Phone: + 1 507 4052 660
Email: support@utahwriter.com

Manager’s deskbook | Information Systems homework help

  

Project #2: Manager’s Deskbook 

Company Background & Operating Environment

Red Clay Renovations is an internationally recognized, awarding winning firm that specializes in the renovation and rehabilitation of residential buildings and dwellings. The company specializes in updating homes using “smart home” and “Internet of Things” technologies while maintaining period correct architectural characteristics. Please refer to the company profile (file posted in Week 1 > Content > CSIA 413 Red Clay Renovations Company Profile.docx) for additional background information and information about the company’s operating environment.

Policy Issue & Plan of Action

The Manager’s Deskbook contains issue specific policies and implementation procedures which are required to mitigate risks to the company and to otherwise ensure good governance of the company’s operations. The Chief Information Security Officer (CISO) and key CISO staff members held a kick-off meeting last week to identify issue specific policies which should be added to the company’s policy system in the IT Governance category. The policies will be disseminated throughout the company by incorporating them into the Manager’s Deskbook. The required issue specific policies are:

1. Data Breach Response Policy

2. Preventing / Controlling Shadow IT Policy

3. Management and Use of Corporate Social Media Accounts Policy

For the purposes of this assignment, you will create a policy recommendations briefing package (containing an Executive Summary and draft policies) and submit that to your instructor for grading. 

Note: In a “real world” environment, the policy recommendations briefing package would be submitted to the IT Governance board for discussion and vetting. After revisions and voting, a package containing the accepted policies would be sent to all department heads and executives for comment and additional vetting. These comments would be combined and integrated into the policies and sent out for review again. It usually takes several rounds of review and comments before the policies can be sent to the Chief of Staff’s office for forwarding to the Corporate Governance Board. During the review & comments period, the policies will also be subjected to a thorough legal review by the company’s attorneys. Upon final approval by the Corporate Governance Board, the policies will be adopted and placed into the Manager’s Deskbook. This entire process can take 9 to 12 months, if not longer.

Your Task Assignment

As a staff member supporting the CISO, you have been asked to research and then draft an issue specific policy for each of the identified issues (three separate policies). These policies are to be written for MANAGERS and must identify the issue, explain what actions must be taken to address the issue (the company’s “policy”), state the required actions to implement the policy, and name the responsible / coordinating parties (by level, e.g. department heads, or by title on the organization chart). 

After completing your research and reviewing sample policies from other organizations, you will then prepare an “approval draft” for each issue specific policy.

· The purpose of each issue specific policy is to address a specific IT governance issue that requires cooperation and collaboration between multiple departments within an organization. 

· Each issue specific policy should be no more than two typed pages in length (single space paragraphs with a blank line between). 

· You will need to be concise in your writing and only include the most important elements for each policy.

· You may refer to an associated “procedure” if necessary, e.g. a Procedure for Requesting Issuance of a Third Level Domain Name (under the company’s Second Level Domain name) or a Procedure for Requesting Authorization to Establish a Social Media Account.

Your “approval drafts” will be combined with a one page Executive Summary (explaining why these issue specific policies are being brought before the IT Governance Board). 

Research:

1. Review NIST’s definition of an “Issue Specific Policy” and contents thereof in NIST SP 800-12 Section 5.3. This document provides information about the content of an issue specific policy (as compared to comprehensive system and enterprise security policies).

2. Review the weekly readings and resource documents posted in the classroom. Pay special attention to the resources which contain “issues” and “best practices” information for:

· Data Breach Response

· Preventing / Controlling Shadow IT

· Social Media 

3. Review NIST guidance for required / recommended security controls (see NIST SP 800-12, NIST SP 800-53, and NIST SP 800-100). Some suggested control families are:

· Access Control (AC) control family (for Social Media policy)

· Incident Response (IR) control family (for Data Breach policy)

· System and Services Acquisition (SA) control family (Domain Name, Shadow IT, Website Governance)

4. Find and review additional authoritative / credible sources on your own which provide information about IT security issues (related to data breaches / responses, shadow IT, and/or social media use) which require policy solutions.

URLs for Recommended Resources

  

Title

Type

Link

 

NIST SP 800-100 Information   Security Handbook: A Guide for Managers

PDF

https://doi.org/10.6028/NIST.SP.800-100

 

NIST SP 800-12: An Introduction to Information Security

PDF

https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-12r1.pdf

 

NIST SP 800-53 Security and Privacy Controls for Federal Information   Systems and Organizations

PDF

http://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-53r4.pdf

Write:

1. Prepare briefing package with approval drafts of the three IT related policies for the Manager’s Deskbook. Your briefing package must contain the following:

· Executive Summary

· “Approval Drafts” for

o Data Breach Response Policy

o Preventing / Controlling Shadow IT Policy

o Management and Use of Corporate Social Media Accounts Policy

As you write your policies, make sure that you address IT and cybersecurity concepts using standard terminology.

2. Use a professional format for your policy documents and briefing package.  Your policy documents should be consistently formatted and easy to read.

3. Common phrases do not require citations. If there is doubt as to whether or not information requires attribution, provide a footnote with publication information or use APA format citations and references.

4. You are expected to write grammatically correct English in every assignment that you submit for grading. Do not turn in any work without (a) using spell check, (b) using grammar check, (c) verifying that your punctuation is correct and (d) reviewing your work for correct word usage and correctly structured sentences and paragraphs.   

Submit For Grading 

Submit your Manager’s Deskbook briefing package in MS Word format (.docx or .doc file) for grading using your assignment folder. (Attach the file.)

utahwriter
Unlock Better Papers
Pages (550 words)
Approximate price: -

Why you should choose our essay writing company

Utahwriter is an essay writing company that provides students with the help they need to be successful in their academics. With a skilled team of writers, Utahwriter.com can provide you with top-quality content for any type of paper. We are so confident that our work will meet your needs, we offer a 100% satisfaction guarantee on all orders! If you're looking to get high grades and succeed in school, then don't hesitate to contact us today AND GET;

Amazing deals on our essay writing services

We know you're busy with school and other activities, so we want to make it easier for you by providing amazing deals on the essays that you need. We offer a wide range of discounts depending on how much work is required from us. Don't miss out on this opportunity to get some great grades - contact us today

Perfect papers every time

We are the best essay writing company because we ensure that every paper you receive is 100% original and free of any plagiarism. We have a strict anti-plagiarism policy to maintain our high standards, so rest assured knowing that your content will be unique when you order from Utahwriter.com!

24/7 client support

Our clients come first! That's why we have a 24/7 customer support system in place. We know that you may need some help during the academic process, so if you have any questions or concerns about your order - don't hesitate to ask! Whether it be by email, phone call, live chat with one of our representatives today.

/*

Try it now!

Calculate the price of your order

We'll send you the first draft for approval by at
Total price:
$0.00

How it works?

Place your order

You can order an essay with us by filling out our quick and easy order form.

Proceed with the payment

After receiving payment confirmation via PayPal or credit card – we begin working on your detailed outline, which is based on the requirements given by yourself upon ordering. All work goes through three levels of quality assurance before being sent back to you for review.

Receive the final file

Once approved, your order is complete and will be emailed directly to the email address provided before payment was made!

*/

Benefits of getting that essay from us!

High grades guaranteed

Our well written essays are what professors and tutors are looking for. Our writers are experienced and they know what is expected in every essay. We guarantee you that high score in every essay.

100% original content

We are the best essay writing company because we ensure that every paper you receive is 100% original and free of any plagiarism. We have a strict anti-plagiarism policy to maintain our high standards, so rest assured knowing that your content will be unique when you order from Utahwriter.com

Money back guarantee

We know that you might be worried about the quality of our work, but don't worry! We offer a 100% money back guarantee on all orders. If for any reason you are unsatisfied with anything relating to your order - please contact us within 14 days and we will provide a full refund no questions asked. .

Professional writers only work on your essays!

Our essay writers are not only experienced, but they also have degrees in their field of study. Our experts will write you a custom paper that is tailored to your needs and expectations!

We work 24/7 on every order; no deadlines too tight for us

We know how busy students can be with schoolwork and extra-curricular activities. That's why we work 24/7 so you can get your paper done on time no matter how short of a deadline you have!

Quick response to any questions or concerns

Our writers are professionals and they know that it is important to keep the client updated with every step of their order. We offer quick responses along with all the information you need to know about your essay.