Devils's Canyon, Part 2
Running head: Devil’s Canyon 1
Devil’s Canyon 5
Security plan and risk evaluation for Devils Canyon
Michael Brown
University of Phoenix CMGT 582
18 November 2019
Robert Quintin
Security plan and risk evaluation for Devils Canyon
Policies are rules that are put in place to ensure that activities and events are unified, and the outcome of the game does not harm any party. Security plans are blueprints that are prepared by the company in advance to help in preventing vulnerabilities, especially on data that is stored on the network where hackers can obtain such information and use it for their benefits. Risk assessment, on the other hand, is the evaluation of risks associated with the implementation of the project. Evaluation of the risk may help in identifying risks associated with specific events in advance before they cause harm. Most people who are risk-takers are motivated with the associated high output. Therefore performing risk assessment helps the organization in identifying alternative solutions to the risks if they occur. This paper is going to address a security plan and risk assessment based on the Devils Canyon.
From the discussion, Justin suggested the need for the privacy policy, which will ensure that the installed software and hardware are safer and free from hackers and thieves. To start with, there is a need for a policy restricting counterfeiting of the software developed by the company which competitors may use (Rid, & Buchanan, 2015). Baring other users from duplicating the idea can be done through acquiring copyrights and designing company rules to capture the guidelines of the copyrights. There is also the need to come up with the policy to regulate the use of Wi-Fi because most Wi-Fi networks are vulnerable to attacks by hackers. There is also a need for the system on risk assessment and mitigation measures. They are coming up with a clear policy on identifying different risks associated with the installation of the software, and the cables.
Having a security plan is essential as it helps the organization to assess or the risks that can affect the successful implementation of the project. For the case of Devils Canyon's case, the associated risks are the storm, which can affect the underground cables for the Wi-Fi, high cost of mobile app and software for tracking customers, electricity can also be an issue, and dropped calls. Having a security plan will help the organization come up with corrective measures for the above-explained risks. For the case of electricity, the generator is available to be used in case of a power blackout. Another importance of having a security plan is that it helps the organization to save the cost of maintenance and repairing the damages caused by risks. By planning helps the organization in coming up with risk preventive measures instead of waiting for the chance to happen, then performing corrective actions, which is costly and time-bound.
Devils Canyon faces the risk of cable destruction by storms and other heavy moving objects, which might destruct the cables hence affecting the strength of the Wi-Fi and internet connection as well. Another risk is dropped calls at the resort, which might affect customer satisfaction at the resort, and the management needs to come up with ways of preventing that from happening. There is also a high cost of preparing and installing RFID software, which might affect the operation of the organization because it will increase the operational costs which usually has an influence on the efficiency at the workplace. The creation of Wi-Fi at the workplace also introduces the risk of cybercrime because the Wi-Fi network is often not protected, and hackers may take advantage and steal sensitive information from the system, which might damage the reputation of the resort hence negatively affecting its business operations (Betz, 2017). Electricity is also another risk because of power blackout at some moments. Still, the probability of this risk causing an impact on the operations of the organization is minimal because there is a generator ready in case of a power blackout.
The probability of destruction of cables to happen is medium, but the impact is high. For the risk of dropped calls, the likelihood is medium, but the effect is low. The probability of cyber-crime to happen is elevated, with its impact being high as well. Lastly, the likelihood of power blackout is low because of the presence of the generator to the effects being high.
|
Impact of the risk |
|||||
|
High
Medium low |
Power blackout |
Cable destruction |
|
Cybercrime |
High
Medium low |
|
|
|
|
|
|
|
|
|
|
Dropped calls |
|
|
|
|
|
Probability of risk occurrence |
The table above illustrates the likelihood and impacts of the discussed risks.
References
Betz, D. J. (2017). Cyberspace and the State: Towards a Strategy for Cyber-power. Routledge.
Rid, T., & Buchanan, B. (2015). Attributing cyber-attacks. Journal of Strategic Studies, 38(1-2), 4-37.