1 / 15

The Role of Security & Privacy in EA Program

The Role of Security & Privacy in EA Program. And EA Trends Please read all relevant texts’ chapters notably Bernard Chapter 11 and 13…. “ Privacy is the shield that protects a person’s identity while actively sharing information via the web.

carolk
Télécharger la présentation

The Role of Security & Privacy in EA Program

An Image/Link below is provided (as is) to download presentation Download Policy: Content on the Website is provided to you AS IS for your information and personal use and may not be sold / licensed / shared on other websites without getting consent from its author. Content is provided to you AS IS for your information and personal use only. Download presentation by click this link. While downloading, if for some reason you are not able to download a presentation, the publisher may have deleted the file from their server. During download, if you can't get a presentation, the file might be deleted by the publisher.

E N D

Presentation Transcript


  1. The Role of Security & Privacy in EA Program And EA Trends Please read all relevant texts’ chapters notably Bernard Chapter 11 and 13…..

  2. “Privacy is the shield that protects a person’s identity while actively sharing information via the web. Where privacy is about keeping the door locked, security is about the lock itself. Security is the actual online authentication and authorization protocols that networks use to protect information and the audit system used to verify the overall system’s effectiveness.” (O’Connell in IPSWITCH, 2011)

  3. EA Project Management as a project management model Similar for an EA Program Management Plan Information security and privacy are important project governance & compliance requirements and is included as component in risk management requirements

  4. EA Program’s Risk Mgt Sub-Plan Similar for an EA Program Management Plan Why & how information security and privacy incidents are regarded as enterprise risks can be explained via:

  5. EA Program’s Security & Privacy sub-plan Similar for an EA Program Management Plan How Security & Privacy risks are managed is explained in an organisation’s corporate document and customised in the EA program mgt’s security & privacy plan:

  6. Causes of Information Security & Privacy Risks & Key Prevention Areas Information design access & authentication due measures User Identification & training measures 3. Operations measures 4. Physical measures

  7. EA Risk Management Vs EA PROGRAM Risk Management

  8. EA is a meta-discipline that includes risk management that affects all its activities (Bernard, Chapter 1 - Page 34 & Chapter 11 – page 222)  every EA activity is part of a living EA risk management process EA Risk Management is everywhere in EA Program Plan Risk mgt details for stakeholder & business risks Risk mgt for integration & Standards compliance risks This requires understanding what risk mgt is about, which Bernard does not explain in details, but tutors can research and share insights with students Business case evaluates all the EA risks identified Risk mgt for EA program/project performance variance and quality risks Risk Management Processes : Risk classification Risk identification Initial Risk assessment Risk mitigation Risk Monitoring A very comprehensive Risk Mgt for security & privacy risks (http://pubs.opengroup.org/architecture/togaf9-doc/arch/chap31.html)

  9. EA Program’s Risk Management Plan Is like a project’s risk management plan for controlling the project or program’s performance variance in terms of: Budget performance Quality (including testing) performance Timeline performance Project/program’s risk management is NOT EA risk management which is about ensuring EA modelling and management work complies to EA standards and corporate/project governance policies/standards/guides.

  10. EA Security & Privacy Plan As an EA Component “There is no 100% foolproof security because EA components are designed and managed by humans and “insider” access is the ultimate threat which cannot completely be overcome” (Bernard, page 231) Guides the design, implementation and use of protective controls for every EA component

  11. Trends

  12. Future Trends in EA Bernard, Chapter 13 Generally trends can pose as opportunities & threats. When EA trends create new or grow existing EA practice problems , they can be regarded as new and emerging or existing and growing EA issues

  13. More EA Trends Not all EA trends are EA issues

  14. More EA Trends Impacts of new technology designs on EA Trends Not all EA trends are EA issues

  15. More EA Trends Impacts of new technology designs on EA Trends In order to identify Big Data Trend’s impacts on EA practice, one needs to firstly understand what is Big Data, its enterprise ramifications, including complexity challenges. Not all Big Data Trends impact EA practice. Not all EA trends are EA issues

More Related