[SOLVED] As the internet and computing technology grows

Within the Discussion Board area, write 400–600 words that respond to the following questions with your thoughts, ideas, and comments. This will be the foundation for future discussions by your classmates. Be substantive and clear, and use examples to reinforce your ideas.

As you continue on with the implementation of a security plan into the organization, you realize that inventing one from scratch will consume a lot of time and resources. Instead, you want to investigate the possibility of utilizing an existing framework. Take this opportunity to describe at least 3 security frameworks that can be used to implement a security program. After the descriptions, choose 1 that you consider to be the most appropriate to your organization, and explain why. Make sure to use at least 1 outside source, and cite it using APA style.

Expert Answer

As the internet and computing technology grows, there is a need for all organizations to set frameworks that will help in the implementation of security programs. An organization could adopt various frameworks as a guide to creating procedures and security protocols. The first most common framework is the NIST Framework, which is used for improving critical infrastructure security. The National Institute of Standards Technology (NIST) Cyber Security Framework is meant to manage and mitigate cybersecurity risks within an organization. It is a flexible system and can also be implemented by non-critical infrastructure as well as critical infrastructures. ISO (International Standards Organization) 27001 is an international standard that describes the best practices when implementing an information security management system. Companies that adopt the framework get accredited, showing that they follow the best practices in data management.

The payment Card Industry’s Data Security Standard (PCI DSS) Framework is used to protect companies that deal with credit card information from consumers. The framework improves the way that transactions with credit cards are carried out. It secures the process of payments. Payment cards are essential in modern commerce and the cashless world that businesses are moving into. The National Institute of Standards and Technology (NIST) SP 800-53 is a framework that is required for any organization that deals with government systems or that supports such systems. Government systems contain useful and very sensitive information and require high levels of security. Federal agencies and other government contractors handle sensitive information that affects the security of the country. The Framework ensures security and only authorized access to such information.

From the list of selected frameworks, the PCI DSS would be the most appropriate for my organization. The organization deals with consumers and does a lot of eCommerce activities. Such activities include online and card payment methods, which require the recording of consumers’ credit card data. In the past few years, companies have faced legal liabilities and obligations to clients who have had their card information breached by hackers or other internet criminals. For the above reason, the PCI DSS framework will ensure that the organization has an excellent security protocol to protect client credit card information from malicious attacks. The PCI DSS is also helping build trust between the organization and its clients. The clients are assured that their data will be safe and private. Securing and transmitting payment details is critical for the success of e-commerce businesses. The framework helps prevent data breaches and also puts the security of the client and organization first. The PCI DSS requires organizations to have multiple security protocols and firewalls to ensure that data is always secure.

Looking to get Essay writing help for this assignment? Get custom essay for 15% OFF using coupon code “NEW15” or Buy Used Solution for same paper for less!