Question: Cybersecurity Risk Management The case study includes some responses to questions as part of a preliminary audit conducted. There is a reference to cybersecurity third-party

  1. Cybersecurity Risk Management

The case study includes some responses to questions as part of a preliminary audit conducted. There is a reference to cybersecurity third-party risk and an incident that involved the multinational retailer Target. You are to conduct some research on this incident and address the following:

  • Why is a cyberattack on a retailer being referenced as important in a cybersecurity audit for a university? Is there any element or response in the preliminary audit that causes you immediate concern with regards to third party risk? Use the experience of Target to address this activity.
  • What risk management framework(s) would be most appropriate for USS? Explain your decision based on what you have read from and the requirements that you believe USS would need to address.
  • Based on the previous activities and what you have read, develop a preliminary and brief Risk Assessment and Management Outline specifically for USS. Be sure to include:
    • A risk management processes
    • A risk identification and analysis processes (e.g., prioritising risk, a very brief TVA worksheet example specific to USS and risk likelihood/impact assessment example specific to USS)

Word limit: 600 words maximum

Step by Step Solution

There are 3 Steps involved in it

1 Expert Approved Answer
Step: 1 Unlock blur-text-image
Question Has Been Solved by an Expert!

Get step-by-step solutions from verified subject matter experts

Step: 2 Unlock
Step: 3 Unlock

Students Have Also Explored These Related Databases Questions!