18 Nov Mobile Device Management Policy
Order Instructions
Transcript:
Mobile Device Management Policy
As the chief information security officer for one of the largest global financial institutions, you are part of the company’s weekly executive meetings.
This week, the CEO starts the discussion with a statement: “I am constantly impressed with the stuff I can do on my cell phone and tablet. It’s amazing!…I am completely connected to all aspects of the business, as well as the outside world.”
After a brief pause, he continues: “And that’s what causes me concern. Some of the questions that occur to me are: Where are these devices made? What do we know about the security of these devices? Are we confident that our information is protected when we can so easily connect to the company’s information?”
“Why, just the other day on my flight, I read a magazine story about a computer chip that is intentionally built to spy on users. Well, how do we know this chip isn’t in any devices that our employees use? Do we have a specific policy in place on access? Well, if not, we need to develop one, fast.”
You realize that the CEO’s concerns extend beyond the possible issues with mobile technologies so you make the note to update policies on incident management & emerging technologies. Then, while the idea is fresh on your mind, you start to outline the scope of work.
As the CEO asks for input at the close of the meeting, you propose a series of four projects for your team:
1- An updated Mobile Device Management Policy to address his immediate concern,
2- An Identity Theft Response Plan to address a “worst-case scenario” event,
3- A Digital Currency Applicability report to address the viability of using blockchain technology, and
4- An Enterprise Cyber Program presentation to the board of directors to explain how your organization addresses cybersecurity issue.
The CEO agrees and asks that you begin with the presentation on the updated Mobile Device Management Policy in the executive meeting scheduled two weeks from today.
As a recent graduate of the UMGC Master’s in Cybersecurity program, you have received a well-deserved promotion to chief information security officer (CISO) at the global financial institution where you work. The role is new for you and the company. It reports directly to the chief information officer (CIO), which for the purposes of this course, is the instructor. Much of what you will be doing in the next couple of months is centered around the policy aspects of the bank.
The CIO has lobbied for your role to be created as a result of four concerns that will require your expertise and focus. In general, you are told you will be addressing the following four projects:
Mobile Device Management (MDM)
Identity Theft
Digital Currency
Enterprise Policy
Now that you have an idea of the tasks ahead, the first project will be developing recommendations for mobile device management, which will include written comments and a presentation for the company’s leadership. This is the first of four sequential projects in this course and should be completed in about two weeks. There are 11 steps to complete in Project 1. Contact the CIO (your instructor) with any questions. Proceed to Step 1 to begin.
Step 1: Prepare a Scope of Work Overview
Since the CEO has agreed for you to update the company’s mobile device management (MDM) Policy, the CIO has requested you first provide a scope of work to determine the level of effort that your team will face.
Prepare an overview of the scope of work by posting a brief paragraph (three to five sentences) explaining the approach and deliverable for this project with a few bullet points that address general financial industry concerns with cybersecurity and MDM.
Post the overview to the scope of work discussion for feedback. Afterward, move to the next step, in which you will consider critical infrastructure and how it will affect compliance.
Step 2: Research Critical Infrastructure Concerns
After defining the scope of work, you are ready to begin updating the MDM policy. In order to determine the effectiveness of the current policy, research what critical infrastructure protection concerns affect compliance.
Consider the following list to guide your research:
impact of cyberattacks on critical infrastructure as defined by the Patriot Act of 2001
technologies used in critical infrastructure cyberattacks
cybersecurity defense principles that should be used to counter these cyberattacks
cybersecurity policy framework that should be employed to minimize the opportunity for a successful critical infrastructure cyberattack
Document the findings since they will be used in upcoming steps. In the next step, you will itemize those concerns.
Step 3: Itemize Critical Infrastructure Concerns
Using notes taken from the completed research in the last step, itemize the findings in a table or spreadsheet titled Crucial Concerns Worksheet that assesses:
The impact of cyberattacks on critical infrastructure as initiated by the Patriot Act of 2001 and later refined by the Department of Homeland Security (DHS).
The technologies used in critical infrastructure cyberattacks. Especially consider which and how technologies may exploit mobile device vulnerabilities.
Cybersecurity defense principles should be used to counter these cyberattacks.
This itemized list of critical infrastructure concerns will be expanded to include an evaluation of cyber-physical systems in the next step so that you can later align critical concerns to MDM policy. It will also be included as an appendix to the updated MDM policy presentation for the board of directors. Submit the Crucial Concerns Worksheet for feedback.
In the next step, cyber-physical systems and the Internet of things will be considered and evaluated for the MDM policy presentation.
Our website has a team of professional writers who can help you write any of your homework. They will write your papers from scratch. We also have a team of editors just to make sure all papers are of HIGH QUALITY & PLAGIARISM FREE. To make an Order you only need to click Ask A Question and we will direct you to our Order Page at WriteDemy. Then fill Our Order Form with all your assignment instructions. Select your deadline and pay for your paper. You will get it few hours before your set deadline.
Fill in all the assignment paper details that are required in the order form with the standard information being the page count, deadline, academic level and type of paper. It is advisable to have this information at hand so that you can quickly fill in the necessary information needed in the form for the essay writer to be immediately assigned to your writing project. Make payment for the custom essay order to enable us to assign a suitable writer to your order. Payments are made through Paypal on a secured billing page. Finally, sit back and relax.