CIS 349 Course Great Wisdom / tutorialrank.com CIS 349 Course Great Wisdom / tutorialrank.com | Page 21
Choose privacy laws that apply to the organization, and suggest
who is responsible for privacy within the organization.
Develop a plan for assessing IT security for your chosen
organization by conducting the following:
Risk management
Threat analysis
Vulnerability analysis
Risk assessment analysis
Explain how to obtain information, documentation, and
resources for the audit.
Analyze how each of the seven (7) domains aligns within your
chosen organization.
Develop a plan that:
Examines the existence of relevant and appropriate security
policies and procedures.
Verifies the existence of controls supporting the policies.
Verifies the effective implementation and ongoing monitoring
of the controls.