You have been contracted by the Chief Information Officer (CIO) of an organization to provide sector or industry-specific background information used for the development of a comprehensive information security plan. Some of the departments involved are the corporate IT team, Security Operations Center, Cyber Incident Response Center, the Office of the Corporate Security Architect, the Chief Information Security Officer (CISO), and the Chief Information Officer (CIO).
You are tasked with developing a well-researched document that addresses the following sections:
Implementation of a successful security awareness campaign which assists users in recognizing and identifying social engineering attacks;
An approach to some of the methodologies used to manage risk in information systems;
A high-level plan addressing protection of network resources and assets; and
An explanation of the benefits and challenges of securing cloud computing services.
It is recommended you begin by choosing an industry or sector and applying specific research findings. It may be helpful to discuss security opportunities the sector or industry chosen faces. Some examples of sectors and industries include finance, healthcare, retail, energy, defense, IT, and telecommunications. You can provide this information in the introduction section. From here, you can format each bullet point listed above as a heading in your document. This provides you with a framework to focus on while you conduct your research.
When writing, discuss the sector your paper focuses on but do not write about the CIO asking you to develop this document. Even if you know the information, provide scholarly research that solidifies your knowledge. At times, you will be surprised at what you think you know being proven wrong. Scholarly works give credibility to your statements and arguments.
Your final deliverable will have the following characteristics:
Rich in research, with a minimum of ten (10) scholarly and industry-specific references. At least five (5) sources were found using the Utica College library and Google Scholar. NIST Special Publications and industry-specific papers and reports will be considered towards the reference minimum; however, web blogs, technical dictionaries, or other non-scholarly sources can be used but will not count towards the minimal requirements.
12 – 15 pages in length (not including title page, Abstract, Table of Contents, and References page).
Written in APA format, grammatically correct, no spelling errors.
The document must address each section and contains an Abstract, Table of Contents, Introduction, Conclusion, and correctly formatted References pages.