Part 1
1.In your browser, navigate to and read the “Remote Access Policy” template
at https://www.sans.org/information-security-policy/.
2. Using your favorite search engine, locate a remote access policy for a higher
education institution.
3. Using your favorite search engine, locate a remote access policy for a
healthcare provider.
Question:
Write a brief summary of the information during your research. In your summary, focus
on the key elements of the remote access policy. You should also identify any unique
elements of remote access policies for higher education and healthcare institutions.
Be sure to provide links to the remote access policies you identified in steps 2 and 3.
Part2
As you found in your research, different industries have similar but different policies. When
using a policy template, it is important to ensure that the template matches the needs of your
specific industry and business.
1. Review the following risks and threats found in the Remote Access Domain:
o The organization is a local credit union that has several branches
and locations throughout the region.
o Online banking and use of the internet are the bank’s strengths,
given its limited human resources.
o The customer service department is the organization’s most critical
business function.
o The organization wants to be in compliance with the Gramm-Leach-
Bliley Act (GLBA) and IT security best practices regarding its
employees.
o The organization wants to monitor and control use of the internet by
implementing content filtering.
o The organization wants to eliminate personal use of organization-
owned IT assets and systems.
o The organization wants to monitor and control use of the e-mail
system by implementing e-mail security controls.
o The organization wants to implement security awareness training
policy mandates for all new hires and existing employees. Policy
definitions are to include GLBA and customer privacy data
requirements, in addition to a mandate for annual security
awareness training for all employees.
Question:
Identify a security control or countermeasure to mitigate each risk and threat identified
in the Remote Access Domain. These security controls or countermeasures will
become the basis of the scope of the Remote Access Domain policy definition to help
mitigate the risks and threats commonly found within the Remote Access Domain.
Part 3
3. Review the following characteristics of the fictional Healthwise Health Care
Provider:
o Healthwise has several remote health care branches and locations
throughout the region.
o Online access to patients’ medical records through the public
Internet is required for remote nurses and hospices providing in-
home medical services.
o Online access to patients’ medical records from remote clinics is
facilitated through a virtual private network (VPN) and a secure web
application front-end over the public Internet.
o The organization wants to be in compliance with the Health
Insurance Portability and Accountability Act (HIPAA) and IT security
best practices regarding remote access through the public internet.
o The organization wants to monitor and control the use of remote
access by implementing system logging.
o The organization wants to implement a security awareness training
policy mandating that all new hires and existing employees obtain
remote access security training. Policy definition is to include
HIPAA and electronic protected health information (ePHI) security
requirements and a mandate for annual security awareness training
for all remote or mobile employees.
Questions:
Create an organization-wide remote access policy for Healthwise Health Care:
Healthwise Health Care
Remote Access Policy for Remote Workers and Medical Clinics
Policy Statement?
Define your policy verbiage.
Purpose/Objectives?
Define the policy’s purpose as well as its objectives and policy definitions
Scope?
Define whom this policy covers and its scope. What elements, IT assets, or organization-
owned assets are within this policy’s scope?
Standards?
Does the policy statement point to any hardware, software, or configuration standards? If
so, list them here and explain the relationship of this policy to these standards. In this case,
Remote Access Domain standards should be referenced, such as encryption standards and
VPN standards; make any necessary assumptions.
Procedures?
Explain how you intend to implement this policy for the entire organization.
Guidelines?
Explain any roadblocks or implementation issues that you must overcome in this section
and how you will surmount them per defined guidelines. Any disputes or gaps in the
definition and separation of duties responsibility may need to be addressed in this section.
Write a brief summary of the information during your research.
Struggling With a Similar Paper? Get Reliable Help Now.
Delivered on time. Plagiarism-free. Good Grades.
What is this?
It’s a homework service designed by a team of 23 writers based in Carlsbad, CA with one specific goal – to help students just like you complete their assignments on time and get good grades!
Why do you do it?
Because getting a degree is hard these days! With many students being forced to juggle between demanding careers, family life and a rigorous academic schedule. Having a helping hand from time to time goes a long way in making sure you get to the finish line with your sanity intact!
How does it work?
You have an assignment you need help with. Instead of struggling on this alone, you give us your assignment instructions, we select a team of 2 writers to work on your paper, after it’s done we send it to you via email.
What kind of writer will work on my paper?
Our support team will assign your paper to a team of 2 writers with a background in your degree – For example, if you have a nursing paper we will select a team with a nursing background. The main writer will handle the research and writing part while the second writer will proof the paper for grammar, formatting & referencing mistakes if any.
Our team is comprised of native English speakers working exclusively from the United States.
Will the paper be original?
Yes! It will be just as if you wrote the paper yourself! Completely original, written from your scratch following your specific instructions.
Is it free?
No, it’s a paid service. You pay for someone to work on your assignment for you.
Is it legit? Can I trust you?
Completely legit, backed by an iron-clad money back guarantee. We’ve been doing this since 2007 – helping students like you get through college.
Will you deliver it on time?
Absolutely! We understand you have a really tight deadline and you need this delivered a few hours before your deadline so you can look at it before turning it in.
Can you get me a good grade? It’s my final project and I need a good grade.
Yes! We only pick projects where we are sure we’ll deliver good grades.
What do you need to get started on my paper?
* The full assignment instructions as they appear on your school account.
* If a Grading Rubric is present, make sure to attach it.
* Include any special announcements or emails you might have gotten from your Professor pertaining to this assignment.
* Any templates or additional files required to complete the assignment.
How do I place an order?
You can do so through our custom order page here or you can talk to our live chat team and they’ll guide you on how to do this.
How will I receive my paper?
We will send it to your email. Please make sure to provide us with your best email – we’ll be using this to communicate to you throughout the whole process.
Getting Your Paper Today is as Simple as ABC
No more missed deadlines! No more late points deductions!
You give us your assignments instructions via email or through our order page.
Our support team selects a qualified writing team of 2 writers for you.
In under 5 minutes after you place your order, research & writing begins.
Complete paper is delivered to your email before your deadline is up.
Want A Good Grade?
Get a professional writer who has worked on a similar assignment to do this paper for you