Interpretations of the nessus report

Assignment Help Basic Computer Science
Reference no: EM131223349

Consider the following scenario: You are a new security administrator in the credit card division of a multinational bank. Your division deals with personally identifiable information of the bank's cardholders. To comply with regulations on personally identifiable information, you need to perform monthly network vulnerability scans. The previous security administrator ran frequent vulnerability scans, but had a hard time getting anyone to address the findings. You plan to develop a process for monthly scanning and remediation, including how to handle exceptions when the report shows a false positive or when the business needs more time to address an issue. You have a copy of the latest vulnerability report. Refer to the "Nessus Full Network Scan, Detailed Findings" web resource from the Learning Resources. The report lists server names, vulnerabilities, and the severity of these vulnerabilities. Each vulnerability has an associated Common Vulnerabilities and Exposures (CVE) number. Refer to the Common Vulnerabilities and Exposures website  which explains the vulnerabilities in depth.

For this Assignment, write a 4- to 6-page paper that summarizes your interpretations of the Nessus report and your recommendations to address the reported vulnerabilities. Cover the following points in your paper:

  • Follow the links for the vulnerabilities categorized as high and briefly explain what is involved in remediation of each.
  • Explain, based on your readings, why sometimes vulnerabilities need to be addressed by changes to the OS configuration (OS hardening) and why not every vulnerability can be quickly remediated with a patch or upgrade.
  • Outline a process for monthly vulnerability scanning, review, and remediation. Explain the significance of each step in this workflow.

Reference no: EM131223349

Questions Cloud

Estimates the allowance for uncollectible accounts : Chez Fred Bakery estimates the allowance for uncollectible accounts at 3% of the ending balance of accounts receivable. During 2013, Chez Fred's credit sales and collections were $125,000 and $131,000, respectively. What was the balance of accounts r..
Calculate the gross margin for may under absorption costing : Brush Industries reports the following information for May: Sales $950,000 Fixed cost of goods sold 110,000 Variable cost of goods sold 260,000 Fixed selling and administrative costs 110,000 Variable selling and administrative costs 135,000 Calculate..
Total storage capacity of disk : You have a hard drive with 16,384 cylinders, 16 heads, and 63 sectors per track. What is the total storage capacity of this disk?
The aggregate demand aggregate supply framework : Use the aggregate demand-aggregate supply framework to illustrate a situation where this would lead to lower inflation in this economy in the long run.
Interpretations of the nessus report : For this Assignment, write a 4- to 6-page paper that summarizes your interpretations of the Nessus report and your recommendations to address the reported vulnerabilities. Cover the following points in your paper:
What would be the incremental income and loss per tin : Yumminess has asked Jordon and Taylor to consider making Extra Attack Brownies and Nutty Attack Brownies, in addition to Chocolate Attack Brownies. The selling price to Yumminess would be $12 and $14.50 per tin, respectively, compared to the original..
Summary of a networked application : Write a one-page summary of a networked application of your choosing. Conciseness is more important than comprehensiveness, although you should strive for a balance between both. The definition of a networked application in this instance is relati..
Prepare stockholders equity section of the balance sheet : Squires Inc. was organized on January 2, 2014 with authorized capital stock consisting of 40,000 shares of 10%, $200 par value preferred, and 300,000 shares of no-par, no stated value common. Prepare the stockholders’ equity section of the balance sh..
Write about corporate blogging : As the primary Technical Writer, you have been asked to consider building a blog within the client's new website. Your boss has asked you to write about corporate blogging, make recommendations, and provide a rationale for each recommendation.

Reviews

Write a Review

Basic Computer Science Questions & Answers

  What was the price of each type of candy

She spent a total of $40.10. Tommy spent $39.60 on 6 sticks of gum, 4 suckers, and 10 bags of jelly beans. Finally, Janet bought 7 sticks of gum, 10 suckers, and 8 bags of jelly beans for 44.50. What was the price of each type of candy?

  Can you think of better ways to measure progress

One of the reasons for using planning-driven approaches in software development projects is that the plan provides some structure to measure project progress. Do you think this measure is adequate? Can you think of better ways to measure progress?

  Cost concepts and break-even

With your favorite restaurant in mind (yet again), determine the types of costs that would fall under the categories of fixed, variable, and mixed. Based on what you know about the restaurant in question, develop a break-even analysis.

  Designing an active directory infrastructure

What are some factors or requirements when designing an Active Directory Infrastructure? How do you gather the requirements for the design? Please explain in approximately in two paragraphs.

  Floating point numbers in scientific notation

Floating point numbers in scientific notation represents numbers as a base number and an exponent. For examples: 2E3, 2.0E12, 3.14E+12, 3.14E-12. Give a grammar that generates floating point numbers. Use your grammar to derive 3.14E+12.

  Calculates triangle numbers by using a recursive function

calculates triangle numbers by using a recursive function

  Develop your understanding of the kinds of bizarre problems

Develop your understanding of the kinds of bizarre problems a system administrator will have to handle. The first part depicts an organization in a bad state. Your job is to devise a scheme to fix it.

  Describe the shadow paging recovery technique

Describe the shadow paging recovery technique

  Why is it that birch encounters difficulties

Why is it that BIRCH encounters difficulties in finding clusters of arbitrary shape but OPTICS does not? Propose modifications to BIRCH to help it find clusters of arbitrary shape.

  Assignment school engineering and information technology

atrobe Valley Product Gallery (LVPG) specialises in promoting and selling both (i) stand space at trade fairs and (ii) tickets for visitors to trade fairs in Latrobe Valley, Gippsland area.

  What would happen when a customer was deleted

If deletes do cascade, what would happen when a customer was deleted?

  Computer crime laws specific to cyber-crimes

Research computer crime laws in your state. (If your state does not have computer crime laws specific to cyber-crimes, look at the laws in a neighboring state). Briefly describe the law(s) and the corresponding penalties/fines.

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd