Ethical theories and cybertechnology: planning the DQ post
The prompt asks how religion, law, and philosophy each supply different grounds for a moral principle about hacking — which is a question about justification, not about opinion, and getting that distinction right is most of the grade in 250 words.
Editorial process
Last reviewed · July 21, 2026
What is IT 3165 DQ 2 actually asking?
This question is about justification, not opinion: religion, law, and philosophy must each supply a different ground for one moral principle about hacking — one principle, three justifications. Most posts misread this as three verdicts and write that religion condemns theft, the law prohibits intrusion, and philosophy also disapproves — three restatements of the same conclusion, which demonstrates nothing.
What the question is testing is that you can see the justificatory structure underneath. Take a principle such as do not access a system you are not authorised to access. Religious ethics may ground it in stewardship or a duty owed to others regardless of consequence. Law grounds it in enacted authority and sanction — under the Computer Fraud and Abuse Act it is wrong because a legislature made it so, and the boundary is “authorization”, a legal term of art whose scope the Supreme Court narrowed in Van Buren v. United States (2021): a person exceeds authorized access by entering areas of a system that are off limits to them, not by misusing data they were entitled to see. Philosophy grounds it in reasons you could defend to anyone — a Kantian appeal to treating people as ends, or a consequentialist appeal to aggregate harm.
The three grounds are easiest to keep apart if you fix, for each one, what it treats as the source of the obligation — because that is the thing your post has to show diverging:
Ground | What makes the principle binding | Where it looks in a dispute | Where it comes apart from the others |
|---|---|---|---|
Religion | A duty owed whatever the outcome — stewardship, or an obligation to others that does not depend on being caught | Scripture, tradition, the teaching authority of a community | Binds someone inside the tradition and carries no argumentative weight with a colleague outside it |
Law | Enactment and sanction — a legislature made it so, and there is a penalty attached | The statute text; under the CFAA, the term “authorization” and what counts as exceeding it | Silent wherever no statute reaches, and a lawful act such as a consented penetration test can still be challenged ethically |
Philosophy | Reasons defensible to any rational agent — persons treated as ends, or aggregate harm weighed | The argument itself, which anyone is free to contest | Two philosophical frameworks can reach opposite verdicts on the same act, so “philosophy says” is never one answer |
The payoff is that these grounds can come apart, and saying so is what makes a post substantive. A penetration test with written consent is lawful and, on most philosophical accounts, permissible. Scraping data that is technically public may breach no statute while still failing a duty-based test. Disclosing a vulnerability may be legally risky and ethically required — which is why the Department of Justice announced in May 2022 that it would not charge good-faith security research under the CFAA, an admission that the statute as written was reaching conduct no ethical account condemned. Notice what that example does: it shows the legal ground being corrected by the philosophical one, not merely differing from it. Naming one such divergence shows you understand that the grounds are genuinely different rather than three labels for the same intuition.
The second half — proposing a policy to your employer — is where students lose the thread. A policy is not a restatement of ethics; it is an operational rule with a scope, an owner, and a consequence. If you propose responsible disclosure, say who receives a report, within what window the company commits to respond, what the researcher is promised in return, and what happens to an employee who probes a system without going through it. A rule reading “employees should behave ethically online” fails that test in a single line: nobody could ever be shown to have broken it. Your justification should draw on the grounds you just distinguished, and the strongest move is to acknowledge that legal compliance alone is the floor rather than the ceiling — the Department of Justice's own charging policy concedes exactly that, which turns the claim into evidence instead of sentiment.
Likely learning objectives
Inferred from the brief — check these against your own rubric.
- 01Separate a moral principle from the grounds offered to justify it, and recognise that one principle can rest on several independent justifications.
- 02Characterise religious, legal, and philosophical justification by their source of authority rather than by the verdict they reach.
- 03Identify a case where legal and ethical judgements diverge, and explain why that divergence matters for security practice.
- 04Translate an ethical position into an operational workplace policy with scope, ownership, and consequences.
- 05Apply APA in-text citation to a short discussion post without letting citations crowd out the argument.
Read the full question
Review every instruction before using the planning guidance that follows.
Turn the brief into deliverables
- 01An initial post of 200-250 words in three to four paragraphs, each roughly three to five sentences.
- 02One clearly stated moral principle about hacking or security vulnerabilities.
- 03Three distinct grounds — religious, legal, philosophical — presented as justifications, not verdicts.
- 04A concrete proposed policy for your current or future employer.
- 05APA in-text citations with matching references, plus two response posts of 100-150 words if your course requires them.
How do you structure the three-grounds post?
State the issue and the principle
Name the specific vulnerability or hacking scenario in your workplace context, then state the single moral principle you will justify three ways.
State the principle precisely enough to be tested
Write the moral principle as a single sentence that could be true or false — who may do what, to whom, under what condition. 'Hacking is wrong' cannot be grounded three different ways because it is too coarse to disagree about; 'accessing a system without authorisation is wrong even when no damage results' can be, and that is where religion, law and philosophy actually part company.
Three grounds, contrasted by their source of authority
Give religion, law, and philosophy roughly equal space, and for each name what makes the principle binding — revealed duty or stewardship, enacted statute and sanction, or reasons defensible to any rational agent.
Where the grounds diverge
Point to one case — authorised penetration testing, scraping public data, disclosing a vulnerability — where the legal answer and the ethical answer separate, and say what that shows.
The proposed policy
Set out a concrete rule for your employer: its scope, who owns it, what it requires, and the consequence of breach.
Justify the policy from the grounds
Close by linking the policy back to the strongest ground, and note that legal compliance is the floor rather than the ceiling.
Answer the strongest objection to your policy
Take the best argument against what you proposed — that it chills legitimate security research, that it is unenforceable across jurisdictions, or that it punishes intent rather than harm — and answer it from the same ground you built the policy on. A policy defended only by its own rationale has not been tested.
Which sources ground the three justifications?
Recommended databases
- Stanford Encyclopedia of Philosophy
- ACM Digital Library
- IEEE Xplore
- Cornell Legal Information Institute
- Your course readings for this unit
Search sequence
- 1.Start with your unit's assigned readings — the prompt says to reflect on them, and a post that cites only outside sources reads as though the readings were skipped.
- 2.Read the Stanford Encyclopedia entry on information technology and moral values for the vocabulary that distinguishes normative frameworks, so you describe grounds rather than opinions.
- 3.Look up the actual text of the Computer Fraud and Abuse Act to see how narrowly 'without authorization' is drawn — this is what makes the legal ground concrete rather than hand-waved.
- 4.Read a professional code such as the IEEE's or the ACM's to see how an institution converts ethical commitments into enforceable obligations; it is the closest published model for the policy you are asked to propose.
- 5.Search for one documented case where lawful conduct was widely judged unethical, or the reverse, and keep it to a single sentence in the post.
- 6.Confirm every source you cite is one you have actually opened, and build the APA reference entries as you go rather than at the end.
Reference shortlist
These are authoritative starting points, not a ready-made bibliography. A qualified reviewer must confirm that each source fits the assignment and supports the claim beside which it is cited.
Nothing here is cleared for citation until you have read it.
- 01
Information Technology and Moral Values
Stanford Encyclopedia of Philosophy · 2018
The authoritative overview of how normative theories apply to computing, with direct treatment of hacking, hacktivism and the security-versus-openness tension. Use it to state the philosophical ground precisely instead of gesturing at 'ethics'.
- 02
18 U.S. Code § 1030 - Fraud and related activity in connection with computers
Cornell Law School, Legal Information Institute · 2024
The statute itself, for the legal ground. Quote or paraphrase the 'without authorization' language to show the legal justification turns on enacted definitions.
- 03
A Framework for Ethical Decision Making
Markkula Center for Applied Ethics, Santa Clara University · 2021
Sets out rights, justice, utilitarian, common-good and virtue lenses side by side, which makes it easy to show that different grounds can support the same principle.
- 04
Cybersecurity Framework
National Institute of Standards and Technology · 2024
Cite when your proposed policy needs to sit on a recognised control structure, so the recommendation looks like governance rather than an opinion.
Review before submission
Common mistakes
- Treating the three grounds as three opinions that happen to agree. If all three reach the same conclusion for the same reason, you have written one paragraph three times.
- Substituting a religious tradition's rule for its justification — 'thou shalt not steal' is the principle; the ground is the account of authority or duty behind it.
- Confusing legality with morality, which the prompt is quietly probing. Something can be lawful and wrong, or unlawful and defensible.
- Naming an ethical theory and never using it. 'Utilitarianism applies here' is not analysis until you say which consequences, to whom.
- Proposing a policy that is only a sentiment — 'employees should act ethically' — with no scope, owner, trigger, or consequence.
- Overrunning the word count. At 200-250 words across four paragraphs you have roughly sixty words per ground; the planning is triage, not compression.
Submission checklist
- One principle is stated explicitly, and the same principle carries through all three grounds.
- Each ground names its source of authority, and the three sources are genuinely different.
- At least one point where the grounds diverge is identified.
- The proposed policy specifies who it applies to, what it requires, and what happens when it is breached.
- Word count is 200-250 and the post is in three to four paragraphs of three to five sentences.
- APA in-text citations match the reference entries, and the post has been proofread as the prompt requires.
Use this guide to plan and review your own work. Follow your institution's rules and read our academic-integrity policy.

Written by
Aaron Bishop
MA, Education
assignment interpretation and research-methods coaching across disciplines
Aaron leads the EssayCrackers editorial desk. He works on how assignment briefs are read — what a rubric is actually asking for, and where students most often answer a different question than the one set.

Reviewed by
Dr. Nathan Cole
PhD, Rhetoric & Composition
Argumentation and thesis development
Nathan teaches first-year composition and directs a university writing center. He reviews EssayCrackers guides for argumentative soundness and citation accuracy.