Security Policies for Small Companies paper

profilewhatguec
ISSC481_Outline_Southworth_Andrew.docx

SECURITY POLICIES FOR SMALL COMPANIES

ANDREW SOUTHWORTH

AMERICAN MILITARY UNIVERSITY

ISSC481

Security Policies for Small Companies

Focusing on how to stay secure with the current threats developed each day.

I. Introduction

A. The paper will be focused on the critical security policies on a small company should implement to maintain a secure system. Also it will discuss the services available when there is not a big budget to work with.

II. Physical Security Controls and Policies

A. Location – Discuss the vulnerable points of physical security

B. Cloud – Are cloud system safer than physical systems?

III. System Security Controls

A. Auditing – How to audit your company

B. Policies – Develop a data protection plan

IV. Working on Budget

A. CBA – How important is to do a Cost Benefit Analysis

V. Education

A. Employee – The importance of the knowledge.

VI. Planning

A. How to stay ahead of the problems to minimize the impact.

VII. Conclusion

A. Discuss the efficiency of having all the security protocols in place and how this can work on your favor with future vulnerabilities.

VIII. References

Council on CyberSecurity Critical Security Controls. (n.d.). Retrieved October 15, 2017, from http://www.counciloncybersecurity.org/critical-controls/

Critical Security Controls. (n.d.). Retrieved October 15, 2017, from https://www.sans.org/critical-security-controls/

MAGANA, D. (2014, December 29). The Right Security Framework For Your Small Business. Retrieved October 15, 2017, from http://www.tripwire.com/state-of-security/security-data-protection/security-controls/the-right-security-framework-for-your-small-business/