Geschreven door studenten die geslaagd zijn Direct beschikbaar na je betaling Online lezen of als PDF Verkeerd document? Gratis ruilen 4,6 TrustPilot
logo-home
Overig

D489 DEN1 Task 1: Cybersecurity Management Plan

Beoordeling
-
Verkocht
2
Pagina's
8
Geüpload op
25-06-2025
Geschreven in
2024/2025

This comprehensive cybersecurity management plan addresses the major gaps and vulnerabilities identified in the fictional organization "SAGE Books." The document includes detailed mitigation strategies aligned with PCI DSS and GDPR compliance, security awareness training, role-based responsibilities, and policy development. It outlines improvements needed in incident response, business continuity planning (BCP), and security governance. Students will find detailed examples of policy frameworks, security threat analysis, recovery time objectives (RTOs), and NIST-aligned procedures. This is an ideal reference for WGU D489 students preparing DEN1 Task 1 or anyone looking to understand practical applications of compliance, risk mitigation, and cybersecurity planning.

Meer zien Lees minder
Instelling
Vak

Voorbeeld van de inhoud

DEN1 TASK 1:
CYBERSECURITY
MANAGEMENT PLAN
Dorian Stanfield




6/25/2025
Cybersecurity Management - D489

, A. Summary of Gaps
Per the Independent Security Report, SAGE Books has numerous critical security gaps
within its plaguing its security framework. The organization's present security infrastructure does
not align with industry standards or best practices. The infrastructure also lacks crucial policies
covering AUP, MDM, secrets management, and protection of personally identifiable information
(PII). Additionally, SAGE Books is also noncompliant with PCI DSS, lacking formalized
policies and procedures necessary for managing payment card data securely.
Additional deficiencies exist regarding GDPR compliance. Presently there are no
proactive measures in place to safeguard the personal data of EU citizens, thus failing to meet
GDPR requirements. The organization's security proficiency is also lacking in sufficiency. The
existing team lacks key expert subject matter personnel who are essential for effectively
managing, implementing, and enforcing regulatory compliance.
Security awareness training at SAGE Books is insufficient and is not aligned with
recommended PCI DSS and NIST best practices. Additionally, the Incident Response Plan is
inadequate, lacks clearly defined roles and responsibilities, incident detection handling and
analysis. Lastly, the standing Business Continuity Plan is ineffective, as it fails to thoroughly
address prospective natural disaster scenarios and it also lacks comprehensive recovery
strategies.



B. Mitigation Strategies
To address the security gaps identified in the security report, SAGE Books should employ
several vital mitigation strategies. For starters, the organization must create a comprehensive
security policy aligned with PCI DSS and GDPR best practices. This involves a clear
understanding of the regulatory obligations related to customer data handling. It also involves the
conduction of thorough risk assessments focused on the fortification of cardholders and EU
citizen data, establishing detailed AUP policies, MDM, secure passwords, and personal
identifiable information protection.
Guaranteeing PCI DSS compliance requires numerous actions. SAGE Books must secure
its network through firewalls, ACL’s, security devices, and endpoint protection software. The
organization should also implement system hardening practices, implement robust encryption
methods, maintain asset inventories, and safeguard cardholder data during data in transit.
Moreover, deploying, auditing, and updating antivirus software regularly, alongside instituting a
vulnerability management process, will aid in the identification and remediation of potential
threats swiftly. Access to sensitive information must be strictly regulated based on the principle
of least privilege, employing MFA, and strong cryptographic measures. Systematic scans and

Geschreven voor

Instelling
Vak

Documentinformatie

Geüpload op
25 juni 2025
Aantal pagina's
8
Geschreven in
2024/2025
Type
OVERIG
Persoon
Onbekend

Onderwerpen

€16,39
Krijg toegang tot het volledige document:

Verkeerd document? Gratis ruilen Binnen 14 dagen na aankoop en voor het downloaden kun je een ander document kiezen. Je kunt het bedrag gewoon opnieuw besteden.
Geschreven door studenten die geslaagd zijn
Direct beschikbaar na je betaling
Online lezen of als PDF

Maak kennis met de verkoper
Seller avatar
dorianstanfield

Maak kennis met de verkoper

Seller avatar
dorianstanfield Western Governers University
Volgen Je moet ingelogd zijn om studenten of vakken te kunnen volgen
Verkocht
5
Lid sinds
1 jaar
Aantal volgers
0
Documenten
4
Laatst verkocht
3 maanden geleden

0,0

0 beoordelingen

5
0
4
0
3
0
2
0
1
0

Waarom studenten kiezen voor Stuvia

Gemaakt door medestudenten, geverifieerd door reviews

Kwaliteit die je kunt vertrouwen: geschreven door studenten die slaagden en beoordeeld door anderen die dit document gebruikten.

Niet tevreden? Kies een ander document

Geen zorgen! Je kunt voor hetzelfde geld direct een ander document kiezen dat beter past bij wat je zoekt.

Betaal zoals je wilt, start meteen met leren

Geen abonnement, geen verplichtingen. Betaal zoals je gewend bent via iDeal of creditcard en download je PDF-document meteen.

Student with book image

“Gekocht, gedownload en geslaagd. Zo makkelijk kan het dus zijn.”

Alisha Student

Bezig met je bronvermelding?

Maak nauwkeurige citaten in APA, MLA en Harvard met onze gratis bronnengenerator.

Bezig met je bronvermelding?

Veelgestelde vragen