Compare various issues of building security into a system

Assignment Help Computer Network Security
Reference no: EM13850881

1. Compare and contrast the various issues of building security into a system from the initial implementation versus adding security to an existing system. Discuss the problems and issues of one approach versus the other. Consider the functionality provided by the reference monitor in a TCB. Discuss the problems and issues to retrofit a reference monitor to an existing implementation versus implementing the reference monitor from the initial implementation. Good answers will address each of the previous stated points and will also provide specific examples with explanations.

2. Provide examples in your home or work computing environment that support the following principles. Relate it to your computing environment, be specific. Hint: The examples could range from internal workings of various mechanisms; to policies; to processes you have used in implementation; to functionality provided by an application visible to the user. Provide examples and discuss to show your understanding of each concept.

Least Privilege:

Process Isolation:

Granularity of Access:

Abstraction:

3. Requirements question.

Describe what a functional requirement is.

Describe what an assurance requirement is.

Provide an example of each by writing an actual functional requirement and the corresponding assurance requirement using some aspect of a system for your example. For example you could write a requirement based on user interface behavior, file access, audit logging or various other areas of functionality. It does not have to be long but it needs to demonstrate your understanding of these concepts.

4. Different formal security models describe different access models. Formal security models are useful reference models for evaluating the attributes of various implementations. The following phrases are used to describe some specific access models. Identify the security model each phrase is associated with and provide what the phrases mean in the context of the respective security model. Add some information about each security model along with each phrase and a practical example to show your understanding of the respective security model.

· No read up, no write down.

· Read up, write down. Or stated differently; No read down, no write up.

Reference no: EM13850881

Questions Cloud

Advantages and disadvantages of investing in a mutual fund? : advantages and disadvantages of investing in a mutual fund?
Briefly explain why two bonds that have an equal ytm : Briefly explain why two bonds that have an equal YTM
How the effectiveness of individual performance-related pay : Write a report advising the organisation whether and how the effectiveness of this individual performance-related pay scheme can be improved.
What technique is used to exchange messages : What technique is used to exchange messages between two parties ensuring confidentiality? Discuss.  What technique is used to exchange messages between two parties ensuring authenticity? Discuss.
Compare various issues of building security into a system : Compare and contrast the various issues of building security into a system from the initial implementation versus adding security to an existing system. Discuss the problems and issues of one approach versus the other
What is the probability that a randomly selected female : Human heights are known to be normally distributed.  Men have a mean height of 70 inches and females a mean height of 64 inches.  Both have a standard deviation of 3 inches. What is the probability that a randomly selected female is above 70 inches..
How magic kitchens should proceed : Your job is to recommend how Magic Kitchens should proceed. Describe the key issues that need to be addressed if Magic Kitchens are to remain a viable business
Identification of correct disorder : G.C. is a 78-year-old widow who relies on her late husband's Social Security income for all of her expenses. Identification of correct disorder. Description of at least two (2) major causes of the identified disorder. Identification/definition of man..
Relationship between microorganisms and diseases : All of the following are true of the relationship between microorganisms and diseases EXCEPT

Reviews

Write a Review

Computer Network Security Questions & Answers

  Discuss the terms confidentiality and integrity

Discuss the terms confidentiality, integrity, and availability as they relate to information systems. Why are they important

  Ssl for http traffic

SSL Record protocol of the SSL protocol stack, RADIUS, networks for access control, DNS poisoning, Spear Phishing attacks, centralised or decentralised access control, encrypt email data

  Evaluate ability of different cloud computing architectures

Provide an Information Security assessment on your chosen provider using the techniques proposed by Ramgovind etal, and the ASD Cloud Computing Security Considerations as your primary references.

  Temporary assistance for needy families

TANF is the public program responsible for offering cash assistance to low-income families with children. However, the sector has been challenged by numerous laws and limitations as to how the industry carries on it functions.

  How adequate destruction of materials ensuring privacy

How will your company ensure adequate destruction of the materials thus ensuring an individual's privacy? Will any state-wide, national, or industry standards be met? If so, which ones and how?

  How vulnerable end-users are leaving themselves

Students must NOT include any audio or video files. The PowerPoint virtual presentation will not be formally presented. As a result students must endeavour to convey their views and research findings whilst adhering to best presentation practices.

  Several convicted cases of cyberstalking

There are several convicted cases of cyberstalking and Internet fraud/abuse. Misha Glenny, a United Kingdom-based journalist, recently wrote a book on the subject matter appropriately titled Dark Markets

  Address of the router that computer

1. Your boss wants to know the address of the router that his computer is using. What do you tell him?

  Dos attackers use zombies to attack victims

Why do you think DoS attackers use zombies to attack victims instead of sending attack packets directly to victims? Come up with two reasons.

  Difference between the terms safety and security

What is the difference between the terms ‘safety' and ‘security' and what is the conclusion of the paper?

  Explain the most common forms of digital crime

Explain the most common forms of digital crime. Determine the category of computer crimes or cyber terrorism that presents the greatest overall threat at the present time. Provide a rationale to support your response.

  Install a new network consisting of a dozen computers

Your electronics manufacturing company is working on a new product. The board of directors thinks that this product will revolutionize the travel industry and generate huge profits for the company. To protect this product during the research and deve..

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd