Question: Create an Incident Response Policy Learning Objectives and Outcomes Create an incident response policy for a health care organization. Explore policy creation for incident response
Create an Incident Response Policy
Learning Objectives and Outcomes
Create an incident response policy for a health care organization.
Explore policy creation for incident response for a health care organization.
Scenario
You work for a large, private health care organization that has server, mainframe, and RSA user access.
Sean, your manager, has been asked to provide the latest version of the organizations incident response
policy. To his knowledge, no policy exists. He has asked you to research and create an incident response
policy over the weekend.
Assignment Requirements
Look for at least two incident response policies for organizations of a similar type to your organization. In
addition, download NIST Computer Security Incident Handling Guide, rev2 SP800-61 located at
http://csrc.nist.gov/publications/nistpubs/800-61rev2/SP800-61rev2.pdf
.
Based on your research, create an initial draft of an incident response policy for your organization.
Consider HIPAA and other health care-related compliance requirements. Create a summary report that
justifies the content you included in the draft policy. Reference your research so that Sean may add or
refine this report before submission to senior management.
Step by Step Solution
There are 3 Steps involved in it
Get step-by-step solutions from verified subject matter experts
