Assets and Change Management Flashcards
Asset Management
Systematic process of developing, operating, maintaining, and selling assets cost-effectively
Change management
Structured approach to transitioning from a current state to a desired future state
Acquisition and Procurement
Structured process of sourcing, vetting, and obtaining security technologies and services
Three Main Mobile Device Deployment Models
1: BYOD (Bring Your Own Device)
Employees use personal devices for work
Cost-effective for employers
Drawbacks include reduced control over security and
device management
2: COPE (Corporate-Owned, Personally Enabled)
The company provides devices for employees
Greater control over security and standards
Higher initial investment
Employees may have privacy concerns or need to carry
two devices
3: CYOD (Choose Your Own Device)
Employees select devices from a company-approved list
Balance between employee choice and organizational
control
Similar drawbacks to COPE in terms of initial cost and
potential privacy concerns
Assignment/Accounting and Monitoring/Asset Tracking
Clear ownership and classification of assets
Rigorous monitoring through inventory checks and
MDM solutions
Asset Disposal and Decommissioning processes
Sanitization, destruction, certification, data retention
Minimizes the risk of unauthorized access or data
breaches
Change Management Importance
Strict approval for every change
Consideration of CAB insights, ownership, stakeholder
involvement, and impact analysis
Change Management Processes best practices
Schedule maintenance windows
Thorough backout plans
Consistent testing post-implementation
Technical Implications of Changes management aspects
Allow lists, deny lists
Handling downtime, restarts
Managing legacy applications and dependencies
Conducting the acquisition and procurement process - understanding different types of purchase options
Company Credit Card
Quick purchase of low-cost items
Transaction limits and item restrictions
Individual Purchase
Employee purchases, seeks reimbursement
Used in emergencies or when no company credit card
is available
Purchase Order
Formal document issued by the purchasing department
For larger, more expensive purchases
Dictates payment terms (NET 15, NET 30, NET 60)
Internal Approval Process
Ensures purchase alignment with company goals
Validates budget allocation
Assesses security and compatibility with existing
infrastructure
Post-Approval Procurement
Security checks and configurations
User training
Integration into the existing workflow
Considerations when selecting Mobile Device Deployment model
Consider the specific needs, budget constraints, and risk appetite of your organization
Tangible vs intangible assets
Tangible Assets
Office buildings
Computers
Machinery
Intangible Assets
Intellectual property
Organization’s reputation
Goodwill
Assignment and Accounting of Assets
Each asset assigned to a person or group, known as
owners
Process referred to as the allocation or assignment of
ownership
Avoids ambiguity, aids troubleshooting, upgrades, and
replacements
Classification and Categorization
Assets should be classified and categorized
Classification based on criteria such as function and
value
Informs maintenance, replacement, or retirement
decisions
High-value assets may require stringent maintenance
schedules
Low-value assets may be considered for recycling or
disposal