Our Services

Get 15% Discount on your First Order

[rank_math_breadcrumb]

Discussion and Replies

Please see attachment for instructions

 

 
Discussion

 

In 250 words total, answer the questions below with 4 evidence base scholarly articles. APA format.

1. Discuss some of the common issues with implementation of security policy.

2. What are some possible mitigations to ensure policy can be enforced.

Replies

In 400 words total, replying to the two posts below. Each reply must be 200 words for post 1 and post 2. 


E.A POST 1

Hello class, hope we all had a great weekend? Below is my initial submission.

The implementation of information security policies is hampered considerably by an employee’s lack of understanding or interest. Most of them do not read the policies, or they do read them, but fail to comprehend how these policies relate to their daily activities. (Peltier, 2013) argues that the effectiveness of a policy is directly influenced by how well it is disseminated and sustained through training. Even the most well-crafted policies start failing without user awareness.

The other challenge involves policies that are overly verbose or contain complicated language. Policies that are too complicated to read are unlikely to be followed. (Peltier, 2013) emphasizes tailoring content for various groups, like staff, managers, and IT to improve understanding and compliance. Making policies easier to understand improves the likelihood of adoption compliance.

Policy enforcement is also a weak point. Policies often lack apparent enforcement mechanisms such as audits, and no one is verifying compliance. (Peltier, 2013) advocates for the incorporation of technical policy enforcement mechanisms, as well as audit logs, monitoring tools, and policy accountability controls. Policies also need support from organization leadership for legitimacy.

Lastly, many organizations do not routinely review and revise their policies. Policies need to be reviewed and updated at appropriate intervals because both threats and technology evolve over time. An organized review process, especially following audits or if an incident were to occur, will help to keep security practices current (Peltier, 2013). Therefore, policies that are easy to understand, enforceable, and updated regularly can contribute to compliance and reduce risk.

Reference

Peltier, T. R. (2013). Information security fundamentals (2nd ed.). Auerbach Publications.


A.M POST 2

Putting security policies into action is crucial for keeping an organization’s data and systems safe, but it’s not always smooth sailing. A big problem is that employees often don’t follow rules, either because they don’t get why they matter or find them a hassle—like using weak passwords or sharing sensitive info. Regular training and explaining why these policies are important can help build a security-focused mindset. Another issue is spotty enforcement, often because no one’s clear on who’s responsible or there aren’t enough tools to track compliance. Setting clear roles and using automated monitoring can fix this. Smaller organizations especially struggle with limited budgets or know-how. They can lean on affordable cloud security tools or hire outside experts to bridge the gap. Overly complicated policies also cause trouble, confusing everyone and leading to mistakes. Keeping policies simple yet strong, maybe by following standards like NIST, can make things clearer. People often push back against new rules, too. Getting everyone on board early and showing how these changes lower risks can smooth things over. Lastly, policies need to keep up with new threats, so they should be reviewed and updated regularly using the latest threat info. By tackling these challenges with practical solutions, organizations can make sure their security policies actually work without being a burden.

Share This Post

Email
WhatsApp
Facebook
Twitter
LinkedIn
Pinterest
Reddit

Order a Similar Paper and get 15% Discount on your First Order

Related Questions

Virtual LANs

  Questions: A VLAN allows different devices to be connected virtually to each other as if they were in a LAN sharing a single broadcast domain. 1. Why a network engineer would want to deploy VLANs? 2. How do VLANs improve network security?

compliance and rules to follow in cybersecurity.

Follow the attached instructions to complete this work. Note: Make sure to follows rubric or aligns with Rubric. Unit 8 Assignment Directions: Case Study Review the following hypothetical case study. Consider the big-picture ideas and the specific concerns. Make use of the key terms and concepts from the readings in

Discussion on data ( computer science)

Follow the attached direction to complete this work Unit 7 Discussion   Overview Consider this scenario: PQR Corporation provides facial recognition technology to customers. Its products include customer access to consumer electronics as well as mass surveillance capabilities through networked camera systems. While operating legally, PQR has maintained a low

Computer Science – Machine Learning Python Programming Assignment

Assignment Help. Please don’t forget to add comments in the code Page 1 of 3 NorQuest College – CMPT 1011: Lab Assignment 5 CMPT 1011: Introduction to Computing Lab Assignment 2: Variables, mathematical operations and data types Value This coding challenge is worth 3% of your final grade. Background In

Public safety Communications

Subscribe The Communications and Cyber Resiliency Toolkit provides guidance for establishing resiliency measures, public safety communications can better withstand potential disruptions to service. This toolkit, developed by CISA, describes networks and systems critical to successful communication and cyber resiliency and possible threats while providing many resources and additional links for

Case Study 4 o Data (computer)

Follow the attached instructions to complete this work Unit 4 Case Study Directions Review the following case study. Consider both the big-picture ideas and the specific concerns. Make use of the key terms and concepts from the readings in your written responses to the questions below. The case study paper

Discussion 5 and 6

Follow  the attached instructions to complete this work Unit 5 Discussion   Overview In this discussion, you will be considering the emphasis on aspects such as privacy and safety. You will reflect on the significance of the legal concerns and goals of public-private partnerships to address cybersecurity. You will also

SQL injection

Hey! ????  I need an expert in SQL injection, DDOS attack, Code injection attack, XSS attack! To talk further please contact me on discord at mara411 so we can talk more freely and then I will hire you on here! Thanks ???? 

Free CAD, FeniCS or paraview

I have attached the picture and sample work too, I need work as like sampl, but not the copypasted Make sure you can ask me multiple questions but not dont do rubbish work

database

2. Final Assignment – equivalent to 4,000 words The final module mark is based on two deliverables focused on the CarNow case study described below. – 50% of the final mark a. An advisory report – 50 % of the final mark Includes 5% (of the module grade) given for

Computer

Documentation Tabula Insurance Agency ENTER AND UPDATE COMPANY DATA Author: Ashanti Joyner Note: Do not edit this sheet. If your name does not appear in cell B6, please download a new copy of the file from the SAM website. Personnel Tabula Insurance Agency Personnel: April 4-10, 2024 Employee Name Salary

Computer class

All information is below Toronto converted a declining part of the city into a vibrant neighborhood using the smart city 1.0 approach when a local technology company introduced electric shuttle buses to replace private cars and intelligent traffic lights to regulate the flow of pedestrians, bicycles, and vehicles. From Frankl,

Week 15

Read attachments for assignments  Week 14 Feedback Overall Feedback Well done on this assignment You will have to refine your tables and figures for your final submission. Always introduce them to the reader in preceding paragraph, properly create APA table, and cite figures. See Video:   APA Tables and Figures

Prof Double R

  PowerPoint Presentation: Narrative Presentation to the Board of Trustees The Centers for Medicare & Medicaid Services (CMS) has taken on a more visible role in health care. A great deal of change has transpired to improve patient safety and implementation of additional quality metrics. The new health care reform

Week 14

Please read attachments for details  image1.png

Week 13

Read attachments for details  The Finishing Touches – Week 13 Instructions For this week’s assignment you will submit the material discussed in the lesson plan and summarized below: · A refined introduction (Mandatory) · Updated Title Page (Mandatory) · Copyright Page with Declaration (Mandatory) · Dedication Page (Optional) · Acknowledgement

SCMT699

please read attachments for assignment  Feedback from week 10 Please address your design before your next submission.  Its how you are going to go about conducting your research so other can duplicate it. This is a good book on it. Creswell, J. W. (2009). Research design: Qualitative, quantitative, and mixed