100% (1)
page:
3 pages/≈825 words
Sources:
4
Style:
APA
Subject:
IT & Computer Science
Type:
Research Paper
Language:
English (U.S.)
Document:
MS Word
Date:
Total cost:
$ 21.87
Topic:

System Security Risk and Vulnerability Assessment. Research Paper

Research Paper Instructions:

Your team has been given the responsibility of conducting a baseline analysis for establishing a secure communications network for your assigned agency at the summit. The risk assessment process for a baseline analysis requires a multidisciplinary examination of the internal and external cyber environments.

The graded assignment for Project 1 is a Cybersecurity Policy and Baseline Analysis Report. Your Network Security Checklist is ready, and in this international domain, you and your team members will now prepare to assess the networks for communication and information sharing which have built-in multilevel security, based on trusted relationships between the different nations.

You have already seen that there are some suspicious behaviors involving the nations. The modes and methods of those behaviors vary, and the attack vectors are just as diverse. The attendees at the Global Economic Summit use different technologies for communications, and a cyber intelligence analyst must demonstrate an understanding of the threats to those devices. To that end, your team will collaborate in developing a System Security Risk and Vulnerability Report.



The nation in question here is United Staes, United Kingdom (UK), Australia, Canada and NewZealand.

This report refers back to the Network Security Checklist and also to the policies you have created and researched that define the levels and ways of communication and data transmission between the national teams.

Now that your team has provided the foundational network and policy information for your nation communications systems, you and your team members will identify the threats, risks, and vulnerabilities to those systems. Your team will determine the effect on your national team and the other teams if those risks and threats are exploited. Your team will provide what means should be available to address the threats from a risk management perspective.

The report, which you will continue to develop in the next step, should accomplish the following:

List the different threats to authentication and credentials.

Explain how social engineering can be a threat to credentials as well as the defenses against social engineering. How can social engineering be used to breach e-mail?

Explain the concept and use of public-key infrastructure and digital signatures (significance of public-key infrastructure) and how it is used to protect access to networks, ensure nonrepudiation of transmissions, and preserve the confidentiality of information sharing.

Describe "leapfrogging" across networks and what it means for the multiple networks. What is an escalation in the cyberattack phase?

The material in the report can come from the research of current events or your ideas or experiences.

Explain the ways you and the team members can perform remediation and mitigation against the threats you have identified? What are some of the countermeasures that can be used? Include these explanations in your System Security Risk and Vulnerability Report.

You and team members will use these findings to write a system security risk and vulnerability assessment report

Research Paper Sample Content Preview:

System Security Risk and Vulnerability Assessment
Author Name
Institutional Affiliation
Course Number and Name
Instructor Name
Assignment Due Date
Various Threats to Credentials and Authentication
The first type of threat is a brute force attack. It is a simple method that is used to gain instant and easy access to a server, website or anything that can be accessed by knowing the password (Vellani, 2019). This can be a combination of different things like a username and password and it is something that allows the hacker to access a particular site’s dashboard or inner system in an easy way. Another type of threat is the man in the middle attack. It is when the communication between two or more people is interrupted by an unidentifiable or unknown man or person. For example, if an unencrypted communication session is being carried out and an unknown person comes in the middle and interrupts the communication, then the phenomenon is regarded as a man in the middle attack.
Cryptanalysis is another type of threat. The goal of the hacker is to recover a plaintext of one or more encrypted messages. Another goal is likely to be deducing the decryption key in order to encrypt all other messages using this key. Social engineering attack is yet another type or form of attack. It happens when the focus is on the human aspects of a computer system or a network. The perpetrator first spends some time investigating the intended or target victim and tries to collect as much background information as is possible. He or she then tries to gain the trust of the victim and urges him or her to reveal sensitive details like log-in information or payment details.
Social Engineering as a Threat to Credentials and Defenses against Social Engineering – Using Social Engineering to Breach E-Mail
One of the core techniques used in social engineering is a phishing attack. The purpose of the attacker is to steal sensitive information or data, such as log-in credentials, credit card details or PayPal’s username and password. When the attacker masquerades as a trusted entity, it becomes easy for him or her to dupe the victim into opening a text message, instant message or email. The Third Microsoft Computing Safer Index Report was released in February 2014. According to this report, the yearly impacts of phishing attacks the world over are something around $5 billion (White, 2014).
The defense against this threat is possible only when the internet or ...
Updated on
Get the Whole Paper!
Not exactly what you need?
Do you need a custom essay? Order right now:

👀 Other Visitors are Viewing These APA Essay Samples:

Sign In
Not register? Register Now!