Essentials of MIS (12th Edition)
Essentials of MIS (12th Edition)
12th Edition
ISBN: 9780134238241
Author: Kenneth C. Laudon, Jane P. Laudon
Publisher: PEARSON
Question
Book Icon
Chapter 8, Problem 3RQ
Program Plan Intro

System vulnerability:

  • When huge data amounts are been kept in electronic form, it becomes susceptible to many threats.
  • The information systems in many locations are been interconnected through communication networks.
  • The unauthorized access can occur at many access points in network and is not limited to single location.
  • The data flowing over networks could be accessed; valuable information could be stolen while transmission or data could be altered without authorization.
  • The denial-of-service attacks are launched by intruders to disrupt website operations.
  • Internets are vulnerable than internal networks as it is open to everyone.

Explanation of Solution

Application Controls:

  • Application controls denote specific controls that are exclusive to each application.
  • It includes both manual as well as automated procedures.
  • It ensures that authorized data is been processed by application.
  • The types include:
    • o Input controls:
      • It checks data for correctness as well as completeness while they go in system...

Explanation of Solution

Risk assessment function:

  • A risk assessment would determine risk level to firm if an explicit activity is not controlled properly.
  • The information assets value, vulnerability point, likely problem frequency and damage potential can be determined by business managers.
  • Controls could be added or adjusted to focus on greater risk areas.
  • Security risk analysis would involve determination of what is needed to be protected and the manner to protect.
  • It denotes an examining process for risks of firm and ranking for those risks by severity level.
  • The cost effective decisions are been involved in process...

Explanation of Solution

Security policy, Acceptable use policy and Identity management:

  • A security policy denotes ranking of information risks, identification of acceptable goals of security as well as identification of mechanism to achieve goals.
    • o It drives policies that determine acceptable information resource usage of firm.
    • o It determines access details of company’s information assets.
  • An acceptable use policy denotes acceptable uses of resources of firm and equipment for computing.
    • o It includes desktop, laptop, wireless devices, Internet and telephones.
    • o It clarifies privacy, responsibility of user as well as personal usage for company equipment policies...

Explanation of Solution

Information systems auditing promotes control and security:

  • Information system auditing determines effectiveness of information system security as well as control.
  • An MIS audit would identify all control...

Blurred answer
Students have asked these similar questions
I would like to know the main features about the following three concepts: 1. Default forwarded 2. WINS Server 3. IP Security (IPSec).
map the following ER diagram into a relational database schema diagram. you should take into account all the constraints in the ER diagram. Underline the primary key of each relation, and show each foreign key as a directed arrow from the referencing attributes (s) to the referenced relation.   NOTE: Need relational database schema diagram
What is business intelligence? Share the Business intelligence (BI) tools you have used and explain what types of decisions you made.
Knowledge Booster
Background pattern image
Similar questions
SEE MORE QUESTIONS
Recommended textbooks for you
Text book image
Principles of Information Security (MindTap Cours...
Computer Science
ISBN:9781337102063
Author:Michael E. Whitman, Herbert J. Mattord
Publisher:Cengage Learning
Text book image
Management Of Information Security
Computer Science
ISBN:9781337405713
Author:WHITMAN, Michael.
Publisher:Cengage Learning,
Text book image
Principles of Information Systems (MindTap Course...
Computer Science
ISBN:9781305971776
Author:Ralph Stair, George Reynolds
Publisher:Cengage Learning
Text book image
Principles of Information Systems (MindTap Course...
Computer Science
ISBN:9781285867168
Author:Ralph Stair, George Reynolds
Publisher:Cengage Learning
Text book image
Fundamentals of Information Systems
Computer Science
ISBN:9781305082168
Author:Ralph Stair, George Reynolds
Publisher:Cengage Learning
Text book image
Fundamentals of Information Systems
Computer Science
ISBN:9781337097536
Author:Ralph Stair, George Reynolds
Publisher:Cengage Learning