Colorado State University Healthcare Security System Risk Assessment Part One Plan, Develop and Manage a Security PolicyPart Two Conducting a Risk Asses

Colorado State University Healthcare Security System Risk Assessment Part One Plan, Develop and Manage a Security PolicyPart Two Conducting a Risk Assessment Assessment Item 2
Value: 20%
Submission method options: Alternative submission method
Task
Assignment Two is comprised of two parts and your report should be no more than 5 pages
excluding the cover page, table of contents and references.
Part One
Plan, Develop and Manage a Security Policy (10 marks)
Background:
Consider that the Commonwealth Government of Australia is planning to launch ‘My
Health Record’ a secure online summary of an individual’s health information. The
system is available to all Australians, My Health Record is an electronic summary of an
individual’s key health information, drawn from their existing records and is designed to
be integrated into existing local clinical systems.
The ‘My Health Record’ is driven by the need for the Health Industry to continue a
process of reform to drive efficiencies into the health care system, improve the quality of
patient care, whilst reducing several issues that were apparent from the lack of important
information that is shared about patients e.g. reducing the rate of hospital admissions due
to issues with prescribed medications. This reform is critical to address the escalating
costs of healthcare that become unsustainable in the medium to long term.
Individuals will control what goes into their My Health Record, and who is allowed to
access it. An individual’s My Health Record allows them and their doctors, hospitals and
other healthcare providers to view and share the individual’s health information to provide
the best possible care.
The ‘My Health Record’ is used by various staff such as System Administrator, Doctor,
Nurse, Pathologist and Patient. In order to convey and demonstrate the rules and
regulations to the users of this system, Commonwealth Government of Australia needs a
security policy.
You are employed as the Security Advisor for the organisation. The task that is handed to
you by the Chief Information Officer now is to create, develop and manage “System
Access Security Policy” for atleast any 3 users of the system.
Complete the following in your security policy:
•
•
•
Plan System Access Security Policy
Develop System Access Security Policy
Manage System Access Security Policy
Part Two
Conducting a Risk Assessment (10 marks)
You will be given a list of organisation in week 3 by your lecturer and you can select any
one organisation from them. The organisation uses various IT systems for its daily
operations. Assume that you are appointed as an IT Systems Auditor for the chosen
organisation and you are asked to provide a risk register must come up for the IT systems
in the organisation.
•
•
•
•
•
•
•
A brief introduction of the organisation and the IT systems
Identify and explain any major risk in the IT systems components
Discuss the consequences of the risk
Inherent risk assessment, that is the assessed, raw/ untreated risk inherent in a process or
activity without doing anything to reduce the likelihood or consequence
Mitigate the risk
Residual risk assessment, that is the assessed, risk in a process or activity in terms of
likelihood and consequence after controls are applied to mitigate the risk.
Create a Risk Register based on the risks identified in the IT systems and prioritise of the
risk using a standardised framework such as the ANSI B11.0.TR3 Risk Assessment
Matrix
Given the fact there is no clear prioritisation framework NOR risk appetite framework, the
risk register is your professional assessment of the likelihood and consequence of the risks
you identify. When preparing your risk register you should think carefully about the assets
the chosen organisation may have and how these may be compromised from the
perspective of Information Security.
Rationale
This assessment task will assess the following learning outcome/s:
•
•
•
•
be able to justify the goals and various key terms used in risk management and assess
IT risk in business terms.
be able to apply both quantitative and qualitative risk management approaches and to
compare and contrast the advantages of each approach.
be able to critically analyse the various approaches for mitigating security risk,
including when to use insurance to transfer IT risk.
be able to critically evaluate IT security risks in terms of vulnerabilities targeted by
hackers and the benefits of using intrusion detection systems, firewalls and
vulnerability scanners to reduce risk.
Marking criteria and standards
All parts in this assessment task will be evaluated against the following criteria:
Part One: Plan, Develop and Manage a Security Policy (10 marks)

Purchase answer to see full
attachment

Don't use plagiarized sources. Get Your Custom Essay on
Colorado State University Healthcare Security System Risk Assessment Part One Plan, Develop and Manage a Security PolicyPart Two Conducting a Risk Asses
Just from $13/Page
Order Essay
Homework Writings Pro
Calculate your paper price
Pages (550 words)
Approximate price: -

Why should I choose Homework Writings Pro as my essay writing service?

We Follow Instructions and Give Quality Papers

We are strict in following paper instructions. You are welcome to provide directions to your writer, who will follow it as a law in customizing your paper. Quality is guaranteed! Every paper is carefully checked before delivery. Our writers are professionals and always deliver the highest quality work.

Professional and Experienced Academic Writers

We have a team of professional writers with experience in academic and business writing. Many are native speakers and able to perform any task for which you need help.

Reasonable Prices and Free Unlimited Revisions

Typical student budget? No problem. Affordable rates, generous discounts - the more you order, the more you save. We reward loyalty and welcome new customers. Furthermore, if you think we missed something, please send your order for a free review. You can do this yourself by logging into your personal account or by contacting our support..

Essay Delivered On Time and 100% Money-Back-Guarantee

Your essay will arrive on time, or even before your deadline – even if you request your paper within hours. You won’t be kept waiting, so relax and work on other tasks.We also guatantee a refund in case you decide to cancel your order.

100% Original Essay and Confidentiality

Anti-plagiarism policy. The authenticity of each essay is carefully checked, resulting in truly unique works. Our collaboration is a secret kept safe with us. We only need your email address to send you a unique username and password. We never share personal customer information.

24/7 Customer Support

We recognize that people around the world use our services in different time zones, so we have a support team that is happy to help you use our service. Our writing service has a 24/7 support policy. Contact us and discover all the details that may interest you!

Try it now!

Calculate the price of your order

Total price:
$0.00

How it works?

Follow these simple steps to get your paper done

Place your order

Fill in the order form and provide all details of your assignment.

Proceed with the payment

Choose the payment system that suits you most.

Receive the final file

Once your paper is ready, we will email it to you.

Our Services

Our reputation for excellence in providing professional tailor-made essay writing services to students of different academic levels is the best proof of our reliability and quality of service we offer.

Essays

Essay Writing Service

When using our academic writing services, you can get help with different types of work including college essays, research articles, writing, essay writing, various academic reports, book reports and so on. Whatever your task, homeworkwritingspro.com has experienced specialists qualified enough to handle it professionally.

Admissions

Admission Essays & Business Writing Help

An admission essay is an essay or other written statement by a candidate, often a potential student enrolling in a college, university, or graduate school. You can be rest assurred that through our service we will write the best admission essay for you.

Reviews

Editing Support

Our professional editor will check your grammar to make sure it is free from errors. You can rest assured that we will do our best to provide you with a piece of dignified academic writing. Homeworkwritingpro experts can manage any assignment in any academic field.

Reviews

Revision Support

If you think your paper could be improved, you can request a review. In this case, your paper will be checked by the writer or assigned to an editor. You can use this option as many times as you see fit. This is free because we want you to be completely satisfied with the service offered.