Our Services

Get 15% Discount on your First Order

[rank_math_breadcrumb]

Discussion and Replies

Please see attachment for instructions

 

 
Discussion

 

In 250 words total, answer the questions below with 4 evidence base scholarly articles. APA format.

Based on this weeks readings,

1. Discuss some effective strategies for Security Awareness in your organization or

2. What you would like to see implemented to ensure users are aware and held accountable for Information Security.

Replies

In 400 words total, replying to the two posts below. Each reply must be 200 words for post 1 and post 2. 


A.M POST 1

I believe organizations must prioritize security awareness to protect sensitive data, and three strategies tailored training, phishing simulations, and accountability mechanisms stand out as game-changers. Tailored training is the way to go. Generic, one-size-fits-all modules are a snooze and rarely stick. Peltier’s push for role-specific training resonates with me—finance teams need to know about data leaks, while IT should focus on system vulnerabilities. In a past job, we slogged through dull compliance videos that felt irrelevant. I’d love to see short, monthly micro-training sessions, maybe 10 minutes, customized for each department. They’d keep security fresh without overwhelming anyone. Phishing simulations are a must in my book. Layton’s right they expose weaknesses and teach without real-world consequences. I’ve seen colleagues click shady links because we rarely practiced. Quarterly simulations with instant feedback would sharpen our instincts. Tracking who falls for it could pinpoint where extra training is needed, making us tougher targets. Accountability is non-negotiable. Peltier’s call for clear consequences, like retraining for slip-ups, paired with Layton’s metrics, feels spot-on. A dashboard showing who’s skipping training would keep everyone honest. In my experience, when leaders model security, it trickles down. Without teeth consequences and transparency awareness fizzles.

References:

Peltier, T. R. (2005). 
Information Security Fundamentals. CRC Press, Chapters 4 & 5.

Layton, T. P. (2006). 
Information Security: Design, Implementation, Measurement, and Compliance. Auerbach Publications, Chapters 7 & 8.

less


G.B POST 2

For a company like T-Mobile, it is imperative that security awareness is not treated as one-time or annual training; it has to be an ongoing cultural initiative. User behavior is one of the most significant risk factors in any organization, and awareness programs have to be structured, measurable, and constantly evolving (Peltier, 2016). T-Mobile has experienced some pretty high-profile data breaches in the past, so, their security awareness must go beyond routine compliance and actually place a focus on behavior reinforcement.

From our reading, Information security: Design, implementation, measurement, and compliance (Layton, 2007) emphasizes that awareness programs should be aligned with organizational policy and driven by real metrics. “He states that users need to understand why security matters, not just what rules to follow.” T-Mobile can improve its approach by integrating scenario-based training, simulated phishing tests, and role-specific modules.

From my own personal experience working in the telecommunications environment, I’ve seen how security fatigue can lead employees to ignore routine training. T-Mobile must combat this by using formats that keep employees engaged with things like short videos, game quizzes, and some type of reward system. These options would hopefully keep the user’s interest. Also, if they added realistic breach examples, including their own, this can make risks feel more relevant and immediate.

                                           References

Layton, T. P. (2007). Information security: Design, implementation, measurement, and compliance. Auerbach Publications.

Peltier, T. R. (2013). Information security fundamentals (2nd ed.). CRC Press.

Share This Post

Email
WhatsApp
Facebook
Twitter
LinkedIn
Pinterest
Reddit

Order a Similar Paper and get 15% Discount on your First Order

Related Questions

Project 1

Customer Guidelines The customer has given your manager the following guidelines for the system: Interfaces and startup: · The system needs to be GUI oriented and user friendly with functionality logically grouped together into sub-menus. · When program first starts it needs to give an option to open a new

GitHub

see attachment for details DAT 260 Module Eight Journal Guidelines and Rubric Overview As you have learned in the module resources, GitHub is more than just a place to store code. It is a dynamic community of practice and a living portfolio of your coding skills. In this journal entry,

Blockchain app programming

i have the template provided and you will have to use the term project presentation to complete it.  Secure-Trade CIS-5730 – Blockchain Applications TERM PROJECT PRESENTATION The money is stored in a digital wallet in the blockchain until two parties pass release or refund (Safe, 2026). The same agreement promotes

HIMS 655 ASS8

Watch the YouTube Video MEDICAL CODING ICD-10-CM GUIDELINES LESSON – 1.B – Coder explanation and examples for 2021 Review the ICD-10-CM Official Guidelines for Coding and Reporting at   and in your assignment respond to the following questions: Who is responsible for framing these Guidelines? Why are these guidelines necessary for

HIMS 645 ASS8

Using Internet resources, search  three national and three international healthcare organizations that maintain databases and use the information based on the processed data from these databases in their decision-making process. Briefly describe the organizations and types of data contained in their databases (make sure to remember quality of data points and

W8: Topic 1 – Course Wrap-Up

 Pick one topic from this class that most interested you. State the topic and your reasons for the choice. ii. You need to respond to at least 2 students.  This is part of your grade to be active in the threads and responding to students.   NB: THIS IS THE TOPIC

Big Data Tools and Emerging Technologies

please see attachment  4 [ Note: To complete this template, replace the bracketed text with your own content. Remove this note before you submit your project.] Big Data Tools and Emerging Technologies Paper [Your Name] DAT 260: Emerging Technologies and Big Data [Your Instructor’s Name] [Date—for example, May 1, 2021]

HIMS 655 ASS7

Mapping between SNOMED-CT and ICD-10-CM Note: For completing this assignment, use of the I-MAGIC tool (Interactive Map-Assisted Generation of ICD Codes) is required. To access the I-MAGIC tool, click on the following  ) Problems and diagnoses can be recorded in SNOMED CT in the EHR, while the cross-mappings to ICD-10-CM can

HIMS 645 ASS7

Four types of databases are Relational, Network, Hierarchical, and Object-Oriented. What are their salient features (a table format is acceptable)? Assess their usability for healthcare facilities that generated numerical, text, and images data citing reasons for your choice.  Two most commonly used databases in healthcare organizations are Relational and Object-Oriented (O-O). Both employ respective

MS ACCESS

Need to do a Microsoft Access document for my work.  2 Consideration of MS Access Database Development on Healthcare. Name Instructor School Date Consideration of MS Access Database Development on Healthcare. Introduction The task entailed developing a Microsoft access database of a small healthcare facility, which has just abandoned the

Effective security programs

Organizational policies define the direction for an organization and contribute to its overall security culture by setting the tone on what is and is not acceptable.