Assignment Content A Risk Management Analyst identifies and analyzes potential issues that could negatively impact a business in order to help the business avoid or mitigate those risks.Take on the r


CMGT 400 Grading Rubric Individual – Week 4 Security Risk Mitigation Plan
MEETS CRITERIA?

Security Risk Mitigation Plan

PTs

Grade

COMMENTS

Content (93 points)

Take on the role of Risk Management Analyst for the organization you chose in Week 1. Using the template, create a 4- to 5.5-page Security Risk Mitigation Plan for the organization you chose.

12

Research and include the following:

Security Risk Mitigation Plan:

  • A. Policies, Strategy, Roles, Audit, and Risk Management (35 pts)

    • Select and document security policies and controls

    • Create password policies

    • Document administrator roles and responsibilities

    • Document user roles and responsibilities

    • Determine authentication strategy

    • Determine intrusion detection and monitoring strategy

    • Determine virus detection strategies and protection

    • Create auditing policies and procedures

    • Develop education plan for employees on security protocols and appropriate use

    • Provide risk response

      • Avoidance

      • Transference

      • Mitigation

      • Acceptance

  • B. Change Management and Policies (23pts)

    • Address change Management/Version Control

    • Outline acceptable use of organizational assets and data

    • Present employee policies (separation of duties/training)

  • C. Incident Response (23pts)

    • Explain incident response

      • Document incident types/category definitions

      • Roles and responsibilities

      • Reporting requirements/escalation

      • Cyber-incident response teams

    • Discuss the incident response process

      • Preparation

      • Identification

      • Containment

      • Eradication

      • Recovery

      • Lessons learned

81

X out of 93

Research

Assignment has research depth including at least two outside relevant peer reviewed references from course material and/or the library.

12

Organization

Assignment is organized appropriately covering all required topics in a logical sequence and applies the Security Standards, Policies, and Procedures Template. Title, introduction, body, conclusion and references are included in required sequence.

Quality and APA:

Assignment projects professional, quality image, meets academic integrity requirements. Includes Power Point and MS Word document required by the assignment in APA format with label. Include title page and reference section. References in APA format. No spelling errors - the paper has obviously been proofread. Title and reference slides/pages do not count toward the length requirement.

TOTAL POINTS FOR RESEARCH, ORGANIZATION, QUALITY, AND APA REQUIREMENTS

X out of 22

TOTAL POINTS

(X out of 115 possible points) 04-29-19 rpg