Defense in Depth for a Fictitious Business

A small healthcare provider, Total Wellness, Inc., has hired you as a consultant to make recommendations for their security posture after a recent compromise of their cloud storage service through a hacking attack.  They need to upgrade their current data security, storage solution, email, and connectivity. They have also decided to expand their business to an additional clinic location and will need to share patient and business data.  They have 75 employees at their main facility and will have 30 employees at the new location.  The new location is about 100 miles away.  Note that their data is subject to HIPAA laws and regulations.   
To properly protect this company from attacks, and to meet regulatory requirements, you need to research what options are available to them There are a number of HIPAA compliant vendors that offer on-premise or cloud solutions.  Your job is to research the two options and write a (professional) recommendation proposal outlining the pros and cons of each, and then making your recommendation with firm justification for the decision.
During your research you need to include reviews of:
Network Security ControlsEndpoint Security ControlsPhysical Entry controlsAdministrative ControlsDisaster Recovery ControlsYou can add additional items that you see as being beneficial.This proposal needs to be written in the form  of professional business proposal. 
This is to include:
Overview of the contracted requirementExecutive Summary of your role as the contracted security assessorProblem being addressThe options availableAdvantages and disadvantages of the optionsRecommend choice, with justificationResources listPaper must include
Minimum of 3 pages (written text), double-spaced (this minimum does not include Title & Last page)College level writing is required. (grammar, spelling, & readability) 

Solution

This question has been answered.

Order Now
Scroll to Top