Seven domains of it within the organization

Assignment Help Basic Computer Science
Reference no: EM131055207

Instructions are as follows

For #1, just list possible roles that may exist for this scenario. You can just make up the name of the role but please explain what the role does.

For #2, identify threats to the seven domains of IT within the organization.  This is not necessarily based solely on the scenario because threats are not listed; just list threats that may exist, in general, to the seven domains in the context of how they may exist in this example.  For example, for the workstation domain, this scenario indicates that Windows 7 workstations are in place. 

For #3, identify vulnerabilities in the seven domains of IT within the organization.  This is similar to #2.  This is not necessarily based solely on the scenario because specific vulnerabilities are not listed; just list vulnerabilities that may exist, in general, to the seven domains in the context of how they may exist in this example.

For #4, identify threat/vulnerability pairs to determine threat actions that could pose risks to the organization.  Your assigned reading should assist with this question.

For #5, estimate the likelihood of each threat action. Your assigned reading should assist with this question (just the likelihood not impact). 

For #6, prepare a brief report or presentation of your findings for IT management to review.  This just means answering the questions 1 - 5.  Make sure you list the number for each one you are answering.  Also, the report should be using a word-processing software such as Microsoft Word, Libre, Open Office, etc. (not pdf.)  It should be double spaced 12 pt. Times New Roman font.

Introduction:

In managing risks in an organization, professionals in the information technology (IT) department conduct research to identify threats, vulnerabilities, and threat/vulnerability pairs. Then, the IT professionals determine the likelihood of each threat occurring. The IT professionals present this information to IT management, whose role in risk management is to determine and recommend approaches to manage these risks. IT management then presents these recommendations to the senior management, whose role is to allocate resources, specifically money and employees, to prepare for and respond to identified threats and vulnerabilities appropriately.

This activity allows you to fulfill the role of IT professionals in a small business tasked with identifying threats, vulnerabilities, and threat/vulnerability pairs; estimating the likelihood of these threats occurring; and present this information to IT management.

Scenario:

YieldMore is a small agricultural company, which produces and sells fertilizer products. The company headquarters is in a small town in Indiana. Outside its headquarters, there are two large production facilities-one in Nebraska and other in Oklahoma. Furthermore, YieldMore employs salespersons in every state in the U.S. to serve its customers locally.

The company has three servers located at its headquarters-Active Directory server, a Linux application server, and an Oracle database server. The application server hosts YieldMore's primary software application, which is a proprietary program managing inventory, sales, supply-chain, and customer information. The database server manages all data stored locally with direct attached storage.

All three major sites use Ethernet cabled local area networks (LANs) to connect the users Windows 7 workstations via industry standard managed switches.

The remote production facilities connect to headquarters via routers T-1 LAN connections provided by an external Internet service provider (ISP), and share an Internet connection through a firewall at headquarters.Individual salespersons throughout the country connect to YieldMore's network via virtual private network (VPN) software through their individual Internet connections, typically in a home office.

Task 1:

You will be assigned to a team where you need to assume the roles of IT professionals assigned by YieldMore's IT management to conduct the following risk management tasks:

1. Some of the possible roles that could be fulfilled by the team members are: server manager, network manager, database manager, and security manager. You as a team have to decide for which functional area each of you will be responsible and who will be the team leader.

2. Identify threats to the seven domains of IT within the organization.

3. Identify vulnerabilities in the seven domains of IT within the organization.

4. Identify threat/vulnerability pairs to determine threat actions that could pose risks to the organization.

5. Estimate the likelihood of each threat action.

6. Prepare a brief report or presentation of your findings for IT management to review.

Rubric:

1. Did the team establish an appropriate functional area for each member and pick a leader?

2. Did the team identify all of the threats in the organization?

3. Did the team identify all of the vulnerabilities in the organization?

4. Did the team identify the threat/vulnerability pairs and use them to determine threat actions that could pose risks to the organization?

5. Were the team's estimates the likelihood of each threat action logical and plausible?

6. Did the team create a professional, well-developed report with proper grammar, spelling, and punctuation?

Reference no: EM131055207

Questions Cloud

What are the characteristics of ethical leadership : Give an example of ethical leadership. What are the characteristics of ethical leadership? And why do you think ethical leadership is important?
About the lease and buy : Reynolds Construction needs a piece of equipment that costs $350. Reynolds either can lease the equipment or borrow $350 from a local bank and buy the equipment. If the equipment is leased, the lease would not have to be capitalized. In either case, ..
What conclusions can you draw about the ethical issues : What conclusions can you draw about the ethical issues facing business leaders? How would you explain the role of leadership in corporate culture, leadership styles, and how they affect ethical decision making?
What is meant by off balance sheet liabilities in article : What are the main differences between IAS 17 (AASB 117) and the new IFRS 16 (AASB 16) from the lessee perspective? What is meant by ‘off balance sheet liabilities' in the article
Seven domains of it within the organization : Identify vulnerabilities in the seven domains of IT within the organization.  This is similar to #2.  This is not necessarily based solely on the scenario because specific vulnerabilities are not listed; just list vulnerabilities that may exist, i..
Fund assuming that only the interest income is distributed : George Jefferson established a trust fund that provides $178,500 in scholarships each year for worthy students. The trust fund earns a 5 percent rate of return. How much money did Mr. Jefferson contribute to the fund assuming that only the interest i..
Possibility of small scale profitability entry in small : Viton's 1981 study of urban transit costs found that urban transit firms operating in small cities (where fewer than one million vehicle-miles are produced annually) operate under increasing returns to scale, Assuming that fares are set at marginal c..
Determine the wall temperatures : Determine the wall temperatures to be applied along AB, BC, and CD so that 1) the last point to solidify in the casting is point P, and 2) the time for complete solidification of the product is as fast as possible.
Renfro rentals has issued bonds : Renfro Rentals has issued bonds that have a 12% coupon rate, payable semiannually. The bonds mature in 9 years, have a face value of $1,000, and a yield to maturity of 9.5%. What is the price of the bonds?

Reviews

Write a Review

Basic Computer Science Questions & Answers

  Relational database with ms access

Create a list that holds the student grade (A, A-, B+, ...), modify the appropriate table to accept only the grades in the list (you need to explain why you selected the above table record to the student grade).

  Language running on any operating system

Task: You are required to create and deliver a presentation providing an analysis of an existing software exploit (therefore you are not required to craft a new, unknown exploit yourself).

  Problem regarding message authentication codes

Discuss the attacks addressed by message authentication codes.

  Define a command can be sent to deactivate the tag

When this is used in an RFID tag, a command can be sent to deactivate the tag and can never be reactivated.

  Int countrypopulation

The following variable has already been defined: int countryPopulation = 1344130000; Using that variable (do not type the large number) along with text, finish the print statement to print the following: China's population was 1344130000 in 2011.

  Describe the three principles of direct manipulation

Describe the three (3) principles of direct manipulation and give examples as to how they are used in video game controls. Analyze video game-type interfaces and discuss three (3) reasons why video game-type interfaces would not be effective for re..

  Do you cut the blue wire or the red one

Describe which functions or positions in your company that you would never take. Explain why. If you have ever found yourself in a situation in which you were asked to execute a job function against your will, describe the experience.

  Explaining straight-line depreciation method

Explain in scholarly detail how to carry out Straight-line Depreciation Method calculations.

  Enhanced home utility auditing program

The user should be able to do the following:Enter the cost per kilowatt-hour. Select from a list of home appliances which includes a > or >, among other appliances

  What is optimal strategy if n is known

Consider the numerical 20 questions game. In this game, player 1 thinks of a number in the range 1 to n. Player 2 What is an optimal strategy if n in known?

  Your manager has decided that the throughput

Your manager has decided that the throughput of your file server can be improved by replacing your old SCSI-2 host adapter with a "fast and wide" SCSI-3 adapter. It has also been decided that the old SCSI-2 drives will be replaced with "fast and w..

  Windows word is an example

Windows Word is an example of System software. Platform software.

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd