Discretionary access control and mandatory access control, Risk Management

Assignment Help:

Question:

(a)

(i) Explain what is meant by Discretionary Access Control and Mandatory Access Control.

(ii) What is the difference between the two types of access control?

(iii) Which method would be the most effective to ensure that users do not share files with other users not approved for access?

(b) Outline the three differences between the Liberty Alliance specification and the Microsoft .NET Passport System.

(c) Which of the following options below would be the MOST effective solution for preventing individuals outside the organization from modifying sensitive information on a corporate database. Explain the reasons for choosing one option and for rejecting the other two options.

Option 1: Screened Subnets
Option 2 : System access logs
Option 3: Role based access controls

(d) (i) Where should the Intrusion Detection System be placed on a network?

(ii) Identify one main weakness of signature based Intrusion Detection Systems.

(iii) Explain what is the main objective of network mapping when conducting a penetration test?

(iv) When is the best time to perform a penetration test?


Related Discussions:- Discretionary access control and mandatory access control

Determine a process for communicating, Determine a process for communicatin...

Determine a process for communicating, resourcing and managing risk management strategies Establish a communication plan to implement the risk management framework that has been

Homework 2, I have already sent my homework yesterday, please respond: from...

I have already sent my homework yesterday, please respond: from email:

Risk assessment - portfolio management, 1. You are given the following long...

1. You are given the following long-run annual rates of return for alternative investment instruments: US Government T-Bills 3.5% Large-cap common stocks 12.1% Long-

GRACH, (i) Calculate the unweighted average daily variance for the time ser...

(i) Calculate the unweighted average daily variance for the time series. Explain any assumptions or simplifications you have made, and the working for each step.

New student, what are the risk in management when you don''t have a fix pla...

what are the risk in management when you don''t have a fix plan of what you want o accomplish?

Explain in detail about the non-systematic risk, Explain in detail about th...

Explain in detail about the Non-Systematic Risk Variability in a security's total returns not related to overall market variability is termed as the non-systematic (non-mark

Determine about the liquidity risk, Determine about the Liquidity Risk ...

Determine about the Liquidity Risk Liquidity risk is the risk associated with specific secondary market in which a security trades. An investment which can be bought or sold

Four critical components of risk-management integrity, The purpose of this ...

The purpose of this memorandum is to outline in sufficient detail the terms of the audit engagement. In planning the audit engagement for Toy Local Corporation for the year ended O

Write Your Message!

Captcha
Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd