Exploiting security weaknesses social engineering

Assignment Help Management Theories
Reference no: EM131052985

Exploiting Security Weaknesses Social Engineering

An employee who needs permission to access an electronic workspace, database, or other information systems resource typically fills in a request form and obtains approval from the responsible manager. The manager then routes the request to one of the system's administrators. Highly trusted and well-trained systems administrators spend a significant amount of time doing nothing more technical than adding or removing names from access control lists. In large organizations, it's not unusual for systems administrators to have never met any of the people involved in a specific request. The administrators may not even work in the same office. Hackers have learned to take advantage of this approach to access authorization. They begin by probing an organization. The hacker doesn't expect to compromise the system during this initial probe. He or she just starts by making a few phone calls to learn who is responsible for granting access and how to apply. A little more probing helps the hacker learn who's who within the organization's structure. Some organizations even post this information online in the form of employee directories. With this information in hand, the hacker knows whom to talk to, what to ask for, and what names to use to sound convincing. The hacker is now ready to try to impersonate an employee and trick a systems administrator into revealing a password and unwittingly granting unauthorized access. Organizations determine who needs access to which applications. They also need a system through which they can authenticate the identity of an individual making a request. Finally, they need to manage this process both effectively and inexpensively.

a. Describe the business problems that this exercise presents.

b. Suggest several ways to reduce an organization's exposure to social engineering.

c. Prepare an orientation memo to new hires in your IT department describing "social engineering." Suggest several ways employees can avoid being tricked by hackers.

Reference no: EM131052985

Questions Cloud

Joint and several liability : Joint and several liability is when multiple parties can be held liable for the same event or act and be responsible for all restitution required. In cases of joint and several liability, a person who was harmed or wronged by several parties could..
What is the current value of this investment : An investment offers $18,000 per year for 10 years. If the investor can earn 6 percent annually on other investments, what is the current value of this investment?
How much is your options investment worth : Suppose you buy 10 contracts of the February 110 call option. How much will you pay, ignoring commissions. In part a, suppose that Macro soft stock is selling for $130 per share on the expiration date. How much is your options investment worth? What ..
Formulating a theory of reality : How would you start a short 250 word essay in regards to formulating a theory of reality. Describe. How does your theory contribute to a meaningful life for you?
Exploiting security weaknesses social engineering : An employee who needs permission to access an electronic workspace, database, or other information systems resource typically fills in a request form and obtains approval from the responsible manager. The manager then routes the request to one of ..
What expectations are presented in the policy : Explain the company's capacity to be able to fulfill strategic missions while increasing profit margin
Determine the initial price of a rare comic book : Some collectors view comics as an investment. The effective rate of interest, r, earned by an investment can be defined by the formula, Determine the initial price of a rare comic book that resold for $1139 after two years, earning its owner 18% int..
Approach crafting a research project : This week, through our work, we have looked ahead at how we should approach crafting a research project and the steps we should take to prepare the best project we can in the time we have available to us. Additionally, we have begun to explore the..
Payments are made at the beginning of each year : A saver wants $180,000 after 10 years and believes that it is possible to earn an annual rate of 10 percent on invested funds. What amount must be invested each year if the payments are made at the BEGINNING of each year?

Reviews

Write a Review

Management Theories Questions & Answers

  What are the five major elements of san diego county gms

What are the five major elements of San Diego County's GMS and how do they serve to achieve priority outcomes? How has this discipline proven successful in the county's Food Stamp initiative

  The united states is a nation of immigrants

CST , and it is important to respond to all questions on each section base on  U.S laws . The similarity scores cannot be more than 15%, and a reference page is require at the end of each section . It is critical that all questions and bullet points ..

  In working out your responses to the discussion question

in working out your responses to the discussion question you should choose examples from your own experience or find

  The contractor have prepared for the audits

A project customer and a contractor agreed on regular quality audits during execution by a third party audit team, which is working on an assignment for the customer.What should the contractor have prepared for the audits?

  Explain knowledge management behaviors

Consider the following research model that aims to explain knowledge management behaviors (knowledge collection, knowledge contribution, moderating behaviors, and knowledge utilization) in online communities of practice.

  Change management

Analytically apply and evaluate what relevant theory on leadership  style and behaviour practiced by the senior director of Pfizer in its accomplishment.

  Write a brief company history

Write a brief company history, including a mission statement if available.

  You have been asked to prepare report to senior managemet

You have been asked to prepare the report to senior management. You are to research an organisation or brand you are familiar with or you can for the list below. The organisation you choose to analyse is NOT to be the same business or industry sector..

  Create a high-quality report and presentation

2. By submitting this assignment and cover sheet electronically, in whatever form, you are deemed to have made the declaration set out on the above form.

  Identify and contrast the three general management roles

Identify and contrast the three general management roles

  Determine the appropriate life-cycle stage for each activity

Matching Market Characteristics with Sales Life-Cycle Stages. Activities and Market Characteristics. Determine the appropriate life-cycle stage for each activity.

  Two major world legal system

To get started on your investigation into the international business community in conjunction with the various legal ramifications and laws, identify the two primary categories of law: the common and civil law systems. Focusing on the common and civi..

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd