You are a security professional for a large, private health care organization. Users have access to file and application servers, as well as data storage facilities that conta
Need help with this assignment?Get an original answer from a qualified tutor — from $10/page.
Get it written →
You are a security professional for a large, private health care organization. Users have access to file and application servers, as well as data storage facilities that contain customer health information and personally identifiable information (PII).
Sean, your manager, has been asked to provide the latest version of the organization’s incident response policy. To his knowledge, no policy exists. He has asked you to research and create an incident response policy.
For this assignment:
1. Look for at least two incident response policies for organizations of a similar type to your organization.
2. Download NIST “Computer Security Incident Handling Guide” SP 800-61 Rev 2 located at https://www.nist.gov/publications/computer-security-incident-handling-guide.
3. Based on your research, create an initial draft of a high-level incident response policy for your organization. Consider Health Insurance Portability and Accountability Act (HIPAA) and other health care–related compliance requirements.
4. Create a summary report that includes the draft policy and justifies the content you included in the draft policy.
5. Provide citations for your sources.
Get a plagiarism-free answer to this question
Send us your instructions and we’ll match you with the best writer in your subject.
- 100% human-written, zero AI
- Turnitin report included
- Confidential — we never share your data
- Free revisions & refunds