W006Ca002438 - Data Breaches and Regulatory Requirements
|
Points: 100 |
Case Study 2: Data Breaches and Regulatory Requirements |
||||
|
Criteria |
Unacceptable Below 60% F |
Meets Minimum Expectations 60-69% D |
Fair 70-79% C |
Proficient 80-89% B |
Exemplary 90-100% A |
|
1. Describe the data breach incident and the primary causes of the data breach. Weight: 25% |
Did not submit or incompletely described the data breach incident and the primary causes of the data breach. |
Insufficiently described the data breach incident and the primary causes of the data breach. |
Partially described the data breach incident and the primary causes of the data breach. |
Satisfactorily described the data breach incident and the primary causes of the data breach. |
Thoroughly described the data breach incident and the primary causes of the data breach. |
|
2. Analyze how the data breach could have been prevented with better adherence to and compliance with regulatory requirements and guidelines, including management controls; include an explanation of the regulatory requirement (such as from FISMA, HIPAA, or others). Weight: 30% |
Did not submit or incompletely analyzed how the data breach could have been prevented with better adherence to and compliance with regulatory requirements and guidelines, including management controls; did not submit or incompletely included an explanation of the regulatory requirement (such as from FISMA, HIPAA, or others). |
Insufficiently analyzed how the data breach could have been prevented with better adherence to and compliance with regulatory requirements and guidelines, including management controls; insufficiently included an explanation of the regulatory requirement (such as from FISMA, HIPAA, or others). |
Partially analyzed how the data breach could have been prevented with better adherence to and compliance with regulatory requirements and guidelines, including management controls; partially included an explanation of the regulatory requirement (such as from FISMA, HIPAA, or others). |
Satisfactorily analyzed how the data breach could have been prevented with better adherence to and compliance with regulatory requirements and guidelines, including management controls; satisfactorily included an explanation of the regulatory requirement (such as from FISMA, HIPAA, or others). |
Thoroughly analyzed how the data breach could have been prevented with better adherence to and compliance with regulatory requirements and guidelines, including management controls; thoroughly included an explanation of the regulatory requirement (such as from FISMA, HIPAA, or others). |
|
3. Assess if there are deficiencies in the regulatory requirements and whether they need to be changed, and how they need to be changed, to mitigate further data breach incidents. Weight: 30% |
Did not submit or incompletely assessed if there are deficiencies in the regulatory requirements and whether they need to be changed, and how they need to be changed, to mitigate further data breach incidents. |
Insufficiently assessed if there are deficiencies in the regulatory requirements and whether they need to be changed, and how they need to be changed, to mitigate further data breach incidents. |
Partially assessed if there are deficiencies in the regulatory requirements and whether they need to be changed, and how they need to be changed, to mitigate further data breach incidents. |
Satisfactorily assessed if there are deficiencies in the regulatory requirements and whether they need to be changed, and how they need to be changed, to mitigate further data breach incidents. |
Thoroughly assessed if there are deficiencies in the regulatory requirements and whether they need to be changed, and how they need to be changed, to mitigate further data breach incidents. |
|
Weight: 5% |
No references provided |
Does not meet the required number of references; all references poor quality choices. |
Does not meet the required number of references; some references poor quality choices. |
Meets number of required references; all references high quality choices. |
Exceeds number of required references; all references high quality choices. |
|
5. Clarity, writing mechanics, and formatting requirements Weight: 10% |
More than 8 errors present |
7-8 errors present |
5-6 errors present |
3-4 errors present |
0-2 errors present |