You are on page 1of 1

SIT284: CYBER SECURITY MANAGEMENT

ASSIGNMENT 1: Rubric
YET TO ACHIEVE MEETS EXCEEDS STANDARD
MINIMUM STANDARD STANDARD
Fail 0–49 Pass 50–59 Credit 60–69 Distinction 70–79 High distinction 80–100
Provides no meaningful Identifies and describes a In addition to the requirements In addition to the requirements for a “Credit,” In addition to the requirements for a
Data breach information related to security lapse that led to for a “Pass,” considers multiple identifies several possible security flaws that “Distinction,” determines the methods
analysis the task. Excessive the breach. factors (e.g., threat actors and allowed the threat actor(s) to get access to used by the threat actors to get access to
(30 marks) words quoted directly attack vector), how the threat the system, and how Marriott discovered and data and correlates them with security
from sources. actors identified and exploited contained the breach. controls that may have failed.
the attack vector.

Analysis of Provides no meaningful Highlights the importance of In addition to the requirements In addition to the requirements for a In addition to the requirements for a
cybersecurity information related to cybersecurity governance for a “Pass,” describes two ways “Credit,” describes how Marriott's data “Distinction,” describes steps that Marriott
governance the task. Excessive when it comes to planning on how cybersecurity governance breach could have been avoided through board of directors should consider with
and planning words quoted directly for a data breach. could have addressed the data strategic cybersecurity planning respect to their cyber security governance
from sources. breach. and oversight.
(30 marks)
Analysis of Provides no meaningful Reviews Marriott's In addition to the requirements In addition to the requirements for a In addition to the requirements for a
data breach information related to response to the data for a “Pass,” evaluates Marriott's “Credit,” draws reasonable inferences “Distinction,” assesses the Marriott
related laws. the task. Excessive breach with reference to response against GDPR's breach about the adequacy of Marriott's response response to the breach in terms of critical
words quoted directly GDPR compliance checks. notification rules and remarks and identifies areas of improvement and response factors and draws plausible
(30 marks) from sources. about GDPR compliance. suggests an enhancement. inferences in terms of minimizing the
impact for customers.
Poor or contains Writing is reasonable with Writing is good with some errors; Writing is very good with very few errors; Writing is very clear and concise; citations
Presentation
excessive words quoted some errors, correct and correct and consistent citations; citations are mostly correct and consistent; are correct and consistent; highly relevant
(10 marks) directly from sources. consistent citations; correct references but has little well-chosen references in correct style. and well-chosen diverse references in
references are in correct diversity. correct style.
style but no diversity.
Deakin University

You might also like