Cybersecurity Project

profilebenita01
Project1-EmployeeHandbookITSecurity-CSIA4137381CybersecurityPolicyPlansandPrograms2218-UMGCLearningManagementSystem.pdf

11/3/21, 7:46 PMProject 1 - Employee Handbook (IT Security) - CSIA 413 7381 Cybers…icy, Plans, and Programs (2218) - UMGC Learning Management System

Page 1 of 4https://learn.umgc.edu/d2l/lms/dropbox/user/folder_submit_files.d2l?db=1156961&grpid=0&isprv=0&bp=0&ou=616134

Project 1: Employee Handbook Course: CSIA 413 7381 Cybersecurity Policy, Plans, and Programs (2218)

Execu!ve Summary Excellent Outstanding Acceptable Needs Improvement Needs Significant Improvement

Missing or Unacceptable

Execu!ve Summary

for the Policy

Briefing Package

10 points

The Execu!ve Summary

provided an excellent

summary of the policy

package's purpose and

contents. Informa!on

about the case study

company was well

integrated into the

summary. Each policy

was individually

introduced and clearly

explained. The material

was well organized and

easy to read.

8.5 points

The Execu!ve Summary

provided an outstanding

summary of the policy

package's purpose and

contents. Informa!on

about the case study

company was integrated

into the summary. Each

policy in the briefing

package was individually

introduced and briefly

explained. The material

was well organized and

easy to read.

7 points

The Execu!ve Summary

provided an acceptable

overview of the contents

of the policy package.

Informa!on about the

case study company was

used in the summary.

Each policy in the

briefing package was

named and briefly

explained.

6 points

The Execu!ve Summary

provided an overview of

the policy package.

Informa!on about the

case study company was

men!oned.

4 points

An execu!ve summary

was provided but lacked

details as to the purpose

and contents of the

policy package and/or

was not well supported

by informa!on drawn

from authorita!ve

sources.

0 points

No work submi"ed.

Acceptable Use

Policy Excellent Outstanding Acceptable Needs Improvement

Needs Significant Improvement

Missing or Unacceptable

Policy Introduc!on

Policy Content

10 points

The Acceptable Use

Policy contained an

excellent introduc!on

which addressed five or

more specific

characteris!cs of the

company's business, legal

& regulatory, and/or

enterprise IT

environments and

addressed the reasons

why employees must

comply with this policy.

Compliance requirements

are addressed and

contact informa!on is

provided for ques!ons

about the policy.

8.5 points

The Acceptable Use

Policy contained an

outstanding introduc!on

which addressed three or

more specific

characteris!cs of the

company's business, legal

& regulatory, and/or

enterprise IT

environments and

addressed the reasons

why employees must

comply with this policy.

Compliance requirements

are addressed and

contact informa!on is

provided for ques!ons

about the policy.

7 points

The introduc!on for the

Acceptable Use Policy

was customized for the

case study company.

Three or more specific

characteris!cs of the

company's business, legal

& regulatory, and/or

enterprise IT

environments were

incorporated into the

policy. Compliance

requirements were

addressed.

6 points

The introduc!on to the

Acceptable Use Policy

men!ons the case study

company and compliance

requirements.

4 points

The Acceptable Use

Policy was built from a

sample template or list of

"recommended" AUP

contents without

customiza!on for the

case study company. (Or,

inappropriate or

excessive copying from

other authors' work.)

0 points

No work submi"ed.

20 points

The Acceptable Use

Policy was well organized

(including 5 or more

sec!on headings for

topics) and easy to

understand. The policy

addressed 15 or more

employee responsibili!es

(15 or more separate

policy statements)

including all topics listed

in the assignment.

18 points

The Acceptable Use

Policy was well organized

(including 3 or more

sec!on headings for

topics) and easy to

understand. The policy

addressed 12 or more

employee responsibili!es

(12 or more separate

policy statements)

including all topics listed

in the assignment.

16 points

The Acceptable Use

Policy was well organized

and easy to understand.

The policy addressed 10

or more employee

responsibili!es (as

separate policy

statements) including at

least 7 items listed in the

assignment.

14 points

Organiza!on and

appearance need

improvement. The policy

addressed least 7 items

listed in the assignment

(as separate policy

statements).

10 points

The Acceptable Use

Policy was disorganized

and difficult to

understand. OR, the

policy was significantly

lacking in content (7 or

fewer policy statements).

(Or, inappropriate or

excessive copying from

other authors' work.)

0 points

No work submi"ed.

11/3/21, 7:46 PMProject 1 - Employee Handbook (IT Security) - CSIA 413 7381 Cybers…icy, Plans, and Programs (2218) - UMGC Learning Management System

Page 2 of 4https://learn.umgc.edu/d2l/lms/dropbox/user/folder_submit_files.d2l?db=1156961&grpid=0&isprv=0&bp=0&ou=616134

Work From Home

(WFH) Policy Excellent Outstanding Acceptable Needs Improvement

Needs Significant Improvement

Missing or Unacceptable

Policy Introduc!on

Policy Content

10 points

The WFH Policy

contained an excellent

introduc!on which

addressed three or more

specific characteris!cs of

the company's business,

legal & regulatory, and/or

enterprise IT

environments and

addressed the reasons

why employees must

comply with this policy.

Compliance requirements

are addressed and

contact informa!on is

provided for ques!ons

about the policy.

8.5 points

The WFH Policy

contained an outstanding

introduc!on which

addressed two or more

specific characteris!cs of

the company's business,

legal & regulatory, and/or

enterprise IT

environments and

addressed the reasons

why employees must

comply with this policy.

Compliance requirements

are addressed and

contact informa!on is

provided for ques!ons

about the policy.

7 points

The introduc!on for the

WFH Policy was

customized for the case

study company. One or

more specific

characteris!cs of the

company's business, legal

& regulatory, and/or

enterprise IT

environments were

incorporated into the

policy. Compliance

requirements were

addressed.

6 points

The introduc!on to the

WFH Policy men!ons the

case study company and

compliance

requirements.

4 points

The WFH Policy was

built from a sample

template or list of

"recommended" WFH

contents without

customiza!on for the

case study company. (Or,

inappropriate or

excessive copying from

other authors' work.)

0 points

No work submi"ed.

15 points

The WFH Policy was well

organized (including 3 or

more sec!on headings

for topics) and easy to

understand. The policy

addressed 10 or more

employee responsibili!es

(10 or more separate

policy statements)

including all topics listed

in the assignment.

13.5 points

The WFH Policy was well

organized (including at

least 3 sec!on headings

for topics) and easy to

understand. The policy

addressed 7 or more

employee responsibili!es

(7 or more separate

policy statements)

including all topics listed

in the assignment.

12 points

The WFH Policy was well

organized and easy to

understand. The policy

addressed 5 or more

employee responsibili!es

(5 or more separate

policy statements)

including at least 3 topics

listed in the assignment.

9 points

Organiza!on and

appearance need

improvement. The WFH

policy addressed at least

3 items listed in the

assignment (as separate

policy statements).

6 points

The WFH Policy was

disorganized and difficult

to understand. OR, the

policy was significantly

lacking in content (fewer

than 3 specific policy

statements). (Or,

inappropriate or

excessive copying from

other authors' work.)

0 points

No work submi"ed.

Digital Media

Sani!za!on, Reuse,

& Destruc!on Policy

Excellent Outstanding Acceptable Needs Improvement Needs Significant Improvement

Missing or Unacceptable

Policy Introduc!on 5 points

The media sani!za!on,

reuse, and destruc!on

policy contained an

excellent introduc!on

which addressed five or

more specific

characteris!cs of the

company's business

and/or legal & regulatory

environments which

impose requirements for

this policy. Compliance

requirements are

addressed and contact

informa!on is provided

for ques!ons about the

policy.

4 points

The media sani!za!on,

reuse, and destruc!on

policy contained an

outstanding introduc!on

which addressed three or

more specific

characteris!cs of the

company's business

and/or legal & regulatory

environments which

impose requirements for

this policy. Compliance

requirements are

addressed and contact

informa!on is provided

for ques!ons about the

policy.

3 points

The media sani!za!on,

reuse, and destruc!on

policy contained an

acceptable introduc!on

which men!oned the

company's business

and/or legal & regulatory

environments as a source

of requirements for this

policy. Compliance

requirements are

addressed and contact

informa!on is provided

for ques!ons about the

policy.

2 points

The media sani!za!on,

reuse, and destruc!on

policy contained an

introduc!on which

men!oned the reasons

why this policy exists and

why employees must

comply with it.

1 point

The policy was built from

a template or list of "best

prac!ces" with no

customiza!on for the

case study company. (Or,

inappropriate or

excessive copying from

other authors' work.)

0 points

No work submi"ed.

10 points

The media sani!za!on,

reuse, and destruc!on

policy was well organized

8.5 points

The media sani!za!on,

reuse, and destruc!on

policy was well organized

7 points

The media sani!za!on,

reuse, and destruc!on

policy was well organized

6 points

The media sani!za!on,

reuse, and destruc!on

policy addressed at least

4 points

The policy addressed

employee responsibili!es

for erasure and

0 points

No work submi"ed.

11/3/21, 7:46 PMProject 1 - Employee Handbook (IT Security) - CSIA 413 7381 Cybers…icy, Plans, and Programs (2218) - UMGC Learning Management System

Page 3 of 4https://learn.umgc.edu/d2l/lms/dropbox/user/folder_submit_files.d2l?db=1156961&grpid=0&isprv=0&bp=0&ou=616134

Total

Policy Content (including 3 or more

sec!on headings for

topics) and easy to

understand. The policy

addressed all three

func!ons (sani!za!on,

reuse, and destruc!on)

and included 9 or more

separate policy

statements.

(including 3 or more

sec!on headings for

topics) and easy to

understand. The policy

addressed all three

func!ons (sani!za!on,

reuse, and destruc!on)

and included 7 or more

separate policy

statements.

and easy to understand.

The policy addressed all

three func!ons

(sani!za!on, reuse, and

destruc!on) and included

5 or more separate policy

statements.

two of the three

func!ons (sani!za!on,

reuse, and destruc!on)

and included 3 or more

separate policy

statements.

destruc!on of media but

lacked important details /

informa!on. (Or,

inappropriate or

excessive copying from

other authors' work.)

Professionalism Excellent Outstanding Acceptable Needs Improvement Needs Significant Improvement

Missing or Unacceptable

Addressed security

issues using standard

terms (e.g.

confiden!ality,

integrity, availability,

non-repudia!on,

authen!city,

accountability,

auditability, etc.).

Organiza!on &

Appearance

Execu!on

5 points

Demonstrated excellence

in the use of standard

cybersecurity

terminology to support

discussion of security

issues. Appropriately

used 5 or more standard

terms.

4 points

Discussion showed an

outstanding

understanding and

integra!on of standard

cybersecurity

terminology to support

discussion of security

issues. Appropriately

used 4 or more standard

terms.

3 points

Correctly used standard

cybersecurity

terminology to support

discussion of security

issues. Appropriately

used 3 or more standard

terms.

2 points

Correctly used standard

cybersecurity

terminology to support

discussion of security

issues. Appropriately

used 2 or more standard

terms.

1 point

A"empted to use

standard cybersecurity

terminology to support

discussion of security

issues.

0 points

Did not integrate

standard cybersecurity

terminology into the

discussion OR misused or

incorrectly defined

standard cybersecurity

terms.

5 points

Submitted work shows outstanding organization and the use of color, fonts, titles, headings and sub-headings, etc. is appropriate to the assignment type.

4 points

Submitted work has minor style or formatting flaws but still presents a professional appearance. Submitted work is well organized and appropriately uses color, fonts, and section headings (per the assignment’s directions).

3 points

Organization and/or appearance of submitted work could be improved through better use of fonts, color, titles, headings, etc. OR Submitted work has multiple style or formatting errors. Professional appearance could be improved.

2 points

Submitted work has multiple style or formatting errors. Organization and professional appearance need substantial improvement.

1 point

Submitted work meets minimum requirements but has major style and formatting errors. Work is disorganized and needs to be rewritten for readability and professional appearance.

0 points

Submitted work is poorly organized and formatted. Writing and presentation are lacking in professional style and appearance. Work does not reflect college level writing skills. Or, no submission.

10 points

No word usage, grammar, spelling, or punctuation errors. All quotations (copied text) are properly marked and cited using a professional format (APA format recommended but not required.)

8.5 points

Work contains minor errors in word usage,grammar, spelling or punctuation which do not significantly impact professional appearance. All quotations (copied text) are properly marked and cited using a professional format (APA format recommended but not required.)

7 points

Errors in word usage, spelling, grammar, or punctuation which detract from professional appearance of the submitted work. All quotations (copied text) are properly marked and cited using a professional format (APA format recommended but not required.)

6 points

Submitted work has numerous errors in word usage, spelling, grammar, or punctuation which detract from readability and professional appearance. Punctuation errors may include failure to properly mark quoted or copied material (an attempt to name original source is required).

4 points

Submitted work is difficult to read / understand and has significant errors in formatting, spelling, grammar, punctuation, or word usage. Significant errors in presentation of copied text (lacks proper punctuation and failed to attribute material to original source).

0 points

No work submitted. OR, work contains significant instances of cut-and-paste without proper citing / attribution to the original work or author.

11/3/21, 7:46 PMProject 1 - Employee Handbook (IT Security) - CSIA 413 7381 Cybers…icy, Plans, and Programs (2218) - UMGC Learning Management System

Page 4 of 4https://learn.umgc.edu/d2l/lms/dropbox/user/folder_submit_files.d2l?db=1156961&grpid=0&isprv=0&bp=0&ou=616134

Overall Score

Do Not Use This Block 0 points minimum