100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.2 TrustPilot
logo-home
Exam (elaborations)

BTEC IT DATA MODELLING UNIT 5 ASSIGNMENT 2 EXCEL 2023

Rating
-
Sold
-
Pages
97
Grade
A+
Uploaded on
13-06-2023
Written in
2022/2023

BTEC IT DATA MODELLING UNIT 5 ASSIGNMENT 2 EXCEL 2023 ASSIGNMENT FRONT SHEET Qualification BTEC Level 5 HND Diploma in Computing Unit number and title Unit 5: Security Submission date Date Received 1st submission Re-submission Date Date Received 2nd submission Student Name Student ID Class Assessor name Student declaration I certify that the assignment submission is entirely my own work and I fully understand the consequences of plamaking a false declaration is a form of malpractice. Student’s signature Grading grid P5 P6 P7 P8 M3 M4 M5 D2 D3 2  Summative Feedback:  Resubmission Feedback: Grade: Assessor Signature: Date: Internal Verifier’s Comments: Signature & Date: 3 Table of Contents TABLE OF CONTENTS ............................................................................................................................................................... 3 TABLE OF FIGURES .................................................................................................................................................................. 6 LIST OF TABLES........................................................................................................................................................................ 7 A. INTRODUCTION ............................................................................................................................................................. 8 B. (P1) DISCUSS RISK ASSESSMENT PROCEDURES. ............................................................................................................. 9 I. DEFINE RISK & RISK ASSESSMENT........................................................................................................................................ 9 1. Define Risk: ........................................................................................................................................................... 9 2. Define risk assessment......................................................................................................................................... 11 II. EXPLAIN ASSET, THREAT AND THREAT IDENTIFICATION PROCEDURE , GIVE EXAMPLE ........................................................................ 12 1. Asset Identification .............................................................................................................................................. 12 2. Threat Identification ............................................................................................................................................ 13 3. Threat Identification Procedure ........................................................................................................................... 15 Example: ...................................................................................................................................................................... 17 III. EXPLAIN THE RISK ASSESSMENT PROCEDURE ........................................................................................................................ 18 IV. List risk identification steps .................................................................................................................................. 22 C. (P6) EXPLAIN DATA PROTECTION PROCESSES AND REGULATIONS AS APPLICABLE TO AN ORGANIZATION. ................ 22 I. DEFINE DATA PROTECTION .............................................................................................................................................. 22 II. DATA PROTECTION PROCESS WITH RELATIONS TO ORGANIZATION .............................................................................................. 24 III. WHY ARE DATA PROTECTION AND REGULATION IMPORTANT ? .................................................................................................. 24 1. Why is data protection important? ...................................................................................................................... 24 2. Why is data regulation important? ...................................................................................................................... 25 D. (P7) DESIGN AND IMPLEMENT A SECURITY POLICY FOR AN ORGANIZATION. .............................................................. 31 I. DEFINE AND DISCUSS WHAT IS SECURITY POLICY .................................................................................................................... 31 II. GIVE EXAMPLES OF POLICIES ............................................................................................................................................ 33 III. GIVE THE MOST & SHOULD THAT MUST EXIST WHILE CREATING POLICY . ...................................................................................... 37 IV. EXPLAIN AND WRITE DOWN THE ELEMENT OF SECURITY POLICY ................................................................................................. 39 1. Purpose ............................................................................................................................................................... 39 2. Information security objectives ............................................................................................................................ 39 3. Subjects............................................................................................................................................................... 40 4. Data classification ............................................................................................................................................... 40 5. Cognition and behavior ....................................................................................................................................... 40 4 6. Access control permissions and policies................................................................................................................ 41 7. Responsibilities, rights and obligations of employees ........................................................................................... 41 8. Supporting data and operations .......................................................................................................................... 41 9. Government Network Services Policy: .................................................................................................................. 42 10. Vulnerability Scan: ............................................................................................................................................... 42 11. Patch Management: ............................................................................................................................................ 42 12. Data security accountability: ............................................................................................................................... 43 13. System data security policy: ................................................................................................................................. 43 14. Incident Response:............................................................................................................................................... 43 15. Account Monitoring and Control: ......................................................................................................................... 43 16. Acceptable Uses: ................................................................................................................................................. 44 17. Compliance Monitoring: ...................................................................................................................................... 44 V. GIVE THE STEPS TO DESIGN A PARTICULAR SECURITY POLICY ..................................................................................................... 44 Policy definition: ........................................................................................................................................................... 44 Security policy cycle: ..................................................................................................................................................... 45 E. (P8) LIST THE MAIN COMPONENTS OF AN ORGANIZATIONAL DISASTER RECOVERY PLAN, JUSTIFYING THE REASONS FOR INCLUSION. .................................................................................................................................................................... 46 I. DISCUSS WITH EXPLANATION ABOUT BUSINESS CONTINUITY ..................................................................................................... 46 II. LIST THE COMPONENTS OF RECOVERY PLAN. ........................................................................................................................ 47 III. WRITE DOWN ALL THE STEPS REQUIRED IN DISASTER RECOVERY PROCESS .................................................................................... 52 IV. EXPLAIN SOME OF THE POLICIES AND PROCEDURES THAT ARE REQUIRED FOR BUSINESS CONTINUITY . .................................................. 55 1. Forensics Procedures: .......................................................................................................................................... 55 F. (M3) SUMMARIES THE ISO 31000 RISK MANAGEMENT METHODOLOGY AND ITS APPLICATION IN IT SECURITY. ........ 61 HOW DOES ISO 31000 A FAMILY OF STANDARDS RELATING TO RISK MANAGEMENT METHODS APPLY IN IT SECURITY SUMMARIZE YOUR DISCUSSION : ......................................................................................................................................................................................... 61 1. Definition of ISO 31000: ....................................................................................................................................... 61 2. BENEFITS THAT ISO 31000 BRINGS: ...................................................................................................................... 63 3. PRINCIPLE OF ISO 31000: ..................................................................................................................................... 64 .................................................................................................................................................................................... 64 4. Framework of ISO 31000: .................................................................................................................................... 64 5. PROCESS OF ISO 31000: ....................................................................................................................................... 69 G. (M4) DISCUSS POSSIBLE IMPACTS TO ORGANIZATIONAL SECURITY RESULTING FROM AN IT SECURITY AUDIT............ 71 1. DEFINITIONOF SECURITY AUDIT ............................................................................................................................... 71

Show more Read less
Institution
Other
Module
BTEC











Whoops! We can’t load your doc right now. Try again or contact support.

Written for

Document information

Uploaded on
June 13, 2023
Number of pages
97
Written in
2022/2023
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

Content preview

BTEC IT DATA
MODELLING UNIT 5
ASSIGNMENT 2 EXCEL
2023

, ASSIGNMENT FRONT SHEET

Qualification BTEC Level 5 HND Diploma in Computing


Unit number and title Unit 5: Security


Submission date Date Received 1st submission


Re-submission Date Date Received 2nd submission


Student Name Student ID


Class Assessor name


Student declaration

I certify that the assignment submission is entirely my own work and I fully understand the consequences of
making a false declaration is a form of malpractice.


Student’s signature


Grading grid

P5 P6 P7 P8 M3 M4 M5 D2 D3

, Summative Feedback:  Resubmission Feedback:




Grade: Assessor Signature: Date:
Internal Verifier’s Comments:




Signature & Date:




2

, Table of Contents

TABLE OF CONTENTS ............................................................................................................................................................... 3

TABLE OF FIGURES .................................................................................................................................................................. 6

LIST OF TABLES........................................................................................................................................................................ 7

A. INTRODUCTION ............................................................................................................................................................. 8

B. (P1) DISCUSS RISK ASSESSMENT PROCEDURES. ............................................................................................................. 9

I. DEFINE RISK & RISK ASSESSMENT ........................................................................................................................................ 9
1. Define Risk: ........................................................................................................................................................... 9
2. Define risk assessment......................................................................................................................................... 11
II. EXPLAIN ASSET, THREAT AND THREAT IDENTIFICATION PROCEDURE , GIVE EXAMPLE ........................................................................ 12
1. Asset Identification .............................................................................................................................................. 12
2. Threat Identification ............................................................................................................................................ 13
3. Threat Identification Procedure ........................................................................................................................... 15
Example: ...................................................................................................................................................................... 17
III. EXPLAIN THE RISK ASSESSMENT PROCEDURE ........................................................................................................................ 18
IV. List risk identification steps .................................................................................................................................. 22

C. (P6) EXPLAIN DATA PROTECTION PROCESSES AND REGULATIONS AS APPLICABLE TO AN ORGANIZATION. ................ 22

I. DEFINE DATA PROTECTION .............................................................................................................................................. 22
II. DATA PROTECTION PROCESS WITH RELATIONS TO ORGANIZATION .............................................................................................. 24
III. WHY ARE DATA PROTECTION AND REGULATION IMPORTANT ? .................................................................................................. 24
1. Why is data protection important? ...................................................................................................................... 24
2. Why is data regulation important? ...................................................................................................................... 25

D. (P7) DESIGN AND IMPLEMENT A SECURITY POLICY FOR AN ORGANIZATION. .............................................................. 31

I. DEFINE AND DISCUSS WHAT IS SECURITY POLICY .................................................................................................................... 31
II. GIVE EXAMPLES OF POLICIES ............................................................................................................................................ 33
III. GIVE THE MOST & SHOULD THAT MUST EXIST WHILE CREATING POLICY . ...................................................................................... 37
IV. EXPLAIN AND WRITE DOWN THE ELEMENT OF SECURITY POLICY ................................................................................................. 39
1. Purpose ............................................................................................................................................................... 39
2. Information security objectives ............................................................................................................................ 39
3. Subjects............................................................................................................................................................... 40
4. Data classification ............................................................................................................................................... 40
5. Cognition and behavior ....................................................................................................................................... 40




3

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
onlinetutor2025 University of South Africa (Unisa)
View profile
Follow You need to be logged in order to follow users or courses
Sold
250
Member since
2 year
Number of followers
218
Documents
848
Last sold
1 month ago

4.0

17 reviews

5
8
4
4
3
3
2
1
1
1

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their exams and reviewed by others who've used these revision notes.

Didn't get what you expected? Choose another document

No problem! You can straightaway pick a different document that better suits what you're after.

Pay as you like, start learning straight away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and smashed it. It really can be that simple.”

Alisha Student

Frequently asked questions