M2A1 Case Study

This activity will address module outcomes 2, 4, and 5. Upon completion of this activity, you will be able to:

Analyze various leadership decisions regarding cybersecurity and determine the strengths and weaknesses of some courses of action. (CO 4)
Compare two forms of leadership during significant breaches to an organization. (CO 4, 5)
Discuss the importance of consequence management and leadership. (CO 5, 6)
In a report from Congress, one of the key failings that was documented after the OPM breach was a failure in leadership. Leaders shape culture, make decisions, and allocate resources in order to provide the best strategic outcomes for their organizations.

In the case of OPM, it was determined that a significant portion of damage and theft of national security significance could have been averted if leadership had been more responsive and directive.

In this assignment, students will examine the role of leadership at OPM and will assess if the findings have merit or not.

Read the following:

Oversight & Government Reform. (2016, September 7). The OPM data breach: How the government jeopardized our national security for more than a generation [PDF file size 42 MB]. Retrieved from https://oversight.house.gov/wp-content/uploads/2016/09/The-OPM-Data-Breach-How-the-Government-Jeopardized-Our-National-Security-for-More-than-a-Generation.pdf
Naylor, B. (2016, June). One year after OPM data breach, what has the government learned? Retrieved from http://www.npr.org/sections/alltechconsidered/2016/06/06/480968999/one-year-after-opm-data-breach-what-has-the-government-learned
U.S. Office of Personnel Management. (2015, June). Actions to strengthen cybersecurity and protect critical IT systems [PDF file size 440 KB]. Retrieved from https://www.opm.gov/cybersecurity/cybersecurity-incidents/opm-cybersecurity-action-report.pdf
Respond to the following:

What did the Congressional Report say about the failings of the leadership at the OPM? (This can be found in the early pages).
Analyze the roles and functions of stakeholders related to the security of the OPM.
Discuss the organizational culture and professional responsibility of leadership.
What were the strengths? Weaknesses/gaps in leadership?
Was security a priority?
Who was involved?
What changes were made in those areas following the breach?
Do you agree with the report? Explain.

