Step 1: Select Devices and Technologies
By now, you have an idea of your team members and your role
on the team project. Now, it’s time to get the details about the devices and
technologies needed to be included in the Strategic Technology Plan for Data
Loss Prevention.
You should limit the scope of this project by selecting a
set of devices and technologies which are most appropriate for data loss
prevention for your business mission and future success. Based on your prior
knowledge of your company and based on the project roles you agreed upon in the
previous step, perform some independent research on the following topics and
identify a set of devices and technologies that you propose for your company,
and your business rationale for selecting them:
IPv6
Internet of things (IoT)
block chain
tokenization
data masking
data obfuscation
operational context
tamper-proofing
big data analytics
Your team plan should include significant detail about these
technologies, including what kinds of IoT devices will be appropriate for the
company’s use. During your research, you should also see if there might be any
issues for integration and implementation, which you will consider in greater
detail in a later step in the project.
When you’ve finished detailing the proposed devices and
technologies, move to the next step, where the team will outline its goals on
how the devices and technologies will ensure the company is prepared for future
vulnerabilities.
Step 2: Prepare a SWOT Analysis Table
You’ve identified the technologies and devices, and listed
the goals and objectives for their use in the organization. In this step, you
will justify adding these devices and technologies to the network
infrastructure.
In order to do this, perform a strengths, weaknesses,
opportunities, and threats (SWOT) analysis of each device/technology being
introduced into the infrastructure. A SWOT analysis is a framework that allows
you to identify internal and external factors that can affect the
implementation of new technology. Such a process can be helpful for decision
making and strategic planning.
Look at internal and external factors that could influence
the successful introduction with respect to the company specific business model
and operations. Internal factors are the strengths and weaknesses you found.
External factors are the opportunities and threats identified during the SWOT
analysis. Determine what these are. Address the following questions in your
discussion:
How do they influence the operation and maintenance of the
network?
What can be done to overcome these factors?
As cybersecurity professionals, you and your team members
should stress security- related analysis and create a SWOT chart that includes
internal and external factors.
This chart and the overall analysis should be a significant
part of the Strategic Technology Plan for Data Loss Prevention.
In the next step, you and your team members will consider
any issues that might come up when you integrate and implement the new devices
and technologies.
