StudentShare
Contact Us
Sign In / Sign Up for FREE
Search
Go to advanced search...
Free

Certification and accreditation - Research Paper Example

Cite this document
Summary
The certification process incorporates a wide range of technical and non-technical security safeguard evaluation associated with an information system…
Download full paper File format: .doc, available for editing
GRAB THE BEST PAPER93% of users find it useful
Certification and accreditation
Read Text Preview

Extract of sample "Certification and accreditation"

Full Paper Certification & Accreditation The first objective of this topic is to understand roles of actors involved in the Accreditation and Certification process. The certification process incorporates a wide range of technical and non-technical security safeguard evaluation associated with an information system. Likewise, the aim is to check and verify compliance of specified security requirements of a specific design and deployment. Moreover, the accreditation process that is called a formal declaration by Designated Approving Authority (DAA) for an information system that is operational in a specific secure environment with an acceptable risk level.

However, the information system must meet the approved safeguards or protection in the two domains i.e. technical and managerial. The duration of a typical certification and accreditation process should be executed in sixteen to eighteen months. However the duration will vary due to the complexity level of the networked environment. (Stark, 1994) The dissimilarity between a Certified and an information system auditor is a compliment of both these roles. The certifier will review the systems for compliance with the stated requirements from the regulations, law or the board (Langsley & American Board of, 1983).

In contrast, the auditor will validate the results submitted by the certifier for meeting the requirements. However, it is not necessary that an auditor may be a part of the same organization (Stark, 1994). Likewise, information system auditor is responsible for carrying out an independent review or audit of examination of records and activities for accessing the appropriateness of system controls for assuring compliance with policies and procedures. Similarly, a certifier is associated with conducting technical decisions of complying systems with organizational requirements, conducting risk assessment focused on system operation, certification actions and combining or integrating the finalized certification along with accredited packages.

The post of this individual is known as Information System Security Manager. Furthermore, the contribution of a reviewer is associated with internal organizational role that falls under the role of a certifier (Stark, 1994). The phase 5 of the Certification and Accreditation process called as Disposal is not addressed. For instance, there is always a disposal phase of any process, system, applications etc. likewise, the process of system disposal, few factors need consideration. These factors are mentioned below:Disposal of Storage devices: if an organization does not have proper disposal policy for storage devices, they may be at huge risks, as data can be retrieved from these used storage devices and can be used against the organization for unknown purposes.

Disposal of Hardware Components: The disposal of hardware/network/ computing devices can be reused by other organizations.Manual Documentation: floor map or other architectural diagrams must be discarded by paper shredder when not in use, as they can facilitate a criminal to plan for identity theft, data theft, stealing mission critical information etc.Apart from these above mentioned flaws, the association between certification and accreditation between the audit and software development life cycle is different.

The SDLC is considered as different wording or interpretation, and the audit identify the deployment and there is no enforcement of developing procedures.Work CitedLangsley, D. G., & American Board of, M. S. (1983). Legal aspects of certification and accreditation American Board of Medical Specialties.Stark, C. A. (1994). Introduction to certification and accreditation: Information systems security DIANE Publishing Company.

Read More
Cite this document
  • APA
  • MLA
  • CHICAGO
(“Certification and accreditation Research Paper Example | Topics and Well Written Essays - 500 words”, n.d.)
Certification and accreditation Research Paper Example | Topics and Well Written Essays - 500 words. Retrieved from https://studentshare.org/information-technology/1605422-certification-and-accreditation
(Certification and Accreditation Research Paper Example | Topics and Well Written Essays - 500 Words)
Certification and Accreditation Research Paper Example | Topics and Well Written Essays - 500 Words. https://studentshare.org/information-technology/1605422-certification-and-accreditation.
“Certification and Accreditation Research Paper Example | Topics and Well Written Essays - 500 Words”, n.d. https://studentshare.org/information-technology/1605422-certification-and-accreditation.
  • Cited: 0 times

CHECK THESE SAMPLES OF Certification and accreditation

IT Security and the Impact of CIO Roles

Moreover, the chief information officer then gets Certification and accreditation from the government once this is achieved (Enloe, 2002).... IT Security and the Impact on CIO Roles Name Business Instructor: 26th April, 2013 Organizational assets and operations have become increasingly dependent on information technology to accomplish their mission and goals set by the management....
3 Pages (750 words) Essay

Leadership in Energy and Environmental Design

In view of this, LEED program provides two options for projects seeking certification; they include new construction and major renovation that addresses the details of construction or substantial renovations in retail buildings and commercial interior, which is concerned, with details about tenant space where the tenant is changing already existing fittings....
3 Pages (750 words) Essay

Managing Email Security in Organizations

ISO/IEC 27006: these acts as guides to the process of certification and registration.... In the paper “Managing Email Security in Organizations,” the author focuses on the need for the design and installation of a security control system to help in the detecting, cleaning and deleting threats that occur in the company....
4 Pages (1000 words) Assignment

Chinese Student Applying for a Transfer to the University of Miami

I want to undertake some of the globally competitive courses only offered by the institution, to achieve globally competitive Certification and accreditation that are relevant in today's workplace; in this respect, the University of Miami is my personal choice because it guarantees all these, and much more.... Considering its global credibility and accreditation, the University of Miami is more likely to add a lot of value to my professional qualifications, unlike a local community college....
2 Pages (500 words) Admission/Application Essay

Certification and Development of More Sustainable Tourism

Sustainable tourism is an essential aspect of the prevailing need for a sense of social responsibility, when it comes to tourism and tourist destinations.... It pertains to the various attempts, which are aimed at lowering to the least possible levels, the impact of human… this is in tandem with the attempted generation of sustainable future employment of the local populations present....
10 Pages (2500 words) Essay

The Best Pizza in Town

The contractor needs to have Certification and accreditation from the Food Handler Certification program as provided by the city of Ottawa.... The contractor needs to have Certification and accreditation from the Food Handler Certification program as provided by the city of Ottawa....
1 Pages (250 words) Case Study

LEED Sustainable Construction Project

The building is anticipated to be certified as one of the LEED facility with a minimum of Gold certification.... Additionally, the project will have a certification from LEED.... According to research findings of the paper “LEED Sustainable Construction Project”,  the sustainable construction building will be covered with recycled copper cladding on the exterior of the building....
13 Pages (3250 words) Term Paper

Sprinkler Systems and Their Use in the Design for Life Safety

… The paper " Sprinkler Systems and Their Use in the Design for Life Safety and Property Protection Purposes" is a good example of a term paper on engineering and construction.... A sprinkler system is typically a device installed within buildings to detect a fire in its early stages.... The main idea in the development of sprinkler systems is to protect property....
8 Pages (2000 words) Term Paper
sponsored ads
We use cookies to create the best experience for you. Keep on browsing if you are OK with that, or find out how to manage cookies.
Contact Us