Reference no: EM133864805
Information Systems Risk and Security
Assessment :
Introduction
Assessment: Cybersecurity Incident Analysis - Marriott International Data Breach
Scenario Introduction
The Marriott International data breach affected millions of customers, exposing sensitive personal information. This breach occurred in 2018 and involved unauthorized access to the Starwood reservation database, revealing names, phone numbers, email addresses, and in some cases, encrypted credit card details. Marriott faced significant backlash from customers and authorities due to delayed detection and response to the breach. The breach exposed systemic cybersecurity vulnerabilities and led to financial penalties, reputational damage, and lawsuits. In the following link you can find the detail about incidents
Working on the scenario explained above, create a detailed report for "Risk and Cost" analysis. The report should include the sections below:
Executive Summary:
Overview of the cybersecurity incident and its impact it caused.
Summary of key findings from the Security Risk and Cost Analysis.
Introduction:
Background information on Equifax and the nature of the cyberattack.
Objectives of the making the Security Risk and Cost Analysis.
Assets Analysis:
Detailed description of Equifax's critical assets, the value of each asset, and their importance to the organization.
Threats & Vulnerabilities Analysis:
Identification and analysis of external and internal threats targeting Equifax.
Assessment of vulnerabilities in the company's systems, processes, and third party relationships.
Data Loss Analysis:
Evaluation of the impact of the data breach on customers, the company, and other stakeholders.
Estimation of financial losses, legal liabilities, and remediation costs associated with the incident.
Risk Assessment:
Evaluation of the likelihood and potential impact of identified risks on Equifax's business continuity and reputation.
Prioritization of risks based on severity and urgency for mitigation.
Cost Analysis:
Estimation of costs associated with implementing recommended security measures and mitigating identified risks.
Recommendations:
Specific actions to strengthen Equifax's cybersecurity posture and mitigate identified risks.
Conclusion:
Summary of key insights and recommendations from the Security Risk and Cost Analysis.