RESPOND TO THIS DISCUSSION POST BASED ON THE TOPIC “A security policy is developed by senior management to assign certain responsibilities and mandate certain requirements, which are usually aligned with the agency’s mission.
 A new policy was just created to prohibit peer-to-peer software downloads, as they are illegal and may bring malicious content to the workplace. You, the security officer, noticed that employees resisted the policy and chose to continue downloading peer-to-peer software. In an initial post, explain how you would handle this situation. What would you do to enforce the policy?
 When responding to your classmates, discuss what might occur if senior management did not have a security policy or procedures in place. Use specific examples to support your thinking.” (TWO (2) PARAGRAPHS WITH REFERENCES ON EACH OF THEM SEPARATELY, NOT TOGETHER)

1. From the technical perspective, it looks like you hit all the potential security points. I pose that when looking at the policy to enforce your measures, where and how much flexibility is given down the “chain of command” could have a major impact. When you talk about Symantec Endpoint Protection and the enforcement rules, would that need to be codified at the Corporate Management Policy level? Or, a more general policy giving the IT Management the latitude to craft the actual enforcement?

