Unit 8 IT4076

docx

School

Capella University *

*We aren’t endorsed by this school

Course

4076

Subject

Information Systems

Date

Jan 9, 2024

Type

docx

Pages

6

Uploaded by CommodorePenguin2708

Report
IT4076 Unit 8 Access Control, Software Development, and Maintenance Policy Policy Assignment 8 - IT4076 Capella University Janie Craig November 25th, 2023 Access Control
IT4076 Unit 8 Access Control, Software Development, and Maintenance Policy Purpose: The policy establishes the Access Control Policy, the levels of access, and the people who must adhere to this policy. Scope: The access control part of this policy advises who can access which data all employees must adhere to this access control policy. Policy: Roles and Responsibilities: 1.0 HR and upper management must be sure to set certain levels of access to the correct parties. Ensuring new hires do not have the same access as upper management with more classified data. Using separation of duties and principle of least privilege. 1.1 Upper management and HR must remove access and remove accounts if an employee is terminated or quits. 1.2 IT and upper management must make sure all of this policy is adhered to with regular monitoring procedures. 1.3 The CIO and upper management must make sure that third party vendors are aware and adhere to this policy.
IT4076 Unit 8 Access Control, Software Development, and Maintenance Policy 1.4 All hospital employees must make sure to log out and not share any password or authentication key to anyone at all. 1.5 All employees are responsible for ensuring the security of their password and authentication keys. 1.6 Only permitted parties are allowed to access data and an employee must not gain entry without the proper access or without prior approval from the proper parties. Compliance: All employees, vendors, and any part of the organization must follow this policy or it may result in civil law action, being terminated, or written up depending on the level of the incident that occurs.
Your preview ends here
Eager to read complete document? Join bartleby learn and gain access to the full version
  • Access to all documents
  • Unlimited textbook solutions
  • 24/7 expert homework help
IT4076 Unit 8 Access Control, Software Development, and Maintenance Policy Software Development and Maintenance Security Purpose: The policy establishes the Software Development Policy which defines requirements for establishing and maintaining protection standards for the company software and the Maintenance Policy for managing the risks and how repairs should be done through a System Maintenance program. Scope: The Software Development part of this policy helps ensure the organization puts the software through a testing process and is as secure as possible and compliant. Policy: Roles and Responsibilities: 1.0 The IT department should have a separation of duties and ensure that the correct software procedures are followed. 1.1 The head of the IT department and HR should ensure that the proper training is done before allowing an IT employee to assist in handling any incident or procedure. 1.2 All IT employees should be aware of the correct software development plan. 1.3 All employees and vendors actions will be monitored and logged as needed.
IT4076 Unit 8 Access Control, Software Development, and Maintenance Policy 1.4 All traffic will be monitored and stored as needed by the IT department. 1.5 The correct departments ensure that the equipment is always ready and reliable in certain conditions. 1.6 Equipment is always collaborated appropriately to ensure it can correctly be used or to correctly diagnose patients. 1.7 “All departments must follow the change management process for change and release through the lifecycle of the system.” Compliance: All employees, vendors, and any part of the organization must follow this policy or it may result in civil law action, being terminated, or written up depending on the level of the incident that occurs.
IT4076 Unit 8 Access Control, Software Development, and Maintenance Policy Sources: https://www.dpie.nsw.gov.au/__data/assets/pdf_file/0014/390110/System-Acquisition,- Development-and-Maintenance-Policy.pdf
Your preview ends here
Eager to read complete document? Join bartleby learn and gain access to the full version
  • Access to all documents
  • Unlimited textbook solutions
  • 24/7 expert homework help