Interpretations of the nessus report and recommendations

Assignment Help Basic Computer Science
Reference no: EM131218090

Consider the following scenario: You are a new security administrator in the credit card division of a multinational bank. Your division deals with personally identifiable information of the bank's cardholders. To comply with regulations on personally identifiable information, you need to perform monthly network vulnerability scans. The previous security administrator ran frequent vulnerability scans, but had a hard time getting anyone to address the findings. You plan to develop a process for monthly scanning and remediation, including how to handle exceptions when the report shows a false positive or when the business needs more time to address an issue. You have a copy of the latest vulnerability report. Refer to the "Nessus Full Network Scan, Detailed Findings" web resource from the Learning Resources. The report lists server names, vulnerabilities, and the severity of these vulnerabilities. Each vulnerability has an associated Common Vulnerabilities and Exposures (CVE) number. Refer to the Common Vulnerabilities and Exposures website  which explains the vulnerabilities in depth.

For this Assignment, write a 4- to 6-page paper that summarizes your interpretations of the Nessus report and your recommendations to address the reported vulnerabilities. Cover the following points in your paper:

  • Follow the links for the vulnerabilities categorized as high and briefly explain what is involved in remediation of each.
  • Explain, based on your readings, why sometimes vulnerabilities need to be addressed by changes to the OS configuration (OS hardening) and why not every vulnerability can be quickly remediated with a patch or upgrade.
  • Outline a process for monthly vulnerability scanning, review, and remediation. Explain the significance of each step in this workflow.

Reference no: EM131218090

Questions Cloud

What is the total storage capacity of disk : You have a hard drive with 16,384 cylinders, 16 heads, and 63 sectors per track. What is the total storage capacity of this disk?
What are your next steps about cyber bullying message : While reviewing the email messages in your email account, you notice one that you interpret as cyberbullying. you do not recognize the sender of the email message, but still take it seriously. what are your next steps?
What is the total storage capacity of disk : You have a hard drive with 16,384 cylinders, 16 heads, and 63 sectors per track. What is the total storage capacity of this disk?
What are the advantages and disadvantages of the strategy : The three partners of an international joint venture, located in the Asian country of one of the partners, are locked in a profit distribution dispute that repeated negotiations between the partners have failed to resolve. They are beginning to th..
Interpretations of the nessus report and recommendations : For this Assignment, write a 4- to 6-page paper that summarizes your interpretations of the Nessus report and your recommendations to address the reported vulnerabilities. Cover the following points in your paper:
Prepare two to three paragraph summary of the given article : Create a mind map, and write a two to three paragraph summary of the article that includes three questions for the class and a hyperlink to the original current event article.
Java application that assigns hourly wages to employees : Write a Java application that assigns hourly wages to employees. Create an EmployeeException class whose constructor receives a String that consists of an employee ID and pay rate.
Why have developed economy firms not taken this ibs approach : Unrelated product diversification (conglomeration) is widely discredited in developed economies; however, in some cases it appears to add value in emerging economies. Is this interest in conglomeration likely to hold or decrease in emerging econom..
Problem regarding the flash memory cards : 1) Using your book and the Internet, please explain the following Flash Memory Cards:

Reviews

Write a Review

 

Basic Computer Science Questions & Answers

  Computer start-up problem easier

How do the post beep codes make troubleshooting a computer start-up problem easier?

  Design suitable mechanism to solve graph coloring problem

Consider a graph coloring problem where we have a very large graph G = (V, E), whose vertices are to be colored using 3 distinct colors such that no adjacent node in G has the same color. Design a suitable mechanism to solve the given problem.

  Opportunities and advancements in technology

Nanotechnology, biometrics, and RFIDs all offer exciting opportunities and advancements in technology. In this assignment, you will investigate each to determine the ways these technologies can help or hinder people. For this assignment, write an ..

  Proposed solution for converged network solution

This is an individual project. Each student must complete a Case Study that provides the requirements analysis and a proposed solution for converged network solution. The target audience will be the organization's Chief Information Officer (CIO)..

  Give a cfg for the set of all strings

Give a CFG for the set of all strings over {a,b} with twice as many a's as b's

  Prepare a new test table with at least 2 distinct test cases

What happens if you change the NUMMONTHS and NUMYEARS definitions to other values? Be sure to use both lower and higher values. Describe and implement fixes for any issues if errors results. Support your experimentation with screen captures of exe..

  Write a program that prompts the user to input a number

Write a program that prompts the user to input a number. the program should then output the number and a message saying whether the number is positive, negative, or zero

  Hydrogen development project

This exercise begins with information for a Hydrogen Development Project. Working in Microsoft Project, you will create the task list, including summary tasks and their sub-tasks, create links between tasks and their predecessors, add resources, a..

  Which statement about k-fold cross-validation is false

Which statement about k-fold cross-validation is FALSE?

  Pseudo code for a program that calculates the gown size

Draw the output and write pseudo code for a program that calculates the gown size that student need for graduation ceremony. The program accepts as input a student's height in feet and inches and weight in pounds and does so continuously until the..

  Define and test the class our queue

The class queue has the following methods that you can use to define the methods for Our Queue

  Write a driver to test this function

Write a driver to test this function.

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd