Mandatory access control and discretionary access control

Assignment Help Basic Computer Science
Reference no: EM132398139

Imagine that you are the Information Systems Security Specialist for a medium-sized federal government contractor. The Chief Security Officer (CSO) is worried that the organization's current methods of access control are no longer sufficient. In order to evaluate the different methods of access control, the CSO requested that you research: mandatory access control (MAC), discretionary access control (DAC), and role-based access control (RBAC). Then, prepare a report addressing positive and negative aspects of each access control method. This information will be presented to the Board of Directors at their next meeting. Further, the CSO would like your help in determining the best access control method for the organization.

Write a three to five page paper in which you:

1. Explain in your own words the elements of the following methods of access control:

Mandatory access control (MAC)

Discretionary access control (DAC)

Role-based access control (RBAC)

2. Compare and contrast the positive and negative aspects of employing a MAC, DAC, and RBAC.

3. Suggest methods to mitigate the negative aspects for MAC, DAC, and RBAC.

4. Evaluate the use of MAC, DAC, and RBAC methods in the organization and recommend the best method for the organization. Provide a rationale for your response.

5. Speculate on the foreseen challenge(s) when the organization applies the method you chose. Suggest a strategy to address such challenge(s).

6. Use at least three quality resources in this assignment. Note: Wikipedia and similar Websites do not qualify as quality resources.

- Your assignment must follow these formatting requirements:

- This course requires use of Strayer Writing Standards (SWS). The format is different than other Strayer University courses. Please take a moment to review the SWS documentation for details.

- Include a cover page containing the title of the assignment, the student's name, the professor's name, the course title, and the date. The cover page and the reference page are not included in the required assignment page length.

The specific course learning outcomes associated with this assignment are:

- Analyze information security systems compliance requirements within the User Domain.

- Use technology and information resources to research issues in security strategy and policy formation.

- Write clearly and concisely about topics related to information technology audit and control using proper writing mechanics and technical style conventions.

 

Reference no: EM132398139

Questions Cloud

Discuss why randi thought this was not a heart attack : Discuss why Randi thought this was not a heart attack. What can Melanie do immediately to try to save Randi's life? Assuming that Randi is suffering.
Explain the concept of information stores : Explain the concept of information stores. Why is an understanding of how different clients store messaging information critical to success of an email search
Why do people tend to deny beliefs about race and ethnicity : Why do people tend to deny, rationalize, and avoid discussing their feelings and beliefs about race and ethnicity? The response must be typed, single spaced.
Operation-specific employee performance assessment program : What would be some advantages of developing your own operation-specific employee performance assessment program?
Mandatory access control and discretionary access control : Explain in your own words the elements of the following methods of access control- Mandatory access control, Discretionary access control
Evaluate the overall co-leadership relationship : The co-leadership model for group facilitation holds many potential advantages for group development. The film you viewed in this unit presents a group.
Explain the importance of programming style concepts : Develop self-reliance and judgement in adapting algorithms to diverse contexts and Design and write program solutions to identified problems using accepted
Describe preconceived notions you had about the age group : Describe preconceived notions you had about this age group and the book theme (e.g., about tweens and social media, early adults and depression, etc).
How counselor education programs can meet cacrep standard : Write a brief explanation of the importance of advocating for self-care for students/supervisees in counseling programs. Then, propose how counselor education.

Reviews

Write a Review

Basic Computer Science Questions & Answers

  Identifies the cost of computer

identifies the cost of computer components to configure a computer system (including all peripheral devices where needed) for use in one of the following four situations:

  Input devices

Compare how the gestures data is generated and represented for interpretation in each of the following input devices. In your comparison, consider the data formats (radio waves, electrical signal, sound, etc.), device drivers, operating systems suppo..

  Cores on computer systems

Assignment : Cores on Computer Systems:  Differentiate between multiprocessor systems and many-core systems in terms of power efficiency, cost benefit analysis, instructions processing efficiency, and packaging form factors.

  Prepare an annual budget in an excel spreadsheet

Prepare working solutions in Excel that will manage the annual budget

  Write a research paper in relation to a software design

Research paper in relation to a Software Design related topic

  Describe the forest, domain, ou, and trust configuration

Describe the forest, domain, OU, and trust configuration for Bluesky. Include a chart or diagram of the current configuration. Currently Bluesky has a single domain and default OU structure.

  Construct a truth table for the boolean expression

Construct a truth table for the Boolean expressions ABC + A'B'C' ABC + AB'C' + A'B'C' A(BC' + B'C)

  Evaluate the cost of materials

Evaluate the cost of materials

  The marie simulator

Depending on how comfortable you are with using the MARIE simulator after reading

  What is the main advantage of using master pages

What is the main advantage of using master pages. Explain the purpose and advantage of using styles.

  Describe the three fundamental models of distributed systems

Explain the two approaches to packet delivery by the network layer in Distributed Systems. Describe the three fundamental models of Distributed Systems

  Distinguish between caching and buffering

Distinguish between caching and buffering The failure model defines the ways in which failure may occur in order to provide an understanding of the effects of failure. Give one type of failure with a brief description of the failure

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd