Discretionary access control and mandatory access control, Risk Management

Assignment Help:

Question:

(a)

(i) Explain what is meant by Discretionary Access Control and Mandatory Access Control.

(ii) What is the difference between the two types of access control?

(iii) Which method would be the most effective to ensure that users do not share files with other users not approved for access?

(b) Outline the three differences between the Liberty Alliance specification and the Microsoft .NET Passport System.

(c) Which of the following options below would be the MOST effective solution for preventing individuals outside the organization from modifying sensitive information on a corporate database. Explain the reasons for choosing one option and for rejecting the other two options.

Option 1: Screened Subnets
Option 2 : System access logs
Option 3: Role based access controls

(d) (i) Where should the Intrusion Detection System be placed on a network?

(ii) Identify one main weakness of signature based Intrusion Detection Systems.

(iii) Explain what is the main objective of network mapping when conducting a penetration test?

(iv) When is the best time to perform a penetration test?


Related Discussions:- Discretionary access control and mandatory access control

What is industry risk, What is Industry Risk An industry may be view...

What is Industry Risk An industry may be viewed as group of companies which compete with each other to market a homogeneous product. Industry risk is that portion of an  inv

Request for your service.., I am a university student, and for a project as...

I am a university student, and for a project assignment to be completed, my team is going to write a business plan and a compliance Manuel for stock brokers and investment advisors

Hi, ashjadsgdjhs

ashjadsgdjhs

State about the interest rate risk, State about the Interest Rate Risk ...

State about the Interest Rate Risk Variability in a security's return resulting from changes in the level of interest rates is referred to as interest rate risk. Such change

Homework 2, I have already sent my homework yesterday, please respond: from...

I have already sent my homework yesterday, please respond: from email:

What are the major types of risk analysis, Question: (a) What are the t...

Question: (a) What are the two major types of risk analysis? (b) Which type is generally used in risk analysis of information systems and why? (c) Explain the methodology

Show additively of betas, Q. Show Additively of betas? it is indicated ...

Q. Show Additively of betas? it is indicated earlier that any risk unique to an individual security can be removed by diversification, however as diversification increases, the

Risk management decisions should be transparent, Risk management decisions ...

Risk management decisions and practices should be transparent Risk management should include the identification and systematic documentation of all elements of the risk managem

Write Your Message!

Captcha
Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd