Recent Question/Assignment

Task
Innovartus Technologies Inc wishes to use Google App Engine to drive its voice commands, simple gestures with Webcam and touching screen features.

You have been assigned the task of providing Innovartus with both a Risk Management assessment and a Security assessment for this proposed software and programming platform.

1. Provide an Information Security assessment on your chosen provider using the techniques proposed by Ramgovind et al, and the ASD Cloud Computing Security Considerations as your primary references. This assessment should be no more than 2 pages.

2. Provide a Risk Management assessment for your chosen provider using the Threat and Risk Assessment Questionnaire (White, P. 2015), as a template. You are to complete only the following sections of the template:

Section 2. Privacy Focus: 2.4, 2.6, 2.9, 2.11 and 2.13.
Section 5. Application Focus: 5.1, 5.2, 5.3, 5.4, 5.5, 5.8, 5.12 and 5.13.
Section 6. Data Focus: 6.5, 6.7, 6.9, 6.11, 6.13 and 6.20.
Section 7. Identity Management: A: 7.3 and 7.9. B: 7.5, 7.6 and 7.8
Section 11. Cloud Services: 11.1, 11.6, 11.9, 10.10 and 11.16

Each section is to be completed with only the following detail:
a) Is the question applicable: yes, no or NA
b) What do you think are the likely consequences of the risk? (see Appendix B, Consequences for the term to use)
c) What do you think is the likelihood of the risk occurring? (see Appendix B, Likelihood for the term to use)
d) What is the risk rating for this question? (see Appendix B, Risk Rating for the risk rating)

3. Provide a covering one page executive summary to Innovartus board for these two documents (question 1 and 2) and summary the risk management and security benefits and drawbacks of the proposed software framework running on cloud.

Rationale
This assessment will cover the following objectives:
Be able to research and apply suitable cloud service delivery on a required case;
Be able to identify the infrastructure, platform and service information security risk;
Be able to measure, indicate and categorise the risk level for cloud service models.
Marking criteria
Question Marks
Executive Summary (question 3) 10
Information Security Assessment (question 1) 20
Risk Management Assessment (question 2) 20
Total 50
Spelling, Grammar, Presentation (up to -5 marks)
APA Referencing (up to -5 marks)
Assessment Marking Guide
Question HD DI CR PS FL
Executive Summary
(Q3)
Clear & comprehensive summary of Security and Risk assessments that highlights all major issues Detailed summary of Security and Risk assessments that highlights most major issues Good summary of Security and Risk assessments that highlights many major issues Adequate summary of Security and Risk assessments that highlights some major issues Inadequate or incomplete summary of Security and Risk assessments that highlights few or no major issues
Information Security Assessment
(Q1)
Clear, comprehensive assessment of InfoSec issues, critical points identified & discussed, Detailed assessment of InfoSec issues, most critical points identified & discussed, Good assessment of InfoSec issues, many critical points identified & discussed, Adequate assessment of InfoSec issues, some critical points identified & discussed, Inadequate or incomplete assessment of InfoSec issues, few or no critical points identified & discussed,
Risk Management Assessment
(Q2)
Clear, comprehensive description of Risk Management issues, critical points identified & discussed, Detailed description of Risk Management issues, many critical points identified & discussed, Good description of Risk Management issues, many critical points identified & discussed, Adequate description of Risk Management issues, some critical points identified & discussed, Inadequate or incomplete description of Risk Management issues, critical points identified & discussed,
Spelling, Grammar, Presentation Up to 5 marks may be deducted for poor presentation, spelling and grammar.
APA Referencing
Up to 5 marks may be deducted for not providing or following the proper APA style of referencing or in-text references.
Note that the guide for APA referencing is provided in the Resource Section of the ITC561 Interact site