CYB 301 University of Arizona Global Campus Defensive Security Paper
Description
Defensive security involves focusing on reactive measures to breaches and includes processes such as finding system vulnerabilities, patching security flaws, and retiring software that introduces excess risk into an environment. A networked information system example has been provided with an access control matrix. You need to conduct a risk assessment by evaluating network security threats, physical media vulnerabilities and auditing system security. Detail the types of risk discovered. Your report should also include the creation of a contingency plan for breach or failure.
The Book Blazer Publishing Company just found out they may have been hacked! They have been concerned for quite some time that a competitor has been stealing book ideas from their content management system (CMS). As the city’s premier security consultant, they retain you to verify whether this is true or not. You are given an architecture diagram of the CMS which consists of:
- Web server to house the web site front-end
- Application server to provide data processing functions
- SQL server to house content metadata
- File server on which content is stored
- Firewall to protect the system
- VPN appliance so employees can reach the CMS from the outside
You are also provided the following access control matrix showing each group and what access they have to each component:
Group | Web Server | App Server | Database Server | File Server | Firewall | VPN |
---|---|---|---|---|---|---|
Admin | All | All | All | All | All | All |
Marketing | Read/Write | Read Only | Read Only | All | None | Read Only |
Publishing | Read/Write | Read/Write | Read/Write | Read/Write | None | Read Only |
General Employee | Read Only | Read Only | Read Only | All | None | Read Only |
After conducting a risk assessment by evaluating network security threats, physical media vulnerabilities and auditing system security, you are able to verify their worst fears! Help the CEO and CIO understand what is happening.
Have a similar assignment? "Place an order for your assignment and have exceptional work written by our team of experts, guaranteeing you A results."