Negative aspects of employing a mandatory access control

Assignment Help Other Subject
Reference no: EM131432345

Assignment: Evaluating Access Control Methods

Imagine you are an Information Systems Security Specialist for a medium-sized federal government contractor. The Chief Security Officer (CSO) is worried that the organization's current methods of access control are no longer sufficient. In order to evaluate the different methods of access control, the CSO requested that you research: mandatory access control (MAC), discretionary access control (DAC), and role-based access control (RBAC). Then, prepare a report addressing positive and negative aspects of each access control method. This information will be presented to the Board of Directors at their next meeting. Further, the CSO would like your help in determining the best access control method for the organization.

Write a three to five (3-5) page paper in which you:

1. Explain in your own words the elements of the following methods of access control:

a. Mandatory access control (MAC)

b. Discretionary access control (DAC)

c. Role-based access control (RBAC)

2. Compare and contrast the positive and negative aspects of employing a MAC, DAC, and RBAC.

3. Suggest methods to mitigate the negative aspects for MAC, DAC, and RBAC.

4. Evaluate the use of MAC, DAC, and RBAC methods in the organization and recommend the best method for the organization. Provide a rationale for your response.

5. Speculate on the foreseen challenge(s) when the organization applies the method you chose.  Suggest a strategy to address such challenge(s).

6. Use at least three (3) quality resources in this assignment. Note: Wikipedia and similar Websites do not qualify as quality resources.

The specific course learning outcomes associated with this assignment are:

  • Analyze information security systems compliance requirements within the User Domain.
  • Use technology and information resources to research issues in security strategy and policy formation.
  • Write clearly and concisely about topics related to information technology audit and control using proper writing mechanics and technical style conventions.

Reference no: EM131432345

Questions Cloud

Identify the types of descriptive statistics : Identify the types of descriptive statistics that might be best for summarizing the data, if you were to collect a sample. Analyze the types of inferential statistics that might be best for analyzing the data, if you were to collect a sample
Encapsulating the concept of processing : When a user signs in for the first time to a website, the user has to submit personal information, such as user_id, name, email address, telephone number and so on. Typically, there are two fields for passwords, requiring the user to enter the pas..
Discuss about the objective positivist neoanalytic writers : While there are many neoanalytic writers, they can be divided into two general categories. Some are objective positivist thinkers while others are relativistic/constructivist thinkers. Philosophically, what is the difference among objective positi..
Which error is more serious for the race organizers : Describe type I and type II errors in this context.- Which error is more serious for the swimmers? Why?- Which error is more serious for the race organizers? Why?
Negative aspects of employing a mandatory access control : Explain in your own words the elements of the following methods of access control: Mandatory access control (MAC) and Discretionary access control (DAC)
Knowledge of sql server : You work for a manufacturing company. The company has recently hired a programmer who does not have knowledge of SQL Server, but has been tasked to develop -queries. As a database administrator, you have been tasked with the following to help him/..
What is american civil religion : What is American Civil Religion, according to Robert Bellah, and what is Philadelphia's place in its origins? What do you think that Hannah Freeman and Richard Allen, respectively, would have thought about the notion, and why?
What hypotheses should be tested in terms of p : What hypotheses should be tested, in terms of p, the true proportion of students who have missed a test because they overslept, in order for college officials to prove that the new academic policy is causing fewer students to be late for exams?
Choose three different ethnic groups : Choose three different ethnic groups. For each group, provide examples of how counselors may best build rapport and trust with clients. Provide scholarly evidence in your response.

Reviews

Write a Review

Other Subject Questions & Answers

  What are the characteristics of romantic love

What are the characteristics of romantic love? What is the effect of time on romance? What other factors influence romantic love

  Traditional-face-to-face universities

These are the causes. Brainstorm a list or short paragraph of reasons why students attend traditional/face-to-face universities. Note: you will be writing your essay on the reasons why students pursue online educations, so this is a parallel topic..

  Governmental systems-background of colonists

Compare the beginnings of the American government with the beginnings of the Latin American governments, based on British vs. Spanish cultures, British vs. Spanish rules and rulers (governmental systems, Background of colonists, Influences from Frenc..

  How does the media in the role of a courtroom spectator

How does the media, in the role of a courtroom spectator, reinforce ideas of what a criminal looks like?

  The purpose of the discussion board is to allow students

the purpose of the discussion board is to allow students to learn through sharing ideas and experiences as they

  Discuss what the 5/20 rule is according to the food label

Discuss what the 5/20 rule is according to the Food Label and You video. Include an example of a food label from your own pantry, clearly stating how the rule applies to specific nutrients on the food label.Outline how the 5/20 rule would be appl..

  Implementing change from this simulation exercise

What did you learn about implementing change from this simulation exercise? What was your role in the group? If you didn't get an official one, was there a function that you fell into? Thinking back, how do you feel about your contribution to the gro..

  Pragmatism involves adapting logical thinking

Pragmatism involves adapting logical thinking to the practical constraints of real life situations. Think of a real life situation (your own or someone you know), explain briefly what was happening.

  Describe the cause and symptoms of the disease

What are the major controllable risk factors for contracting infectious diseases? Using this knowledge, how would you change your lifestyle to prevent such infections?

  A list of those who have entered a particular half-marathon

SM Event Management Ltd organises half-marathons for various cities in the UK. It stores the following information about runners who take part in the events:

  Assignment on training and intervention program

Training and Intervention Program

  Our text discusses hegemony and defines it as the process

our text discusses hegemony and defines it as the process by which the dominant culture takes over and shifts the

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd