Uncategorized

IT591-1: Develop an IT governance strategy for an organization. Purpose Organizations that you work for will often apply an IT governance framework such as COBIT or ISO 27001

Need this assignment written? Get a free quote from a subject specialist in minutes.

Order Your Essay
12,000+
Assignments delivered
97%
On-time delivery
800+
Verified writers
4.9★
Average rating

IT591-1: Develop an IT governance strategy for an organization.

Purpose

Organizations that you work for will often apply an IT governance framework such as COBIT or ISO 27001, or one of the others that are available. These frameworks provide guidelines for IT governance in the organization and offer guidelines for building a governance system. In this unit, you will apply the ISO 27001 Information Security Management System (ISMS) framework to begin outlining a governance strategy for an organization.

Assignment Instructions

Select an organization that you would like to develop an IT governance strategy for, using ISO 27001, Information Security Management System (ISMS). You can find ISMS on the Internet or in this unit’s reading. The organization should be one you are familiar with from having worked there.

In your paper, include the following:

  1. Define and discuss the ISO 27001 Information Security Management System in terms of the Deming Cycle of continuous improvement of Plan-Do-Check-Act (PDCA)
  2. Brief description of the organization and type of business engaged in.
  3. High-level information security policy that defines management’s overall objective for information security as it relates to business requirements and relevant laws and regulations.
    1. Information security direction for the organization
    2. Information security objectives for the organization
    3. Information on how the organization will meet contractual, legal, and regulatory requirements
    4. A statement of commitment to continuous improvement of the ISMS.
  4. High-level risk assessment (for purposes of this paper, discuss the top 3–4 risks only)
    1. Define a risk management framework that will be used
    2. Identify risks and describe the risk
    3. Analyze and evaluate the risks in terms of severity and impact
  5. Statement of Applicability
    1. Identify selected controls to address identified risks (again only the top 3–4 risks)
    2. Explanation of why these controls were selected
  6. Conclusion paragraph

This is a short version of an IT governance strategy but will provide a good understanding of the elements that must be included for this ISO 27001 ISMS.

Assignment Requirements

  • 4–5 pages of content (exclusive of cover sheet and references page), using Times New Roman font style, 12 point, double-spaced, using correct APA formatting, and include a cover sheet, table of contents, abstract, and reference page(s)
  • At least 1 credible source cited and referenced
  • No more than 1 table or figure
  • No spelling errors
  • No grammar errors
  • No APA errors
Plagiarism-Free Essay Writing

Have This Essay Written By a Professional — On Your Terms

  • Verified writers, vetted by subject
  • 100% plagiarism-free — Turnitin report included
  • Deadlines from 3 hours
  • Unlimited free revisions
  • Free quote — no card required
  • Money-back guarantee
Order Your Essay Get a Free Quote →
Share:
AD
admin3
Academic Writer & Editor

Expert academic writer and education specialist helping students in the UK, USA, and Australia achieve their best results.

← Previous
Use the materials from your reading, particularly the material specific to CISA’s Zero Trust Model and NIST 80-207 Zero Trust Architecture. In addition, research the Internet to provide the required responses. Provide an in-depth explanation of th
Next →
Hello, l am an experienced EssayPro bidder, if you have a vacancy you can consid

Need Help With This Assignment?

No credit card · No commitment · Quote in minutes
Order Your Essay Get a Free Quote →