The Red Clay CEO tasked the company’s IT Governance Board with developing a set of policies to address IT security requirements

The Red Clay CEO tasked the company’s IT Governance Board with developing a set of policies to address IT security requirements

Learning Goal: I’m working on a cyber security discussion question and need guidance to help me learn.


Week 2: Compliance with Laws and Regulations

Previous Next 

Review the Week 2 readings and the Red Clay Renovations company profile for background information before responding to this discussion question.

The Red Clay CEO tasked the company’s IT Governance Board with developing a set of policies to address IT security requirements (including mandates for protecting privacy) arising from the following “rule” or “standard”:

(a) PCI-DSS (credit card and transaction information)
(b) the HIPAA Security Rule (health related information)
(c) the “Red Flags” Rule (consumer credit information: identity theft prevention).

Choose one of the three sources of regulatory requirements listed above. Write a three-paragraph briefing statement that summarizes the regulatory requirements as they apply to the company’s collection, processing, management, and storage of personal information about Red Clay’s clients. Your briefing statement should identify the specific types of personal information covered by the “rule” or “standard.” Include a compelling argument for why the company needs to adopt guidance policies that will ensure compliance with laws and regulations related to protecting personal information.

Provide in-text citations and references for 3 or more authoritative sources. Put the reference list at the end of your posting.

Answer preview for The Red Clay CEO tasked the company’s IT Governance Board with developing a set of policies to address IT security requirements

PCI
APA

372 Words