Information Risk Analysis at Jefford’s
Jefford’s faces several information security threats and must decide which risks to mitigate and at what cost. Headquartered in the U.S., Jefford’s, a fictitious Fortune 500 company, is growing rapidly with much of the expansion coming in emerging markets. They face numerous risk management decisions, including how to mitigate problems with stolen/lost laptops, malware, fraudulent website transactions and protection of personally identifiable employee data.
This case can serve as a good basis for a discussion on information security and risk management approaches. In Part B, the case provides detailed data on which to do a cost/benefit analysis, and with the help of the teaching note, creates a robust Monte Carlo simulation using Excel and Crystal Ball or similar software.