BU415 Chapter Notes - Chapter 13: It Risk Management, Malware, Phishing

44 views3 pages
23 Mar 2020
School
Department
Course
Professor

Document Summary

It risk management and cybersecurity: why is cybersecurity not an it problem, managers should care about it because of the threats and implications of breaches. Investing in cybersecurity is a negative deliverable it has no roi and doesn"t produce revenue so historically, it hasn"t been cared about. Insurance or outsourcing security: the internal threat. Internal malicious behaviour: disgruntled employees, harder to detect because their actions can go undetected for a long time. Impossible to prepare for: careless behaviour, the external threat. Identify: understand context in which organization operates in, need to tailor efforts to distinct requirements of each firm, protect, things like restricting access to certain things and using control systems, detect: Implement ways to identify cybersecurity breaches and events: ex. Using monitoring tools: recover, define appropriate measures to restore the compromised services. Internal cybersecurity threats: develop policies and auditing standards and culture to ensure compliance, monitoring, monitor and limit access to dangerous websites, external cybersecurity threats.

Get access

Grade+20% off
$8 USD/m$10 USD/m
Billed $96 USD annually
Grade+
Homework Help
Study Guides
Textbook Solutions
Class Notes
Textbook Notes
Booster Class
40 Verified Answers
Class+
$8 USD/m
Billed $96 USD annually
Class+
Homework Help
Study Guides
Textbook Solutions
Class Notes
Textbook Notes
Booster Class
30 Verified Answers

Related Documents