Discretionary access control and mandatory access control, Risk Management

Assignment Help:

Question:

(a)

(i) Explain what is meant by Discretionary Access Control and Mandatory Access Control.

(ii) What is the difference between the two types of access control?

(iii) Which method would be the most effective to ensure that users do not share files with other users not approved for access?

(b) Outline the three differences between the Liberty Alliance specification and the Microsoft .NET Passport System.

(c) Which of the following options below would be the MOST effective solution for preventing individuals outside the organization from modifying sensitive information on a corporate database. Explain the reasons for choosing one option and for rejecting the other two options.

Option 1: Screened Subnets
Option 2 : System access logs
Option 3: Role based access controls

(d) (i) Where should the Intrusion Detection System be placed on a network?

(ii) Identify one main weakness of signature based Intrusion Detection Systems.

(iii) Explain what is the main objective of network mapping when conducting a penetration test?

(iv) When is the best time to perform a penetration test?


Related Discussions:- Discretionary access control and mandatory access control

Principles of a sensible risk management, Question 1: (a) Risk Assessm...

Question 1: (a) Risk Assessment is essentially a five steps process. Describe how each of these steps should be carried out to ensure a safe and healthy place of work. (b)

Overtrading, What are the solution for over trading that has caused for exp...

What are the solution for over trading that has caused for expanding operation

Forward-forward and forward spot swaps in managing risks, Question: You...

Question: You have been appointed as the treasurer of Manchester International, an electronic firm with many subsidiaries abroad. The management of Manchester International is

Post loss objectives, a) Discuss the post loss objectives that would help t...

a) Discuss the post loss objectives that would help the firm recover

Risk management strategy, The risk register and risk management strategy sh...

The risk register and risk management strategy should justify and report on the rationale of the register, priority and its management . Guidelines Risk  is assessed

Risk assessment - portfolio management, 1. You are given the following long...

1. You are given the following long-run annual rates of return for alternative investment instruments: US Government T-Bills 3.5% Large-cap common stocks 12.1% Long-

Determine certainty equivalent, Ben owns a home in "tornado alley" in Oklah...

Ben owns a home in "tornado alley" in Oklahoma that is worth $100,000.  In any given year, he knows that there is a 1% chance his home will be hit by a tornado.  If it is, his home

Differentiate between interest and currency swaps, a) Differentiate betwee...

a) Differentiate between interest and currency swaps. b) Suppose a Swiss firm, ACER Com Ltd, wants to invest in the U.S. The Swiss firm needs US dollars with a term to maturit

Measure account for risk, The asset management industry uses a variety of "...

The asset management industry uses a variety of "performance measures" to asses the relative performance of managed portfolios or funds, mostly (but not always) relative to an appr

Write Your Message!

Captcha
Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd