Management of Information Security 3rd edition
Assignment:
Part 1:
1. Using the framework presented in this chapter, draft a sample issue-specific security policy for an organization. At the beginning of your document, describe the organization for which you are creating the policy and then complete the policy using the framework.
2. Search for sample security policies on the Web. Identify five EISP and five ISSP sample policies and bring them to class. Compare these with the framework presented in this chapter and comment on the policies' comprehensiveness.
Part 2:
1. Search for the term security awareness on the Internet. Describe the available materials and services
2. Choose one of the Web sites you found in Exercise 1 that you think might work for a security awareness program at your school. Write a short essay on how you might go about getting that awareness material or service into place on your campus
3. Get the latest copy of your local Sunday newspaper. Look through the paper and circulars for advertisements for training and education in security- and technology- related areas. What are the costs of the advertised security specific training? Network certification? General computer training?