Strategic Plan: Chapter 2 Literature Review

profiledsbowwow101
StrageticPlan.docx

Strategic Plan: Chapter 2 Literature Review

HMLS 304 (7381)

Karyl Derek Mokudai

Due Date: November 24, 2020

WORKING TABLE OF CONTENTS

CHAPTER

1. INTRODUCTION

Background ……………………………………………………………..3

Statement of the Problem……………………………………………….4

Operational Definitions…………………………………………….…...5

Significance of the Study...…………….………………………………..6

Summary………………………………………………………………..7

REFERENCES …………………………………………………………………8

INTRODUCTION

Background

Cybersecurity and Infrastructure Security Agency was established in 2018 and it protects nation’s infrastructure from cybercrimes. The primary reason for increased cyberthreats is technological advancements because they have led to massive use of digital devices by people connecting to the internet and with other people hence creating large surfaces for attack within the world. The CISA is the major national body that controls matters of insfrastructure risks by working with different deparments to protect the nation against cyberthreats and control infrastructure security. It also collaborates with other organizations in the security departments and adjusts security systems of infrastructures. The Cybersecurity and Infrastructure Security Agency consists of assistant director for cybersecurity, infrastructure security, stakeholder engagement division, integrated operations, emergency communication and national risk management. Other leaders of CISA include the director, deputy director, chief of staff, external affairs officer, executive director, workforce engagement officer, support officer, financial and privacy officer.

This agency coordinates with public and private sectors when protecting the world from any cyberthreats especially in the infrasrructure sector. The CISA which is a division under the homeland security act of 2002 leads the nation in understanding and managing cyberthreats and infrastructure’s physical risks because our infrastructure is prone to such threats. The Cybercrime Infrastructure Security Agency body focuses on establishing and enhancing the national ability and capacity to effectively acquire self defense against cyberattacks. The members of this agency meet monthly to discuss arising and existing problems that affect infrastructure and cyber security. Also, in their monthly meetings they look for strategic plans that will help leaders to effectively deal with increased infrastructure security and cybersecurity issues. This strategic plan become a base for CISA to effectively establish and improve cybersecurity and infrastructure security in the nation and act as an example to the rest of the world. The developed framework will also help in the organization achieving its mission and goals.

Statement of the problem

The CISA agency has received several criticisms due to increased threats affecting cybersecurity that is encouraged by technological advancements. These advancements result to increased global connectivity of people through digital devices. Poor strategic plan is another challenge affecting this agency since it hinders the organization’s success of accomplishing it goals. Every organization requires a good strategic plan for it to succeed. Development of a good and effective strategic plan would enhance proper delegation of the organization’s activities to their partner organizations and stakeholders. The CISA agency has also experienced inadequate human resources and natural resources to help them in effectively enforcing and infrastructure security and cyber security. Additionally, the organization lacks adequate team members who are needed in strengthening national and economic security because these sectors greatly determine infrastructure security. This agency is responsible for ensuring country’s safety in the infrastructure sector from cyberattacks and poor condition hence this work will be hard for a single organization to manage it. This is due to daily emerging issues that aim at destroying our critical infrastructure hence becoming a major threat to infrastructure security and cyber sector. The CISA aims on identifying and assessing emerging technologies through careful examination to determine possible gaps in the security that give room for attacks now and in the future. This can only be attained through development of a good and viable strategic plan which gives the organization a base for effective functioning and offer various ways to deal with threats associated with technological advancement.

The CISA needs additional resources such as assessment capabilities tools, cybersecurity tools, and incident response services that will help them understand emerging technologies that are the main things triggering cyberthreats on infrastructure. The cybersecurity and Infrastructure Security Agency also enables the federal government security agencies to promote public security by deploying communications tools at all levels of government which aids organizations that partner with CISA to effectively function across the country. It deploys these communication tools by developing emergency communication tools and capabilities. This work requires the CISA organization to partner with other organizations in conducting nationwide outreaches meant that aim at educating the target audience. Many sectors of the organization’s activities demand the team members to have high quality equipment and enough resources especially finances to help them cater for these outreaches. Collaboration with various public and private sectors when promoting security, emergency communications capabilities and prosperity across the nation helps them fund various outreaches that are meant to educate the audience. This can also be done through communication programs. The organization is important because it promotes security in the nation hence through its effective strategic plan. This strategic plan enables the agency to effectively deal with problems facing them when implementating security policies and guidelines.

Operational definitions

Cybersecurity is the process of defending the network, electronic systems, mobiles and computers from malicious cyberattacks. This practice is done by organizations or individuals when protecting their data centers and computer systems from unauthorized access.

Infrastructure security refers to national security that protects critical infrastructures such as railway transport, health facilities, bridges, air transport, transport hub, network, electricity grid, media, dams, powerplants, water system, oil refineries and water transport.

Cybersecurity and Infrastructure Security Agency (CISA) is a government agency established under homeland security Act of 2002 that help in the enforcement of cybersecurity, communication, emergency operations and infrastructure security.

Cybersecurity tools are tools used by CISA organization in promoting cybersecurity. They include Snort, Gnu Privacy Guard, Wireshark, and Guard. It may also refer to any equipment used in cybersecurity enforcement.

Incident response services refer to emergency response services that are used in alleviating risks caused by malicious attacks through cybercrimes.

Assessmentcapabilities is a component that determines whether requirements outlined in Mutual Obligation Requirements in the Participant's Job Plan is aappropriate to the participant and the he/she is capable of meeting them. It is a requirement by the DHS.

Significance of the study

The significance of the study was to have extensive knowledge on how Cybersecurity and Infrastructure Security Agency (CISA) functions and is organized and also identify challenges facing the agency. Understanding key information will help developing a good and viable strategic plan that will ensure the organization’s success. The developed strategic plan aimed at promoting growth and development of the nation through the organization. This would bring success in the future for other organizations in the country. The new strategic plan to be implemented by the organization will lead to development of more achievable mission, vision and goals. The organization is vital to the nation because it maintains cybersecurity, communication tools, infrastructure security and development of emergency response services. The primary drawback of this agency is that it is accountable and responsible for thed whole nation’s security activities hence any failure in the Agency will expose the country to major security threats.

This study was significant because it will enable the organization’s management to effectively develop strategies aimed at promoting growth and development of the agency, proper management of its programs, proper allocation of resources to its various sectors, and to effectively operate the cybersecurity and infrastructure security Agency. The study also aimed at determining effective ways of how the organization would manage their outreach initiatives in the country by coordinating education and training programs through emergency response service, cybersecurity, risk management, and infrastructure security. The organization should implement a strategic plan which subdivides its operations among various employees to ease their workload hence become more effective. This strategic plan would enhance effective communication plan and strategy that will enable them to effectively educate people how emergency responses work. This will help the government to alleviate security risks and threats in the CISA organization.

Summary

There is need to improve the strategic plan used by the CISA organizationbecause the organization is responsible for operating many security enforcement activities. The CISA organization is a homeland security department whose mission is to promote cybersecurity, infrastructure security, proper communication strategies, and establishment of emergency service response. The importance of the organization is to implement a new strategic plan which would help in protection processes and preservation of effective operation of the organization to promote future growth and success. The strategic plan will also help the agency in identifying alternative means to finance its outreach initiatives, training programs, infrastructure security and cyber security. It will also help the organization in implementing necessary measures for alleviation of cybersecurity threats and risks by establishing a system that helps in identification and alleviation of possible risks. Moreover, the strategic plan will help the organization identify alternative resources from its partnerships with several private and public sectors. The development of an effective and viable strategic plan will ease adjustment process in the future to the advancing technologies.

References

Homepage | CISA. (2020). Retrieved 8 November 2020, from https://www.cisa.gov/ .

Cybersecurity and Infrastructure Security Agency | USAGov. Retrieved 8 November 2020, from https://www.usa.gov/federal-agencies/cybersecurity-and-infrastructure-security-agency .

Cybersecurity and Critical Infrastructure. (2020). Retrieved 8 November 2020, from https://www.dhs.gov/coronavirus/cybersecurity-and-critical-infrastructure .