The Information Security Blueprint is the basis for the design, selection, and implementation of all security
program elements. The blueprint builds on top of the organization’s information security policies and it is a
scalable, upgradeable, comprehensive plan to meet the organization’s current and future information
security needs. The blueprint is a detailed version of the information security framework, which is an
outline of the overall information security strategy for the organization and a roadmap for planned
changes to the information security environment of the organization. Security education and training is an
important part of the Information Security Blueprint.
Case Assignment
Search the Web for security education and training programs in your area. Keep a list and categorize the
types of training offered. Determine the costs associated with each. Is the training general or for a
specific security certification? Assess the cost effectiveness of the training both in terms of both time and money.
Assignment Expectations
Describe your results. Put them in a table describing the training program and cost. You will assess the
programs in terms of time, money, and effectiveness. Summarize with a discussion of the key
characteristics for Web security and training programs.
Sample Solution