors present
|
0-2 errors present
|