CSIA 413: Information Security Plan

929 Words4 Pages
Organization Security Plan University of Maryland University College Adam Smith CSIA 413 EXECUTIVE SUMMARY An Information Security Plan is intended to protect information and critical resources from a variety of different threats in order to minimize business risk, maintain business continuity, and maximize cost-effectiveness of the efforts put in and business opportunities. Information security is achieved by enacting an appropriate set of controls, including policies, processes, procedures, and software and hardware functions. These controls should be established, implemented, monitored, reviewed and improved periodically, to ensure that the specific security and business objectives of the Department of Homeland Security are maintained. PURPOSE The purpose of this plan is to ensure the confidentiality, integrity, and…show more content…
* Downloading Software – Users must contact the IT help desk in order to download software to their work stations. A remote user will complete the installation process if the software is deemed necessary. * File Access control – Users will only have access to records and files they need to complete their job information deemed otherwise they must consult management positions for access. VI. BUSINESS CONTINUITY The purpose of a business continuity plan is to counteract interruptions to business activities and to protect critical business processes from the effects of major and long term failures of information systems or physical disaster to the work place and to resume a normal working fashion in a timely manner. A business continuity management process will be established to minimize the impact on Department of Homeland Security and recover from loss of information and physical assets to an with the use of preventive and recovery

More about CSIA 413: Information Security Plan

Open Document