Recent orders

Name the 5 Principles of Information Assurance.

Name:

Institution:

Course:

Tutor:

Date:

Q1). Name the 5 Principles of Information Assurance.

The five principles of information assurance include Confidentiality, integrity, non-repudiation, availability of information as well as authentication.

Q2). Briefly describe each of the five principles named above in question #1.

Firstly, data integrity is an information assurance principle that ensures the accuracy of information being conveyed. Such information should therefore be free from incorrect changes that may be intentionally or otherwise effected. Confidentiality of information on the other hand requires that the information being conveyed through a communication channel be available only to the authorized parties in the system. No outsider should get access to the information. Thirdly, Authenticity of information is a fundamental security measure that requires genuineness of parties in the communication system, transaction process as well as the documents used. Availability of information is another information assurance principle that ensures data or systems are available when needed. Finally, non-repudiation is an information assurance principle requiring all the parties in a communication system to honor the contract (Denning et al, 2).

Q3). Information Assurance involves many areas, identify five.

Information assurance covers a variety of information security areas including security of network, security of the operation systems, detection of intrusion, information sharing as well as storage security among other security measures.

Q4). Define information security.

Generally, in formation security involves the protection of data against unauthorized access. According to McDonald (94) information security entails the technical and administrative measures as well as techniques and concepts adopted to protect data from unauthorized use, acquisition, manipulation or damage, disclosure, modification or loss of such information assets (Denning et al, 1).

Q5). When was the Internet ‘born?’

Internet was established as ARPANET on the twenty first day of November in 1969. ARPANET thereafter grew to the internet.

Q6).What was the original purpose of the Internet?

The original; purpose of the internet was to maintain communication and exchange of raw data especially in times of war.

Q7). What is TCP/IP?

TCP refers to the transmission control protocol (TCP) and internet protocols (IP) are standards and procedures used in the internet and are meant to connect different networks. They are the basic language of the internet

Q8). What do you call a program that spreads itself by altering other programs to include a copy of itself?

It is referred to as Virus.

Q9). What is a Trojan Horse?

Trojan Horse is a malicious program that may masquerade as a different trusted program.

Q10). How does a worm spread? Provide a real-world example.

Computer worm is a self-replicating malicious program that sends copies of itself to the other end of the computer network. Worm does not require an attachment program but instead replicates and sends copies of itself to the nodes of the other computer in the network given the security lapse in the targeted computer. For instance, a malicious e-mail that promises free access to sex movies has been reported across networks in the recent past. It gains access to one’s computer without your intervention.

Q11). Describe a blended attack.

When the characteristics of viruses are merged with those of the computer worms then a blended attack is reported. In such situation, the malicious program may require an attachment program so as to enhance its spread as seen in a virus or may spread through self-replication followed by sending of its copies to other computers as seen in worms.

Q12). What are strong/complex passwords and why are they important?

Strong passwords are those that have at least six characters that are arranged in a random manner and constitutes of upper and lower cases as well as numbers and special characters. Moreover, the password should not be a dictionary word. The aforementioned conditions are meant to protect the information that would be accessed using such password.

Q13). What is Biometrics? Give an example of usage.

Biometrics is a computer security concept referring to authentication methods that rely on measurable physical features that can be verified automatically. Biometrics may be used in e-commerce transactions where verification of identity through fingerprinting may be required.

Q14). What is the purpose of a Firewall?

The main purpose of a firewall is to control traffic from both inside and outside a specified network.

Q15). What is a key purpose for a business security policy?

A business security policy has the important role of providing awareness as well as legal protection to all the parties the business.

Q16). There are many types of security threats. List three.

The types of security threats include: Identity theft, malicious acts such as online fraud as well as hacking.

Q17). According to many surveys, what is the greatest security risk?

The greatest security risk involves internal cyber attacks which are soaring day by day in many parts of the world.

Q18). What is the generally accepted difference between cracking and hacking?

Hacking involves the use of one’s proficiency in computer programming to pursue certain goals without violating any legal rules. Cracking on the other hand involves the use of such knowledge of computer systems to realize personal gains such as stealing of data or getting access to bank accounts (Denning et al, 2).

Q19). What is a denial of service (DoS) attack?

Denial of service attack is any malicious act that disrupts the normal service within a network.

Q20). In your opinion what is the biggest security threat today and what can be done about it?

Cyber attacks pose greatest threat to the security than any other issue. In order to avert such crimes, both the federal government as well as business ventures should adopt a strong and flexible defense mechanism against such vice. Moreover, organizations should not only attract highly qualified employees but also develop skills through internal training so as to curb the vice. More importantly, a comprehensive training on computer forensics as well as early crime detection system should be established and improved given the consistent changes in technologies.

Work cited:

Denning et al. Internet Besieged – Countering Cyberspace Scofflaws. 1998. ACM Press.

Health and Safety in the Engineering Workplace

Health and Safety in the Engineering Workplace

Name

Name of Instructor

Institution affiliation

Name of Course

Date

Task 1

Workers present in an auto-body manufacturing shop are theoretically exposed to a multiplicity of physical and chemical hazards. The physical hazards include ergonomic injuries, noise, repetitive stress, lifts and cutting tools. On the other hand, the chemical hazards include polyisocyanates and diisocyanates from spray paints and volatile organics from solvents and fillers. However, due to these physical and chemical hazards, there are regulations set to protect the health and safety of the workers. The key features of relevant regulations in the shops include the reduction of risks sources, prevention of accidents trough higher forfeits for poor safety management. The regulations also instill greater ownership of health and safety outcomes by the shop.

Additionally, the Workplace Safety & Health Act stipulates that the management should conduct risk assessments to control or remove risks to workers at the work place. This means that it is the duty of the employees to report to the relevant authority in the shop if they feel that their health and safety is at danger due to the duties they are performing in the shop. Conversely, the employer has a duty of listening to the employees and ensuring that the employees are not overworked or performing hard tasks which might threaten their health and safety. However, if the employees do complain about their health and safety issues and the management does not listen or help them, the employees have a responsibility to report to the proper authorities such as workers unions. These workers union ensure that there is fair treatment of employees in their work place. For discarding the health and safety of the employees, the management can face serious law suits.

Key features of health and safety legislation and regulations

The welfare of employees working in any engineering environment is of primary importance. All workers should carry out their work in a safe manner where there are no any negative effects on their safety or health. Many engineering organizations make sure that there is an improvement in their health and safety regulations not only for the subsidy of the workers but also for the competitive aspect. Good examples of organizations that do ensure improvement of health and safety regulations of employees include America Society for Engineering Education (ASEE) and American Society of Civil Engineers (ASCE). In these two engineering organizations, safety and health of employees in the work place is about the measures put up to protect the employees who may be affected by undertakings in the work place.

Since both organizations have improved safety and health regulations for the employees, the organizations expect that it is the responsibility of the workers to follow safety working principles and procedures. The organizations expect that the workers do not participate in any unsafe act that may endanger the follow workers or themselves. Additionally, the employees have a responsibility of using personal protective equipments when working. This means that it is the responsibility of the management to ensure that the employees adhere to all their responsibilities. The management has the responsibility of providing personal protective equipments to the workers and providing working principles and procedures. Moreover, the management has a responsibility of ensuring that all equipments in the organization are in good working condition. This means that the inspection of the equipments has to be regularly done .

Apart from the regulations, the legislation largely controls the health and safety of employees in (ASEE) and (ASCE) engineering organizations. The laws put up by the legislation govern the handling of employees in terms of their safety and health. For instance, in the two organizations, the law states that all employees should have an insurance cover for their health. Apart from this, the working environment should be conducive for all employees. If the management breaks these regulations and rules, the legislation has to intervene, and criminal charges are taken towards the management. The management will end up paying damages to the employees.

Task 2

Workers have the right to have a safe place of work. The health and safety regulations require all employers to provide the employees with working conditions that are not dangerous in any way. However, both the employees and the employer are responsible for safety and health in the workplace. Therefore, in the case of packaging and shipping department, it is the responsibility of the employees to co-ordinate copiously with the employer on all issues relation to safety and health. The employees have a responsibility to inform their employer of any unsafe manual handling practice they detect. Additionally, the employees have the responsibility of following all the safety and health guidelines provided by the employer. On the other hand, the employer has the responsibility of reviewing the working practice and eliminating any manual handling that is not utter necessary. The employer also has the responsibility of carrying out assessments of all the manual handling that may cause injury to the employees.

The Manual Handling Operations Regulations 1992 which was amended in 2002 is responsible for ensuring safety and health of employees involved in heavy lifting. As per the law, valuation should be conducted on all working conditions that involve heavy lifting. Any risk of injury associated with heavy lifting should be reduced in the working places. As a result, employees should be provided with machines to help them in the heavy lifting duties. If the management fails to follow the regulation, the employees may file personal injury claim for compensation if there is any injury.

References

Stallcup, J. G., & Stallcup, J. W. (2003). OSHA – Stallcup’s high-voltage andtelecommunications regulations simplified. Sudbury, MA: Jones and Bartlett Publishers.

Health and Safety in Health and Social Care Service

Name

Professor

Course

Date

Health and Safety in Health and Social Care Service

Task one-Health and safety policy manual, risk management, and Organogram

H&S Policy manual

All companies have policies, which aim at safeguarding the health and physical conditions of their employees and clients at large. This is aimed at maximizing the input towards production purposes resulting in the company realizing maximum profits. These policies make every necessary effort to prevent work time injury by improving the working conditions of the workplace. These ought to have co-operative efforts between the employees and the management unit of any organization in order for the policies to be effective or be successful. The elimination of hazards in the workplace is the responsibility of the workers in any organization since they are the ones who get affected in case of any accident.

First aid policy

At least two employees employees ought to standard first aid certificate. The names, work locations and expiry date of those with a First Aid Certificate will be included in the main first aid kit, as well a copy of the Workplace Safety and Insurance Board (WSIB) First Aid Regulation 1101 and the WSIB Form 82 poster.

5-12 person first aid kit will be placed in the company’s van while smaller kits may be found in strategic positions within the company’s premises.

Regular inspection will be done to ensure that all the first aid kits have the necessary tools required. In cases where some of the requirements are missing, immediate replacement Will be done as stipulated by the company’s bylaws.

All the accident, which require first aid will be attended within the company’s premises and all the records kept for future reference purposes.

Fire prevention policy

All the fire prevention policies ought to follow the local or regional fire codes.

No employee is allowed to smoke within the company’s premises.

Open fire will only be permitted during the fire season.

Power Saws: all power saws will be maintained and checked regularly and must all have a spark arrester in order to prevent fires, which may start due to emission of fire sparks. Power saws will be allowed to cool down before any form refueling is carried out.

Welding and Grinding: No welding/grinding is authorized within 4 meters or 9 feet of a woody area or combustible objects. It must also be done over mineral soil. If this is not probable, welding blankets should be used to guard the area covered by the welding activities.

Heavy mobile equipment: heavy mobile equipment ought to be fitted with fire extinguishers as a preventive or a preparedness measure in case of fire breakout. Those in charge of these machines will be responsible for inspection of the extinguishers at all times. In case of any defects, the extinguishers ought to be replaced immediately. Daily check ups will don on all the equipments in order to collect and dispose the flammable material, which have accumulated.

Fire equipment location: all the fire extinguisher will be positioned at all the strategic location with easy access in case of fire break out. Emergency exit: all companies ought to have an emergency exit and fire assembling point, which will be used by the employees in case of fire break out within the company’s premises.

Lockout and Tagout

Safety and safe use of mobile equipments is necessary at all times in order to minimize the number accidents, which may results from negligence of these machineries. There are 3 steps of de-energizing transportable gear to make it secure to work in, on or around – parking, shutdown and lockout.

Parking

The operators of these machine park the machines a number of times in one day. This calls for measures to ensure that the machine are safe when the operators leave the machines unattended to at all times. Some of the times in which the machines are likely to be parked are during choking or un-choking a load, or at breaks, lunchtime and refuelling.

Safe Procedure:

Stop machine on level ground

Put program in park or neutral

Fit into place parking brake

Lower blades, buckets, grapples, among others to the ground or solidly support them

Locomotive can be left running if needed (for lights at night or to cool engine down).

Shutdown

Shutdown is supposed to be done at the end of shift operations or when the need arises. It can also be done in situations where the operators intend to leave the machine unattended to for a long period.

Safe procedures

The machine ought to be parked according to the above procedures

Park on mineral soil (if possible), at least 3 meters or 10 feet from other machines or buildings

Let the engine idle 5-10 minutes to cool down, then shut engine off

Shut off Master switch

Lock the cab.

Lockout

This process is carried out when one has to carry out repairs, maintenance, clean-up, or inspections to the machine in such a way that if the machine inadvertently started or moved someone could be injured.

Park the machine and lower implements to the ground or solidly support them.

Turn off ignition switch, remove key and keep it in a secure location (for example, in worker’s pocket).

Apply any blocking devices , if necessary to prevent equipment from moving (pin in feller buncher sawhead, chock wheels on slopes, etc.)

If equipped, engage any locking devices and apply a lock – keep Key to this lock in a secure location. Apply lockout tags in visible location.

If equipped with a master switch turnoff and lock out.

Verify zero-energy state.

Perform work.

When work is complete Clean-up all tools, replace all guards.

Unlock power sources, remove any blocking devices, then ensure no one is in the danger zone before starting equipment, and return to regular operation.

Guarding Procedure: All the company employees ought to at all times follow the manufacturer’s guard when operating any equipment. In cases where the guards do not ensure adequate prevention of hazards, custom guards are required.

Operators will inspect equipment for proper safeguards prior to starting it each day. Any critical safety concerns or missing guards will be addressed prior to starting work. Noncritical concerns will be reported to the supervisor.

Do not disable any safety device on the equipment and do not operate equipment with a disabled safety device unless a temporary safeguard is in place.

Protective guards and barrier screens on equipment can only be removed or bypassed for maintenance purposes when done in accordance with the lockout procedures.

Emergency response plan

Injury response procedures

In case of work-related injury or illness employees are required to inform the relevant authorities within the company premises.

In case of any injury in the workplace, the following actions ought to be taken immediately:

The first person on the scene will call for help and check that the area is safe

First aid will be administered

If necessary an ambulance will be called or the injured person will be driven to the hospital by an employee

The scene will be made secure for the investigators if required

The supervisor will call family members and the Ministry of Labor as is required.

In cases of critical or serious injuries in the workplace, the Ministry of Labor will be notified by the supervisor immediately after the scene is secured. The scene will also be secured until the labor ministry gives a go ahead clearance for the activities, which takes place within such perimeters.

Chemical spill response procedures

All employees must immediately stop any fuel/oil/chemical leak to minimize the size of the spill, and then report it to the supervisor.

Every attempt must be made to contain the spread of the spill using the spill kit and any equipment available. On-site workers must know the location of the spill kit.

The supervisor must report spills to the Ministry of Environment Spills Action Centre. When in doubt, report it.

Training and orientation

All employees will be trained in this emergency response plan at the time of hire.

All employees will receive instruction on the proper use of fire extinguishers and fire suppression systems.

At least 25% of woodlands workers will receive S102 industrial forest fire-fighting training. The supervisors will also take this course. Only these workers will be allowed to use the fire pump and hoses.

The supervisor will have a copy of this emergency response plan on-site in his/her truck, in the maintenance trailer or with the fuel pumping unit at all times.

Emergency response contacts

In cases of such emergencies, employees or the management ought to contact the following contacts;

911- ambulance, police, and fire brigade.

……-Ministry of labor

….- Ministry of environment (spill action centre).

Environmental health hazards and controls policy

The supervisor will discuss possible environmental health concerns with all employees. Environmental health concerns can include:

Chemicals in the form of gases, mists, dust, fumes and vapours

Biological hazards such as bacteria, viruses, fungi, and other living organisms

Physical hazards such as excessive noise, vibration, light (snow blindness), and radiation

Cold and heat stress.

The most recent assessment of environmental health hazards in this operation has identified the following list of health hazards:

Diesel fuel

Gasoline

Etc.

Risk Assessment in a Hospital Setting

1.1 Review systems, policies and procedures for communicating information on health and social care workplace in accordance with legislative requirements.

Risk assessment aims at investigating the safety of a workplace giving the required action to be taken in order to maintain high level or standard of workplace safeties. Any organization ought to assess its workplace condition in order to be aware of all the dangers or risks, which its workers are likely to face while on duty. This will help the organization to purchase the required personal protective equipments (PPE) suitable for such work station. Review systems, policies and procedures for communicating information on health and safety in the health and social care workplace in accordance with legislative requirements. Assess the responsibilities in a specific health and social care workplace for the management of health and safety in relation to organizational structure.

After carrying out a risk assessment study in one of the hospitals in Atlanta, Georgia the results were as following; poor positions of fire extinguishing devices and fist aid kits within the hospital premises. This implied that all the personnel and patient within the hospital will be affected negatively in case of any accident such as fire among others. Such accidents may even lead to the loss of innocent lives, patients who cannot manage to move may die as a result of fire or any other accident. This calls for the hospital management and the ministry of health to measures in place to curb these defects. Since this is a hospital environment, any aid needed due to work related injuries is well covered and will be dealt with the necessary steps.

Chemical spill accidents may also affect this hospital negatively since they do not have measures put in place to prevent and take care of such an accident. Highly hazardous areas ought to be narked and only the authorized personnel allowed to get in. This calls for additional security personnel provide the required security services.

The hospital also ought to put up instruction signs all over the hospital in strategic positions to inform people available for directions and other hospital rulers and requirement. This will prevent a number of accidents, which may have resulted from poor or use of false information from the hospital users. After assessing the hospital’s safety management system I come to think of the following scenarios; this is a hospital premise, which ought to the best safety measures to protect the lives of the hospital user, it still lags behind in safety terms. The hospital’s management of accident related to chemical accidents is not in place. Many lives may be affected by a chemical accident leading to death in most cases.

This calls for the responsible bodies come together and find a solution to this issue before it does any serious damage to the users of this hospital.

It also calls for the users of the hospital to be extra vigilant when receiving the hospital’s services. This will also contribute to the safety of the hospital users by minimizing the number of accidents, which may have had occurred.

Analyze how information from risk assessment informs care planning for individuals and organizational decision making about policies and procedures.

In social places such as football stadiums and other entertainment joints need to put measures to accidents such as fire, security measures should also put in place to prevent human war during sports activities among other causes. By increasing security personnel in the entertainment joint should be beefed up just incase rival teams fans clash within the entertainment joint. This will prevent loss of innocent lives, injuries, and destruction of property among other personal belongings of the fans or revelers. When fighting breaks out in football match properties always get destroyed in the process. Sometimes it even lead to loss of lives and serious or minor body injuries. Through the use of classic management theory, a number of accidents can be avoided in this area of the profession using a number of ways. These ways are as discussed in this section of the research study.

Classic management theory grades employees or users of a specific organization according to their authority or power level. Those in high positions have the highest security clearance, which implies that they can access all the areas of the hospital.

This will prevent deaths, which may have occurred to uncleared or unqualified persons from accessing certain danger zones. Only the qualified personnel will access these designated locations to avoid injuries and unnecessary deaths, which may occur due to human error. Analyze the impact of one aspect of health and safety policy on health and social care practice and its customers. Emergency responsible plan:

Hospital emergency response aims at minimizing that may be caused during an accident. In cases of physical injury the measures in place within the hospital premises will ensure that little damage is done during accidents. This because the hospital employees are mostly medical experts with experience in the field. This implies that performing first aid and other medical treatment of the injured persons will be taken care of effectively. Analyze the effectiveness of health and safety policies and practices in the workplace in promoting a positive, healthy and safe culture.

In case of chemical spillage, all employees must immediately stop any fuel/oil/chemical leak to minimize the size of the spill, and then report it to the supervisor.

Every attempt must be made to contain the spread of the spill using the spill kit and any equipment available. On-site workers must know the location of the spill kit. The supervisor must report spills to the Ministry of Environment Spills Action Centre. When in doubt, report it.

Discuss how dilemmas encountered in relation to implementing systems and policies for health, safety and security may be addressed.

While implementing systems and policies for health, and safety, and security, the relevant authorities may be left in a dilemma because of a number of required decision making situations. For instance, when it comes to deciding on the actions to take between installing modern security system and employing security personnel to guard area, which requires one to have a certain level of security clearance to access these areas. Such situations make it hard for the relevant authorities since they cannot be sure about the form of security, which will be most effective in this scenario or setting.

2.4 Analyse the effects of non-compliance with health and safety legislation in a health and social care work place.

At least two employees employees ought to standard first aid certificate. The names, work locations and expiry date of those with a First Aid Certificate will be included in the main first aid kit, as well a copy of the Workplace Safety and Insurance Board (WSIB) First Aid Regulation 1101 and the WSIB Form 82 poster.

3.1 Explain how health and safety policies and practices are monitored and reviewed.

Companies Responsibility

Evaluate own contributions to placing the health and safety needs of individuals at the center of practice. The company ought to evaluate its contribution towards ensuring that all the workers are safe while at their work stations.

First aid kit will be placed in the company’s van while smaller kits may be found in strategic positions within the company’s premises. Regular inspection will be done to ensure that all the first aid kits have the necessary tools required. In cases where some of the requirements are missing, immediate replacement Will be done as stipulated by the company’s bylaws. All the accident, which require first aid will be attended within the company’s premises and all the records kept for future reference purposes.

All employees will be trained in this emergency response plan at the time of hire.

All employees will receive instruction on the proper use of fire extinguishers and fire suppression systems. At least 25% of woodlands workers will receive S102 industrial forest fire-fighting training. The supervisors will also take this course. Only these workers will be allowed to use the fire pump and hoses.

The supervisor will have a copy of this emergency response plan on-site in his/her truck, in the maintenance trailer or with the fuel pumping unit at all times. After assessing the hospital’s safety management system I come to think of the following scenarios; this is a hospital premise, which ought to the best safety measures to protect the lives of the hospital user, it still lags behind in safety terms. The hospital’s management of accident related to chemical accidents is not in place. Many lives may be affected by a chemical accident leading to death in most cases.

This implies that my assessment was crucial and is vital in maintaining workplace safety at all times. The necessary requirements need to put in place to ensure that all the users of the hospitals are safe when on duty at all times.

Analyze the effect of non-compliance with health and safety legislation in a health and social care workplace.

Noncompliance with health and safety legislation in a health and social care workplace has serious devastating effects on the people and the environment at large. These effects may be injurious, unnecessary loss of innocent lives, which could be avoided by following the measures put in place by the organization to minimize the dangers of workplace. All employees also need to ensure that they take the safety issues personally since in case of any danger, they are the ones at the risk of getting hurt. 3.2 Analyse the effectiveness of health and safety policies and practices in the workplace in promoting a positive health and safety culture.

The effecvtiveness of the health safety policies and practices in the hospital, which promotes a healthy and safety culture are the measures put in place by the hospityal administration to ensure that work related injuries are minimized at all times. These measures may include putting up warnings at strategic points in order to ensure that the hospital users are warned on the areas where the risk leve are and the right action or instructions to follow when in such areas. This will also include the steps to take in case one is injured within the health premises. In hospital or health facility setting, the likely damages which may be caused by workl relate injuries is minimal since there is availability of qualified personnel who can take care of simple or even severe injurioes. This makes the handling of work related injuries within hospital or health facility sector much simpler and easier than any other injuriries from other areas of expertise.

This shows that the effectiveness of the intervention plan can only be measured by the success or the failure of the intervention plan put in place by the hospital management or administration. For instance, when one is injured when in his or her duty line, the success of the intervention [plan can be measured by the success or the failure of the intervention plan used to help or aid such an individual evade or take care of the injuries he or she experiences.