Purpose of the assignment.
To clearly show strong evidence of what was learned in IS250. Please see the bottom of the assignment to tips on how to score highly on this assignment.
Â
Please note that this assignment is worth 10% of your IS250 final grade.
Â
Assignment background
A fictional organization that manufactures medical equipment (feel free to choose your own name for the organization) is soliciting bids to hire someone to conduct a top-to-bottom Computer and Network security audit and to develop policy to enhance their Computer and Network security posture. You are charged with writing a proposal so your company can bid on and hopefully win the contract to conduct the security audit.
This paper should be written as a proposal to win the contract to conduct the Computer and Network security audit. The proposal should contain specific details of different Computer and Network topics/security topics, the risks of those topics, what you propose to audit as well as
your thoughts/philosophies on âhardeningâ the Computer and Network security posture of this medical equipment company
Assignment detail
You are to write a proposal to be submitted to the fictional Medical equipment company to win a contract to conduct a top-to-bottom computer and security audit of the organization along with providing recommendations for improving their computer and network security posture.
Your proposal should include the following sections:
1) Cover page
2) Introduction
3) Audit details
4) Expectations
Section details
1) Introduction â Basic introduction of why you are submitting this proposal â (15) points
a. What is the purpose of/why are you submitting this proposal?
b. What is the background of your company?
i. Where is your business based?
ii. How long have you been in business?
iii. What types of IT professionals are on your staff?
iv. Do any of your staff hold industry certifications? If so how many and what certifications do they hold?
v. How many/what types of Computer and Network security audits has your organization performed?
vi. What types of organizations/industries have you audited before?
c. What is meant by the term âComputer and Network securityâ?
d. What is your philosophy/Why do you feel that conducting a Computer and Network security audit is important?