In this assignment you will be conducting a risk assessment. This will not be a technical risk assessment, but an assessment of your hypothetical organization/business. For your organization/business,

In this assignment you will be conducting a risk assessment. This will not be a technical risk assessment, but an assessment of your hypothetical organization/business. For your organization/business, 1

CYB-650 Organizational Risk Assessment Scoring Guide

Performance Level Ratings

Meets Expectations

Performance consistently met expectations in all essential areas of the assignment criteria, at times possibly exceeding expectations, and the quality of work overall was very good. The most critical goals were met.

Near Expectations

Performance did not consistently meet expectations. Performance failed to meet expectations in one or more essential areas of the assignment, one or more of the most critical goals were not met.

Below Expectations

Performance was consistently below expectations in most essential areas of the assignment, reasonable progress toward critical goals was not made. Significant improvement is needed in one or more important areas.

Criteria

Below Expectations

Near Expectations

Meets Expectations

Earned

The student successfully takes the cybersecurity framework controls and reduces them to system configuration requirements and system test cases with pass/fail criteria.

0 pts – 13 pts

14 pts – 19 pts

20 pts

The student comprehensively describes when some controls cannot be implemented.

0 pts – 13 pts

14 pts – 19 pts

20 pts

The student clearly explains what is to be done in each case identified to compensate for controls that cannot be implemented.

0 pts – 13 pts

14 pts – 19 pts

20 pts

The student accurately describes how compensating controls can ensure the non-compliant system can continue to operate within the secured and compliant environment.

0 pts – 13 pts

14 pts – 19 pts

20 pts

The student comprehensively describes the likelihood of a cybersecurity breach within the compliant environment and the impact it might have on the organization (to include emerging risks, threats, and vulnerability)

0 pts – 13 pts

14 pts – 19 pts

20 pts

Prose is largely free of mechanical errors. The writer uses a variety of effective sentence structures, figures of speech, and industry terminology.

0 pts – 6 pts

7 pts – 9 pts

10 pts

TOTAL

/110

Instructor Feedback

© 2018. Grand Canyon University. All Rights Reserved.