Uncategorized

Assignment Expectations: Please do not accept if cannot complete all criteria, by

Assignment Expectations:

Please do not accept if cannot complete all criteria, by the due date of 12/15/24 9pm EST

NO PLAGERISM AT ALL

Use discipline-appropriate CREDITABLE CITATIONS, requires exemplary level for maximum points. Exemplary level requires scholarly peer reviewed sources for evidence-based research. Even if you use non-scholarly sources you are expected to use scholarly sources to support non-scholarly sources, e.g. IEEE, ACM, Science Direct, NIST standards, etc.

10-12 PAGE WORD DOC

APA 12-point, Times Roman, one-inch margins

Meet this Criteria

Overview of Goals and Objectives- Meets “Proficient” criteria and quality of overview establishes expertise in the discipline

Confidentiality, Integrity, and Availability of Information- Meets “Proficient” criteria and demonstrates a nuanced understanding of key information assurance concepts

Current Protocols and Policies- Meets “Proficient” criteria and demonstrates deep insight into complex deficiencies and barriers to implementation of a new information assurance plan

Responsibilities of Key Leaders- Meets “Proficient” criteria and demonstrates a nuanced understanding of the relationship between these roles and information security

Key Ethical and Legal Considerations- Meets “Proficient” criteria and provides complex or insightful reflection of the ramifications of key leaders not properly accounting for ethical and legal considerations

Key Components of Information Assurance-Meets “Proficient” criteria and demonstrates a nuanced understanding of how each key component identified impacts each individual’s role and responsibility

Analysis of Environment- Meets “Proficient” criteria and demonstrates unique or insightful reflection of current protocols and policies

Threat Environment-Meets “Proficient” criteria and demonstrates deep insight into hidden or complex threats or vulnerabilities

Best Approaches- Meets “Proficient” criteria and demonstrates unique or insightful reflection regarding areas for improvement

Risk Matrix-Meets “Proficient” criteria and demonstrates deep insight into hidden or complex threats or vulnerabilities and possible methods to mitigate the identified dangers

Incident Response Protocols-Meets “Proficient” criteria and provides secondary incident response protocols in the event that primary protocols fail

Justification of Incident Response Protocols-Meets “Proficient” criteria and provides unique or insightful reflection into the dangers of not providing for adequate incident response protocols

Disaster Response Protocols-Meets “Proficient” criteria and demonstrates deep insight into responding to hidden or complex threats or vulnerabilities

Justification of Disaster Response Protocols-Meets “Proficient” criteria and provides unique or insightful reflection into the dangers of not providing for adequate disaster response protocols

Access Control Protocols-Meets “Proficient” criteria and demonstrates unique or insightful reflection into appropriate protocols

Justification of Access Control Protocols- Meets “Proficient” criteria and provides unique or insightful reflection into the dangers of not providing for adequate access control protocols

Method for Maintaining the Information Assurance Plan-Meets “Proficient” criteria and provides an established interval for the recommended maintenance actions

Justification of Maintenance Plan-Meets “Proficient” criteria and provides insight into the dangers of not providing for an adequate maintenance plan

Summary of Need for Information Assurance Plan-Meets “Proficient” criteria and demonstrates a nuanced understanding of the need for an information assurance plan

Defense of Key Elements of Information Assurance Plan-Meets “Proficient” criteria and demonstrates a nuanced understanding of which members of the organization should be responsible for each element

Articulation of Response- Submission is free of errors related to citations, grammar, spelling, syntax, and organization and is presented in a professional and easy-to-read format

This Instructions

will need to demonstrate your mastery of the following course outcomes:

Assess confidentiality, integrity, and availability of information in a given situation for their relation to an information assurance plan

Propose appropriate protocols for incident and disaster responses and managing security functions that adhere to best practices for information assurance

Analyze threat environments using information assurance research and industry best practices to inform network governance

Recommend strategies based on information assurance best practices for maintaining an information assurance plan

Evaluate the appropriateness of information assurance decisions about security, access controls, and legal issues

Assess applicable threats and vulnerabilities related to information assurance to determine potential impact on an organization and mitigate associated risks.

The Assignment

Your information assurance plan should answer the following prompt: Review the scenario and create an information assurance plan for the organization presented in the scenario.

Specifically, the following critical elements must be addressed in your plan:

Information Assurance Plan Introduction

Provide a brief overview of the goals and objectives of your information assurance plan, including the importance of ensuring the confidentiality, integrity, and availability of information. What are the benefits of creating and maintaining an information assurance plan around those key concepts?

Assess the confidentiality, integrity, and availability of information within the organization.

Evaluate the current protocols and policies the organization has in place. What deficiencies exist within the organization’s current information assurance policies? What are the potential barriers to implementation of a new information assurance plan?

Information Security Roles and Responsibilities

Analyze the role of the key leaders within the organization specific to how their responsibilities are connected to the security of the organization’s information. What is the relationship between these roles?

Evaluate key ethical and legal considerations related to information assurance that must be taken into account by the key leaders within the organization. What are the ramifications of key leaders not properly accounting for ethical and legal considerations?

What are the key components of information assurance as they relate to individual roles and responsibilities within the information assurance plan? For example, examine the current policies as they relate to confidentiality, integrity, and availability of information.

Risk Assessment

Analyze the environment in which the organization operates, including the current protocols and policies in place related to information assurance.

Evaluate the threat environment of the organization.

Based on your analysis and evaluation, what are the best approaches for implementing information assurance principles? Where do you see the most areas for improvement to current protocols and policies?

Assess the threats and vulnerabilities of the organization by creating a risk matrix to outline the threats and vulnerabilities found and determine possible methods to mitigate the identified dangers.

Statements of Policy

Develop appropriate incident response protocols to respond to the various threats and vulnerabilities identified within the organization.

Justify how the incident response protocols will mitigate the threats to and vulnerabilities of the organization. Support your justification with information assurance research and best practices.

Develop appropriate disaster response protocols to respond to the various threats and vulnerabilities identified within the organization.

Justify how the disaster response protocols will mitigate the threats to and vulnerabilities of the organization. Support your justification with information assurance research and best practices.

Develop appropriate access control protocols that provide an appropriate amount of protection while allowing users to continue to operate without denial of service.

Justify your access control protocols. Support your justification with information assurance research and best practices.

Recommend a method for maintaining the information assurance plan once it has been established.

Justify how your maintenance plan will ensure the ongoing effectiveness of the information assurance plan. Support your justification with information assurance research and best practices.

Conclusion

Summarize the need for an information assurance plan for the selected organization, including the legal and ethical responsibilities of the organization to implement and maintain an appropriate information assurance plan.

Defend the key elements of your information assurance plan, including which members of the organization would be responsible for each element.