Project 1: Cybersecurity for OPEN Data

Project 1: Cybersecurity for OPEN Data

Scenario:

A federal agency has asked your cybersecurity consulting firm to provide it with a research report that examines the issues of usefulness and security regarding Open Data services. The report is intended for a group of executives at the agency who are currently involved in converting paper-based data sets and data request forms to digital formats for distribution via digital government websites and mobile applications. This report is critical as the agency head has received inquiries from Congressional staff members who are conveying concerns that various elected officials have about potential issues with the integrity and authenticity of downloaded data. The agency’s executives were also surveyed and they provided the following security risks and related items in a list of concerns for the planned conversion to an Open Data delivery method:

  1. Confidentiality / Privacy (ensuring proper redaction of personally identifiable information from government data sets)
  2. Integrity (ensuring data sets are unchanged when moved from back-end servers to front-end, customer facing apps and websites)
  3. Authenticity (origin of data is known and can be verified / proven)
  4. Availability (reliability) of the Open Data service (mobile apps, website, network infrastructure)
  5. Non-repudiation of data sets (assurance that the originating source cannot deny having provided the data or data set)

Research:

  1. Read / Review the weekly readings for weeks 1-4 including readings marked as “optional” or “review.”
  2. Research the federal government’s OPEN Data mandate. Here are some sources that you may find useful:
    1. Open Data Policy-Managing Information as an Asset – OMB Memorandum M-13-13 (PDF file is in the week 2 readings). This Memorandum includes significant discussion of security issues and policy solutions including references to FIPS 199 and NIST SP-800-53)
    1. https://www.data.gov
    1.  https://www.data.gov/privacy-policy#data_policy (see sections on Security, Privacy, and Data Quality and Retention)  
    1. Guidance for Providing and Using Administrative Data for Statistical Purposes – OMB Memorandum M-14-06 (PDF file is in the week 2 readings). This Memorandum includes discussion of privacy and security issues arising from the use of information collected for statistical purposes (e.g. the Census, employment, economic data, etc.).
  3. Research how government information, e.g. OPEN Data, is used by businesses and the general public. Here are some sources to get you started:
    1.  Building on a year of open data: progress and promise https://blogs.microsoft.com/on-the-issues/2021/04/29/open-data-campaign-anniversary-review/
    1. Open Data Day: Resources https://opendataday.org/#resources
    1. 16 Innovative Applications and Businesses Created with Open Data https://medium.com/datapace/16-innovative-applications-and-businesses-created-with-open-data-9927c953e9d2
    1. 27 Open Data Applications Ideas https://www.pinterest.com/socrata/open-data-applications/
  4. Research the issues that can arise when businesses depend upon the confidentiality, integrity, availability, authenticity, and non-repudiation of government provided Open Data. Suggested sources include:
    1. Authenticating Digital Government Information https://scholarship.richmond.edu/cgi/viewcontent.cgi?article=1954&context=law-faculty-publications
    1. Legal and Institutional Challenges for Opening Data Across Public Sectors https://ezproxy.umgc.edu/login?url=https://search.ebscohost.com/login.aspx?direct=true&db=iih&AN=97430297&site=eds-live&scope=site
    1. Risk Analysis to Overcome Barriers to Open Data https://ezproxy.umgc.edu/login?url=https://search.ebscohost.com/login.aspx?direct=true&db=poh&AN=93550378&site=eds-live&scope=site
    1. Reconciling Contradictions of Open Data Regarding Transparency, Privacy, Security and Trust https://ezproxy.umgc.edu/login?url=https://search.ebscohost.com/login.aspx?direct=true&db=iih&AN=97430299&site=eds-live&scope=site
  5. Find five or more best practice recommendations for ensuring the security (confidentiality, integrity, availability, authenticity, non-repudiation) of information provided by the federal government through its OPEN Data initiative. Note: For the purposes of this assignment, you may treat “licensing” concerns as an “availability” issue.

Write:

Write a five to eight (5-8) page research report which includes a summary of your research. You should focus upon clarity and conciseness more than length when determining what content to include in your paper. At a minimum, your summary must include the following:

  1. An introduction or overview of OPEN Data which provides definitions and addresses the laws, regulations, and policies which require federal agencies to identify and publish datasets and information collections. Discuss the role of the executive branch’s Open Data / Open Government policies in making data available via Data.Gov. This introduction should be suitable for an executive audience.
  2. A separate section in which you discuss the value (benefits) of Open Data. This section should provide several specific examples of how government provided Open Data is being used by businesses and the general public.
  3. A separate section in which you address security issues for Open Data (confidentiality, integrity, availability, authenticity, and non-repudiation). Focus on how these issues can impact the availability and usefulness of Open Data. You should also discuss how these issues are currently being addressed by the U.S. federal government. Provide examples of issues and mitigations or solutions.
  4. A section in which you address best practice recommendations for ensuring the confidentiality, integrity, availability, authenticity, and non-repudiation of Open Data. Your recommendations should address use of the NIST guidance for risk management including security and privacy controls.
  5. A separate section in which you summarize your research and recommendations.

Submit For Grading

Submit your white paper in MS Word format (.docx or .doc file) using the Project 1 assignment in your assignment folder. (Attach the file.)

Additional Information

  1. Consult the grading rubric for specific content and formatting requirements for this assignment.
  2. Your 5 to 8 page research report should be professional in appearance with consistent use of fonts, font sizes, margins, etc. You should use headings and page breaks to organize your paper.
  3. Your paper should use standard terms and definitions for cybersecurity.  
  4. The CSIA program recommends that you follow standard APA formatting since this will give you a document that meets the “professional appearance” requirements. APA formatting guidelines and examples are found under Course Resources. An APA template file (MS Word format) has also been provided for your use CSIA_Paper_Template(TOC+TOF,2021).docx. 
  5. You must include a cover page with the assignment title, your name, and the due date. Your reference list must be on a separate page at the end of your file. These pages do not count towards the assignment’s page count. 
  6. You should write grammatically correct English in every assignment that you submit for grading. Do not turn in any work without (a) using spell check, (b) using grammar check, (c) verifying that your punctuation is correct and (d) reviewing your work for correct word usage and correctly structured sentences and paragraphs. 
  7. You must credit your sources using in-text citations and reference list entries. Both your citations and your reference list entries must follow a consistent citation style (APA, MLA, etc.).

Place this order or similar order and get an amazing discount.

Simple Steps to get your Paper Done
For Quality Papers

Cybersecurity Part I Assignment

Cybersecurity Part I Assignment

As a nurse or healthcare professional, it is important to realize that cybersecurity is a real phenomenon in healthcare. The Internet of Things (I.o.T.) has grown over the years allowing many medical devices and consumer wearables to interconnect with hospital EHR. However, the current state of security in many medical devices allow hackers easy access to steal massive amounts of sensitive data from healthcare providers’ systems. If needed, review the week two Discussion video which includes security concerns (Todd Coleman on health tech tattoos). It is vital that health care stay ahead of the security curve at the cusp of an explosion of personal, wearable technology.

Evaluate the need of securing the I.o.T. in Healthcare.

Include the following aspects in the assignment:

1) Use the security assessment template created as part of DQ 1

2) Create recommendations on how to address each of the risks identified on the template

3) Place these risks at an Enterprise level (use prior lecture on Enterprise resources provided in the text, weekly readings, and article above)

4) Assess the risk from an individual, process, and technology standpoint.

5) This is not a formal paper and there is no minimum length. Each bullet must be thoroughly explored.

6) At all times, proper sentence structure, grammar, and spelling are required. Grammarly is a free tool to assist you. All references used must be placed.

Cybersecurity Part II Assignment

The final project for this course will be created each week. Each assignment will lead to a second assignment that adds to the PPT slide deck. In this manner, you create the final project as you progress through the course. This model provides for deeper learning and a more rigorous final project.

Create PPT slides based upon assignment part I.

1) Include the following aspects in the assignment:

2) Construct 5 PPT slides to illustrate your content and tools from part 1

3) Add speakers notes as needed

4) Follow the rules of good PPT slide construction

5) Submit the slides for grading and feedback

6) File to slides to add to the final presentation

Place this order or similar order and get an amazing discount.

Simple Steps to get your Paper Done
For Quality Papers