IT476 , Ass1 , IT Security and Policies

Q1 ) Select a company or organization of your preference and examine its official website to discern the type of privacy policy in place, particularly concerning the protection of employee data. Evaluate the information provided on the website to identify the specific measures and guidelines implemented to ensure the privacy and security of employee information.

Q2) Why was the Supplier Relationships section (Section 15) introduced in the 2013 version of ISO 27002? Share your perspective, supported by a real-world example illustrating the necessity of incorporating this section.

Q3)Describe the significance of background checks in the employment process. Give at least three personal justifications.

Q4)a) Which control policy is necessary for the prevention of unauthorized entry and facility damage?

b) Write two examples of the controls needed to secure the facilities, offices, and rooms.