SlideShare a Scribd company logo
1 of 8
Purpose
This project provides an opportunity to apply the competencies
gained in the lessons of this course to develop a risk
management plan for a fictitious organization to replace its
outdated plan.
Learning Objectives and Outcomes
You will gain an overall understanding of risk management, its
importance, and critical processes required when developing a
formal risk management plan for an organization.
Required Source Information and Tools
Web References:
Links to Web references in this document and related materials
are subject to change without prior notice.
The following tools and resources that will be needed to
complete this project:
Course textbook
Internet access for research
Deliverables
As discussed in this course, risk management is an important
process for all organizations. This is particularly true in
information systems, which provides critical support for
organizational missions. The heart of risk management is a
formal risk management plan.Theproject activities described in
this document allow you to fulfill the role of an employee
participating in the risk management process in a specific
business situation.
The project is structured as follows:
Project Part
Deliverable
Project Part
Risk Management Plan
Submission Requirements
All project submissions should follow this format:
Format: Microsoft Word or compatible
Font: Arial, 10-point, double-space
Citation Style: Your school’s preferred style guide
Scenario
You are an information technology (IT) intern working for
Health Network, Inc. (Health Network), a fictitious health
services organizationheadquartered in Minneapolis,Minnesota.
Health Networkhas over 600 employees throughout the
organization and generates $500 million USD in annual
revenue. The company has two additional locations in Portland,
Oregon and Arlington, Virginia, which support a mix of
corporate operations. Each corporate facility is located neara
co-location datacenter, where production systems are located
and managed by third-party datacenter hosting vendors.
Company Products
Health Network has three main products:
HNetExchange
,
HNetPay
, and
HNetConnect.
HNetExchangeis the primary source of revenue for the
company. The service handles secure electronic medical
messages that originate from its customers, such as large
hospitals, which are then routed to receiving customers such as
clinics.
HNetPay is a Web portal used by many of the company’s
HNetExchange customers to support the management of secure
payments and billing. The HNetPayWeb portal, hosted at Health
Network production sites, accepts various forms of payments
and interacts with credit-card processing organizations much
like a Web commerce shopping cart.
HNetConnect is an online directory that lists doctors, clinics,
and other medical facilities to allow Health Network customers
to find the right type of care at the right locations. It contains
doctors’ personal information, work addresses, medical
certifications, and types of services that the doctors and clinics
offer. Doctors are given credentials and are able to update the
information in their profile. Health Network customers, which
are the hospitals and clinics, connect to all three of the
company’s products using HTTPS connections. Doctors and
potential patients are able to make payments and update their
profiles using Internet-accessible HTTPS Web sites.
NOTE:
Any discussion of products not a part of this scenario, such as
health insurance products, will result in an automatic 50%
reduction in points. Your paper
is not a research paper on risk management – it is a risk
management plan to a very specific situation and must relate to
the scenario, above.
Information Technology Infrastructure Overview
Health Network operates in three production data centers that
provide high availability across the company’s products. The
data centers host about 1,000 production servers, and Health
Network maintains 650 corporate laptops and company-issued
mobile devices for its employees.
Threats Identified
Upon review of the current risk management plan, the following
threats were identified:
· Loss of company data due to hardware being removed from
production systems
· Loss of company information on lost or stolen company-
owned assets, such as mobile devices and laptops
· Loss of customers due to production outages caused by various
events, such as natural disasters, change management, unstable
software, and so on
· Internet threats due to company products being accessible on
the Internet
· Insider threats
· Changes in regulatory landscape that may impact operations
Management Request
Senior management at Health Network has determined that the
existing risk management plan for the organization is out of
date and a new risk management plan must be developed.
Because of the importance of risk management to the
organization, senior management is committed to and supportive
of the project to develop a new plan. You have been assigned to
develop this new plan.
Additional threats other than those described previously may be
discovered when re-evaluating the current threat landscape
during the risk assessment phase.
The budget for this project has not been defined due to senior
management’s desire to react to any and all material risks that
are identified within the new plan. Given the company’s annual
revenue, reasonable expectations can be determined.
Project Part 1
Project Part 1 Task 1: Risk Management Plan
For the first part of the assigned project,
you must create an initial draft of the final risk management
plan.
To do so, you must:
You Risk Management Plan will contain the following sections:
1.
A section titled
Introduction
discussing the purpose of the plan. You must include details
from the scenario, above, describing the environment.
10 points.
2.
A section titled
Scope
discussing the scope of the plan.
10 points
3. A section, titled
Compliance Laws and Regulations
. Using the information in the scenario provided above, discuss
regulations and laws with which Health Network must comply.
30 points
4.
A section, titled
Roles and Responsibilities
, that will discuss the different individuals and departments who
will be responsible for risk management within the organization
(this was presented in your textbook).
20 points
5.
A section, titled
Risk Mitigation Plan
, that discusses the threats identified in the scenario and your
proposed mitigations, as well as any new threats.
30 points.
Write an initial draft of the risk management plan as detailed in
the instructions above. Your plan should be made using a
standard word processor format compatible with Microsoft
Word.
Evaluation Criteria and Rubrics
Did the student demonstrate an understanding of the
competencies covered in the course thus far?
Did the student include all important components of a risk
management plan in the outline?
Did the student demonstrate good research, reasoning, and
decision-making skills in identifying key components and
compliance laws and regulations?
Did the student create a professional, well-developed draft
with proper grammar, spelling, and punctuation?
PurposeThis project provides an opportunity to apply the com

More Related Content

Similar to PurposeThis project provides an opportunity to apply the com

You are an information technology (IT) intern working for Health.docx
You are an information technology (IT) intern working for Health.docxYou are an information technology (IT) intern working for Health.docx
You are an information technology (IT) intern working for Health.docx
avaforman16457
 
Running Head Employee Selection and Training2Employee S.docx
Running Head Employee Selection and Training2Employee S.docxRunning Head Employee Selection and Training2Employee S.docx
Running Head Employee Selection and Training2Employee S.docx
todd271
 
ISOL 533 ProjectOverviewWrite paper in sectionsUnderst.docx
ISOL 533 ProjectOverviewWrite paper in sectionsUnderst.docxISOL 533 ProjectOverviewWrite paper in sectionsUnderst.docx
ISOL 533 ProjectOverviewWrite paper in sectionsUnderst.docx
vrickens
 
CMIS 320 Project 1 Write a justification paper, of at leas
CMIS 320 Project 1 Write a justification paper, of at leasCMIS 320 Project 1 Write a justification paper, of at leas
CMIS 320 Project 1 Write a justification paper, of at leas
WilheminaRossi174
 
Project Risk Management Plan © 2015 by Jones & Bartl.docx
Project Risk Management Plan © 2015 by Jones & Bartl.docxProject Risk Management Plan © 2015 by Jones & Bartl.docx
Project Risk Management Plan © 2015 by Jones & Bartl.docx
AASTHA76
 
The project is structured as follows Project Part Deliverable P.docx
The project is structured as follows Project Part Deliverable P.docxThe project is structured as follows Project Part Deliverable P.docx
The project is structured as follows Project Part Deliverable P.docx
oscars29
 
Project Risk Management Plan © 2015 by Jones & Bartl.docx
 Project Risk Management Plan © 2015 by Jones & Bartl.docx Project Risk Management Plan © 2015 by Jones & Bartl.docx
Project Risk Management Plan © 2015 by Jones & Bartl.docx
gertrudebellgrove
 
Project Risk Management Plan © 2015 by Jones & Bartl.docx
 Project Risk Management Plan © 2015 by Jones & Bartl.docx Project Risk Management Plan © 2015 by Jones & Bartl.docx
Project Risk Management Plan © 2015 by Jones & Bartl.docx
aryan532920
 
Sunlake High School English 2 Honors 2019 Summer Read.docx
 Sunlake High School English 2 Honors 2019 Summer Read.docx Sunlake High School English 2 Honors 2019 Summer Read.docx
Sunlake High School English 2 Honors 2019 Summer Read.docx
gertrudebellgrove
 
This Discussion offers you the opportunity to apply return on in.docx
This Discussion offers you the opportunity to apply return on in.docxThis Discussion offers you the opportunity to apply return on in.docx
This Discussion offers you the opportunity to apply return on in.docx
gasciognecaren
 
1Trends That Need A Closer LookAttention deficit hyper.docx
1Trends That Need A Closer LookAttention deficit hyper.docx1Trends That Need A Closer LookAttention deficit hyper.docx
1Trends That Need A Closer LookAttention deficit hyper.docx
vickeryr87
 
Is a 1750 words essay. U have to read the book to write the essay .docx
Is a 1750 words essay. U have to read the book to write the essay .docxIs a 1750 words essay. U have to read the book to write the essay .docx
Is a 1750 words essay. U have to read the book to write the essay .docx
christiandean12115
 
Term Paper Managing an IT Infrastructure AuditDue Week 10 a.docx
Term Paper Managing an IT Infrastructure AuditDue Week 10 a.docxTerm Paper Managing an IT Infrastructure AuditDue Week 10 a.docx
Term Paper Managing an IT Infrastructure AuditDue Week 10 a.docx
manningchassidy
 

Similar to PurposeThis project provides an opportunity to apply the com (20)

You are an information technology (IT) intern working for Health.docx
You are an information technology (IT) intern working for Health.docxYou are an information technology (IT) intern working for Health.docx
You are an information technology (IT) intern working for Health.docx
 
Running Head Employee Selection and Training2Employee S.docx
Running Head Employee Selection and Training2Employee S.docxRunning Head Employee Selection and Training2Employee S.docx
Running Head Employee Selection and Training2Employee S.docx
 
ISOL 533 ProjectOverviewWrite paper in sectionsUnderst.docx
ISOL 533 ProjectOverviewWrite paper in sectionsUnderst.docxISOL 533 ProjectOverviewWrite paper in sectionsUnderst.docx
ISOL 533 ProjectOverviewWrite paper in sectionsUnderst.docx
 
CMIS 320 Project 1 Write a justification paper, of at leas
CMIS 320 Project 1 Write a justification paper, of at leasCMIS 320 Project 1 Write a justification paper, of at leas
CMIS 320 Project 1 Write a justification paper, of at leas
 
Project Risk Management Plan © 2015 by Jones & Bartl.docx
Project Risk Management Plan © 2015 by Jones & Bartl.docxProject Risk Management Plan © 2015 by Jones & Bartl.docx
Project Risk Management Plan © 2015 by Jones & Bartl.docx
 
The project is structured as follows Project Part Deliverable P.docx
The project is structured as follows Project Part Deliverable P.docxThe project is structured as follows Project Part Deliverable P.docx
The project is structured as follows Project Part Deliverable P.docx
 
Project Risk Management Plan © 2015 by Jones & Bartl.docx
 Project Risk Management Plan © 2015 by Jones & Bartl.docx Project Risk Management Plan © 2015 by Jones & Bartl.docx
Project Risk Management Plan © 2015 by Jones & Bartl.docx
 
Project Risk Management Plan © 2015 by Jones & Bartl.docx
 Project Risk Management Plan © 2015 by Jones & Bartl.docx Project Risk Management Plan © 2015 by Jones & Bartl.docx
Project Risk Management Plan © 2015 by Jones & Bartl.docx
 
Sunlake High School English 2 Honors 2019 Summer Read.docx
 Sunlake High School English 2 Honors 2019 Summer Read.docx Sunlake High School English 2 Honors 2019 Summer Read.docx
Sunlake High School English 2 Honors 2019 Summer Read.docx
 
This Discussion offers you the opportunity to apply return on in.docx
This Discussion offers you the opportunity to apply return on in.docxThis Discussion offers you the opportunity to apply return on in.docx
This Discussion offers you the opportunity to apply return on in.docx
 
1Trends That Need A Closer LookAttention deficit hyper.docx
1Trends That Need A Closer LookAttention deficit hyper.docx1Trends That Need A Closer LookAttention deficit hyper.docx
1Trends That Need A Closer LookAttention deficit hyper.docx
 
Is a 1750 words essay. U have to read the book to write the essay .docx
Is a 1750 words essay. U have to read the book to write the essay .docxIs a 1750 words essay. U have to read the book to write the essay .docx
Is a 1750 words essay. U have to read the book to write the essay .docx
 
HOSPITAL MANAGEMENT SYSTEM ANDROID
HOSPITAL MANAGEMENT SYSTEM ANDROIDHOSPITAL MANAGEMENT SYSTEM ANDROID
HOSPITAL MANAGEMENT SYSTEM ANDROID
 
CST 610 RANK Remember Education--cst610rank.com
CST 610 RANK Remember Education--cst610rank.comCST 610 RANK Remember Education--cst610rank.com
CST 610 RANK Remember Education--cst610rank.com
 
CSEC 610 Effective Communication/tutorialrank.com
 CSEC 610 Effective Communication/tutorialrank.com CSEC 610 Effective Communication/tutorialrank.com
CSEC 610 Effective Communication/tutorialrank.com
 
CYB 610 Effective Communication/tutorialrank.com
 CYB 610 Effective Communication/tutorialrank.com CYB 610 Effective Communication/tutorialrank.com
CYB 610 Effective Communication/tutorialrank.com
 
Term Paper Managing an IT Infrastructure AuditDue Week 10 a.docx
Term Paper Managing an IT Infrastructure AuditDue Week 10 a.docxTerm Paper Managing an IT Infrastructure AuditDue Week 10 a.docx
Term Paper Managing an IT Infrastructure AuditDue Week 10 a.docx
 
CST 610 RANK Introduction Education--cst610rank.com
CST 610 RANK Introduction Education--cst610rank.comCST 610 RANK Introduction Education--cst610rank.com
CST 610 RANK Introduction Education--cst610rank.com
 
CSEC 610 Effective Communication - snaptutorial.com
CSEC 610 Effective Communication - snaptutorial.comCSEC 610 Effective Communication - snaptutorial.com
CSEC 610 Effective Communication - snaptutorial.com
 
CST 610 RANK Educational Specialist--cst610rank.com
CST 610 RANK Educational Specialist--cst610rank.comCST 610 RANK Educational Specialist--cst610rank.com
CST 610 RANK Educational Specialist--cst610rank.com
 

More from TakishaPeck109

Unit 1 Module 1 - M1 Assignment 3Assignment 3 Views on Diver.docx
Unit 1 Module 1 - M1 Assignment 3Assignment 3 Views on Diver.docxUnit 1 Module 1 - M1 Assignment 3Assignment 3 Views on Diver.docx
Unit 1 Module 1 - M1 Assignment 3Assignment 3 Views on Diver.docx
TakishaPeck109
 
Unit 1 - Individual ProjectType Individual ProjectDue Date Mon.docx
Unit 1 - Individual ProjectType Individual ProjectDue Date Mon.docxUnit 1 - Individual ProjectType Individual ProjectDue Date Mon.docx
Unit 1 - Individual ProjectType Individual ProjectDue Date Mon.docx
TakishaPeck109
 
Unit 1 Understanding the Tourism and Hospitality Industry with Work.docx
Unit 1 Understanding the Tourism and Hospitality Industry with Work.docxUnit 1 Understanding the Tourism and Hospitality Industry with Work.docx
Unit 1 Understanding the Tourism and Hospitality Industry with Work.docx
TakishaPeck109
 
Understanding the Value of Qualitative ResearchAn important part.docx
Understanding the Value of Qualitative ResearchAn important part.docxUnderstanding the Value of Qualitative ResearchAn important part.docx
Understanding the Value of Qualitative ResearchAn important part.docx
TakishaPeck109
 
UNDERSTANDING HEALTHCARE FINANCIAL MANAGEMENT.docx
UNDERSTANDING HEALTHCARE FINANCIAL MANAGEMENT.docxUNDERSTANDING HEALTHCARE FINANCIAL MANAGEMENT.docx
UNDERSTANDING HEALTHCARE FINANCIAL MANAGEMENT.docx
TakishaPeck109
 
UMUC CMIT 265 Fundamentals of NetworkingHello there!  I have am lo.docx
UMUC CMIT 265 Fundamentals of NetworkingHello there!  I have am lo.docxUMUC CMIT 265 Fundamentals of NetworkingHello there!  I have am lo.docx
UMUC CMIT 265 Fundamentals of NetworkingHello there!  I have am lo.docx
TakishaPeck109
 

More from TakishaPeck109 (20)

Unit 3 Assignment Instructions Your research paper should be 4–6 pag.docx
Unit 3 Assignment Instructions Your research paper should be 4–6 pag.docxUnit 3 Assignment Instructions Your research paper should be 4–6 pag.docx
Unit 3 Assignment Instructions Your research paper should be 4–6 pag.docx
 
Unit 1 Module 1 - M1 Assignment 3Assignment 3 Views on Diver.docx
Unit 1 Module 1 - M1 Assignment 3Assignment 3 Views on Diver.docxUnit 1 Module 1 - M1 Assignment 3Assignment 3 Views on Diver.docx
Unit 1 Module 1 - M1 Assignment 3Assignment 3 Views on Diver.docx
 
Unit 1 Learning ActivityTo complete this Learning Activity, firs.docx
Unit 1 Learning ActivityTo complete this Learning Activity, firs.docxUnit 1 Learning ActivityTo complete this Learning Activity, firs.docx
Unit 1 Learning ActivityTo complete this Learning Activity, firs.docx
 
Unit 1 - Individual ProjectType Individual ProjectDue Date Mon.docx
Unit 1 - Individual ProjectType Individual ProjectDue Date Mon.docxUnit 1 - Individual ProjectType Individual ProjectDue Date Mon.docx
Unit 1 - Individual ProjectType Individual ProjectDue Date Mon.docx
 
Unit 1 Understanding the Tourism and Hospitality Industry with Work.docx
Unit 1 Understanding the Tourism and Hospitality Industry with Work.docxUnit 1 Understanding the Tourism and Hospitality Industry with Work.docx
Unit 1 Understanding the Tourism and Hospitality Industry with Work.docx
 
Unit 2 Assignment Creating an Effective PresentationPresentatio.docx
Unit 2 Assignment Creating an Effective PresentationPresentatio.docxUnit 2 Assignment Creating an Effective PresentationPresentatio.docx
Unit 2 Assignment Creating an Effective PresentationPresentatio.docx
 
Unit 1 Assignment Computer ComponentsHere is a video introducti.docx
Unit 1 Assignment Computer ComponentsHere is a video introducti.docxUnit 1 Assignment Computer ComponentsHere is a video introducti.docx
Unit 1 Assignment Computer ComponentsHere is a video introducti.docx
 
Unethical Situations in the Workplace  Recall a time when .docx
Unethical Situations in the Workplace  Recall a time when .docxUnethical Situations in the Workplace  Recall a time when .docx
Unethical Situations in the Workplace  Recall a time when .docx
 
Unifying separate countries offers varied unique opportunities for g.docx
Unifying separate countries offers varied unique opportunities for g.docxUnifying separate countries offers varied unique opportunities for g.docx
Unifying separate countries offers varied unique opportunities for g.docx
 
Understanding the Value of Qualitative ResearchAn important part.docx
Understanding the Value of Qualitative ResearchAn important part.docxUnderstanding the Value of Qualitative ResearchAn important part.docx
Understanding the Value of Qualitative ResearchAn important part.docx
 
Understanding cultural phenomena is essential to the completion of a.docx
Understanding cultural phenomena is essential to the completion of a.docxUnderstanding cultural phenomena is essential to the completion of a.docx
Understanding cultural phenomena is essential to the completion of a.docx
 
Understanding the role that coding information plays in health care .docx
Understanding the role that coding information plays in health care .docxUnderstanding the role that coding information plays in health care .docx
Understanding the role that coding information plays in health care .docx
 
Understanding Property RightsExplain a landlord’s legal authorit.docx
Understanding Property RightsExplain a landlord’s legal authorit.docxUnderstanding Property RightsExplain a landlord’s legal authorit.docx
Understanding Property RightsExplain a landlord’s legal authorit.docx
 
Understanding Others’ Cultural PracticesALL WORK MUST BE ORIGI.docx
Understanding Others’ Cultural PracticesALL WORK MUST BE ORIGI.docxUnderstanding Others’ Cultural PracticesALL WORK MUST BE ORIGI.docx
Understanding Others’ Cultural PracticesALL WORK MUST BE ORIGI.docx
 
UNDERSTANDING HEALTHCARE FINANCIAL MANAGEMENT.docx
UNDERSTANDING HEALTHCARE FINANCIAL MANAGEMENT.docxUNDERSTANDING HEALTHCARE FINANCIAL MANAGEMENT.docx
UNDERSTANDING HEALTHCARE FINANCIAL MANAGEMENT.docx
 
Understanding international compensation begins with the recognition.docx
Understanding international compensation begins with the recognition.docxUnderstanding international compensation begins with the recognition.docx
Understanding international compensation begins with the recognition.docx
 
Understanding and Analyzing Arguments  Please respond to the follow.docx
Understanding and Analyzing Arguments  Please respond to the follow.docxUnderstanding and Analyzing Arguments  Please respond to the follow.docx
Understanding and Analyzing Arguments  Please respond to the follow.docx
 
Understand the role of the counselor and community.Understand cris.docx
Understand the role of the counselor and community.Understand cris.docxUnderstand the role of the counselor and community.Understand cris.docx
Understand the role of the counselor and community.Understand cris.docx
 
Under the common law, from the 1500s until today, the law has allow.docx
Under the common law, from the 1500s until today, the law has allow.docxUnder the common law, from the 1500s until today, the law has allow.docx
Under the common law, from the 1500s until today, the law has allow.docx
 
UMUC CMIT 265 Fundamentals of NetworkingHello there!  I have am lo.docx
UMUC CMIT 265 Fundamentals of NetworkingHello there!  I have am lo.docxUMUC CMIT 265 Fundamentals of NetworkingHello there!  I have am lo.docx
UMUC CMIT 265 Fundamentals of NetworkingHello there!  I have am lo.docx
 

Recently uploaded

Spellings Wk 4 and Wk 5 for Grade 4 at CAPS
Spellings Wk 4 and Wk 5 for Grade 4 at CAPSSpellings Wk 4 and Wk 5 for Grade 4 at CAPS
Spellings Wk 4 and Wk 5 for Grade 4 at CAPS
AnaAcapella
 

Recently uploaded (20)

NO1 Top Black Magic Specialist In Lahore Black magic In Pakistan Kala Ilam Ex...
NO1 Top Black Magic Specialist In Lahore Black magic In Pakistan Kala Ilam Ex...NO1 Top Black Magic Specialist In Lahore Black magic In Pakistan Kala Ilam Ex...
NO1 Top Black Magic Specialist In Lahore Black magic In Pakistan Kala Ilam Ex...
 
Spellings Wk 4 and Wk 5 for Grade 4 at CAPS
Spellings Wk 4 and Wk 5 for Grade 4 at CAPSSpellings Wk 4 and Wk 5 for Grade 4 at CAPS
Spellings Wk 4 and Wk 5 for Grade 4 at CAPS
 
Sensory_Experience_and_Emotional_Resonance_in_Gabriel_Okaras_The_Piano_and_Th...
Sensory_Experience_and_Emotional_Resonance_in_Gabriel_Okaras_The_Piano_and_Th...Sensory_Experience_and_Emotional_Resonance_in_Gabriel_Okaras_The_Piano_and_Th...
Sensory_Experience_and_Emotional_Resonance_in_Gabriel_Okaras_The_Piano_and_Th...
 
Simple, Complex, and Compound Sentences Exercises.pdf
Simple, Complex, and Compound Sentences Exercises.pdfSimple, Complex, and Compound Sentences Exercises.pdf
Simple, Complex, and Compound Sentences Exercises.pdf
 
How to Manage Global Discount in Odoo 17 POS
How to Manage Global Discount in Odoo 17 POSHow to Manage Global Discount in Odoo 17 POS
How to Manage Global Discount in Odoo 17 POS
 
On National Teacher Day, meet the 2024-25 Kenan Fellows
On National Teacher Day, meet the 2024-25 Kenan FellowsOn National Teacher Day, meet the 2024-25 Kenan Fellows
On National Teacher Day, meet the 2024-25 Kenan Fellows
 
21st_Century_Skills_Framework_Final_Presentation_2.pptx
21st_Century_Skills_Framework_Final_Presentation_2.pptx21st_Century_Skills_Framework_Final_Presentation_2.pptx
21st_Century_Skills_Framework_Final_Presentation_2.pptx
 
FICTIONAL SALESMAN/SALESMAN SNSW 2024.pdf
FICTIONAL SALESMAN/SALESMAN SNSW 2024.pdfFICTIONAL SALESMAN/SALESMAN SNSW 2024.pdf
FICTIONAL SALESMAN/SALESMAN SNSW 2024.pdf
 
Google Gemini An AI Revolution in Education.pptx
Google Gemini An AI Revolution in Education.pptxGoogle Gemini An AI Revolution in Education.pptx
Google Gemini An AI Revolution in Education.pptx
 
AIM of Education-Teachers Training-2024.ppt
AIM of Education-Teachers Training-2024.pptAIM of Education-Teachers Training-2024.ppt
AIM of Education-Teachers Training-2024.ppt
 
80 ĐỀ THI THỬ TUYỂN SINH TIẾNG ANH VÀO 10 SỞ GD – ĐT THÀNH PHỐ HỒ CHÍ MINH NĂ...
80 ĐỀ THI THỬ TUYỂN SINH TIẾNG ANH VÀO 10 SỞ GD – ĐT THÀNH PHỐ HỒ CHÍ MINH NĂ...80 ĐỀ THI THỬ TUYỂN SINH TIẾNG ANH VÀO 10 SỞ GD – ĐT THÀNH PHỐ HỒ CHÍ MINH NĂ...
80 ĐỀ THI THỬ TUYỂN SINH TIẾNG ANH VÀO 10 SỞ GD – ĐT THÀNH PHỐ HỒ CHÍ MINH NĂ...
 
This PowerPoint helps students to consider the concept of infinity.
This PowerPoint helps students to consider the concept of infinity.This PowerPoint helps students to consider the concept of infinity.
This PowerPoint helps students to consider the concept of infinity.
 
How to Add a Tool Tip to a Field in Odoo 17
How to Add a Tool Tip to a Field in Odoo 17How to Add a Tool Tip to a Field in Odoo 17
How to Add a Tool Tip to a Field in Odoo 17
 
Exploring_the_Narrative_Style_of_Amitav_Ghoshs_Gun_Island.pptx
Exploring_the_Narrative_Style_of_Amitav_Ghoshs_Gun_Island.pptxExploring_the_Narrative_Style_of_Amitav_Ghoshs_Gun_Island.pptx
Exploring_the_Narrative_Style_of_Amitav_Ghoshs_Gun_Island.pptx
 
Beyond_Borders_Understanding_Anime_and_Manga_Fandom_A_Comprehensive_Audience_...
Beyond_Borders_Understanding_Anime_and_Manga_Fandom_A_Comprehensive_Audience_...Beyond_Borders_Understanding_Anime_and_Manga_Fandom_A_Comprehensive_Audience_...
Beyond_Borders_Understanding_Anime_and_Manga_Fandom_A_Comprehensive_Audience_...
 
Food safety_Challenges food safety laboratories_.pdf
Food safety_Challenges food safety laboratories_.pdfFood safety_Challenges food safety laboratories_.pdf
Food safety_Challenges food safety laboratories_.pdf
 
Python Notes for mca i year students osmania university.docx
Python Notes for mca i year students osmania university.docxPython Notes for mca i year students osmania university.docx
Python Notes for mca i year students osmania university.docx
 
Unit 3 Emotional Intelligence and Spiritual Intelligence.pdf
Unit 3 Emotional Intelligence and Spiritual Intelligence.pdfUnit 3 Emotional Intelligence and Spiritual Intelligence.pdf
Unit 3 Emotional Intelligence and Spiritual Intelligence.pdf
 
Accessible Digital Futures project (20/03/2024)
Accessible Digital Futures project (20/03/2024)Accessible Digital Futures project (20/03/2024)
Accessible Digital Futures project (20/03/2024)
 
Single or Multiple melodic lines structure
Single or Multiple melodic lines structureSingle or Multiple melodic lines structure
Single or Multiple melodic lines structure
 

PurposeThis project provides an opportunity to apply the com

  • 1. Purpose This project provides an opportunity to apply the competencies gained in the lessons of this course to develop a risk management plan for a fictitious organization to replace its outdated plan. Learning Objectives and Outcomes You will gain an overall understanding of risk management, its importance, and critical processes required when developing a formal risk management plan for an organization. Required Source Information and Tools Web References: Links to Web references in this document and related materials are subject to change without prior notice. The following tools and resources that will be needed to complete this project: Course textbook Internet access for research Deliverables As discussed in this course, risk management is an important process for all organizations. This is particularly true in
  • 2. information systems, which provides critical support for organizational missions. The heart of risk management is a formal risk management plan.Theproject activities described in this document allow you to fulfill the role of an employee participating in the risk management process in a specific business situation. The project is structured as follows: Project Part Deliverable Project Part Risk Management Plan Submission Requirements All project submissions should follow this format: Format: Microsoft Word or compatible Font: Arial, 10-point, double-space Citation Style: Your school’s preferred style guide
  • 3. Scenario You are an information technology (IT) intern working for Health Network, Inc. (Health Network), a fictitious health services organizationheadquartered in Minneapolis,Minnesota. Health Networkhas over 600 employees throughout the organization and generates $500 million USD in annual revenue. The company has two additional locations in Portland, Oregon and Arlington, Virginia, which support a mix of corporate operations. Each corporate facility is located neara co-location datacenter, where production systems are located and managed by third-party datacenter hosting vendors. Company Products Health Network has three main products: HNetExchange , HNetPay , and HNetConnect. HNetExchangeis the primary source of revenue for the company. The service handles secure electronic medical messages that originate from its customers, such as large hospitals, which are then routed to receiving customers such as clinics. HNetPay is a Web portal used by many of the company’s HNetExchange customers to support the management of secure payments and billing. The HNetPayWeb portal, hosted at Health Network production sites, accepts various forms of payments and interacts with credit-card processing organizations much like a Web commerce shopping cart.
  • 4. HNetConnect is an online directory that lists doctors, clinics, and other medical facilities to allow Health Network customers to find the right type of care at the right locations. It contains doctors’ personal information, work addresses, medical certifications, and types of services that the doctors and clinics offer. Doctors are given credentials and are able to update the information in their profile. Health Network customers, which are the hospitals and clinics, connect to all three of the company’s products using HTTPS connections. Doctors and potential patients are able to make payments and update their profiles using Internet-accessible HTTPS Web sites. NOTE: Any discussion of products not a part of this scenario, such as health insurance products, will result in an automatic 50% reduction in points. Your paper is not a research paper on risk management – it is a risk management plan to a very specific situation and must relate to the scenario, above. Information Technology Infrastructure Overview Health Network operates in three production data centers that provide high availability across the company’s products. The data centers host about 1,000 production servers, and Health Network maintains 650 corporate laptops and company-issued mobile devices for its employees. Threats Identified Upon review of the current risk management plan, the following threats were identified:
  • 5. · Loss of company data due to hardware being removed from production systems · Loss of company information on lost or stolen company- owned assets, such as mobile devices and laptops · Loss of customers due to production outages caused by various events, such as natural disasters, change management, unstable software, and so on · Internet threats due to company products being accessible on the Internet · Insider threats · Changes in regulatory landscape that may impact operations Management Request Senior management at Health Network has determined that the existing risk management plan for the organization is out of date and a new risk management plan must be developed. Because of the importance of risk management to the organization, senior management is committed to and supportive of the project to develop a new plan. You have been assigned to develop this new plan. Additional threats other than those described previously may be discovered when re-evaluating the current threat landscape during the risk assessment phase. The budget for this project has not been defined due to senior management’s desire to react to any and all material risks that are identified within the new plan. Given the company’s annual revenue, reasonable expectations can be determined.
  • 6. Project Part 1 Project Part 1 Task 1: Risk Management Plan For the first part of the assigned project, you must create an initial draft of the final risk management plan. To do so, you must: You Risk Management Plan will contain the following sections: 1. A section titled Introduction discussing the purpose of the plan. You must include details from the scenario, above, describing the environment. 10 points. 2. A section titled Scope discussing the scope of the plan. 10 points 3. A section, titled Compliance Laws and Regulations . Using the information in the scenario provided above, discuss regulations and laws with which Health Network must comply. 30 points 4. A section, titled Roles and Responsibilities , that will discuss the different individuals and departments who
  • 7. will be responsible for risk management within the organization (this was presented in your textbook). 20 points 5. A section, titled Risk Mitigation Plan , that discusses the threats identified in the scenario and your proposed mitigations, as well as any new threats. 30 points. Write an initial draft of the risk management plan as detailed in the instructions above. Your plan should be made using a standard word processor format compatible with Microsoft Word. Evaluation Criteria and Rubrics Did the student demonstrate an understanding of the competencies covered in the course thus far? Did the student include all important components of a risk management plan in the outline? Did the student demonstrate good research, reasoning, and decision-making skills in identifying key components and compliance laws and regulations? Did the student create a professional, well-developed draft with proper grammar, spelling, and punctuation?