1 / 3100%
Question One
Change management is a crucial aspect of information, communication, and
technology (ICT) in any organization. Organizations often make changes to their ICT
infrastructure for various reasons. Firstly, the changes help to further secure the
organization’s pre-existing ICT infrastructure from known security breaches such as hacking,
phishing attacks, and business email compromise (BEC); secondly, the changes are necessary
for organizations that are securing their ICT systems for the first time from ICT-based
security breaches such as hacking (Johnson et al., 2011; CISA, 2018)). These changes may be
substantial and comprehensive, thus destabilizing an organization’s overall operations.
Accordingly, changes in the organization’s ICT systems may also surprise employees as they
may not be used to such comprehensive changes at the organization and its ICT systems
(CISA, 2018). To this effect, change management becomes necessary to ensure that the
changes the organization incorporates to its ICT systems do not occasion a breach of the
organization’s data or an overall crippling to its operations (Johnson et al., 2011; CISA,
2018). Failing to incorporate change management at an organization that values ICT security
would be antithetical to practicing ICT security in the first place since ICT security concerns
protecting the organization’s information from leaking or falling into the hands of authorized
persons such as hackers or rogue employees.
Question Two
/It is incumbent for organizations to determine whether any changes have been made
to their ICT infrastructure. Tracking such changes is part of the ICT security operations at an
organization which is essential in preserving the integrity of the organization’s data and
Students also viewed