hw p1

2
HW P1 Learning goals for this assignment: 1. Become familiar with one organization’s security policy 2. Analyze one organization’s security policy in terms of quality, coverage and clarity. Your assignment this week involves these steps 1. Find a security policy that a real organization has posted on the Internet. Alternatively locate a security policy from your organization. The policy should relate to an area of Info security that interests you and should be relatively comprehensive for that area (i.e. don’t pick a one paragraph policy or it will be hard for you to find anything to analyze about it. ) 1. Prepare your analysis of this policy following this outline: 1. What is the link (URL) to the policy, if available on the Internet. If your own company without public URL, reiterate the policy. 2. Briefly describe the type of organization that this policy belongs to 3. What do you see as the most positive aspects of this policy? List a maximum of three, describing why you chose each 4. What recommendations for improvement do you have for this policy? Explain each LIMIT your analysis to what can be printed easily on one page by zeroing in on what is most important. TIPS:

Upload: yasir-r-khan

Post on 13-Sep-2015

214 views

Category:

Documents


1 download

TRANSCRIPT

HW P1Learning goals for this assignment: 1. Become familiar with one organizations security policy2. Analyze one organizations security policy in terms of quality, coverage and clarity.Your assignment this week involves these steps1. Find a security policy that a real organization has posted on the Internet. Alternatively locate a security policy from your organization.The policy should relate to an area of Info security that interests you and should be relatively comprehensive for that area (i.e. dont pick a one paragraph policy or it will be hard for you to find anything to analyze about it. )1. Prepare your analysis of this policy following this outline:1. What is the link (URL) to the policy, if available on the Internet. If your own company without public URL, reiterate the policy.2. Briefly describe the type of organization that this policy belongs to3. What do you see as the most positive aspects of this policy? List a maximum of three, describing why you chose each4. What recommendations for improvement do you have for this policy? Explain eachLIMIT your analysis to what can be printed easily on one page by zeroing in on what is most important.TIPS:1. The easiest policies to find on the internet relate to universities or units of government, city, state, or federal. Our class discussion will be more interesting if some members of the class are able to find some policies from other types of organizations. Definitely start by checking to see if organizations you are familiar with publically post their policies or look for your companys intranet or company handbook policies.2. The policy you select need not be a comprehensive one for the entire organization, as long as it addresses one aspect of IT-related security reasonably fully.Guidelines:1. Only 1 page2. Submitted through COL Assignments by Thursday, 5 pm CT, before class.3. Put your name at the top of the document and in the document name YourName P1.rtf4. Bring 5 copies of your analysis for group discussion.5. For the next weeks assignment, you will comment on another students analysis more information will be forthcoming.