IT Strat Plan - Wk6

profiletina11689
WK6OriginalityReport.pdf

6/11/2021 Originality Report

https://ucumberlands.blackboard.com/webapps/mdb-sa-BB5a31b16bb2c48/originalityReport/ultra?attemptId=26751137-169d-4a21-86d3-7b6fade71… 1/23

%43

%9

SafeAssign Originality Report Summer 2021 - InfoTech Import in Strat Plan (ITS-831-A02) - First Bi-… • Week 6 Research Paper: COSO Framework

%77Total Score: High riskSharath Kumar Goud Madgula Submission UUID: 8833a14a-8789-6ac7-e006-69653026b6e2

Total Number of Reports

4 Highest Match

93 % Wk6 COSOFramework.docx

Average Match

77 % Submitted on

06/11/21 12:20 PM EDT

Average Word Count

1,360 Highest: WK5 HealthcareComputerandInt…

%52Attachment 1

Institutional database (7)

Student paper Student paper Student paper

My paper Student paper Student paper

Student paper

Internet (3)

techtarget jasa-cari-buku yourtermpapers

Top sources (3)

Excluded sources (0)

View Originality Report - Old Design

Word Count: 619 PCA2.docx

7 1 5

4 3 6

2

10 8 9

7 Student paper 1 Student paper 5 Student paper

Running Head: PRACTICAL CONNECTION 1

PRACTICAL CONNECTION 4

Practical Connection Assignment

Sharath Kumar Goud Madgula

InfoTech Import in Strat Plan (ITS-831-A02) – First Bi-Term

Term - Summer 2021

University of the Cumberlands

I have learned that security policy is termed as a group of policies issued by a specific organization. The policy ensures that all the IT individuals within the organ-

ization have to comply with rules associated with the security of the information. All in all, these policies play an important role in the overall security of an organiza- tion. Security policy plays an important role in risk management. Normally, it prevents or possibly reduce the likelihood of unapproved access, use, cancellation as well as abuse. Information comes in various forms, hard copy and soft copy are the common forms of data types (Peltier, 2019). Security policy mainly concentrate on ensuring privacy, integrity as well as accessibility of information on the same time ensuring easy approach execution, all without hampering organization productivity. Any security policy is tasked with identifying any organization’s assets as well as all the potential risks to those assets. In business, security policy may comprise a sat- isfactory use strategy, a portrayal of how the organization intends to instruct its staff about securing the organization's resources, a clarification of how security policies will be upheld, and a system for assessing the viability of the security strategy to guarantee that important amendments will be made. Knowledge in

server virtualization will help me in creating multiple instances of an operating system - or even multiple different operating systems - on a single server hardware system. With this knowledge I can comfortably purchase server hardware with higher RAM sizes in relation to CPU, and create maybe 10 or so ‘virtual’ servers - in- stances of an operating system - and run these on one ‘piece of tin’. Doing that, you could now use more of the available CPU and memory, and get a better return on your hardware investment. Ten individual servers could be replaced by one slightly larger server. I am aware that as virtualization systems became more advanced, it became possible to build clusters of virtual systems with the ability to restart virtual machines on a different physical server if one server were to fail (Reynolds & Mc-

1

2

3

4

5

4

6

7

1

6/11/2021 Originality Report

https://ucumberlands.blackboard.com/webapps/mdb-sa-BB5a31b16bb2c48/originalityReport/ultra?attemptId=26751137-169d-4a21-86d3-7b6fade71… 2/23

Source Matches (12)

Student paper 100%

Student paper 100%

Student paper 100%

My paper 100%

Student paper 100%

My paper 100%

Student paper 100%

Crory, 2018). Having knowledge in server virtualization plays a huge role since prior to this, when a server had a hardware failure it could takes days or weeks to get the application back up and running. And not much later the ability to migrate a virtual machine from one physical server to another without any downtime took the concept up a notch. Now I can easily perform hardware maintenance as well as even replacements without taking any business applications offline. Virtualization means better use of hardware by allowing multiple operating systems to run in parallel on it, thus imposing a much more strict application separation than the one provided by a “regular operating system” only. You still need the different applications, so you may have only one piece of hardware, but now you have to pay for the hardware, you have to pay for the hypervisor, you have to pay for the applications that you need and you have to pay for the necessary operating systems (one li- cense per VM). The big advantage is the better use of hardware, you have only 1 piece of hardware where you run what previously was running on a 1 hardware - 1 OS type of relationship.

Reference

Peltier, T. R. (2019). Information Security Policies, Procedures, and Standards: Guidelines for Effective Information Security Management. Boca Raton, FL: CRC

Press. Marshall, D., Reynolds & McCrory, D. (2018). Advanced Server Virtualization: VMware and Microsoft Platforms in the Virtual Data Center. Boca Raton,

FL: CRC Press.

8

9 10

1

Student paper

PRACTICAL CONNECTION 1

Original source

PRACTICAL CONNECTION 1

2

Student paper

PRACTICAL CONNECTION 4

Original source

PRACTICAL CONNECTION 4

3

Student paper

Practical Connection Assignment

Original source

Practical Connection Assignment

4

Student paper

Sharath Kumar Goud Madgula

Original source

Sharath Kumar Goud Madgula

5

Student paper

InfoTech Import in Strat Plan (ITS-831-A02) – First Bi-Term

Original source

InfoTech Import in Strat Plan (ITS-831-A02) - First Bi-Term

4

Student paper

Term - Summer 2021

Original source

Term - Summer 2021

6

Student paper

University of the Cumberlands

Original source

University of the Cumberlands

6/11/2021 Originality Report

https://ucumberlands.blackboard.com/webapps/mdb-sa-BB5a31b16bb2c48/originalityReport/ultra?attemptId=26751137-169d-4a21-86d3-7b6fade71… 3/23

%67

%7

Student paper 90%

Student paper 66%

jasa-cari-buku 88%

yourtermpapers 100%

techtarget 100%

%74Attachment 2

Institutional database (9)

Student paper Student paper Student paper

Student paper My paper Student paper

Student paper Student paper Student paper

Internet (1)

chromeinfotech

Top sources (3)

Excluded sources (0)

7

Student paper

I have learned that security policy is termed as a group of policies issued by a specific or- ganization. The policy ensures that all the IT individuals within the organization have to comply with rules associated with the security of the information. All in all, these policies play an important role in the overall security of an organization.

Original source

A BYOD security policy is termed as a group of policies issued by a specific organization The policy ensures that all the IT individuals within the organization have to comply with rules associated with the BYOD security of the information (Rai, 2015 All in all, these policies play an important role in the overall security of an organization

1

Student paper

Knowledge in server virtualization will help me in creating multiple instances of an oper- ating system - or even multiple different operating systems - on a single server hardware system.

Original source

Importance of Physical Security and Server Virtualization, which allows us to create mul- tiple different instances of an operating system on a single server hardware system

8

Student paper

Information Security Policies, Procedures, and Standards:

Original source

Peltier Information Security Policies, Procedures, and Standards

9

Student paper

Advanced Server Virtualization:

Original source

Advanced Server Virtualization

10

Student paper

VMware and Microsoft Platforms in the Virtual Data Center.

Original source

VMware and Microsoft Platforms in the Virtual Data Center

Word Count: 1,516 WK4 ServerVirtualization.docx

1 2 4

5 3 10

8 7 9

6

1 Student paper 2 Student paper 6 chromeinfotech

6/11/2021 Originality Report

https://ucumberlands.blackboard.com/webapps/mdb-sa-BB5a31b16bb2c48/originalityReport/ultra?attemptId=26751137-169d-4a21-86d3-7b6fade71… 4/23

Running Head: SERVER VIRTUALIZATION 1

SERVER VIRTUALIZATION 8

Lynknet Case Study for Virtualization Sharath Kumar Goud Madgula

InfoTech Import in Strat Plan (ITS-831-A02) – First Bi-Term

Term - Summer 2021

University of the Cumberlands

Lynknet Case Study for Virtualization

Lynket is an imaginary firm in the storage manufacturing industry. This research study intend to elaborate the server virtualization concept using Microsoft virtu-

alization software from Windows server 2012R2.

Organization’s Preparedness for Virtualization. Currently, the Lynket IT system design is a mishmash of legacy frameworks that were obtained through vari-

ous acquisitions of different providers in the storage industry. In any case, these old frameworks are aging and will soon need to be upgraded. These old frame-

works however support Lynknet applications that have been in service for the last decade. The IT system situated in one of Lynket branch in Asia for instance

comprise of old servers that have been in service for the last decade. These legacy servers were installed to host various company applications. The cost for

license of these old applications are presently being inspected to check whether they can be dropped and the information moved to current Lynknet Enterprise Re- source Planning (ERP) applications. Consequently, since several IT related components are potential contender for upgrading, this makes the likelihood of changing over current physical server farms into virtualized computing resources appropriate.

Microsoft Licensing of Virtualized Environments

Microsoft cline have an option to license a Windows Server Standard or Windows Server Datacenter. In any case every physical server component must be licensed. Windows Server license allow clients to run more than two instances of Standard per license Server or two guest unlimited instances of Windows Server Datacenter per License Server (Reynolds & McCrory, 2016). Clients in need of more than two virtual machines on a server licensed for Standard version have the alternative of relicensing the entirety of the physical centers on the server to allow two extra running instances. Furthermore, if the Physical OSE is used distinctly to help vir-

tual machines remaining load, similar licenses grant utilization of Windows Server as the host working framework. On the off chance that clients are moving workload between Licensed Servers, every one of those servers must be completely authorized to help the remaining load. License Mobility across Server Farms isn't accessible for Windows Server, so every server must be licensed for top limit consistently.

Shared Storage Considerations

In deciding which shared storage to use there are several factors that one must put into consideration. To start with one must consider the provider, provider

must be well established as well as have proper knowledge of the services and also have trained staff to assist in times of breakdown. Bandwidth is another

factor to consider, shared storage needs high bandwidth to enable easy access as well as retrieval of information at any time. Shared storage service cost should also be considered where by it should be reasonable as well as negotiable. Storage capacity as well as resilience to failure must also be put into consideration. There

should be enough storage capacity to address any future expansion, the system should also be solid and able to withstand failure.

Building High-Availability (HA) into Shared Storage. High availability (HA) comprise building redundancy into shared storage that ensures that in an event one

gadget fails, others will take charge and ensures that the entire system doesn’t fail. This is same as having a backup power generator where in an event of blackout the generator will take charge. Building high availability in shared storage start with making use of available components within the system. For instance, availability of routers as well as switches gives you an upper hand in building high availability. Many of this connectivity devices support protocol that enhance redundancy. Main protocol to use so as to enhance high availability include standby router protocol as well as virtual routing redundancy protocol which enable back up router to take over in an event of failure (Blokdyk, 2019). Next, one need to extend redundancy on the entire tiers within the network. In an event there are some files and docu- ment that are regularly accessed, then they should be easily accessed internally as well as remotely. This can be achieved by adding a second internet link from your provider. NIC teaming where several network cards appears as one interface on a server enhances high availability by providing a backup card in case one fails.

Building Redundancy into Shared Storage. Erasure coding (of which RAID is a simple subset) only applies when data is replicated, and allows protection against N

failures to be achieved with far less total storage than N+1 copies. Downsides include the need to read/modify/write (instead of just write) when updating, and a high I/O cost for rebuilding data after a failure.

1

2

3

2

1

2

1 2

1

2

1 2

1

4

1

1

5

1

1

2

Again, these effects are magnified in a distributed system. Compression takes advantage of the redundancy within each piece of data (eg block or file) to encode it more efficiently. Hitches include having to decompress/recompress objects when they're rewritten, plus a more complex relationship between user-perceived offsets and actual storage offsets. Care must also be taken when combining compression with encryption (Blokdyk, 2019). Deduplication takes advantage of the redund-

ancy between pieces of data to store multiple copies once and then keep pointers to that one copy. Downsides include the high cost of detecting duplicates and the need to keep reference counts on the stored chunks to know when they can be deleted. Both of these costs are magnified if the storage system is distributed.

Windows Azure Cloud Services

Windows Azure enables subscribers to create no-code web apps and code based web apps. It provides Artificial Intelligence components in building those apps. It en- ables you to host and migrate, your databases to the Cloud. Doing this means your databases are accessible, to you, via a browser. Analysis services including Ma- chine Learning prediction are provided via the Azure Machine Learning Studio hosted by Azure (Luescher & Flynn, 2018). Virtual Machines are made available to host your applications and data if you need to use them. Cloud Storage is also available without having to purchase expensive VM’s. You pay for what you use, not for, one-

1

6/11/2021 Originality Report

https://ucumberlands.blackboard.com/webapps/mdb-sa-BB5a31b16bb2c48/originalityReport/ultra?attemptId=26751137-169d-4a21-86d3-7b6fade71… 5/23

Source Matches (38)

Student paper 100%

Student paper 100%

My paper 89%

Student paper 100%

Student paper 72%

off, purchasing fees. Below is a list of Azure cloud services

A. Messaging Services: One of the interesting features of Microsoft Azure is the Azure Service Bus which facilitates Software Applications running either on

premise or off-premise to communicate with the Azure Cloud facility. B. Mobile Engagement Services: This feature facilitates Users to monitor and manage the User Engagement that their Mobile applications are drawing in. It also supports real-time tracking of data analytics which provides a deeper perspective into User behavior. C. WebApps: Webapps is a high-density Website hosting Service that allows developers to quickly build Web applications using ASP.NET | Open-source web

framework for .NET, PHP, Node.Js, Python and also deploy it to the Azure Cloud. D. Availability of Virtual Machines: Falling under Azure’s IaaS facility, this feature

enables Users to launch their general-purpose Virtual Machines that are developed in either Windows or Linux Platform. E. Availability of App Services: This falls under Azure’s PaaS Service Section. Through the Azure App Services one can easily publish as well as manage their Business Web Applications and Websites.

Why Lynknet Should Consider Windows Azure

For an international companies like Lynknet, Windows Azure will provides easy access to data on any device. Data created on premise model and lost due to the

crash of the website or because of any disaster is too hard to recover whereas one can recover data very easily if it was made available on the Microsoft Azure. Most of the companies feel trepidation in using the cloud services as data created over on premise models allow direct control over security measures but one can use the Azure cloud services because they provide 24/7 unified security management across hybrid cloud networks. One of the key reason for using Azure is cost saving. Cre- ating data over on premise models involves the deployment of myriads of resources whereas Azure markets up to 72% saving with pay-as-you-go pricing. Any type of information stored on Azure meets regulatory standards, this make Azure accommodating mostly for the legal or the monetary sectors. On top of that, it is developed with security aspect in mind hence favorable for any business. Azure is well known for having a few server farms and conveyance focuses. That conveys the content quicker, and on top of that helps users in sharing information across the globe with ease.

Reference

Marshall, D., Reynolds & McCrory, D. (2016). Advanced Server Virtualization: VMware and Microsoft Platforms in the Virtual Data Center. Boca Raton, FL: CRC

Press. Carpenter, T. (2018). Microsoft Windows Server Administration Essentials. Hoboken, NJ: John Wiley & Sons. Blokdyk, G. (2019). Shared Storage A Complete

Guide - 2020 Edition. NJ: 5starcooks. Savill, J. (2019). Microsoft Azure Infrastructure Services for Architects: Designing Cloud Solutions. Hoboken, NJ: John Wiley &

Sons. Finn, Luescher & Flynn. (2018). Windows Server 2012 Hyper-V Installation and Configuration Guide. Hoboken, NJ: John Wiley & Sons.

6

6

6

6

7

1

1

8

8

9 10 8

1

Student paper

SERVER VIRTUALIZATION 1

Original source

SERVER VIRTUALIZATION 1

2

Student paper

SERVER VIRTUALIZATION 8

Original source

SERVER VIRTUALIZATION 8

3

Student paper

Lynknet Case Study for Virtualization Sharath Kumar Goud Madgula InfoTech Import in Strat Plan (ITS-831-A02) – First Bi-Term Term - Summer 2021

Original source

Sharath Kumar Goud Madgula InfoTech Import in Strat Plan (ITS-831-A02) – First Bi-Term Term - Summer 2021

2

Student paper

University of the Cumberlands

Original source

University of the Cumberlands

1

Student paper

Lynknet Case Study for Virtualization

Original source

Econet Case Study for Virtualization

6/11/2021 Originality Report

https://ucumberlands.blackboard.com/webapps/mdb-sa-BB5a31b16bb2c48/originalityReport/ultra?attemptId=26751137-169d-4a21-86d3-7b6fade71… 6/23

Student paper 91%

Student paper 100%

Student paper 92%

Student paper 71%

Student paper 85%

Student paper 78%

Student paper 93%

Student paper 89%

2

Student paper

This research study intend to elaborate the server virtualization concept using Microsoft virtualization software from Windows server 2012R2.

Original source

This paper intend to elaborate the server virtualization concept using Microsoft virtualiza- tion software from Windows server 2012R2

1

Student paper

Organization’s Preparedness for Virtualization.

Original source

Organization’s Preparedness for Virtualization

2

Student paper

Currently, the Lynket IT system design is a mishmash of legacy frameworks that were ob- tained through various acquisitions of different providers in the storage industry. In any case, these old frameworks are aging and will soon need to be upgraded.

Original source

As of now, the IT system design is a mishmash of old frameworks that were obtained through various acquisitions of different providers in the storage industry In any case, these old frameworks are aging and will soon need to be upgraded

1

Student paper

These old frameworks however support Lynknet applications that have been in service for the last decade.

Original source

These legacy frameworks, however, support Econet applications that have been in service for the last twenty years

2

Student paper

The IT system situated in one of Lynket branch in Asia for instance comprise of old serv- ers that have been in service for the last decade.

Original source

The IT system situated in one of Technet branch in Asia for instance comprise of old serv- ers that have been in service for the last 5 years

1

Student paper

These legacy servers were installed to host various company applications.

Original source

Econet installed these old servers to host various company applications

2

Student paper

The cost for license of these old applications are presently being inspected to check whether they can be dropped and the information moved to current Lynknet Enterprise Resource Planning (ERP) applications. Consequently, since several IT related components are potential contender for upgrading, this makes the likelihood of changing over current physical server farms into virtualized computing resources appropriate.

Original source

The expense for permit of these old applications are presently being inspected to check whether they can be dropped and the information moved to current Technet Enterprise Resource Planning (ERP) applications Consequently, since several IT related components are potential contender for upgrading, this makes the likelihood of changing over current physical server farms into virtualized computing resources appropriate

1

Student paper

Microsoft Licensing of Virtualized Environments Microsoft cline have an option to license a Windows Server Standard or Windows Server Datacenter. In any case every physical server component must be licensed. Windows Server license allow clients to run more than two instances of Standard per license Server or two guest unlimited instances of Windows Server Datacenter per License Server (Reynolds & McCrory, 2016).

Original source

Microsoft Licensing of Virtualized Environments Microsoft clients have an option to either license a Windows Server Standard or Windows Server Datacenter Initially, every physical server component must be licensed Windows Server license allows clients to run more than two instances of Standard per license Server or two guest unlimited instances of Windows Server Datacenter per License Server (Lamping, 2014)

6/11/2021 Originality Report

https://ucumberlands.blackboard.com/webapps/mdb-sa-BB5a31b16bb2c48/originalityReport/ultra?attemptId=26751137-169d-4a21-86d3-7b6fade71… 7/23

Student paper 97%

Student paper 82%

Student paper 100%

Student paper 70%

Student paper 90%

Student paper 100%

Student paper 95%

1

Student paper

Clients in need of more than two virtual machines on a server licensed for Standard ver- sion have the alternative of relicensing the entirety of the physical centers on the server to allow two extra running instances.

Original source

Clients in need of more than two virtual machines on a server licensed for Standard ver- sion have the alternative of relicensing the entirety of the physical centers on the server to allow two other running instances

4

Student paper

Furthermore, if the Physical OSE is used distinctly to help virtual machines remaining load, similar licenses grant utilization of Windows Server as the host working framework. On the off chance that clients are moving workload between Licensed Servers, every one of those servers must be completely authorized to help the remaining load. License Mo- bility across Server Farms isn't accessible for Windows Server, so every server must be li- censed for top limit consistently.

Original source

Moreover, if the Physical OSE is utilized distinctly to help VM outstanding burdens, similar licenses grant utilization of Windows Server as the host working framework On the off chance that clients are moving remaining tasks at hand between Licensed Servers, every one of those servers must be completely authorized to help the outstanding burdens Per- mit Mobility across Server Farms isn't accessible for Windows Server, so every server must be authorized for top limit consistently

1

Student paper

Shared Storage Considerations

Original source

Shared Storage Considerations

1

Student paper

To start with one must consider the provider, provider must be well established as well as have proper knowledge of the services and also have trained staff to assist in times of breakdown.

Original source

First of all, one must consider the provider, the provider must be well-vetted, and they must have proper knowledge of the services and also have trained staff to provide support

5

Student paper

Bandwidth is another factor to consider, shared storage needs high bandwidth to enable easy access as well as retrieval of information at any time. Shared storage service cost should also be considered where by it should be reasonable as well as negotiable.

Original source

Bandwidth is another factor to consider, and shared storage needs high bandwidth to en- able easy access and retrieval of information at any time (Paulsen, 2019) Shared storage service cost should also be considered, whereby it should be reasonable as well as negotiable

1

Student paper

Storage capacity as well as resilience to failure must also be put into consideration.

Original source

Storage capacity, as well as resilience to failure, must also be put into consideration

1

Student paper

Building High-Availability (HA) into Shared Storage. High availability (HA) comprise build- ing redundancy into shared storage that ensures that in an event one gadget fails, others will take charge and ensures that the entire system doesn’t fail. This is same as having a backup power generator where in an event of blackout the generator will take charge. Building high availability in shared storage start with making use of available components within the system.

Original source

Building High-Availability (HA) into Shared Storage High availability (HA) comprises build- ing redundancy into shared storage that ensures that in an event one gadget fails, others will take charge and ensures that the entire system doesn’t fail This is the same as having a backup power generator wherein an event of blackout the generator will take charge Building high availability in shared storage starts with making use of available compon- ents within the system

6/11/2021 Originality Report

https://ucumberlands.blackboard.com/webapps/mdb-sa-BB5a31b16bb2c48/originalityReport/ultra?attemptId=26751137-169d-4a21-86d3-7b6fade71… 8/23

Student paper 89%

Student paper 100%

Student paper 94%

Student paper 84%

Student paper 82%

Student paper 62%

chromeinfotech 69%

chromeinfotech 63%

1

Student paper

For instance, availability of routers as well as switches gives you an upper hand in build- ing high availability. Many of this connectivity devices support protocol that enhance redundancy.

Original source

For instance, the availability of routers as well as switches gives you an upper hand in building high availability Many of these connectivity devices support protocol that en- hances redundancy

2

Student paper

Building Redundancy into Shared Storage.

Original source

Building Redundancy into Shared Storage

1

Student paper

Care must also be taken when combining compression with encryption (Blokdyk, 2019). Deduplication takes advantage of the redundancy between pieces of data to store mul- tiple copies once and then keep pointers to that one copy. Downsides include the high cost of detecting duplicates and the need to keep reference counts on the stored chunks to know when they can be deleted. Both of these costs are magnified if the storage sys- tem is distributed.

Original source

Care must also be taken when combining compression with encryption Deduplication takes advantage of the redundancy between pieces of data to store multiple copies once and then keep pointers to that one copy (Leep, 2015) Downsides include the high cost of detecting duplicates and the need to maintain reference counts on the stored chunks to know when they can be deleted Both of these costs are magnified if the storage system is distributed

1

Student paper

Windows Azure Cloud Services Windows Azure enables subscribers to create no-code web apps and code based web apps. It provides Artificial Intelligence components in building those apps. It enables you to host and migrate, your databases to the Cloud.

Original source

Windows Azure Cloud Services Windows Azure enables users to create no-code web apps and code-based web apps It provides smart components in building those apps It allows users to host and migrate their databases to the Cloud

1

Student paper

Doing this means your databases are accessible, to you, via a browser. Analysis services including Machine Learning prediction are provided via the Azure Machine Learning Stu- dio hosted by Azure (Luescher & Flynn, 2018). Virtual Machines are made available to host your applications and data if you need to use them. Cloud Storage is also available without having to purchase expensive VM’s.

Original source

Doing this means your database is accessible via a browser Analysis services, including Machine Learning prediction, are provided via the Azure Machine Learning Studio hosted by Azure (Redkar, 2015) Virtual Machines are made available to host applications as well as data Cloud Storage is also available without having to purchase expensive VM’s

1

Student paper

You pay for what you use, not for, one-off, purchasing fees.

Original source

You pay for what you use

6

Student paper

One of the interesting features of Microsoft Azure is the Azure Service Bus which facilit- ates Software Applications running either on premise or off-premise to communicate with the Azure Cloud facility.

Original source

Yes, Microsoft Azure features list also consists of an Azure Service bus through which software applications that run on either Azure on-premises or even off-premises commu- nicate with the Azure cloud facility

6

Student paper

Webapps is a high-density Website hosting Service that allows developers to quickly build Web applications using ASP.NET | Open-source web framework for .NET, PHP, Node.Js, Python and also deploy it to the Azure Cloud.

Original source

Through this, developers and programmers can build websites and web applications us- ing Asp.Net | PHP | Node.JS | Python and quickly deploy to the Azure cloud using the FTP, Git, Team foundation server and Mercurial also

6/11/2021 Originality Report

https://ucumberlands.blackboard.com/webapps/mdb-sa-BB5a31b16bb2c48/originalityReport/ultra?attemptId=26751137-169d-4a21-86d3-7b6fade71… 9/23

chromeinfotech 64%

chromeinfotech 91%

Student paper 80%

Student paper 75%

Student paper 65%

Student paper 100%

Student paper 100%

Student paper 73%

6

Student paper

Falling under Azure’s IaaS facility, this feature enables Users to launch their general-pur- pose Virtual Machines that are developed in either Windows or Linux Platform.

Original source

Users can launch their general-purpose virtual machines developed in windows or Linux platforms

6

Student paper

Through the Azure App Services one can easily publish as well as manage their Business Web Applications and Websites.

Original source

Through Azure App Services, you can easily publish as well as manage your websites and business web applications

7

Student paper

Why Lynknet Should Consider Windows Azure

Original source

Why The Organization Should Consider Windows Azure

1

Student paper

For an international companies like Lynknet, Windows Azure will provides easy access to data on any device.

Original source

Windows Azure provides easy access to data on any device

1

Student paper

Advanced Server Virtualization:

Original source

SERVER VIRTUALIZATION 1

8

Student paper

John Wiley & Sons.

Original source

John Wiley & Sons

8

Student paper

John Wiley & Sons.

Original source

John Wiley & Sons

9

Student paper

Finn, Luescher & Flynn.

Original source

(Finn, Lownds, Luescher & Flynn, 2013)

6/11/2021 Originality Report

https://ucumberlands.blackboard.com/webapps/mdb-sa-BB5a31b16bb2c48/originalityReport/ultra?attemptId=26751137-169d-4a21-86d3-7b6fade7… 10/23

%89

%0

Student paper 100%

Student paper 100%

%89Attachment 3

Institutional database (9)

Student paper Student paper Student paper

Student paper Student paper Student paper

Student paper Student paper My paper

Global database (1)

Student paper

Top sources (3)

Excluded sources (0)

10

Student paper

Windows Server 2012 Hyper-V Installation and Configuration Guide.

Original source

Windows Server 2012 Hyper-V Installation and Configuration Guide

8

Student paper

John Wiley & Sons.

Original source

John Wiley & Sons

Word Count: 1,740 WK5 HealthcareComputerandInternetPolicy.docx

1 6 5

8 4 9

7 3 2

10

1 Student paper 6 Student paper 5 Student paper

Running Head: HEALTHCARE SECURITY POLICY 1

HEALTHCARE SECURITY POLICY 9

Healthcare Security Policy

Sharath Kumar Goud Madgula

InfoTech Import in Strat Plan (ITS-831-A02) – First Bi-Term

Term - Summer 2021

University of the Cumberlands

Purpose This security policy highlights guidelines and provisions for maintaining data security and technology infrastructure. The more we rely on technology to

gather, store as well as manage information, the more exposed we are to security breaches. Mistakes caused by humans, system flaws and attacks by hackers can cause a serious financial as well as national security harm. This security policy have introduced several security measures as well as guidelines that can be used to mitigate security risks.

Scope

This policy applies to all employees within the organization, suppliers, interns as well as anyone who has permanent or temporary access to organization sys-

tems as well as network.

General Policy and Guidelines

Technet embraces a decent computer use policy. Technet doesn’t have assets to screen every day network action, record use, email, internet access or a large num- ber of different things that help employees at their work. In any case, Technet claim all authority to step in and authorize rules that haven't been adhered to and ad- vice recurrent guilty parties. The requirement for a policy emerges to some degree from the need to give employees a predictable, steady, secure workplace. To attain

1

1

2

3

2

4

5

5

6

6/11/2021 Originality Report

https://ucumberlands.blackboard.com/webapps/mdb-sa-BB5a31b16bb2c48/originalityReport/ultra?attemptId=26751137-169d-4a21-86d3-7b6fade71… 11/23

this, Technet have to set up general standards of conduct concerning PC, applications and system use in order to productively use the restricted resources accessible.

Responsibilities

The Chief Information Security Officer: is liable for creating, maintaining, implementing and overseeing Technet information frameworks security policy. While

obligation regarding information frameworks security on a daily basis is each user obligation, specific direction and authority for information system security is integ- rated for the entire department information. Information system threat assessment will be conducted by the IT department so as to come up with information sys- tem action plans, assess system security as well as perform different actions critical to guarantee a secured information frameworks setup. Information Security Man- ager: is liable for planning assessment related to any computer security breaches, attacks or issues with the IT infrastructure services. Any breaches or potential

breaches must be reported immediately to the IT department. Infrastructure administrator: is answerable for updating the security administrator. They are an-

swerable for acting as local data system security controllers. They are answerable for building up proper user rights, monitoring access control logs as well as con- ducting comparable security actions for the systems they monitor. They are also answerable for listing all suspicious PC and system security-based actions to the Se- curity Administrator. System heads also implements the prerequisites of this and other information system security policies, benchmarks, rules, and methodology. If a framework is monitored or owned by a third party, the department chief of the group renting the administrations plays out the activities of the system adminis- trator. IT heads: are liable for ensuring that all departments adhere to the set system safety measures. Apart from distributing necessary assets as well as user

time to attain the prerequisites of these policies, department supervisors are answerable for guaranteeing that all users are conversant to the Technet policies related to system security. All Heads of departments: are liable in ensuring that proper system safety efforts are observed by all users. Department heads are answer-

able in ensuring that all users are aware of Technet computer system policies. Users are answerable for consenting to different Technet system security policies. They are additionally answerable for reporting any system vulnerability they come across while working on the system.

Password Protection Policy

The password is one of the important factors of security. Password is used to protect data and personal information. Every gadget as well as system connected to Technet network must be password protected (Seitz, 2019). The password must contain more than 8 characters and should be combination of uppercase, lowercase letters, numbers, and special symbols. The reason behind this is that it makes password strong and hard to guess. Employees are discouraged to use obvious inform- ation as password, for example your name or surname, birth date, address etc. The general idea of password is for user verification, that’s why it’s important to have a strong, at least 8 characters alphanumeric password. Passwords are they key to your finances or any sensitive and personal things. Passwords must contain special characters to maintain the strength of the password. A secure password must have alphanumeric character and special symbol and keep your account safe from hacking. Users are discouraged to use their name, nickname and mobile number as their password because this type of password is easily guessable.

1

1

1

1

1

Employees are advised to use something as random and complex as possible, but make sure it still relates to something so you can remember it (sdfkj830#$$#sdf is not as good a password as th1515apa$$word). Computer and e-mail Use Acceptable Policy

Technet staff are urged to send personal email and carryout similar exercises individually at whatever point conceivable (Macdonald, 2019). In any case, the peri-

odic personal use of email as well as other shared information systems while at work is allowed within sensible limits. · Personal messages are dealt with equivalent to other messages in the system, which could conceivably be archived every once in a while and along these lines subject to recovery considerably after the user be- lieves to have erased them. · Technet reminds each employee that every visit to the internet as well as email exchange uses Technet name. Therefore use of any re- sources must be precise, proper, and ought not to subject Technet to potential risk. · Technet employees must protect their email passwords, known distinctly to themselves whenever. In any case, the IT department holds the capacity to erase an employee’s secret key in any way comprising resetting the password whenever forgotten or to check an account’s mail if important. Technet internet should not be used to get to or get or download any material that might be viewed as annoying, problematic, or hostile by other people.

Email Attachment · Any unknown email attachments is deleted without opening. On the off chance that the attachment appears to be suspicious, contact the IT De- partment. · Email attachments that come from a known source must be scanned for viruses. It is an offence to disable scanning settings from any computer. · Attach- ments are not to surpass 1.5 M, or ~1500K. Attachments bigger than this are probably going to crash your email server and additionally cause issues with the mail server. · In the event that you realize you will need to send a huge file ahead of time, notify the IT department for arrangements. Computer Use Acceptable Policy

Users must keep affirmed and latest anti-virus program installed on their PCs. This programs must be applied to check all third party applications or different

Technet units and must occur before the new applications are used. Users must not sidestep scanning process that could stop the transmission of PC virus (Peltier, 2019). Users are answerable for harm happening in light of virus on PC frameworks under their control. When a virus is recognized, the involved user must quickly re- port to the IT department to guarantee that no further spread takes place and that any specialists expected to annihilate the virus are expeditiously locked in.

Computer as well as communication system rights of every user, system and programs must be confined dependent on nature of work. This means that rights

must not be extended unless the user needs such rights (Anandarajan & Simmers, 2019). Default user file authorizations ought not to automatically permit everyone on the system to read, write, execute or erase a file record. Even if the user may reset consents on a file by-document premise, such sensitive default document rights are disallowed. Default file consents granted to limited group of users who have a veritable need to know are permitted.

Internet Acceptable use Policy

Only approved personnel can access Technet network. Users are given certain rights and unique user passwords. None of these information can be revealed or par- taken in any way with other individuals or carelessly stored in a place where it can be seen by everyone. Users must change their passwords after every four weeks following the organization password policy. Users must also ensure that their wireless devices are installed with anti-virus and firewall software before joining the or- ganization network (Schou & Shoemaker, 2019). In an event of any inquiries or doubts, it is prescribed to refer to Information security support group for help.

Wireless Network Acceptable use Policy · Every Access Points must adhere to all national regulations concerning Wireless gadget. · Every Access Points on the network must follow the suggested provisions as dictated by Information security. · Procurement of new Access Points must be approved by Information security department, as defined by the current procurement policy as well as the organization Information Technology Standardization initiative. · Every Access Points on the network must observe the standard Access Points configuration set by information security team. · Information Security forbid the installation of any Access points that does not meet the agreed standards. · Wireless networks control and management will be carried out by Information · Security on a daily basis and any unapproved Access Point will be deactivated from the network. Policy Enforcement

7

6

7

1

8

1

7

6/11/2021 Originality Report

https://ucumberlands.blackboard.com/webapps/mdb-sa-BB5a31b16bb2c48/originalityReport/ultra?attemptId=26751137-169d-4a21-86d3-7b6fade7… 12/23

Source Matches (39)

Student paper 81%

Student paper 64%

My paper 100%

Student paper 100%

My paper 100%

Student paper 100%

There is need for all involved parties to comply with this policy and where requested to exhibit such compliance. Failure to observe this policy will be

viewed as a disciplinary incident and one may face disciplinary action which may including termination of employment.

9 1

Reference

Peltier, T. R. (2019). Information Security Policies, Procedures, and Standards: Guidelines for Effective Information Security Management. Boca Raton, FL: CRC

Press. Schou & Shoemaker, D. (2019). Information assurance for the enterprise: A roadmap to information security. Boston: McGraw-Hill Irwin. Mac-

donald, L. (2019). Email and internet policies and guidance notes. Tolley's Managing Email & Internet Use, 218-278. doi:10.1016/b978-0-7545-2443-4.50010-

9

Anandarajan & Simmers. (2019). Managing Web Usage in the Workplace: A Social, Ethical and Legal Perspective. Hershey, PA: IGI Global. Organizational in-

formation security policies: a review and research framework. (2018, February 15). Retrieved from https://www.tandfonline.com/doi/abs/10.1057/s41303-017-0059-9

Shim, J. K., Qureshi & Siegel. (2018). The international handbook of computer security. Chicago: Glenlake Pub. Seitz, T. (2019). Supporting users in password

authentication with persuasive design. Tobias Seitz. Rhodes-Ousley & Strassberg, K. (2018). Network security: The complete reference. McGraw-Hill Osborne Media.

1

5 5 5

4 10

6 6

5 5

1

Student paper

HEALTHCARE SECURITY POLICY 1

Original source

SECURITY POLICY 1

1

Student paper

Healthcare Security Policy

Original source

IT Security Policy

2

Student paper

Sharath Kumar Goud Madgula

Original source

Sharath Kumar Goud Madgula

3

Student paper

InfoTech Import in Strat Plan (ITS-831-A02) – First Bi-Term

Original source

InfoTech Import in Strat Plan (ITS-831-A02) - First Bi-Term

2

Student paper

Term - Summer 2021

Original source

Term - Summer 2021

4

Student paper

University of the Cumberlands

Original source

University of the Cumberlands

6/11/2021 Originality Report

https://ucumberlands.blackboard.com/webapps/mdb-sa-BB5a31b16bb2c48/originalityReport/ultra?attemptId=26751137-169d-4a21-86d3-7b6fade7… 13/23

Student paper 95%

Student paper 79%

Student paper 89%

Student paper 91%

Student paper 89%

Student paper 96%

5

Student paper

Purpose This security policy highlights guidelines and provisions for maintaining data se- curity and technology infrastructure. The more we rely on technology to gather, store as well as manage information, the more exposed we are to security breaches. Mistakes caused by humans, system flaws and attacks by hackers can cause a serious financial as well as national security harm. This security policy have introduced several security meas- ures as well as guidelines that can be used to mitigate security risks.

Original source

Purpose of the Policy This security policy highlights guidelines and provisions for main- taining data security and technology infrastructure The more we depend on technology to gather, store as well as manage information, the more vulnerable we are to security breaches Mistakes caused by humans, system flaws and attacks by hackers can cause a serious financial as well as national security harm This security policy have introduced several security measures as well as guidelines that can be used to mitigate security risks

5

Student paper

This policy applies to all employees within the organization, suppliers, interns as well as anyone who has permanent or temporary access to organization systems as well as network.

Original source

Scope This policy applies to all our workers, suppliers, interns as well as anyone who has permanent or temporary access to our systems and network

6

Student paper

General Policy and Guidelines Technet embraces a decent computer use policy. Technet doesn’t have assets to screen every day network action, record use, email, internet access or a large number of different things that help employees at their work. In any case, Tech- net claim all authority to step in and authorize rules that haven't been adhered to and ad- vice recurrent guilty parties.

Original source

General Policy and Guidelines Econet embraces a decent computer use policy Econet doesn’t have assets to screen everyday network action, record use, email, internet access or a large number of different things that help employees at their work In any case, we claim all authority to step in and authorize rules that haven't been adhered to and advise recurrent guilty parties

6

Student paper

The requirement for a policy emerges to some degree from the need to give employees a predictable, steady, secure workplace. To attain this, Technet have to set up general standards of conduct concerning PC, applications and system use in order to productively use the restricted resources accessible.

Original source

The requirement for a policy emerges to some degree from the need to give you a pre- dictable, steady, secure workplace To do that, we have to set up general standards of conduct concerning PC, applications and system use in order productively use the restric- ted resources accessible

1

Student paper

is liable for creating, maintaining, implementing and overseeing Technet information frameworks security policy. While obligation regarding information frameworks security on a daily basis is each user obligation, specific direction and authority for information system security is integrated for the entire department information. Information system threat assessment will be conducted by the IT department so as to come up with inform- ation system action plans, assess system security as well as perform different actions crit- ical to guarantee a secured information frameworks setup.

Original source

The Chief Information Security Officer is liable for creating, maintaining, implementing, overseeing as well as deducing DoD information frameworks security policy, benchmarks, rules, and strategies While obligation regarding information frameworks security on a daily basis is each user obligation, specific direction and authority for information system security is integrated for the entire department information Information system threat assessment will be conducted by the IT department so as to come up with information system action plans, assess system security as well as perform different actions critical to guarantee a secured information frameworks setup

1

Student paper

is liable for planning assessment related to any computer security breaches, attacks or issues with the IT infrastructure services. Any breaches or potential breaches must be re- ported immediately to the IT department.

Original source

Information Security Manager is liable for planning assessment related to any computer security breaches, attacks or issues with the IT Infrastructure Services Any breaches or potential breaches must be reported immediately to the IT department

6/11/2021 Originality Report

https://ucumberlands.blackboard.com/webapps/mdb-sa-BB5a31b16bb2c48/originalityReport/ultra?attemptId=26751137-169d-4a21-86d3-7b6fade7… 14/23

Student paper 94%

Student paper 97%

Student paper 94%

Student paper 91%

Student paper 69%

Student paper 88%

1

Student paper

is answerable for updating the security administrator. They are answerable for acting as local data system security controllers. They are answerable for building up proper user rights, monitoring access control logs as well as conducting comparable security actions for the systems they monitor. They are also answerable for listing all suspicious PC and system security-based actions to the Security Administrator.

Original source

Infrastructure administrator is answerable for updating the Security Administrator They are answerable for acting as local data system security controllers They are answerable for building up proper user rights, monitoring access control logs as well as conducting comparable security actions for the systems they monitor (Blokdyk, 2020) They are also answerable for listing all suspicious PC and system security-based actions to the Security Administrator

1

Student paper

System heads also implements the prerequisites of this and other information system se- curity policies, benchmarks, rules, and methodology. If a framework is monitored or owned by a third party, the department chief of the group renting the administrations plays out the activities of the system administrator.

Original source

System heads also implements the prerequisites of this and other information system se- curity policies, benchmarks, rules, and methodology If a framework is overseen or owned by a third party, the department chief of the group renting the administrations plays out the activities of the system administrator

1

Student paper

are liable for ensuring that all departments adhere to the set system safety measures. Apart from distributing necessary assets as well as user time to attain the prerequisites of these policies, department supervisors are answerable for guaranteeing that all users are conversant to the Technet policies related to system security.

Original source

IT heads are liable for ensuring that all departments adhere to the set system safety measures Apart from distributing necessary assets as well as user time to attain the pre- requisites of these policies, department supervisors are answerable for guaranteeing that all users are conversant to the DoD policies related to system security

1

Student paper

are liable in ensuring that proper system safety efforts are observed by all users. Depart- ment heads are answerable in ensuring that all users are aware of Technet computer sys- tem policies. Users are answerable for consenting to different Technet system security policies. They are additionally answerable for reporting any system vulnerability they come across while working on the system.

Original source

All Heads of departments are liable in ensuring that proper system safety efforts are ob- served by all users Department heads are answerable in ensuring that all users are aware of DoD computer system policies Users are answerable for consenting to different DoD system security policies They are additionally answerable for reporting any system vul- nerability they come across while working on the system

7

Student paper

Computer and e-mail Use Acceptable Policy

Original source

Computer and email acceptable use policy

6

Student paper

Technet staff are urged to send personal email and carryout similar exercises individually at whatever point conceivable (Macdonald, 2019). In any case, the periodic personal use of email as well as other shared information systems while at work is allowed within sens- ible limits. · Personal messages are dealt with equivalent to other messages in the sys- tem, which could conceivably be archived every once in a while and along these lines sub- ject to recovery considerably after the user believes to have erased them. · Technet re- minds each employee that every visit to the internet as well as email exchange uses Tech- net name.

Original source

Econet staff are urged to send personal emails and carry out similar exercises individually at whatever point conceivable In any case, the periodic personal use of email as well as other shared information systems while at work is allowed within sensible limits · Per- sonal messages are dealt with equivalent to other messages in the framework, which could conceivably be archived every once in a while and along these lines subject to re- covery considerably after the user believes to have erased them · Econet reminds each employee that every visit to the internet as well as email exchange uses Econet's name

6/11/2021 Originality Report

https://ucumberlands.blackboard.com/webapps/mdb-sa-BB5a31b16bb2c48/originalityReport/ultra?attemptId=26751137-169d-4a21-86d3-7b6fade7… 15/23

Student paper 89%

Student paper 95%

Student paper 100%

Student paper 81%

Student paper 96%

Student paper 100%

Student paper 100%

6

Student paper

Therefore use of any resources must be precise, proper, and ought not to subject Tech- net to potential risk. · Technet employees must protect their email passwords, known dis- tinctly to themselves whenever. In any case, the IT department holds the capacity to erase an employee’s secret key in any way comprising resetting the password whenever forgot- ten or to check an account’s mail if important. Technet internet should not be used to get to or get or download any material that might be viewed as annoying, problematic, or hostile by other people.

Original source

Therefore the use of any resources must be precise, proper, and ought not to subject Econet to potential risk (Anandarajan & Simmers, 2003) · Econet employees must protect their email passwords, known distinctly to themselves whenever In any case, the IT de- partment holds the capacity to erase an employee’s secret key in any way comprising re- setting the password whenever forgotten or to check an account’s mail if important (De- veloping an Information Security Policy · Econet internet should not be used to get to or get or download any material that might be viewed as annoying, problematic, or hostile by other people

6

Student paper

Email Attachment · Any unknown email attachments is deleted without opening. On the off chance that the attachment appears to be suspicious, contact the IT Department. · Email attachments that come from a known source must be scanned for viruses. It is an offence to disable scanning settings from any computer.

Original source

Email Attachment · Any unknown email attachments are deleted without opening On the off chance that the attachment appears to be suspicious, contact the IT Department · Email attachments that come from a known source must be scanned for viruses It is an offense to disable scanning settings from any computer

6

Student paper

· Attachments are not to surpass 1.5 M, or ~1500K. Attachments bigger than this are probably going to crash your email server and additionally cause issues with the mail server. · In the event that you realize you will need to send a huge file ahead of time, no- tify the IT department for arrangements.

Original source

· Attachments are not to surpass 1.5 M, or ~1500K Attachments bigger than this are prob- ably going to crash your email server and additionally cause issues with the mail server · In the event that you realize you will need to send a huge file ahead of time, notify the IT department for arrangements

7

Student paper

Computer Use Acceptable Policy

Original source

Computer and email acceptable use policy

1

Student paper

Users must keep affirmed and latest anti-virus program installed on their PCs. This pro- grams must be applied to check all third party applications or different Technet units and must occur before the new applications are used. Users must not sidestep scanning pro- cess that could stop the transmission of PC virus (Peltier, 2019). Users are answerable for harm happening in light of virus on PC frameworks under their control.

Original source

Users must keep affirmed and latest anti-virus program installed on their PCs This pro- grams must be applied to check all third party applications or different DoD units and must occur before the new applications are used Users must not sidestep scanning pro- cess that could stop the transmission of PC virus Users are answerable for harm happen- ing in light of virus on PC frameworks under their control

1

Student paper

When a virus is recognized, the involved user must quickly report to the IT department to guarantee that no further spread takes place and that any specialists expected to annihil- ate the virus are expeditiously locked in.

Original source

When a virus is recognized, the involved user must quickly report to the IT department to guarantee that no further spread takes place and that any specialists expected to annihil- ate the virus are expeditiously locked in

8

Student paper

Computer as well as communication system rights of every user, system and programs must be confined dependent on nature of work.

Original source

Computer as well as communication system rights of every user, system and programs must be confined dependent on nature of work

6/11/2021 Originality Report

https://ucumberlands.blackboard.com/webapps/mdb-sa-BB5a31b16bb2c48/originalityReport/ultra?attemptId=26751137-169d-4a21-86d3-7b6fade7… 16/23

Student paper 96%

Student paper 100%

Student paper 100%

Student paper 100%

Student paper 100%

Student paper 86%

Student paper 100%

Student paper 100%

Student paper 92%

1

Student paper

This means that rights must not be extended unless the user needs such rights (Ananda- rajan & Simmers, 2019). Default user file authorizations ought not to automatically permit everyone on the system to read, write, execute or erase a file record. Even if the user may reset consents on a file by-document premise, such sensitive default document rights are disallowed. Default file consents granted to limited group of users who have a veritable need to know are permitted.

Original source

This means that rights must not be extended unless the user needs such rights Default user file authorizations ought not to automatically permit everyone on the system to read, write, execute or erase a file record Even if the user may reset consents on a file by- document premise, such sensitive default document rights are disallowed Default file consents granted to limited group of users who have a veritable need to know are permitted

7

Student paper

Internet Acceptable use Policy

Original source

Acceptable internet use policy

9

Student paper

There is need for all involved parties to comply with this policy and where requested to exhibit such compliance.

Original source

There is need for all involved parties to comply with this policy and where requested to exhibit such compliance

1

Student paper

Failure to observe this policy will be viewed as a disciplinary incident and one may face disciplinary action which may including termination of employment.

Original source

Failure to observe this policy will be viewed as a disciplinary incident and one may face disciplinary action which may including termination of employment

1

Student paper

Information Security Policies, Procedures, and Standards: Guidelines for Effective Inform- ation Security Management. Boca Raton, FL:

Original source

Information Security Policies, Procedures, and Standards Guidelines for Effective Informa- tion Security Management Boca Raton, FL

5

Student paper

Schou & Shoemaker, D.

Original source

Schou, C., & Shoemaker, D

5

Student paper

Information assurance for the enterprise: A roadmap to information security.

Original source

Information assurance for the enterprise A roadmap to information security

5

Student paper

McGraw-Hill Irwin.

Original source

McGraw-Hill Irwin

4

Student paper

Email and internet policies and guidance notes. Tolley's Managing Email & Internet Use, 218-278.

Original source

Email and Internet Policies and Guidance Notes Tolleys Managing Email & Internet Use, 218–278

6/11/2021 Originality Report

https://ucumberlands.blackboard.com/webapps/mdb-sa-BB5a31b16bb2c48/originalityReport/ultra?attemptId=26751137-169d-4a21-86d3-7b6fade7… 17/23

%93

%0

Student paper 90%

Student paper 100%

Student paper 100%

Student paper 71%

Student paper 100%

%93Attachment 4

Institutional database (7)

Student paper Student paper Student paper

Student paper Student paper My paper

Student paper

Internet (1)

knowledgeleader

Top sources (3)

Excluded sources (0)

10

Student paper

doi:10.1016/b978-0-7545-2443-4.50010-9

Original source

idoi:10.1016/b978-0-7545-2443-4.50010-9

6

Student paper

Managing Web Usage in the Workplace: A Social, Ethical and Legal Perspective.

Original source

Managing Web Usage in the Workplace A Social, Ethical and Legal Perspective

6

Student paper

Organizational information security policies: a review and research framework. (2018, February 15). Retrieved from https://www.tandfonline.com/doi/abs/10.1057/s41303-017- 0059-9

Original source

Organizational information security policies a review and research framework (2018, Feb- ruary 15) Retrieved from https://www.tandfonline.com/doi/abs/10.1057/s41303-017- 0059-9

5

Student paper

K., Qureshi & Siegel.

Original source

K., Qureshi, A

5

Student paper

The international handbook of computer security.

Original source

The international handbook of computer security

Word Count: 1,563 Wk6 COSOFramework.docx

2 5 6

1 7 3

4

8

2 Student paper 5 Student paper 6 Student paper

Running Head: COSO FRAMEWORK 1

COSO FRAMEWORK 8

1

2

6/11/2021 Originality Report

https://ucumberlands.blackboard.com/webapps/mdb-sa-BB5a31b16bb2c48/originalityReport/ultra?attemptId=26751137-169d-4a21-86d3-7b6fade7… 18/23

COSO Framework

Sharath Kumar Goud Madgula

InfoTech Import in Strat Plan (ITS-831-A02) – First Bi-Term

Term - Summer 2021

University of the Cumberlands

The COSO model comprises of various basic advances carried out in phases to deliver ground-breaking outcome. These outcomes incorporate assessment of

threat, viability of current projects, and the effect of future activities on accomplishment of key objectives (Moeller, 2018). The test for the COSO system team is to val- idate the effortlessness of the means in the model to leaders, to guarantee their comprehension of the idea and implement the model. If need be, a few phases can be expelled, and the model exposed to its risk assessment segment if different level of evaluation are considered not to increase management value, without tamper- ing with model effectiveness. Robustness is one of COSO model strength. This strength originate from system model assessing main objectives as well as targets.

Regardless of whether management changed their priority list, the model would consequently adopt and prepare for any change and on the same time update

threat register and different outcomes appropriately. Other models needs a top to bottom audit of each threat in light of such a change (Graham, 2018). COSO's focus is on giving an adaptable standard against which to assess an association's present ERM process instead of concentrating on the particular exercises of the risk man- agement procedure itself. Internal auditors are entrusted to independently evaluate these controls, operating as board of directors in the interest of the direct-

orate so as to alleviate the chance of the management acting on their own good instead of the organization, exposing internal control framework to be easily ex- ploited and in some cases doing as such so as to allow illegal personal gains (Moeller, 2018). COSO framework is used as a perceived system, which, whenever actual- ized. Organizations that intend to execute the COSO ERM structure should survey ISO 31000 (and different systems) for extra point of view and direction on us-

age contemplations.

COSO Components

1. Risk Assessment

Although event identification work along evaluation, evaluation all alone is recommended as a segment to stress on inter-linked threats role. The system puts a great deal of significance on this part by pushing both on subjective strategies just as quantifiable ones of threat evaluation (Cendrowski & Mair, 2019). Organization

management ought to consider all threats according to this component that could imply that goals are not attained. Besides, dangers that fiscal summaries could be physically misquoted ought to likewise be thought of. This component also allude that management should appraise the criticalness of risk, decide the probability of threat happening and decide the effect or result of the defined dangers within the organization. It is significant for the management to define control activities to re- lieve the defined dangers. 2. Information and Communication

It is a part of the overall risk management strategy, managers and other staff are required to communicate the risky event when they occur to the top manage-

ment. The communication must be timely and be seamless (Graham, 2018). Information is vital and required at all levels within the organization to guarantee

successful internal control and attain its goals Information and communication component stress that significant guidelines as well as other relevant information must be defined and shared among people in charge in the organization at the right time. Hence, a lot of pertinent and dependable information must be defined in a suitable structure and time span with the goal that workers can conduct internal control as well as other obligations. With the end goal for the management to be powerful, all information must be suitable, explicit, auspicious, precise, planned, usable and similar and available. 3. Monitoring

If ERM isn’t an on-going process, the outcome will never be optimal. The organization should put resources into continually observing as well as altering the plan.

This component suggest that organization ought to depend on viable regulatory monitoring of controls if need arise. Organization management should use spe-

cial case reports to distinguish deviations from approaches and strategies and use reports created by working staff as an instrument in determining nonconformities. Organizations operate in a dynamic environment, which implies that the dangers confronting organization continually change, henceforth the controls could get out- dated; in this manner observing these conditions is imperative to guarantee that organization goals are accomplished by guaranteeing controls are significant and working successfully. 4. Internal Environment

The ability to accept measured risks just as the capacity to go the extra mile when the circumstance demands truly matters, given the vulnerabilities that accom-

pany portfolios that length various divisions.

3

4

5

5

2

5

2

2

6

2

6

2

7

This components address the integrity as well as the moral values of the organization; the strictures allowing organization top managerial workers to carry out

its administrative oversight functions. The managerial functions as well as exercising authority and power; the procedure for drawing in, developing and holding re- sponsible people; and the strictness around implementation measures, inspiring forces as well as prizes to drive performance accountability (Cendrowski & Mair, 2017). The consequent control environment widely affects the general internal control system within an organization.

5. Control Activities

The main role played by guidelines and strategies to ensure that feedbacks don't exceed the foreordained extent of things (Cendrowski & Mair, 2019). When planned carefully, controls envelop rules and frameworks as well as go into the actual backbone of the association's control of circumstances. According to this compon-

ent, all policies and strategies ought to be written and stored in form of manual and procedures for every action in the organization to be used if need be. These set policies and procedures ought to be looked into and updated all the time. Administrative staff should audit the working of controls concerning the pertinent strategy. Any deviations from the methodology that are distinguished ought to be imparted to pertinent entities and remedied timeously. Authority over resources ought to be discrete from the bookkeeping function. The obligation regarding operations and accounting must be distinct.

COSO Integration

Elements within the internal control structure relate to those listed in the COSO system. COSO and internal control work along with each other, internal control is crit- ical for COSO. One upholds the other: having solid inner controls empowers supervisors to zero in on activities and business goals, realizing that the organization has a robust threat management program and is in compliance with applicable laws, guidelines, and norms (Graham, 2018). Management is entrusted with the plan,

2

2

2

6/11/2021 Originality Report

https://ucumberlands.blackboard.com/webapps/mdb-sa-BB5a31b16bb2c48/originalityReport/ultra?attemptId=26751137-169d-4a21-86d3-7b6fade7… 19/23

Source Matches (30)

Student paper 100%

Student paper 63%

My paper 100%

Student paper 100%

adoption as well as upkeep of internal control frameworks. Internal auditors are entrusted to independently evaluate these controls, operating as board of directors in the interest of the directorate so as to alleviate the chance of the management acting on their own good instead of the organization, exposing internal control framework to be easily exploited and in some cases doing as such so as to allow illegal personal gains (Moeller, 2018). COSO framework is used as a perceived system, which, whenever actualized. IT Audit

IT Auditors attention may differ from the type of audit he/she is performing at the moment. However the focus goes on materially significant amounts of data passing through the system and checking whether the protocol of the process itself been correctly implemented. By this program, the auditor creates charts for each division in the statements and for the materially significant amounts demands a proof (Cendrowski & Mair, 2019). The auditor should always be objective when going through different analysis and consider different situations. Due to the fact that the auditor checks different risky processes- he/she often finds the possible mistakes or frauds made by the organization. The auditor is allowed by the law to give independent view about the state of the system and offer an arrangement as a potential answer for the current circumstance of the actual system. On the off chance that the auditor doesn't offer and target independent input and the actual extortion is found later on, the inspector might be considered as concealing certain misdeeds. IT Auditors are the one who carry out in-depth check of the processes and figure whether all the policies of the business are being followed or there is some laps in the same (Graham, 2018). They are also figure out the area of improvement in the existing policies which at times proves to be very crucial in achieving organizational goals such as profitability, quality, customer satisfaction, production efficiency, etc. They are tasked with defining complex problems, providing well researched solutions, executing the decided action plan, and also evaluating and testing the results with the objectives. They are expected to be expert and experienced professionals, who are habituated with long working hours, increased workload, and dealing with uncertainty.

Reference

Moeller, R. R. (2018). Executive's guide to COSO internal controls: Understanding and implementing the new framework. John Wiley & Sons. Cendrowski, H., &

Mair, W. C. (2019). Enterprise risk management and COSO: A guide for directors, executives and practitioners. John Wiley & Sons. Graham, L. (2018). Internal con-

trol audit and compliance: Documentation and testing under the new COSO framework. John Wiley & Sons. COSO internal control components: Control environ-

ment. (2018). Executive's Guide to COSO Internal Controls, 41-57. doi:10.1002/9781118691656.ch4

Importance of the COSO internal control framework. (2013). Executive's Guide to COSO Internal Controls, 1-4.

2

2

2

2 1

8 2

doi:10.1002/9781118691656.ch1

Evaluating audit findings, audit evidence, and deficiencies in internal control. (2017). Audit Guide, 271-300. doi:10.1002/9781119448648.ch7

1

1

1

Student paper

COSO FRAMEWORK 1

Original source

COSO FRAMEWORK 1

2

Student paper

COSO FRAMEWORK 8

Original source

COSO Framework Components

3

Student paper

Sharath Kumar Goud Madgula InfoTech Import in Strat Plan (ITS-831-A02) – First Bi-Term Term - Summer 2021

Original source

Sharath Kumar Goud Madgula InfoTech Import in Strat Plan (ITS-831-A02) – First Bi-Term Term - Summer 2021

4

Student paper

University of the Cumberlands

Original source

University of the Cumberlands

6/11/2021 Originality Report

https://ucumberlands.blackboard.com/webapps/mdb-sa-BB5a31b16bb2c48/originalityReport/ultra?attemptId=26751137-169d-4a21-86d3-7b6fade7… 20/23

Student paper 90%

Student paper 100%

Student paper 85%

Student paper 100%

Student paper 100%

Student paper 99%

Student paper 100%

5

Student paper

The COSO model comprises of various basic advances carried out in phases to deliver ground-breaking outcome. These outcomes incorporate assessment of threat, viability of current projects, and the effect of future activities on accomplishment of key objectives (Moeller, 2018). The test for the COSO system team is to validate the effortlessness of the means in the model to leaders, to guarantee their comprehension of the idea and imple- ment the model. If need be, a few phases can be expelled, and the model exposed to its risk assessment segment if different level of evaluation are considered not to increase management value, without tampering with model effectiveness.

Original source

The COSO model comprises of various basic advances carried out in phases to deliver ground-breaking outcome These outcomes incorporate assessment of threat, viability of current projects, and the effect of future activities on accomplishment of key objectives The test for the ERM team is to demonstrate the effortlessness of the means in the model to leaders, to guarantee their comprehension of the idea and implement the model (Mo- nahan, 2016) If need be, a few phases can be expelled, and the model stripped to its threat assessment segment if different level of evaluation are considered not to increase the value of the management, without losing the effectiveness of the model

5

Student paper

Robustness is one of COSO model strength.

Original source

Robustness is one of COSO model strength

5

Student paper

Regardless of whether management changed their priority list, the model would con- sequently adopt and prepare for any change and on the same time update threat register and different outcomes appropriately. Other models needs a top to bottom audit of each threat in light of such a change (Graham, 2018). COSO's focus is on giving an adaptable standard against which to assess an association's present ERM process instead of con- centrating on the particular exercises of the risk management procedure itself.

Original source

Regardless of whether management changed the prioritization of the objectives, the model would consequently adjust for this change and update the threat register and dif- ferent outcomes appropriately Other models would require a top to bottom audit of each threat in light of such a change COSO's focus is on giving an adaptable standard against which to assess an association's present ERM process instead of concentrating on the particular exercises of the risk management procedure itself

2

Student paper

Internal auditors are entrusted to independently evaluate these controls, operating as board of directors in the interest of the directorate so as to alleviate the chance of the management acting on their own good instead of the organization, exposing internal con- trol framework to be easily exploited and in some cases doing as such so as to allow il- legal personal gains (Moeller, 2018). COSO framework is used as a perceived system, which, whenever actualized.

Original source

Internal auditors are entrusted to independently evaluate these controls, operating as the board of directors in the interest of the directorate so as to alleviate the chance of the management acting on their own good instead of the organization, exposing internal con- trol framework to be easily exploited and in some cases doing as such so as to allow il- legal personal gains (Moeller, 2018) COSO framework is used as a perceived system, which, whenever actualized

5

Student paper

Organizations that intend to execute the COSO ERM structure should survey ISO 31000 (and different systems) for extra point of view and direction on usage contemplations.

Original source

Organizations that intend to execute the COSO ERM structure should survey ISO 31000 (and different systems) for extra point of view and direction on usage contemplations

2

Student paper

Organization management ought to consider all threats according to this component that could imply that goals are not attained. Besides, dangers that fiscal summaries could be physically misquoted ought to likewise be thought of. This component also allude that management should appraise the criticalness of risk, decide the probability of threat hap- pening and decide the effect or result of the defined dangers within the organization. It is significant for the management to define control activities to relieve the defined dangers.

Original source

Organization management ought to consider all threats according to this component that could imply that goals are not attained Besides, dangers that fiscal summaries could be physically misquoted ought to likewise be thought of This component also alludes that management should appraise the criticalness of risk, decide the probability of threat hap- pening, and decide the effect or result of the defined dangers within the organization It is significant for the management to define control activities to relieve the defined dangers

2

Student paper

Information and Communication

Original source

Information and communication

6/11/2021 Originality Report

https://ucumberlands.blackboard.com/webapps/mdb-sa-BB5a31b16bb2c48/originalityReport/ultra?attemptId=26751137-169d-4a21-86d3-7b6fade7… 21/23

Student paper 89%

Student paper 100%

Student paper 100%

Student paper 95%

Student paper 72%

Student paper 96%

Student paper 100%

6

Student paper

It is a part of the overall risk management strategy, managers and other staff are re- quired to communicate the risky event when they occur to the top management. The communication must be timely and be seamless (Graham, 2018).

Original source

It is a part of the overall risk management strategy, managers and other staff is required to communicate the risky event when they occur to the top management The communic- ation must be timely and be seamless

2

Student paper

Information is vital and required at all levels within the organization to guarantee suc- cessful internal control and attain its goals Information and communication component stress that significant guidelines as well as other relevant information must be defined and shared among people in charge in the organization at the right time. Hence, a lot of pertinent and dependable information must be defined in a suitable structure and time span with the goal that workers can conduct internal control as well as other obligations. With the end goal for the management to be powerful, all information must be suitable, explicit, auspicious, precise, planned, usable and similar and available.

Original source

Information is vital and required at all levels within the organization to guarantee suc- cessful internal control and attain its goals Information and communication component stress that significant guidelines as well as other relevant Information must be defined and shared among people in charge in the organization at the right time Hence, a lot of pertinent and dependable Information must be defined in a suitable structure and time span with the goal that workers can conduct internal control as well as other obligations With the end goal for the management to be powerful, all Information must be suitable, explicit, auspicious, precise, planned, usable, and similar and available

6

Student paper

If ERM isn’t an on-going process, the outcome will never be optimal.

Original source

If ERM isn’t an on-going process, the outcome will never be optimal

2

Student paper

This component suggest that organization ought to depend on viable regulatory monitor- ing of controls if need arise. Organization management should use special case reports to distinguish deviations from approaches and strategies and use reports created by work- ing staff as an instrument in determining nonconformities. Organizations operate in a dy- namic environment, which implies that the dangers confronting organization continually change, henceforth the controls could get outdated; in this manner observing these con- ditions is imperative to guarantee that organization goals are accomplished by guaran- teeing controls are significant and working successfully.

Original source

This component suggests that the organization ought to depend on viable regulatory monitoring of controls if the need arises Organization management should use special case reports to distinguish deviations from approaches and strategies and use reports created by working staff as an instrument in determining nonconformities Organizations operate in a dynamic environment, which implies that the dangers confronting organiza- tions continually change, henceforth the controls could get outdated in this manner ob- serving these conditions is imperative to guarantee that organization goals are accom- plished by guaranteeing controls are significant and working successfully

7

Student paper

The ability to accept measured risks just as the capacity to go the extra mile when the cir- cumstance demands truly matters, given the vulnerabilities that accompany portfolios that length various divisions.

Original source

This capacity to accept determined dangers just as the capacity to go an additional mile when the circumstance requests it truly matters, given the vulnerabilities that accompany portfolios that length various divisions (Nityashree Yadhunath, 2009)

2

Student paper

This components address the integrity as well as the moral values of the organization; the strictures allowing organization top managerial workers to carry out its administrative oversight functions. The managerial functions as well as exercising authority and power; the procedure for drawing in, developing and holding responsible people;

Original source

This component address the integrity as well as the moral values of the organization the strictures are allowing organization top managerial workers to carry out its administrative oversight functions the managerial functions as well as exercising authority and power the procedure for drawing in, developing and holding responsible people

2

Student paper

and the strictness around implementation measures, inspiring forces as well as prizes to drive performance accountability (Cendrowski & Mair, 2017). The consequent control en- vironment widely affects the general internal control system within an organization.

Original source

and the strictness around implementation measures, inspiring forces as well as prizes to drive performance accountability (Cendrowski & Mair, 2017) The consequent control en- vironment widely affects the general internal control system within an organization

6/11/2021 Originality Report

https://ucumberlands.blackboard.com/webapps/mdb-sa-BB5a31b16bb2c48/originalityReport/ultra?attemptId=26751137-169d-4a21-86d3-7b6fade7… 22/23

Student paper 100%

Student paper 100%

Student paper 100%

Student paper 100%

Student paper 100%

Student paper 84%

Student paper 82%

Student paper 66%

2

Student paper

According to this component, all policies and strategies ought to be written and stored in form of manual and procedures for every action in the organization to be used if need be. These set policies and procedures ought to be looked into and updated all the time. Administrative staff should audit the working of controls concerning the pertinent strategy. Any deviations from the methodology that are distinguished ought to be impar- ted to pertinent entities and remedied timeously.

Original source

According to this component, all policies and strategies ought to be written and stored in the form of manual and procedures for every action in the organization to be used if need be These set policies and procedures ought to be looked into and updated all the time Administrative staff should audit the working of controls concerning the pertinent strategy Any deviations from the methodology that are distinguished ought to be impar- ted to pertinent entities and remedied timeously

2

Student paper

Authority over resources ought to be discrete from the bookkeeping function. The obliga- tion regarding operations and accounting must be distinct.

Original source

Authority over resources ought to be discrete from the bookkeeping function The obliga- tion regarding operations and accounting must be distinct

2

Student paper

Management is entrusted with the plan, adoption as well as upkeep of internal control frameworks. Internal auditors are entrusted to independently evaluate these controls, operating as board of directors in the interest of the directorate so as to alleviate the chance of the management acting on their own good instead of the organization, expos- ing internal control framework to be easily exploited and in some cases doing as such so as to allow illegal personal gains (Moeller, 2018). COSO framework is used as a perceived system, which, whenever actualized.

Original source

Management is entrusted with the plan, adoption as well as upkeep of internal control frameworks Internal auditors are entrusted to independently evaluate these controls, op- erating as the board of directors in the interest of the directorate so as to alleviate the chance of the management acting on their own good instead of the organization, expos- ing internal control framework to be easily exploited and in some cases doing as such so as to allow illegal personal gains (Moeller, 2018) COSO framework is used as a perceived system, which, whenever actualized

2

Student paper

Executive's guide to COSO internal controls: Understanding and implementing the new framework. John Wiley & Sons. Cendrowski, H., & Mair, W.

Original source

Executive's guide to COSO internal controls Understanding and implementing the new framework John Wiley & Sons Cendrowski, H., & Mair, W

2

Student paper

Enterprise risk management and COSO: A guide for directors, executives and practition- ers. John Wiley & Sons.

Original source

Enterprise risk management and COSO A guide for directors, executives and practitioners John Wiley & Sons

2

Student paper

John Wiley & Sons. COSO internal control components:

Original source

John Wiley & Sons The impact of COSO control components on internal control effectiveness

2

Student paper

Executive's Guide to COSO Internal Controls, 41-57.

Original source

Executive's guide to COSO internal controls

1

Student paper

doi:10.1002/9781118691656.ch4

Original source

https://doi.org/10.1002/9781118691656.ch11

6/11/2021 Originality Report

https://ucumberlands.blackboard.com/webapps/mdb-sa-BB5a31b16bb2c48/originalityReport/ultra?attemptId=26751137-169d-4a21-86d3-7b6fade7… 23/23

knowledgeleader 76%

Student paper 82%

Student paper 83%

Student paper 91%

8

Student paper

Importance of the COSO internal control framework.

Original source

Updated COSO Internal Control Framework

2

Student paper

Executive's Guide to COSO Internal Controls, 1-4.

Original source

Executive's guide to COSO internal controls

1

Student paper

doi:10.1002/9781118691656.ch1 Evaluating audit findings, audit evidence, and deficien- cies in internal control.

Original source

https://doi.org/10.1002/9781118691656.ch11 (Evaluating audit findings, audit evidence, and deficiencies in internal control

1

Student paper

Audit Guide, 271-300. doi:10.1002/9781119448648.ch7

Original source

Audit Guide, 271- 300 https://doi.org/10.1002/9781119448648.ch7