How JustAnswer Works:
  • Ask an Expert
    Experts are full of valuable knowledge and are ready to help with any question. Credentials confirmed by a Fortune 500 verification firm.
  • Get a Professional Answer
    Via email, text message, or notification as you wait on our site.
    Ask follow up questions if you need to.
  • 100% Satisfaction Guarantee
    Rate the answer you receive.
Ask Steve Herrod Your Own Question
Steve Herrod
Steve Herrod, Masters Degree
Category: Homework
Satisfied Customers: 3308
Experience:  BA (Hons) & MA Qualifications
65126503
Type Your Homework Question Here...
Steve Herrod is online now
A new question is answered every 9 seconds

Due 6/29/13 at 1159pm 1a.Discuss the collection of information

This answer was rated:

Due 6/29/13 at 1159pm

1a.Discuss the collection of information security measures. How often do they need to be collected? What are the downsides of collecting and reporting the measures too frequently or too seldom.

1. What is benchmarking?
2. What is the standard of due care? How does it relate to due diligence?
3. What is a recommended security practice? What is a good source for finding such recommended practices?
4. What is a gold standard in information security practices? Where can you find published criteria for it?
5. When selected recommended practices, what criteria should you use?
6. When choosing recommended practices, what limitations should you keep in mind?
7. What is baselining? How does it differ from benchmarking?
8. What are the NIST-recommended documents that support the process of baselining?
9. What is a performance measure in the context of information security management?
10. What types of measurements are used for information security management measurement programs?
11. According to Dr. Kovacich, what are the critical questions to be kept in mind when developing a measurement program?
12. What factors are critical to the success of an information security performance program?
13. What is a performance target, and how is it used in establishing a measurement program?
14. List and describe the fields found in a properly and fully defined performance measure.
15. Describe the recommended process for the development of information security measurement program implementation.
16. Why is a simple list of measurement data usually insufficient when reporting information security measurements?
17. What is the capability maturity model, and which organization is responsible for its development?
18. What is systems accreditation?
19. What is systems certification?
20. Which reference document describes the new initiative for certification and accreditation of federal IT systems?

Steve Herrod :

Hi, how long does each answer need to be?

Customer:

Not long

Steve Herrod :

Ok - and needed by midnight tonight?

Customer:

Yes

Steve Herrod :

ok - will get those to you before then

Customer:

Thanks

Steve Herrod :

no problem

Steve Herrod :

Here are the answers

Steve Herrod :

Cheers

Steve Herrod :

Steve

Customer:

Hey steve sorry to bother u

Customer:

Im missing question 1a

Steve Herrod :

no problem

Steve Herrod :

let me check

Steve Herrod :

If you try the link now it should be updated

Steve Herrod :

sorry, not sure why it has appeared 3 times

Steve Herrod :

:)

Steve Herrod and 3 other Homework Specialists are ready to help you

Related Homework Questions