Question Description
Companies are susceptible to losing customer data to cyber-attackers and human errors, so organizations must properly protect their data and network.
In this assignment, you will create an Encryption Policy for CIO review. Use the organization you chose in the discussion Classifying an Organization’s Sensitive Data.
Write a 3- to 4-page policy, and ensure you:
- REVIEW THE GRADING RUBRIC
- List the organizations sensitive data that must be protected.
- Describe the differences between asymmetric and symmetric encryption.
- Describe when to use asymmetric encryption… when to use symmetric encryption. Why?
- Describe at least 2 primary threats that could compromise the organizations data.
- Describe how the encryption methodologies that should be implemented to protect the organizations sensitive data.
Research Material
- Catalogue of threats & vulnerabilities
- What is PKI and How Does it Work?
- When to Use Symmetric vs. Asymmetric Encryption
- Chapter 7: The Role of Cryptography in Information Security
Format your citations according to APA guidelines.