100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached
logo-home
WGU D489 Task 1: passed first submission|2025 Update. $16.39
Add to cart

Other

WGU D489 Task 1: passed first submission|2025 Update.

 2 purchases

WGU D489 Task 1: passed first submission|2025 Update.

Preview 3 out of 22  pages

  • February 15, 2025
  • 22
  • 2024/2025
  • Other
  • Unknown
All documents for this subject (2)
avatar-seller
Wiseman
Cybersecurity
Management - D489

wiseman 14|2|2025 D489

,WGU D489 Task 1: passed first submission|2025 Update.




Cybersecurity Management - D489


Western Governors University

Flex Vaughn

11/11/2024

, A. Summarize the gaps that exist currently in the company’s security framework as
described in the attached “Independent Security Report.”


The gaps that currently exist in the company’s security framework are as follows

Lack of alignment with security best practices and industry standards:

The company’s security program lacks an approach that covers securing and protecting

organizational assets, Security of Payment Card data and privacy protection for customers

located in the European Union. SAGE books lack policy elements that outline acceptable use,

mobile device poly, secure passwords etc. The company also processes card payments and

should be abiding by the PCI DSS Standard requirements but SAGE books does not have any

documentation stating that they are following these standards or accept these payments in

accordance with PCI DSS. Finally, SAGE does not currently have any specific measures to

protect the collection, storage and use of data of their customers in the European Union as

outlined in the GDPR.

Understaffed security team:

SAGE books currently has a security team that meets operational security goals but they

do not have a sufficient Governance Risk and Compliance team. This could lead to a lapse in

compliance in regulations such as GDPR, FISMA or PCI DSS, which could then lead to lawsuits

and sanctions.

Inadequate cybersecurity awareness program:

The current cybersecurity awareness training is Ad Hoc meaning, on an as needed

basis. Furthermore, only a quarter of new hires and only 10% of current employees took the

training. The training content also does not meet requirements outlined in best practices or

standards.

The benefits of buying summaries with Stuvia:

Guaranteed quality through customer reviews

Guaranteed quality through customer reviews

Stuvia customers have reviewed more than 700,000 summaries. This how you know that you are buying the best documents.

Quick and easy check-out

Quick and easy check-out

You can quickly pay through credit card or Stuvia-credit for the summaries. There is no membership needed.

Focus on what matters

Focus on what matters

Your fellow students write the study notes themselves, which is why the documents are always reliable and up-to-date. This ensures you quickly get to the core!

Frequently asked questions

What do I get when I buy this document?

You get a PDF, available immediately after your purchase. The purchased document is accessible anytime, anywhere and indefinitely through your profile.

Satisfaction guarantee: how does it work?

Our satisfaction guarantee ensures that you always find a study document that suits you well. You fill out a form, and our customer service team takes care of the rest.

Who am I buying these notes from?

Stuvia is a marketplace, so you are not buying this document from us, but from seller Wiseman. Stuvia facilitates payment to the seller.

Will I be stuck with a subscription?

No, you only buy these notes for $16.39. You're not tied to anything after your purchase.

Can Stuvia be trusted?

4.6 stars on Google & Trustpilot (+1000 reviews)

73118 documents were sold in the last 30 days

Founded in 2010, the go-to place to buy study notes for 15 years now

Start selling
$16.39  2x  sold
  • (0)
Add to cart
Added