Access Control

Discussion (350-400 words):
The Personal Identity Verification (PIV) card is used in non-military government agencies for authentication and identification to gain access to systems, networks, and online resources. These cards, in combination with a personal identification number, meet two-factor requirements. PIV credentials also are designed to help reduce counterfeiting and are tamper-resistant.An authenticator app, such as Google Authenticator, is another method to achieve two-factor authentication. It is a free app available for installation on mobile devices.The U.S. federal government authorizes the use of PIVs as well as authenticator apps, depending on the circumstances.Answer the following question(s):

  1. In what type of situation would an authenticator app provide adequate two-factor authentication for federal government use? Provide rationale or a citation for your answer.
  2. In what type of situation would a PIV be required for federal government use? Provide rationale or a citation for your answer.

Assignment (to be completed in the attached document only):
 

Assignment Requirements

This assignment helps you develop an information classification plan to ensure the privacy and confidentiality of corporate information and ensure that public information is accessible by all. You are provided with a worksheet named “Implementation of an Information Classification Policy” to complete this assignment. Before you begin this assignment, review all that you have learned related to information classification and access control. For this assignment:

  1. Complete the Information Classification Standard Matrix. 

Instructions:

1. Review the information classification standard (Table 1) and the associated job roles list for Acme.

2. In the Information Classification Standard Matrix beginning on page 3, align the information classification standard with appropriate access control based on job roles.

Having Trouble Meeting Your Deadline?

Get your assignment on Access Control completed on time. avoid delay and – ORDER NOW

Table 1: Acme Incorporated Information Classification Standard

Information Classification

Potential Impact

Types of Information

Public

· None or limited

· Mention in local media

· No impact on operations, financial performance, or public image

Published documents, Web pages, newspaper advertisements, non-sensitive, information

Internal Use Only

· Limited impact from negative publicity

· Slight image or financial harm not prolonged or severe in nature

Internal memorandums of operations, continuing contracts, private customer information, short-term operating results, and strategy

Confidential

· More severe than limited

· Impact from negative publicity for up to six months

· Moderate image or financial harm of less than $5 million over 6 to 12 months

Critical and sensitive operating reports, personnel records, pay records, medical records, severe workforce management information, and periodic financial information reported to the public

Restricted

· Severe impairment to public image and financial operations

· Impairs customer and public trust

· More than $10 million loss in three months

· Sustained negative publicity expected for one or more years

· Impairs ability to execute operation and strategic initiatives

Strategic plans, communications with the board of directors or with joint venture boards of directors, internal investigations, strategic expansion plans, and associated workforce management

Acme Incorporated Job Roles

· Chief Executive Officer (CEO)*

· Senior VP of International Acquisitions*

· Executive VP of Marketing*

· VP of Human Resources

· Plant Manager

· Southwest Region General Manager

· Southwest Region Store Manager

· Northwest Region Store Sales Clerk

· Information Security Specialist

· Customer

* Board members

Acme Incorporated Information Classification Standard Matrix

Document to Classify

Public

Internal Use Only

Confidential

Restricted

Who Should Have Access

Monthly terminations and new hires report (company-wide)

Contract for long-term lease in Singapore

China sales forecast with projected revenue based on three-year expansion plan

Northwest Region sales results by product category

Community involvement information published on corporate Intranet released by public affairs

Northwest Region manpower workforce reduction report

Southwest Region weekly store operating results

Document to Classify

Public

Internal Use Only

Confidential

Restricted

Who Should Have Access

Strategic planning documents for changing core organizational functions

Online product catalog

Executive reports to the board of directors

Internal fraud investigation from Southwest Region involving the Southwest Region General Manager

Order Solution Now

Similar Posts