Discuss what next steps you should take as a defender

Assignment Help Computer Engineering
Reference no: EM133620292

Discussion Post: Mindset- Incident Response Procedures, Forensics & Forensic Analysis

In the lab activity for this discussion, you assumed different roles. After logging into the lab environment, you proceeded to "Launching an Attack" as a hacker. Once you completed that portion of the lab, you assumed the role of a defender and began the "Collecting Incident Response Data" portion of the lab. You then completed the lab as a defender by collecting log data and analyzing it. For this discussion, let's add to the scenario as follows:

As part of your system audit, you realize that you have identified a successful remote login from a suspicious IP address located in North Korea. This is a suspicious address because your organization has no ties to North Korea, and no personnel are over there for vacation or business-related travel.

In your initial post, discuss what next steps you should take as a defender.

Reference no: EM133620292

Questions Cloud

Reflect and evaluate your current self-care inventory. : What self-care resources will you use from your review of the NAMI website? Reflect and evaluate your current self-care inventory.
Explain advantage and disadvantage of software as a service : Prepare a research paper that defines and discusses software as a service. Explain advantages and disadvantages of the software as a service.
Barriers-facilitators and ethical considerations : Barriers, Facilitators, and Ethical Considerations: Describe the impact these items will have on your project implementation.
Leadership training program at your company : You've been asked to mentor a co-worker and recent college graduate who wants to join the leadership training program at your company
Discuss what next steps you should take as a defender : In the lab activity for this discussion, you assumed different roles. In your initial post, discuss what next steps you should take as a defender.
Monitor their tier-two and tier-three suppliers : Monitor their tier-two and tier-three suppliers. Seek out shadow factories to partner with. View their supply chain partners as long-term relationships.
Result in further shortening of the project duration : You should crash all the remaining tasks which, when crashed, will result in a further shortening of the project duration.
Describe your personal experience with the topic : You might describe your personal experience with the topic, what you learned in school, or what your assumptions are about the topic.
What strategies would you recommend to mitigate : What strategies would you recommend to mitigate the vulnerability and prevent data breaches and What ethical considerations arise when deciding whether

Reviews

Write a Review

Computer Engineering Questions & Answers

  Mathematics in computing

Binary search tree, and postorder and preorder traversal Determine the shortest path in Graph

  Ict governance

ICT is defined as the term of Information and communication technologies, it is diverse set of technical tools and resources used by the government agencies to communicate and produce, circulate, store, and manage all information.

  Implementation of memory management

Assignment covers the following eight topics and explore the implementation of memory management, processes and threads.

  Realize business and organizational data storage

Realize business and organizational data storage and fast access times are much more important than they have ever been. Compare and contrast magnetic tapes, magnetic disks, optical discs

  What is the protocol overhead

What are the advantages of using a compiled language over an interpreted one? Under what circumstances would you select to use an interpreted language?

  Implementation of memory management

Paper describes about memory management. How memory is used in executing programs and its critical support for applications.

  Define open and closed loop control systems

Define open and closed loop cotrol systems.Explain difference between time varying and time invariant control system wth suitable example.

  Prepare a proposal to deploy windows server

Prepare a proposal to deploy Windows Server onto an existing network based on the provided scenario.

  Security policy document project

Analyze security requirements and develop a security policy

  Write a procedure that produces independent stack objects

Write a procedure (make-stack) that produces independent stack objects, using a message-passing style, e.g.

  Define a suitable functional unit

Define a suitable functional unit for a comparative study between two different types of paint.

  Calculate yield to maturity and bond prices

Calculate yield to maturity (YTM) and bond prices

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd