Term Project Guidelines and Rubric
For the term project, you will evaluate the cybersecurity policy of your, or another, organization in terms of completeness, compliance, organization and organization related interests, and other aspects, such as how to prevent its failure.
Select an organization you admire (e.g., public sector, private sector, professional association, limited liability corporation, entrepreneurial, or other) and solicit its cybersecurity policy.
ï‚· Such document(s) may be available as a link on its homepage, part of the organization’s policies and procedures (P&P) manual, the subject or reference used in an academic or trade journal case study in information systems, or any other source – human or digital.
 The cybersecurity policy may not necessarily reside as a single document and thus you may find it necessary to synthesize elements to have a resource that reasonably articulates the organization’s cybersecurity policy.
Take special note that there is a minimum of three critical aspects to this assignment:
1. As emphasized above, identify an organization whose cybersecurity policy is available. Federal civil sector organizations may be candidates or state governments. A company where you are currently or would like to be employed may be a candidate.
ï‚· Start your search for a suitable organization early and anticipate that you may have to browse several before finding one suitable for this assignment.
2. A second critical aspect is to identify evaluation criteria or performance measures for the cybersecurity policy. Refer to applicable government, industry, and regulatory standards. In some cases, you may need to consider criminal or civil liability issues, and thus evaluation criteria may emanate from the judicial guidance.
3. A third critical aspect is application of your evaluation criteria to elements of the cybersecurity policy identified for analysis. Such analysis is likely to be qualitative for some aspects, quantitative for other aspects, and a hybrid for still other aspects of the policy. As such, your choice of measures and analytical techniques must be reasonable and justifiable.
Based on your accumulated reading and knowledge:
1. Evaluate the strengths and weaknesses of the organization’s cybersecurity policy along attributes to include the following:
ï‚· Completeness/thoroughness
ï‚· Compliance with recognized industry, government, and regulatory standards
 The organization’s product/service and customers/clients/citizenry
ï‚· System failure prevention and mitigation aspects
2. Recommend specific changes to the cybersecurity policy
Prepare your paper to the following format:
1. A Word document 10 to 12 pages (Times New Roman 12).
2. Single spaced with one-inch margins on all sides.
3. All citations and the reference list in the paper should be formatted in APA.
4. References are NOT included in the page count.
Submit the Term Project to the Dropbox no later than Sunday 11:59 PM EST/EDT of Module 7. (This Dropbox basket is linked to Turnitin.)
Grading Rubric
Criteria Needs Improvement Satisfactory Excellent Points Content (80 pts)
Clarity and quality of analysis of cybersecurity policy
Analysis neither adequately developed nor clearly stated.
(0-20 points)
Analyses adequately developed and clearly stated.
(21-22 points)
Analyses clear and systematic–adhering to generally accepted steps of decision making, problem solving, or risk assessment.
(23-25 points)
Clarity, logic, and thoroughness of policy strengths and weaknesses and impact
Few strengths, weaknesses, and inadequate impact identified or unclear and poorly reasoned presentation.
(0-15 points)
Adequate number of strengths, weaknesses, and their impact identified in a clear and logical presentation.
(16-17 points)
Significant strengths, weaknesses, and their impact identified in a very clear and well-reasoned presentation.
(18-20 points)
Clarity and quality of recommended policy changes
Recommendations take the form of mere suggestions without sufficient consideration of importance and needs.
(0-20 points)
Recommendations adequately identified and defensible to address needs of upper management.
(21-22 points)
Recommendations clearly identified and defensible to address needs of upper management.
(23-25 points)
Quality of documented support
The scope of the research presented in the paper is inadequate. Heavy reliance on reference material (e.g. Wikipedia, exam prep books, “Dummies” guides).
(0-7 points)
The discussion in the paper is based on an adequate review of the literature.
(8 points)
The discussion in the paper is based on a thorough review of the literature, which is not limited to news articles, but also includes scholarly resources such as studies or reports from agencies or organizations.
(9-10 points)
__/10 Form (20 pts)
The organization of the content is confusing without clear transitions among subtopics.
(0-7 points)
The content is generally well organized with some improvement possible in transitions among subtopics.
(8 points)
The content is well organized with clear transitions among major subtopics.
(9-10 points)
Writing style
Writing does not meet graduate standards. Unacceptable number of errors in spelling, punctuation, grammar and/or sentence structure.
(0-2 points)
Writing is acceptable, with a few errors in spelling, punctuation, grammar, and/or sentence structure.
(3 points)
Graduate-level writing is reflected throughout the paper, including accurate spelling, punctuation, grammar, and sentence structure.
(4-5 points)
Use of proper APA formatting
Unacceptable number of errors in citation identification and/or APA format.
(0-2 points)
Minor errors in citation identification and/or APA format.
(3 points)
In-text citations are in proper APA format and all sources are identified in the reference list and cited in proper APA format.
(4-5 points)

