Reference no: EM132511341
Imagine that you are the Information Systems Security Specialist for a medium-sized federal government contractor. The Chief Security Officer (CSO) is worried that the organization's current methods of access control are no longer sufficient. In order to evaluate the different methods of access control, the CSO requested that you research: mandatory access control (MAC), discretionary access control (DAC), and role-based access control (RBAC). Then, prepare a report addressing positive and negative aspects of each access control method. This information will be presented to the Board of Directors at their next meeting. Further, the CSO would like your help in determining the best access control method for the organization.
Write a three to five page paper in which you:
Explain in your own words the elements of the following methods of access control:
Mandatory access control (MAC)
Discretionary access control (DAC)
Role-based access control (RBAC)
Compare and contrast the positive and negative aspects of employing a MAC, DAC, and RBAC.
Suggest methods to mitigate the negative aspects for MAC, DAC, and RBAC.
Evaluate the use of MAC, DAC, and RBAC methods in the organization and recommend the best method for the organization. Provide a rationale for your response.
Speculate on the foreseen challenge(s) when the organization applies the method you chose. Suggest a strategy to address such challenge(s).
Use at least three quality resources in this assignment.
Speech about how technology has impacted society
: Write an Speech about How Technology Has Impacted Society
|
Job description and justification
: Identify the desired KSAs (Knowledge, Skills, and Abilities). Explain required minimum qualifications. Describe the steps involved in hiring for new position
|
Health insurance and quality
: Imagine that you are the clinic manager of an urgent care center. Recently, your center has seen an increase in complaints regarding long wait times,
|
Terminology of victimology and victimization
: Our lectures will cover the basics of terminology of victimology and victimization. We will review how the criminal justice system handles the victim not the of
|
Tech audit and control
: Compare and contrast the positive and negative aspects of employing a MAC, DAC, and RBAC. Evaluate the use of MAC, DAC, and RBAC methods in the organization
|
Safely share security data
: we can safely share security data.Are there precautions we can take, technical solutions we can use, e.g., like using the CIA triad,
|
Information governance and data governance
: Information Governance, IT Governance, Data Governance: What's the Difference? Briefly explain.
|
File inclusion vulnerability.
: Do a bit if research into File Inclusion Vulnerability. What is the difference of low and remote inclusion?
|
Ibm advanced analytics
: Check IBM Advanced Analytics. What tools were included that relate to this case? Check IBM cognitive buildings. How do they relate to this case?
|