Sunday, December 29, 2019

Shooting An Elephant By George Orwell - 1670 Words

During the last few weeks of my senior year of high school, I was hanging out with a few friends; it was late at night and we were on our way to a nearby park. Out of sheer boredom, we started playing pranks on one another. Some of the pranks were downright awful. In one instance, my friends decided to hide in a nearby bush and scare people who walked by. Initially, I was against pranking people, but reluctantly agreed because I did not want to be known as the â€Å"killjoy.† One of the people we scared, a five-year-old returning from the park, fell in a puddle and hurt his knee. We all ran away to avoid getting caught. Actually, I did not want to prank people; however, the social pressure of being with my friends in addition to my role in the group eventually caused me to comply. In â€Å"Shooting an Elephant,† by George Orwell, Orwell faced a similar dilemma. â€Å"Shooting an Elephant† is an essay that depicts Orwell’s conflictions about shooting a ramp aging elephant while he served as an Imperial policeman in Burma during British colonial rule. In his essay, Orwell describes the difficult decision of whether or not to shoot the elephant and why he made his decision. Although he did not initially want to shoot the elephant, the social pressure of being surrounded by a crowd of Burmese natives encouraging him and his role as an Imperial policeman ultimately forced his hand. The concepts of social pressure and roles are studied in many different experiments and studies. Two prominentShow MoreRelatedShooting An Elephant By George Orwell1246 Words   |  5 PagesSalma Kingu Professor: Michael English: 1301 Essay 2 Summer: 06/26/2017 â€Å"Shooting an Elephant† by George Orwell In the 1950, George Orwell was a police officer during the British Empire in lower Burma, India who was ill- educated and secretly hated his job due to the dirty works and evil of colonialism; George Orwell wrote the story about shooting an elephant. Shooting an Elephant is a story which describes how the British occupiers were badly treating the Burmese by killing and terrorizedRead MoreShooting An Elephant By George Orwell867 Words   |  4 PagesShooting an Elephant The short story â€Å"Shooting an Elephant† by George Orwell describes Orwell’s experience as a police officer of a town in the British colony of Burma. George Orwell, a military occupier in the Burmese land is much hated by the civilians. The hatred he receives from the locals makes him despise the British Empires mistreatment on the Burmese people. However, he also resents the locals in the village for revolting against him, for he is only a worker of the British Empire. â€Å"ShootingRead MoreShooting an Elephant by George Orwell 884 Words   |  4 Pagesappeared normal as usual. I was only in the kitchen for five minutes when I heard my brothers screaming my name. I rushed over to the screams which led to my room. My brother’s faces were pale with fright while they waited outside my room door. It was as Orwell once mentioned, â€Å"Evidently there was something that the children ought not to have seen† (pg. 231). They pointed towards the birdcage an d I immediately started thinking if I’d forgotten to feed the birds. While I gently removed the towel that I placedRead MoreAnalysis Of Shooting An Elephant By George Orwell988 Words   |  4 PagesEric Arthur Blair, or commonly known as George Orwell, is the author of many compositions. Blair, the author of two of the most famous novels of the 1920s; Animal Farm and Nineteen Eighty-Four, was born in Eastern Indian. He joined the Indian Imperial Police in Burma but resigned in 1927 to become a writer (BBC). Orwell’s style of writing can be described as bold and vivid. He puts the truth in his writing. Orwell’s novel, â€Å"Shooting an Elephant,† was published in 1936. In the novel, a colonial policemanRead MoreShooting an Elephant by George Orwell Essay585 Words   |  3 PagesShooting an Elephant by George Orwell In his essay Shooting an Elephant, George Orwell explains how the controlling authorities in a hostile country are not controlling the countrys population but are in fact a mere tool of the populous. Orwells experience with the elephant provided the insight for his essay, and gives a clear example of the control the natives have over the authorities. The authorities in Lower Burma were there to police the state that their government controlled, butRead MoreShooting an Elephant bye George Orwell1019 Words   |  4 Pagesmeans a loss of dignity. George Orwell’s short story, â€Å"Shooting an Elephant†, is an ideal example. In the story, Orwell, the main character, works as a policeman in Burma in the 1930s for the British Empire. One day, an elephant tramples loose, and although Orwell has no intent on shooting the elephant, a mob of native Burmese pressures Orwell to shoot the elephant. He reluctantly acquiesces to prevent being humiliated. After that experience, Orwell writes â€Å"Shooting an Elephant† to demonstrate nativeRead MoreAn Analysis Of Shooting An Elephant By George Orwell1147 Words   |  5 Pageswhere he is hated and pressured by a large number of people. George Orwell had made up his mind that imperialism was an evil thing and the sooner he chucked up his job and got out of it the better. As for his believe, â€Å"he was theoretically and secretly all for the Burmese and all against their oppressors, the British.† In the short story, â€Å"Shooting an Elephant†, George Orwell is face with an incident that leads him to shoot the elephant at the end of the story. Trough out the story he is faced withRead MoreGeorge Orwell s Shooting An Elephant 1114 Words   |  5 PagesShooting an Elephant : George Orwell Since the publication of George Orwell s, Shooting an Elephant in 1936 many philosophers have engaged in conversation about humanity, violence, politics, power, dominance, race, culture and principles. Orwell was in fact a genius plain and simple, though in a very complicated way(Firchow 94). He brings you into the essay with his lucid and vivid details the entire way through from the setting I remember that it was a cloudy, stuffy morning at the beginningRead MoreGeorge Orwell s Shooting An Elephant894 Words   |  4 Pagesdescribed by George Orwell, in his short story, â€Å"Shooting an Elephant†(Orwell). In this story, Orwell delicately explains to his readers how society is influenced by peer pressure. The story was set in Burma in 1936 and begins with a low self-esteemed police officer just trying to get through day- to- day life. His life takes a turn when he is suddenly faced with the decision to shoot an elephant to please a crowd of spectators. Believing that his act ions are wrong he shoots the elephant anyway andRead MoreAnalysis Of Shooting An Elephant By George Orwell727 Words   |  3 PagesGeorge Orwell is an internationally acclaimed author that has been praised for his awareness of social injustice and opposition to totalitarianism. Although in his later life he realized some of his previous misdeeds when Orwell was a young man he served as a police officer in a British controlled Burma. The Burmese people at the time were rightfully scornful towards the Europeans; this includes the young Orwell. The time that Orwell spent in Burma was not all wasted, as it inspired him to come up

Friday, December 20, 2019

Nike s Unethical Behavior Of The Workplace - 3836 Words

Look at all the clothing and apparel you have on. Chances are, those items were produced in sweatshops outside the United States. According to the US Department of Labor, a sweatshop is a factory that is in violation of at least two labor laws (Do Something, 2014). It is generally understood that sweatshops maintain terrible working conditions, and that the workers are compensated far below what many Americans would consider acceptable hourly wages. A startling fact that many do not know, however, is that many women employees are forced to take birth control pills in order to avoid maternity leave and other associated pregnancy benefits. Advocacy groups have raised awareness about these practices, and throughout this piece I will highlight four companies using sweatshops, a best practice organization that aims to help eliminate poor working conditions for employees, and how the four companies have responded to their unethical behaviors. Nike has been accused of using sweatshops since the 1970s (Global Labour Rights, 2000). The company originally outsourced manufacturing plants to Korea and Taiwan, yet had to move them due to increasing regulations and labor laws as those countries developed (Nisen, 2013). The new locations in China, Vietnam, and Indonesia offered the company cheaper labor, with fewer hurdles to overcome in order to drive costs down. In China, Nike has over 50 contractors, employing at least 100,000 workers (Global Labour Rights, 2000). There are numerousShow MoreRelatedInternational Business Ethics And Ethical Issues Within International Organizations1113 Words   |  5 Pagescountries †¢ There is a lack of governments’ initiative to create ethical cooperation framework and thus to enhance ethical behavior in international business; †¢ It is difficult to outline those ethical values, which would be understandable, acceptable and important for representatives of all the continents within different types of international cooperation projects. Ethical behavior within a business ensures awareness and concern for the future and for the right way of action in each particular situationRead MoreThe Pyramid Of Corporate Social Responsibility1262 Words   |  6 Pageslegal requirements (Carroll, 1991), ethical: organizations managements are to follow the generally held beliefs, about the behavior of the society. It is important to recognize that corporate integrity and ethical behavior go beyond mere compliance with laws and regulations (Carroll, 1991) and philanthropic: encompasses those corporate actions that are in response to society s expectation that businesses be good corporate citizens. It is important that managers and employees participate in voluntaryRead MoreTo What Extent Unethical Marketing Technique Could Damage the Sustainable Business Enivironment2676 Words   |  11 PagesTo what extent unethical marketing techniques could damage the sustainable business environment. Discuss. Marketing is like a double-edged sword, if it is adopted properly, it will give profits to a company; however, if it is used inadequately, it will give harm. It is undeniable that today’s business operations have more intense competition level against each other due to the advancement of technology that allows people to receive more information. Marketing plays the key role in making productsRead MoreTo What Extent Unethical Marketing Technique Could Damage the Sustainable Business Enivironment2661 Words   |  11 PagesTo what extent unethical marketing techniques could damage the sustainable business environment. Discuss. Marketing is like a double-edged sword, if it is adopted properly, it will give profits to a company; however, if it is used inadequately, it will give harm. It is undeniable that today’s business operations have more intense competition level against each other due to the advancement of technology that allows people to receive more information. Marketing plays the key role in making productsRead MoreBusiness Ethics of Nike Inc.5528 Words   |  23 Pageson the requirement given, I have chosen Nike Inc. as the topic of the discussion. Nike Inc. is the world leading company merchant of athletic shoes, sportswear and sports gear based on United States. Bill Bowerman and Phil Knight established the company in the 1964 and during that time Nike Inc. was known as Blue Ribbon Sports. Furthermore, the organization has been experiencing phenomenal growth and rapidly expanding since then. Krentzman (n.d.) claimed ‘Nike sold $3.2 million worth of shoes in 1972Read MoreStrategic Analysis of Nike Inc12147 Words   |  49 PagesTABLE OF CONTENTS Executive SummaryÂ…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â….Â…Â…Â…Â…p.4 HistoryÂ…Â…Â…Â…Â…Â…Â…Â…Â…Â…..Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…..p.6 Profile of CEOÂ…Â…Â…Â…Â…Â…Â….Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…..p.7 Competitor s ProfileÂ…Â…Â…Â….Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â….p.7 Industry ProfileÂ…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…..p.8 Company AnalysisÂ…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…p.9 Industry AnalysisÂ…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…......p.24 Top Competitor AnalysisÂ…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â….p.25 Other External ForcesÂ…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Â…Read MoreNike Strategy Analysis12215 Words   |  49 Pagesp.30 Strategic Plan†¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦..p.33 Conclusion†¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦...p.38 LIST OF EXHIBITS 1. Sales Trends Graph†¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦p.5 2. Net Income Trends Graph†¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦.p.5 3. Nike Board of Directors Table†¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦...p.11 4. Table of Key Financial Ratios†¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦...p.22 5. Net Income Trend Graph†¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦.†¦..p.24 6. Primary Strategic Match Position Chart†¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦Ã¢â‚¬ ¦.Read MoreCorporate Social Responsibility Versus Profit Maximization2250 Words   |  9 PagesAs a large multinational corporation, Nike has built up its factories in many of the developing regions, such as Mexico, Bangladesh and Mainland China, to get access to cheaper resources and labors for their production, whilst the host country can only gain very little percentage of the profit from the product. As most of the revenue flows to the home country of Nike, the goal of profit maximization has been achieved by reducing the costs. The approach for Nike to realize their owners’ benefit is toRead MoreBusiness Ethics: Child Labor in Wal-Mart8552 Words   |  35 PagesPart A: Introduction There are several ways to define ethics. Ethic is a set of principles of right and wrong behavior guiding. Ethical person will behave in accordance with sound moral principles based on fairness, justice and trust (Wiley, 1995). The purpose of ethic is to provide an environment that allows people to live a more structured, happy life than would exist without ethics (Warnock, 1971). Business ethic is examination of variety of problems that can arise from business environmentRead MoreEssay on Under Armour strategic report9937 Words   |  40 Pagesthe Gen Y segment is the second largest segment next to the boomers (85 million strong), future growth looks optimistic, particularly because UA is also doing well with the Gen Z group, who will be even more likely to carry brand loyalty into their 20’s and beyond. UA has recently been active in reaching out to women and girl athletes in the same demographic age sets. Even though the Gen Y spending only makes up 4% of a typical household spending, this buying group tends to be more tech savvy, and

Thursday, December 12, 2019

Cyberphysical Security in Networked Control †MyAssignmenthelp.com

Question: Discuss about the Cyberphysical Security in Networked Control. Answer: Introduction Information is considered to be the most valued asset of any sector. Information is susceptible to various types of risks as well as threats. With the emergence of information technology, the cyber threats are increasing at a fast pace. Information security focuses on protecting the valuable and sensitive data of an organization. Information security is involved in protecting the integrity, confidentiality and availability of the information. Banking sectors deal with financial data that needs to be protected. Nabil Bank is known as the first commercial private bank of Nepal (Nabilbank.com 2017). Nabil Bank is involved in providing wide range of banking services via its 52 representation points. This report discusses and plans a security program for providing information security to Nabil Bank. It tries to improve the present security structure of Nabil Bank. This report gives a brief overview of information security. It gives suggestion about the kinds of security models that can be adopted by Nabil Bank for better and secure operations. Threat identification along with risk assessment is also carried out in this report. This report discusses about the ISO standards as well as modes that will be suitable for Nabil Bank with proper reasoning. The training requirements are also provided in this report for adopting security programs in an effective manner. This report recommends certain steps and procedures that can be taken by Nabil bank for improving its security infrastructure and for making the system of information security strong. Information security can be considered to be a practice of defending and protecting information from any kind of unauthorized access, misuse, disclosure, modification and disruption (Vacca 2012). The modern generation is completely dependent on the information and communication technology for confidential as well as commercial purposes. There are several risks as well as threats that are associated with information technology like safety risk, environmental risk, physical risk and financial risk. Security concerns that are related to ICT are gaining major importance with time. All the organizations in every sector face some kind of security issues (Webb et al. 2014). Strong information security structure as well as risks can be adopted in an organization to protect it from risks and threats. Risks can be mitigated and prevented by several methods and techniques. Information security has certain aspects like confidentiality, availability and integrity. When the information cannot be accessed by any unauthorized user then the confidential aspect of information is achieved (Von Solms and Van Niekerk 2013). When the information cannot be misused, destructed or modified by an attacker or user than the integrity of the information is maintained. When the right information is available to the right or authorized person at the correct time with no such interference or obstruction then the availability of information is achieved. Banking sectors have been a major target for the hackers, crackers as well as the cyber criminals. Information security aims at identifying the risks and mitigating it for protecting sensitive information. Current Security Situation and Titles of the Security Personnel Nabil Bank was founded in July, 1984. Their main objective is to extend the services of modern banking to different sectors of the society. Nabil Bank provides several banking and financial services via its 52 representation points. It has introduced several innovative and modern marketing concepts and products in banking sector. Their main objective is customer satisfaction. Highly qualified personnel are responsible for managing the daily operations. Sensitive financial information is handled by the bank. Risk management is carried out by highly experienced and qualifies management team. Nabil Bank is totally equipped with advanced technology that consists of banking software of international standard for supporting E-transactions and E-channels. Their aim is to provide a complete and secure financial solution to their customers. The risk management team is highly efficient in assessing the risk and providing information security to the organization (Sandberg, Amin and Johansson 20 15). There are many security personnel present in the risk management team. They are as follows: Chief Risk Officer: The main duty of the Chief Risk Officer is to implement risk functions, tools as well as systems for identifying, assessing, measuring, monitoring and reporting risks. They identify main risk areas and enhance the function of security architect. They are also responsible for implementing security program. Head of Credit Risk Management: They are responsible for implementing procedures and policies for the purpose of reducing credit risk. They are also involved in building financial models that have the capability to predict any type of credit risk that can affect the organization. The credit risk management team reports to their head regarding daily operations and activities. Senior Credit Analyst: They are responsible for reviewing and assessing financial history of a company or an individual for the purpose of determining whether the candidate is eligible for getting loan. They evaluate financial statements like balance sheets as well as income statements for understanding the default risk level. Compliance and Operational Risk Manager: They are responsible for handling the risk related to legal sanctions, financial loss or loss of banks reputation. They ensure that the bank complies with the government laws, standards and its own code of ethics and conducts. They also manage any type of risk arising because of failure of internal processes, systems, people as well as external events. Risk Assessment and Threat Identification Risk assessment deals with a number of steps and procedures for understanding the asset values, possible threats, system vulnerabilities, and predictable impacts of threats along with the likelihood of threats (Kit et al. 2014). Risk can be defined as vulnerability functions as well as the expected impacts of threats. Risk depends on the probability of the occurrence of threat. System characterization is the first step in risk assessment. Information about the software and hardware involved is initially found out (Aloini, Dulmin and Mininno 2012). NIST framework of risk management involves assessment of risk after all the risks have been framed. This framework integrates business processes, company goals, mission, SDLC processes and information security infrastructure for effective risk assessment. The methodology of risk assessment includes a process, risk model, an approach for assessment and analysis approach (Lo and Chen 2012). After risk identification is carried out, the risks are monitored. ENISA framework will be effective in the E-transaction processes of Nabil Bank for the purpose of assessing risks (Theoharidou, Mylonas and Gritzalis 2012). This model identifies the risk and analyses it for the purpose of evaluation. Information security can be enhanced in an organization only by identifying the possible threats and risks. Threat can be considered to be a potential for some kind of trouble or damage to IT infrastructure. After proper identification of threats a well planned security program can be carried out in order to protect the bank from any data and security breach. Nabil Bank provides several financial and banking services. It also provides online banking facilities to the customers. There are two broad categories of threats that are identified initially. These are the internal and external threats. Internal threats: Business practices and processes of a financial institute have a huge influence on internal threats. If more number of employees is able to access sensitive customer information then the probability of threats will be more. The intensity of internal threats is less as they are under the control of the bank. External threats: These threats have a greater intensity as they are not under the control of the bank. External threats can be reviewed by listing the reasons and ways in which personal data can be accessed, identifying the ways by which the banks system is connected to outside world via emails and networks, identifying service providers that have access to the data. Then the exposure of the threat is identified. Some of the threats that have been identified in the internet banking system of Nabil Bank are phishing, spyware, viruses, Trojan horses as well as key loggers. In phishing attack hoax mails are used for committing a fraud activity (Hong 2012). Online thieves can steal sensitive data of the customers to misuse it. Spyware is a type of malicious software that collects valuable information of the users in a secretive manner for misusing and modifying it (Giannetsos and Dimitriou 2013). Viruses can get attached to another program like spreadsheets for replicating itself. Trojan horses are another type of threat where an application acts like a secure application and harms the system in which it is downloaded or injected. Key logger software is considered to be the most harmful threat of Nabil Bank (Dadkhah and Jazi 2014). If key logger software is installed in the electronic device of the customer from where the customer accesses online banking services, then it tracks all the informati on that is used by the customers. This information can be used by the attackers in order to steal money from the bank. The financial database of the bank can be hacked to access sensitive financial data (Martins, C., Oliveira and Popovi? 2014). Deliberate and external threats are extremely harmful for the banking sector as it causes huge financial loss. After identifying the threats, their exposure must be determined to rank them based on their intensity. This will be extremely helpful for the bank to mitigate risk in an efficient manner. Security Models Security models are responsible for providing standards for the purpose of comparison and reference. Nabil Bank uses the NIST access control model for the purpose of identification of access mechanism that is used in different levels that exist in the bank. Management level is involved in dealing with information that will help in the strategic planning process. The level that deals with administration work will be responsible for controlling operational data. The technical layer of the bank deals with daily operational data that is needed for running the business. NIST framework is responsible for describing the present cyber security posture, their target state, find out ways to improve risk management and fosters the process of communication between the external and internal stakeholders of the bank. The present risk management procedure is not replaced when the bank uses NIST framework. Rather the NIST framework tries to complement the present security structure (Chang, Kuo and Ramachandran 2016). The bank can use its current structure and leverage NIST framework for the purpose of identifying opportunities for improving the current risk security management. The security models of NIST framework will be highly beneficial for Nabil Bank as their documents are available at free of cost. It can also be updated by government. Risk assessment guidelines, security plans and privacy control plans are provided NIST framework (Malik and Nazir 2012). Strong information security policies can be implemented for protecting the banks valuable information . Development of Security Program Nabil Bank is a large sized company having 52 points of representation across Nepal. The organization structure that is present in the bank is hierarchical in nature. The organization has code of ethics and conducts incorporated in its culture. The main objective of the bank is to provide a single and secure financial solution to its customers. Nabil Bank gives first priority to its customer. The employees follow a code of ethics in the organization (Peltier 2016). They act in an honest manner to protect the interest of their clients (Hu et al. 2012). The bank takes major action against any employee who commits any misconduct. Strong information security policies can be implemented for protecting the banks valuable information. A well planned security program can be effective for protecting the bank from any security risks and threats. Financial data breach will cause loss to the clients and also will affect the reputation of the bank. The following steps can be taken in order to dev elop an efficient security program: Risk assessment: The first step in this process is to identify what department deals with what information. The bank also needs to find out who has access to what sensitive information. The second step will be to identify external and internal threats and determine its probability of occurrence. The last step is to determine whether the existing policies are adequate for protecting the information. Current policy adjustments: A security policy must be designed to protect the customer information. This policy must be approved by the board of directors in order to carry enhance the information security of the bank. Security control design: The management should focus on developing security control plans for all the business units. There must be security guidelines present. Access controls need to be designed where authentication procedures like passwords, PINs, electronic tokens are used. Biometric identification and firewalls can be implemented for protecting the databases that store sensitive financial data. The networks can be protected by implementing firewalls. The customer details can be encrypted to protect it from any unauthorized access. Response plan: The management team must develop and design a response plan for overcoming a security breach situation. The person who is in charge of maintaining customer information must design this plan. It must be well written. The plan needs to include the contact details of law agencies for taking appropriate steps. Service provider: The contract between the bank and service provider must contain effective response plans. The bank must ensure that the contract contains appropriate standards for information security. Testing: The testing of the security controls and plans must be done to make sure that the bank is well protected from any type of security threat and risk (Shackelford et al. 2015). The parties involved in the contract must conduct control testing. They must conduct ethical hacking to find out the effectiveness of the security policies and plans. Roles and Responsibilities Chief Risk Officer: The main duty of the Chief Risk Officer is to implement risk functions, tools as well as systems for identifying, assessing, measuring, monitoring and reporting risks. They identify main risk areas and enhance the function of security architect. They are also responsible for implementing security program. Security Manager: The role of the security manager is to collect and utilize information in an effective manner to achieve the goal of the organization. They are responsible for proper communication of information among various layers. Senior Credit Analyst: They are responsible for reviewing and assessing financial history of a company or an individual for the purpose of determining whether the candidate is eligible for getting loan. They evaluate financial statements like balance sheets as well as income statements for understanding the default risk level. Information security of Nabil Bank can be improved by adding more designations and roles so that there is no overlap of responsibilities of the employees (Ahmad, Maynard and Park 2014). Some of the new titles that can play an effective role in improving information security are: Technical security manager: The technical aspects of security will be looked after by these managers. They will be involved in firewall implementation and encryption processes. Program security manager: The third pert or vendor risks can be evaluated by these managers. CISO: The whole security policies can be looked after by CISO. CISO can take the responsibility of design strong security policies for the organization. Source code manager: The source codes can be reviewed by these managers for detecting any type of vulnerability. There can be many specialized roles like virus technicians whose responsibility will be to detect new virus as well as develop a defense plan to fight the virus. Training Requirements The employees of Nabil Bank must be aware of the need of a strong information security program. Employee training can be considered to be a critical component for the information security of bank. Management must document the information regarding which employee has access to what valuable information of the customers (Hu et al. 2012). The employees must be made aware of the security policies of the bank. They must be trained to identify valuable customer information. Employees must be given training on how to implement the written policies that governs the disclosure of the information of the customers (Lebek et al. 2013). There need to be regular meetings to discuss new policies and modify existing policies for improving the present information security policy. ISO Standards and Models ISO model is used in most of the industries. ISO standards provide a common base to all the organizations in order to develop security standards and policies (Disterer 2013). Organizations are able to develop inter organizational deals by using ISO standards. ISO/IEC 27001: This standard helps in implementing ISO/IEC 27002 in order to set up ISMS (Susanto, Almunawar and Tuan 2012). ISO/IEC 27002: This standard addresses the security needs of an organization. It also helps in developing security policies (Ramanauskaite et al. 2013). ISO model is well suited for Nabil Bank because it will assist the bank in developing management system for managing information security. The ENISA model can also be suitable for Nabil Bank for the purpose of securing the E-transaction and E-channel. Conclusion This report concluded that Nabil Bank can improve its information security by adopting a well defined security program. This report discussed about the critical factors of information security like confidentiality, availability and integrity. It said that the breach of data and information security can lead to serious and potential losses. The main purpose of assessing risk is to identify organizational threats and vulnerabilities. Internal threats can be identified by finding out which staff has access to which information and overlapping information. It pointed out that the security system of the bank is accessed by an unauthorized outsider then this result in external threats. It gave a description about the security program that can be adopted by Nabil Bank. This report discussed about the current roles and suggested an improvement plan for making the information security of the organization strong. It suggested that the employees must be made aware of the security policies of th e bank. This report concluded that ISO model is suitable for the bank and ENISA model is suitable for its electronic transaction system. The advanced technologies as well the communication channels need to be protected from attackers. Recommendations Nabil Bank can secure its information and data from unauthorized access by following certain steps: Encryption: Financial data must be encrypted so that the hackers cannot get access to it. Employee training: Proper training must be imparted to the employees to enhance the information security. Updated software: Latest version of the software must be installed in the system. It must be updated regularly. Firewall: Firewall implementation will protect financial information from any external intrusion. References Ahmad, A., Maynard, S.B. and Park, S., 2014. Information security strategies: towards an organizational multi-strategy perspective.Journal of Intelligent Manufacturing,25(2), pp.357-370. Aloini, D., Dulmin, R. and Mininno, V., 2012. Risk assessment in ERP projects.Information Systems,37(3), pp.183-199. Chang, V., Kuo, Y.H. and Ramachandran, M., 2016. Cloud computing adoption framework: A security framework for business clouds.Future Generation Computer Systems,57, pp.24-41. Dadkhah, M. and Jazi, M.D., 2014. Secure payment in E-commerce: Deal with Keyloggers and Phishings.International Journal of Electronics Communication and Computer Engineering,5(3), pp.656-660. Disterer, G., 2013. ISO/IEC 27000, 27001 and 27002 for information security management.Journal of Information Security,4(02), p.92. Giannetsos, T. and Dimitriou, T., 2013, April. Spy-Sense: spyware tool for executing stealthy exploits against sensor networks. InProceedings of the 2nd ACM workshop on Hot topics on wireless network security and privacy(pp. 7-12). ACM. Hong, J., 2012. The state of phishing attacks.Communications of the ACM,55(1), pp.74-81. Hu, Q., Dinev, T., Hart, P. and Cooke, D., 2012. Managing employee compliance with information security policies: The critical role of top management and organizational culture.Decision Sciences,43(4), pp.615-660. Hu, Q., Dinev, T., Hart, P. and Cooke, D., 2012. Managing employee compliance with information security policies: The critical role of top management and organizational culture.Decision Sciences,43(4), pp.615-660. Kit, R.I.S., Allen, K., Mazzotti, F.J. and Briggs-Gonzalez, V., 2014. Risk Assessment Methodology. Lebek, B., Uffen, J., Breitner, M.H., Neumann, M. and Hohler, B., 2013, January. Employees' information security awareness and behavior: A literature review. InSystem Sciences (HICSS), 2013 46th Hawaii International Conference on(pp. 2978-2987). IEEE. Lo, C.C. and Chen, W.J., 2012. A hybrid information security risk assessment procedure considering interdependences between controls.Expert Systems with Applications,39(1), pp.247-257. Malik, A. and Nazir, M.M., 2012. Security framework for cloud computing environment: A review.Journal of Emerging Trends in Computing and Information Sciences,3(3), pp.390-394. Martins, C., Oliveira, T. and Popovi?, A., 2014. Understanding the Internet banking adoption: A unified theory of acceptance and use of technology and perceived risk application.International Journal of Information Management,34(1), pp.1-13. Nabilbank.com. 2017.About Nabil Bank - Nabil Bank Limited First Private Commercial Bank. [online] Available at: https://www.nabilbank.com/intro/about-nabil-bank/11-product-services/deposit-products [Accessed 5 Oct. 2017]. Peltier, T.R., 2016.Information Security Policies, Procedures, and Standards: guidelines for effective information security management. CRC Press. Ramanauskait?, S., Olifer, D., Goranin, N. and ?enys, A., 2013. Security ontology for adaptive mapping of security standards.International Journal of Computers, Communications Control (IJCCC),8(6), pp.813-825. Sandberg, H., Amin, S. and Johansson, K.H., 2015. Cyberphysical security in networked control systems: An introduction to the issue.IEEE Control Systems,35(1), pp.20-23. Shackelford, S.J., Proia, A.A., Martell, B. and Craig, A.N., 2015. Toward a Global Cybersecurity Standard of Care: Exploring the Implications of the 2014 NIST Cybersecurity Framework on Shaping Reasonable National and International Cybersecurity Practices.Tex. Int'l LJ,50, p.305. Susanto, H., Almunawar, M.N. and Tuan, Y.C., 2012. Information security challenge and breaches: novelty approach on measuring ISO 27001 readiness level.International Journal of Engineering and Technology. IJET Publications UK,2(1). Theoharidou, M., Mylonas, A. and Gritzalis, D., 2012. A risk assessment method for smartphones.Information security and privacy research, pp.443-456. Vacca, J.R., 2012.Computer and information security handbook. Newnes. Von Solms, R. and Van Niekerk, J., 2013. From information security to cyber security.computers security,38, pp.97-102. Webb, J., Ahmad, A., Maynard, S.B. and Shanks, G., 2014. A situation awareness model for information security risk management.Computers security,44, pp.1-15.

Thursday, December 5, 2019

Should Tobacco Companies Be Held Responsible free essay sample

Should tobacco companies be held responsible for smoking-related illnesses and deaths? I. Introduction A. Should tobacco companies be held responsible for smoking related illnesses? In most cases I believe they should be held liable. Most Americans ask this question and want to know about cigarette companies and why they are allowed to keep selling these products that cause health problems. B. Most people that were smokers way back in the days before they actually had to label their products as unsafe and deadly. In the 70’s it was legal to purchase cigarettes as a teenager and the companies knew that their product was dangerous. Especially since minors were able to purchase these deadly products, they should be held accountable for those that began smoking in their teenage years and were sold to with the reassurance from the company and the government. II. Are the people responsible for their actions. A. Should the people make the sound choice to buy cigarettes who know the risk of smoking be held accountable for their health issues. We will write a custom essay sample on Should Tobacco Companies Be Held Responsible or any similar topic specifically for you Do Not WasteYour Time HIRE WRITER Only 13.90 / page I believe it is called free will in this point being that people today know the repercussions of smoking. B. The fact that all tobacco companies today have to label the warnings on their products and people still make that choice to light up The general public has been well educated about the health risks of smoking, so people who smoke are fully informed about the possible consequences of their habit. Where will that lead our society, more than likely people will try and sue fast food companies for making them fat; trending on down to point the finger at all these companies for the bad choices they made. C. The people that actually started smoking before the surgeon general made these companies put warnings on their products; these people on the other hand did not know the facts about the health issues from smoking. In my eyes these people have every right to be angry or disgruntled with Big tobacco. These people are the victims of our society because they on the other hand like the present were not as informed of the health issues caused from smoking. So they should not be held liable because of these companies getting rich from other peoples suffering. III. Are the companies lying to the public. A. Do tobacco companies oversell and manipulate their products in order for consumers to keep smoking and should the government step in to control their habit? The tobacco industries have to put these labels because the government makes them do so. So now they have to make their product more appealing to offset their outcome of consuming their product. B. Tobacco companies are an evil industry and it’s not surprising they shredded documents to cover up strategic actions for addicting people to their cancer sticks. They try and promote their product as sexy but would rather make a buck from the deadly outcome from smoking their product.