Throughout this course, you will be “working” as the Risk Manager for a 2 year old start up. The startup started as a SaaS based platform that initially provided its customers with a complete weight-loss and fitness program tailored to the individual user, but has expanded to fitness apparel under the logo MMS. MakeMeSlim is privately held, but is interested in going public sometime in the future. In 2 short years, MakeMeSlim has expanded from its 2 founders, who are still substantially involved, to over 300 employees. Some additional facts:
MakeMeSlim collects information about its users, including:
Name, address, health issues, current weight, goal weight, and food preferences
Credit Card Information for a monthly charge
MakeMeSlim uses a third party hosting site and Google Analytics to collect additional information about Users.
MakeMeSlim has been using a third party to handle its credit card information.
MakeMeSlim was started by 2 sisters, and as the company has grown they have hired mostly family for the top management positions.
The company has not considered any legal issues, and its privacy policy, terms of use have not been updated since the company started.
The clothing line is designed by a third party, but created and sold by MMS.
The distribution center is located in North Carolina, but the company’s main headquarters is in Philadelphia, PA.
ASSIGNMENT:
Based on the fact pattern for MMS, prepare a memorandum that identifies the potential risks MMS currently faces. For each risk, identify why you believe it is a potential risk for MMS and which departments within the organization will be impacted by each identified risk MMS has the following departments:
Human Resources
IT
Research & Development
Finance
For this assignment, you are only tasked with identifying potential risks, although you should explain why you believe it is a risk for MMS.
Please be sure to organize your response. You also need to consider the audience. You are preparing a memo that will be presented at a board meeting before the CEO, CFO, etc. Make sure you use a formal writing style. A complete response may include: (i) separate headings; (ii) specific examples; (iii) current events that impact your analysis; and (iv) laws that may impact the risk. This is not a dissertation, so keep things at a high level but also make sure to completely respond to what you have been asked to prepare.
One source:
https://www.darkreading.com/vulnerabilities-threats/cisos-how-to-answer-the-5-questions-boards-will-ask-you
Last Completed Projects
| topic title | academic level | Writer | delivered |
|---|
