Academic Integrity: tutoring, explanations, and feedback — we don’t complete graded work or submit on a student’s behalf.

Keeping an information system safe and secure -- and available to its users -- d

ID: 3719952 • Letter: K

Question

Keeping an information system safe and secure -- and available to its users -- depends in large part on constantly gathering information, assessing it, and analyzing it, so as to detect any potential for a threat, risk, or "out of limits" situation to develop into an accident or an incident. Suppose you were designing an overall information architecture, from the ground up (literally!) for a new hospital; construction will start in about nine months. What information, throughout the "life cycle" of that hospital project, would be important to your information assurance planning, the design of the networks and computing resources, and then the policies and actions that keep them safe, secure and available? What information might be available to you, during design and construction or during operation of the hospital that would not have an appreciable bearing on your security and IA concepts? Explain your reasoning.

Explanation / Answer

Ans:

Choosing Location :
Since here as stated in question construction will start in about nine months so we could have start by looking at start it to more economical aspect. Economical Aspect as in we have two options either we could first start by renting a property or buying a new property. The information important in both these option is how accessible is that area i.e it should be not too far away from city and easily reach out. So it is necessary that the information which need to be gather is in terms of distance from main city. So calculating distance is the best part in deciding about location of hospital.

Availability of hospital:
The next part is survey which need to be done is which type of hospital we need to open and availability of the same type of hospital in city for example suppose we are planning to open neuro hospital then we need to check is there any other hospital in the same area or in city. This information is much needed as it helps us in calculating that division of patients. And this information needs to be done in repeatative mood as we cannot predict when a new hospital will get open. If we find hospital of similar type then we need information about what type of facility that hospital is providing and data related to it so that will help in deciding our hospital data.

New Facility and equipments:
As everything in science area is technological moving at fast pace. We need to maintain data of new equipments available in market and its costing. This data need to be collected by going through various dealers and preparing chart of there price and technology used which will help to choose best equipment by comparing all the data collected in this step.

Staffing:
The next information which is most important is looking for recruiting of staff members. This should be calculated on the ratio basis as how big hospital we are trying to open and with how much staff is needed. For recruiting an approach need to be decided that how that person is skilled and the experience it hold in this industry. All the data need to maintained in computer. So a database design is required.

Doctors required:
Database of doctor qualification and total experience need to be maintained. Also the past history of doctor will need to be maintained. This will help in keep assurance and will help in case of any incident where doctor medical practice career need to be shown.

Integration:
Integration of all these different task need to be done. As these all information will collectively help in working of hospital. Like number of staff required for particular doctor. Maintenance of hospital, number of patients visiting daily so proper direction of patients, Patients database designing all this type of information is needed to be done prior before opening an hospital.

So in terms of computer resources we need huge database for storing patients details,doctor details and staffing details. Also a software design for calculating fee and salary need to be done prior. Also all this should be based on cloud platform. As it can be accessed easily. And only particular user should be given access right for accesing information as disclosure of such information will be highly harmful in growth of organization.