This assignment has 2 sections each section should have 200-225 words totally 400-450 words answering the questions. The references are below
Section 1 – Describe a simple 4-step decision-making process to use in determining appropriate risk countermeasures, mitigation, or cost strategies. Discuss how ethics apply within this process. Discuss challenges that can arise throughout this decision-making process, and explain how you would manage the challenges.
Section 2 – Many employees perceive information security as a hindrance to their productivity. How would you communicate the importance of information security to employees to enable them to aid in the managing of risks in the organization? Provide a specific example to illustrate your ideas.
Sources
1) – PDF attached – Wheeler, E. (2011). Security risk management: Building an information security risk management program from the ground up. Waltham, MA: Syngress. ISBN-13: 9781597496155
Building an Enterprise Security Program in Ten Simple Steps,” by Dattatreya, from CIO (2008).
URL:
http://www.cio.com/article/2432981/risk-management/building-an-enterprise-security-program-in-ten-simple-steps.html

For This or a Similar Paper Click Here To Order Now