cyber secuity

profileluckyqloo
W8D1AC.docx

W8D1

Disagree… 100 min

A successful implementation strategy should have a heavy emphasis on establishing good communication between the IT team and stakeholders. “The lack of long‐term perspective and communication breakdowns between management and IT often creates a disconnect between the parties and on throughout other parts of the organization” (Implementation strategies for fulfilling, 2018). By ensuring there’s a good communication structure, both IT and management can better educate the workforce on what is expected of them to remain compliant and establishes a line of communication for questions and feedback that may arise.

Once lines of communication are in place, the next part of the strategy is to establish determine how to prioritize threats. It’s easy to fall into the trap of nit-picking the small things and miss the larger threat. For example, if one employee is violating the technology use agreement by browsing Amazon on their break, are they as critical of a threat to deal with at that time versus an employee who’s single sign-on password doesn’t comply with the strong password requirements? In this case, the password is the larger threat because if that password is compromised, it grants the malicious user access to any system that SSO has permissions for. Part of prioritizing potential vulnerabilities includes focusing on urgent and important issues and addressing them quickly. “Go for the low‐hanging fruit—the quick‐fix gaps and vulnerabilities that will provide you the most bang for your buck. That's where your network is bleeding the most and where the greatest business risks originate” (Implementation strategies for fulfilling, 2018).

Implementation strategies for fulfilling and maintaining IT compliance. (2018). Fallback Status. https://fallbackstatus.com/implementation-strategies-for-fulfilling-and-maintaining-it-compliance/