1. In 2-3 brief paragraphs, discuss the pros and cons of FISMA with references.
A. Describe and discuss the objectives of policy-makers
B. Describe and discuss the general problems that limit the effectiveness of documents that try to govern Cybersecurity.
C. Discuss ideas that there are for improving national security in light of these issues?
2. In 2-3 brief paragraphs with references.
A. Discuss the techniques that your workplace uses for quantifying information security losses?
B. What do you think they should use and why?
3. In 2-3 brief paragraphs with references.
A. If you are (or were) working for a federal government agency, discuss how well does (or did) your workplace follow FISMA and categorize assets based on FIPS199?
B. Who is responsible for following FIPS 200 and SP800-53 recommendations?
C. Discuss how well have they been implemented?
4.
In 2-3 brief paragraphs with references.
State whether you agree or disagree with the following statement and explain your reasoning: "Not all federal agencies need to follow FISMA or NIST recommendations for maintaining cybersecurity. After all, if the cyber-infrastructure of the Equal Employment Opportunity Commission (EEOC) is attacked, no real harm is done to anyone except the complainants."
Document Preview:
Topic #1 In 2-3 brief paragraphs, discuss the pros and cons of FISMA with references. A. Describe and discuss the objectives of policy-makers B. Describe and discuss the general problems that limit the effectiveness of documents that try to govern Cybersecurity. C. Discuss ideas that there are for improving national security in light of these issues? Topic #2 In 2-3 brief paragraphs with references. A. Discuss the techniques that your workplace uses for quantifying information security losses? B. What do you think they should use and why? Topic #3 In 2-3 brief paragraphs with references. A. If you are (or were) working for a federal government agency, discuss how well does (or did) your workplace follow FISMA and categorize assets based on FIPS199? B. Who is responsible for following FIPS 200 and SP800-53 recommendations? C. Discuss how well have they been implemented? Topic #4 In 2-3 brief paragraphs with references. State whether you agree or disagree with the following statement and explain your reasoning: "Not all federal agencies need to follow FISMA or NIST recommendations for maintaining cybersecurity. After all, if the cyber-infrastructure of the Equal Employment Opportunity Commission (EEOC) is attacked, no real harm is done to anyone except the complainants."