Premium Essay

Sec578

In:

Submitted By omccall
Words 1531
Pages 7
SEC 578- Practices Administration Physical and Operation Security
Paper 1
Professor : Dr.Jude Lamour
Submitted by: Otis McCall

Contents

Topic:
1. How do Administrative Controls demonstrate "due care?" 2
2. How does the absence of Administrative Controls impact corporate liability? 4
3. How do Administrative Controls influence the choice of Technical and Physical Controls? 6
4. How would the absence of Administrative Controls affect projects in the IT department? 7

1. How do Administrative Controls demonstrate "due care?" Administrative controls demonstrate due care by putting in place the necessary policies , procedures, and practices to reinforce policies of the organization. These controls are divided up into various elements from access list to control spaces, password and user identification for employees, separation of duties to ensure you mitigate the possibility of theft or take steps directed by management to limit incidents that can be perpetuated by employees. Thus, you cannot guard against collusion but you can have policies and procedures that limit the actual ability to carry out such incidents.
The administrative controls that we will look at provide assurance of confidentiality, integrity, and availability of information assets through guidelines, standards, and best practices and make senior management responsible for providing that direct to employees and customers of and organization, to illustrate management takes administrative controls seriously. Administrative controls fall into two categories

Similar Documents

Premium Essay

Administrative Controls

...Professor Patrick Coyle January 17, 2015 SEC578 Keller Grad School Of Mgmt   How do Administrative Controls demonstrate “due care”? To better answer this question lets define “Administrative Controls” and “Due Care.” Administrative Controls can be the defined as direction or exercise of authority over subordinate or other organizations in respect to administration and support, including control of resources and equipment, personnel management, unit logistics, individual and unit training, readiness, mobilization, demobilization, discipline, and other matters, while Due Care is the degree of care that a person of ordinary prudence and reason (a reasonable man) would exercise under given circumstances. With this understanding we can see that Administrative Controls establish the ground work for an employee to understand and be able to do their job in accordance to the company’s policies and procedures. Administrative controls consist of approved written policies, procedures, standards and guidelines. Administrative controls form the basis for the selection and implementation of logical and physical controls. Logical and physical controls are manifestations of administrative controls. Some industry sectors have policies, procedures, standards and guidelines that must be followed – the Payment Card Industry (PCI) Data Security Standard required by Visa and Master Card is such an example. Other examples of administrative controls include the corporate security policy...

Words: 2056 - Pages: 9