This is a short paper that requires you to study the provided scenario, research its questions/problems, and provide analysis and recommendations. SCENARIO You are the Information Security Officer at a medium-sized company (1,500 employees). The CIO asks you to identify and describe the top three known Windows and the top three known Linux server shortcomings/vulnerabilities. Explain how you can be kept up to date on this topic. Describe what can be done to make the server infrastructure more secure.
CLOUD COMPUTING:-
Cloud computing can be defined as the process of storing and accessing data and programs over the internet instead of local hard drives, cd, dvd etc. we can simply understand cloud as an Internet When you store data at local hard drives then you can access data very fastly without any network connection, there is no sync option available when you think about local storage but when you store data at cloud and use services of cloud computing then data is sync. Here meaning of sync is synchronization of data with cloud server. Some of the common cloud computing service examples are google drive,apple icloud, amazon cloud service etc.
Working of cloud computing:-
Cloud computing providers provides storage area to store data through internet connection. Once you create account for cloud storage, you can store data by uploading data on the cloud(Internet). when you are required to use that data you can login to that account and data is directly visible or you can download it into your local devices. Cloud computing servers allow you to increase the storage size .The biggest advantage of clouds are it's flexibility and security. Once you upload data on cloud , you access it from anywhere in the world, the only requirement is one smart phone connected with high speed internet.
Security risks in cloud computing:-
Incomplete data deletion:- Now we are working in high technological world where data recovery is mostly possible. Once you upload data on cloud , it means that your data is distributed over cloud servers.When you delete your data from cloud , it is not completely deleted , it can be recovered from backup section of cloud feature. So there is data leakage risk.
This can be solved by turning the backup feature off. Once you off the backup feature, your data is no longer available on cloud servers when you delete it.
Credential Vulnerability:- If an attacker gains access to user's cloud credential, then attacker has complete access to that account. They can delete , modify or update data which is something like loosing everything.
This can be solved by changing password regularly and attach one device for notification, when some other users login the cloud account.
Incomplete data monitoring:- You won't be able to monitor your data to and from cloud applications.
Risk of data breaches:- Attacker's use hacking tools to breach data from cloud servers. It can't be done easily but it is possible in cloud computing services. In 2016, linkedIn experieced data breach(164 million account credential).
The solution is multi-factor authorization. Once you know that data is very sensitive then you must use multi-factor authorization. It adds a multiple layer to login. You will have to go through multiple login steps, then only you will gain access.
This is a short paper that requires you to study the provided scenario, research its questions/problems,...
ASSIGNMENT This is a short paper that requires you to study the provided scenario, research its questions/problems, and provide analysis and recommendations. SCENARIO ABC Institute of Research has sensitive information that needs to be protected from its rivals. The Institute has collaborated with XYZ Inc. to research genetics but does not want to share other research projects. These other projects must be kept confidential at any cost. ABC researchers are unsure about the form of crypto algorithm (asymmetric or symmetric)...
This is a short scenario that requires you to study the provided below: research its questions/problems, and provide analysis and recommendations. SCENARIO ABC Institute of Research has sensitive information that needs to be protected from its rivals. The Institute has collaborated with XYZ Inc. to research genetics but does not want to share other research projects. These other projects must be kept confidential at any cost. ABC researchers are unsure about the form of crypto algorithm (asymmetric or symmetric) to...
Good morning can you please help me with this assignment? Scenario 1 - You are not only the security administrator for your organization but also the IT trainer! Teach your users how to set passwords in Windows, Linux, and OS X. But more importantly, show them how to check whether their passwords are complex enough to meet today's standards. Finally, show the junior network admins how to enforce complex passwords. In the following table, describe the following: How you would...
Employer RFP Paper: SCENARIO: You are responsible for the request for proposal (RFP) department in an MCO. Several employers have come to you looking for health insurance benefit offerings to its employees. You are to provide a package of health care insurance benefit coverage recommendations based on the size of each company: small group, medium group, and large group. For each company size, recommend the services you would offer that sized company. Include how those services would be organized. You...
WRITTEN ASSIGNMENT (CASE STUDY) DESCRIPTION AND RUBRIC Scenario You are the Chief Executive Officer [CEO] of a health services organization. This organization has inpatient and outpatient facilities, home healthcare services, and other services that meet your patient population’s needs. It also has a world-renowned AIDS treatment center. The organization has always enjoyed an excellent reputation and its quality of care is known to be excellent. Unfortunately, your organization has recently been featured in every media vehicle known to man. The...
TASK Read the Regional gardens case study document before attempting this assignment. Background: You have been employed by Regional Gardens as their first Chief Information Officer (CIO). You have been tasked by the Board to conduct a review of the company’s risks and start to deploy security policies to protect their data and resources. You are concerned that the company has no existing contingency plans in case of a disaster. The Board indicated that some of their basic requirements for...
Risk management in Information Security today Everyday information security professionals are bombarded with marketing messages around risk and threat management, fostering an environment in which objectives seem clear: manage risk, manage threat, stop attacks, identify attackers. These objectives aren't wrong, but they are fundamentally misleading.In this session we'll examine the state of the information security industry in order to understand how the current climate fails to address the true needs of the business. We'll use those lessons as a foundation...
MGMT SS STATS, an umbrella body that facilitates and serves various Social Security Organizations/Departments within the Caribbean territories, stood poised to meet the needs of its stakeholders by launching an online database, located at www.SSDCI.gov. The database will provide members and the public with access to the full set of services that can (also) be initiated face to face; and it will provide managed, private, secure access to a repository of public and/or personal information. For example, insured persons accumulate...
Subject: HRM
Introduction and Instructions
You have recently been hired as the Director of Human Resources
for Wilson Brothers Canada and have HR responsibility for all of
the company’s Canadian operations. Bob and John Wilson have asked
you to prepare a report for their review focusing specifically on
organizational behavior within the company. Review the Wilson
Brothers Case Scenario in depth and address the required topic
listed below in your analysis report. Marks are allocated for
thoroughness of coverage of...
Mashaweer is the first personal service company in Egypt. It’s purely dedicated to saving its clients’ time and effort by offering a personal assistant 24 hours a day. The personal assistant is a rider with a motorcycle who runs any errands for individual clients or corporations at any given time. The most common service they provide is buying groceries or other goods from stores, paying bills, and acting as a courier. Mashaweer’s success relies heavily on their flexibility, and they...