The purpose of this assignment is to develop a security program aligned with regulatory compliance and...

90.2K

Verified Solution

Question

General Management

The purpose of this assignment is to develop a security programaligned with regulatory compliance and security controlframeworks.

Select a company for the focus of your assignment. Using thefollowing, map the standard controls to the regulatory compliancethat would be appropriate for the organization:

  1. The "Security Controls Mapping Template."
  2. Regulatory compliance information, such as HIPAA, PCI, SOX,GLBA, etc.
  3. Security control frameworks, such as NIST, CIS, COBIT, COSO,ITIL, etc.

On the template, map the regulatory rules (one per line) andsecurity controls (as many per line as necessary). List anenforcement or measurement policy, procedure(s), or process toaudit the rule/controls applied.

Write a 500-word summary that defines the regulatory complianceand security controls and includes the following information:

  1. Overview of the company, goods, or services provided; theindustry; and the customer demographics.
  2. Identification of compliance regulations to which the companymust adhere (e.g., medical-based companies should apply HIPAAregulations) and an explanation of why adherence is essential.
  3. Justification for the selection of the control framework chosento effectively implement the identified regulations.
  4. Paste a copy of the completed content of the "Security ControlsMapping Template" table into the Word document.

Submit the Word document and the completed "Security ControlsMapping Template."

Prepare this assignment according to the guidelines found in theAPA Style Guide, located in the Student Success Center. An abstractis not required.

Answer & Explanation Solved by verified expert
4.0 Ratings (795 Votes)
Compliance and restrictive frameworks square measure sets of tips and best practices Organizations follow these tips to satisfy restrictive needs improve processes strengthen security and win alternative business objectives such as turning into a public company or commerce cloud solutions to government agencies These frameworks offer USA a typical language which will be used from the server area to the council chamber These standards square measure leveraged by Internal auditors and alternative internal stakeholders to judge the controls in situ among their own organization External auditors to judge and attest to the controls in situ among a corporation Third parties potential customers investors etc to judge the potential risks of partnering with a corporation HIPAA the insurance movableness    See Answer
Get Answers to Unlimited Questions

Join us to gain access to millions of questions and expert answers. Enjoy exclusive benefits tailored just for you!

Membership Benefits:
  • Unlimited Question Access with detailed Answers
  • Zin AI - 3 Million Words
  • 10 Dall-E 3 Images
  • 20 Plot Generations
  • Conversation with Dialogue Memory
  • No Ads, Ever!
  • Access to Our Best AI Platform: Flex AI - Your personal assistant for all your inquiries!
Become a Member

Other questions asked by students