Irrespective of the size of the business, every organization will encounter an incident that will impede its

operation. Still, organizations often operate as if it is invincible to significant disasters or damage and will often have inadequate response policies and practices that address its social responsibility to the community or its workforce. With this in mind, research the 21st Century Oncology Company security breach that occurred in 2015.

Briefly introduce the organization and its security breach incident. Was this a preventable or unpreventable event? Why, or why not. Did the organization’s corporate culture in how it handled its information security practices, and procedures cause the incident to occur? Explain. What aspect of the organization failed that lead to the event? Was it an internal or external failure, or both?

What aspect of the organization’s contingency plan was underdeveloped, or not developed – the incident response plan, disaster recovery plan, business continuity plan, or a combination of a few of these plans? Elaborate on your response. Consider the organization’s social or environmental responsibilities. Did the organization do enough to address the damage and effect it had, if either was affected?

If you were responsible for the organization’s Business Continuity and Disaster Recovery planning efforts, what would you have done differently after the event? Why do you believe that your direction would have worked? Elaborate on your response.

