One of the responsibilities of a Security Administrator is to create and document policies that protect the organization and guide users to making smart decisions. In this assignment you will build a handbook that can be used for such a purpose. The NIST’s Special Publications Website, a government operated Website, provides several documents for you to review in order to see examples that may be helpful to start this assignment (https://csrc.nist.gov/publications/PubsSPs.html).
Other helpful Websites for this assignment include:
Write a twelve to eighteen (12-18) page Security Administrator’s handbook including policies tailored to your work environment or for a business environment with which you are familiar. You may select a fictitious name for your organization for the purpose of this paper. Do not duplicate your company’s existing handbook. Create your own unique work based on what you have learned in this course. There will be two (2) major sections of the handbook: Main Body and Policies.
Section 1: Main Body
In four to six (4-6) pages total, develop the basic procedures and guidelines that the organization must address to properly secure its corporate network and information assets in the followings seven (7) items:
Network Architecture and Security Considerations
Remote Access Security
Laptop and Removable Media Security
Vulnerability and Penetration Testing
Guidelines for Reviewing and Changing Policies
Section 2: Policies
Develop the policies section of the handbook and include two to three (2-3) pages for each policy in which you define the policies used by the organization identifying the unique requirements of your industry. It must include, at a minimum, the following four (4) security policies:
Acceptable Use Policy
Incident Response Policy
User Awareness and Training Policy
To organize your policies and to give your policies structure, follow this sequential format:
Procedures and Guidelines
Review and Change Management
Use at least four (4) quality resources in this assignment. Note: Wikipedia and similar Websites do not qualify as quality resources.