After patching computers with the latest application security patches updates,users are unable to open certain applications.Which of the following will correct the issue? a.Modifying the security policy for patch management tools b.Modify the security policy for HIDS/HIPS c.Modifying security for DLP d.Modifying the security for media control
a)Modifying the security policy for patch management tools
Patch management policy and Procedures
The patch management policy helps take a decision during the cycle. The policy cover clarification about patching strategy, and whether all patches should be automated, manual or default. There has to be a classification based on the seriousness of the security issue followed by the remedy. Patch Management is a set of generalized rules and solutions. The idea is to have a process in place that prevents load and compatibility problems.
The policy applies to all components of the IT infrastructure and includes; Computers, Servers, Software, Routers and switches, Peripherals, Databases and Storage.
Users should be made aware of the policy. Admin and IT staff are responsible to keep the system clean and safe and ensure the patches are updated regularly.
Risks
Procedure
After patching computers with the latest application security patches updates,users are unable to open certain applications.Which...
156. A cybersecurity analyst is hired to review the security posture of a company. The cybersecurity analyst notices a very high network bandwidth consumption due to SYN floods from a small number of IP addresses. Which of the following would be the BEST action to take to support incident response? A. Increase the company's bandwidth. B. Apply ingress filters at the routers. C. Install a packet capturing tool. D. Block all SYN packets. My guess: B _______________________________________ 161. The security...
Risk management in Information Security today Everyday information security professionals are bombarded with marketing messages around risk and threat management, fostering an environment in which objectives seem clear: manage risk, manage threat, stop attacks, identify attackers. These objectives aren't wrong, but they are fundamentally misleading.In this session we'll examine the state of the information security industry in order to understand how the current climate fails to address the true needs of the business. We'll use those lessons as a foundation...
The discussion: 150 -200 words. Auditing We know that computer security audits are important in business. However, let’s think about the types of audits that need to be performed and the frequency of these audits. Create a timeline that occurs during the fiscal year of audits that should occur and “who” should conduct the audits? Are they internal individuals, system administrators, internal accountants, external accountants, or others? Let me start you: (my timeline is wrong but you should use some...
Relational Databases are designed for what specific kind of processing? Select the best answer from the following. Online Transaction Processing (OLTP) Service Oriented Architecture (SOA) Data warehousing. Stream data processing. QUESTION 3 How should the components within Service Oriented Architecture be viewed? Select the best answer from the following. Hardware. Services. Custom developed software. Tasks. QUESTION 4 In a web database architecture what is the primary concern? Select the best answer from the following. Hardware. Services. Software. Security. Elasticity. QUESTION...
Explain what enterprise resource planning (ERP) systems. Outline several of their key characteristics. Describe in reasonable detail how a company leverages an ERP system and how its operations are improved after installing an ERP system like SAP. Explain how a supply chain management system helps an organization make its operations more efficient What is Upstream and Downstream management of the supply chain? Explain the concept of “Supply Network”, its benefits, and how technology made this concept available Explain the difference...
A new version of the operating system is being planned for installation into your department’s production environment. What sort of testing would you recommend is done before your department goes live with the new version? Identify each type of testing and describe what is tested. Explain the rationale for performing each type of testing. [ your answer goes here ] Would the amount of testing and types of testing to be done be different if you were installing a security...
TASK Read the Regional gardens case study document before attempting this assignment. Background: You have been employed by Regional Gardens as their first Chief Information Officer (CIO). You have been tasked by the Board to conduct a review of the company’s risks and start to deploy security policies to protect their data and resources. You are concerned that the company has no existing contingency plans in case of a disaster. The Board indicated that some of their basic requirements for...
1. In what ways was Microsoft’s behaviour (a) against
the public interest; (b) in the public interest?
2. Being locked in to a product or technology is only
a problem if such a product can be clearly shown to be inferior to
an alternative. What difficulties might there be in establishing
such a case?
etwork effects Microsoft is a vertically integrated
firm (see page 87), with a dominant position in the operating
system market (i.e. Windows) and in certain application...
How can we assess whether a project is a success or a
failure?
This case presents two phases of a large business transformation project involving the implementation of an ERP system with the aim of creating an integrated company. The case illustrates some of the challenges associated with integration. It also presents the obstacles facing companies that undertake projects involving large information technology projects. Bombardier and Its Environment Joseph-Armand Bombardier was 15 years old when he built his first snowmobile...
I need help with my very last assignment of this term
PLEASE!!, and here are the instructions: After reading Chapter Two,
“Keys to Successful IT Governance,” from Roger Kroft and Guy
Scalzi’s book entitled, IT Governance in Hospitals and Health
Systems, please refer to the following assignment instructions
below.
This chapter consists of interviews with executives
identifying mistakes that are made when governing healthcare
information technology (IT). The chapter is broken down into
subheadings listing areas of importance to understand...