Evan Anderson
IS4550
Security Policies and Implementation
Unit 1 (June 17, 2016)
Information Security Policy Management
Learning Objective
- Identify the role of an ISS policy framework in overcoming business challenges.
Key Concepts
- ISS and information assurance in organizations
- ISS policies and their importance in organizations
- Four information security controls
- Business drivers that create the need for ISS policy framework
- U.S. compliance laws and industry standards
Assigned Reading
- Johnson and Merkow, Chapter 1: Information Systems Security Policy Management.
- Johnson and Merkow, Chapter 2: Business Drivers for Information Security Policies.
- Johnson and Merkow, Chapter 3: U.S. Compliance Laws and Information Security Policy Requirements
Keywords
- Information Systems Security (ISS) Policies
- Information Security Controls
- Security Policy Framework
- U.S. Compliancy Laws
- Information Assurance
- Information Security Governance
- Risk Management
Assignments and Study Materials
- Unit 1 Lecture Slides
- Unit 1 Discussion 1.1: Importance of Security Policies
- Unit 1 Lab 1.2: Craft an Organization-Wide Security Management Policy for Acceptable Use
- Unit 1 Assignment 1.3: Security Policies Overcoming Business Challenges
Questions and Feedback
Use the form below to ask questions or provide feedback about the concepts covered during Unit 1's session of class: