The world’s Largest Sharp Brain Virtual Experts Marketplace Just a click Away
Levels Tought:
Elementary,Middle School,High School,College,University,PHD
| Teaching Since: | Jul 2017 |
| Last Sign in: | 304 Weeks Ago, 3 Days Ago |
| Questions Answered: | 15833 |
| Tutorials Posted: | 15827 |
MBA,PHD, Juris Doctor
Strayer,Devery,Harvard University
Mar-1995 - Mar-2002
Manager Planning
WalMart
Mar-2001 - Feb-2009
CIS 333 – Week 4 - Assignment 1: Identifying Potential Malicious Attacks, Threats and Vulnerabilities. See attached for more information
CIS 333 – Week 4 - Assignment 1: Identifying Potential Malicious Attacks, Threats and Vulnerabilities
Â
You have just been hired as an Information Security Engineer for a videogame development company. The organization network structure is identified in the below network diagram and specifically contains:
|
1) 2 – Firewalls |
5) 2 – Windows Server 2012 Active Directory Domain Controllers (DC) |
|
2) 1 – Web / FTP server |
6) 3 – File servers |
|
3) 1 – Microsoft Exchange Email server |
7) 1 – Wireless access point (WAP) |
|
4) 1 – Network Intrusion Detection System (NIDS) |
8) 100 – Desktop / Laptop computers |
|
 |
9) VoIP telephone system |

The CIO has seen reports of malicious activity being on the rise and has become extremely concerned with the protection of the intellectual property and highly sensitive data maintained by your organization. As one of your first tasks with the organization, the CIO requested you identify and draft a report identifying potential malicious attacks, threats, and vulnerabilities specific to your organization. Further, the CIO would like you to briefly explain each item and the potential impact it could have on the organization.Â
Write a four to five (4-5) page paper in which you:
1.      Analyze three (3) specific potential malicious attacks and / or threats that could be carried out against the network and organization.
2.      Explain in detail the potential impact of the three (3) selected malicious attacks.
3.      Propose the security controls that you would consider implementing in order to protect against the selected potential malicious attacks.
4.      Analyze three (3) potential concerns for data loss and data theft that may exist in the documented network.
5.      Explicate the potential impact of the three (3) selected concerns for data loss and data theft.
6.      Propose the security controls that you would consider implementing in order to protect against the selected concerns for data loss and data theft.
7.      Use at least three (3) quality resources in this assignment (no more than 2-3 years old) from material outside the textbook. Note: Wikipedia and similar Websites do not qualify as quality resources.
Your assignment must follow these formatting requirements:
·        Be typed, double spaced, using Times New Roman font (size 12), with one-inch margins on all sides; citations and references must follow APA or school-specific format. Check with your professor for any additional instructions.
·        Include a cover page containing the title of the assignment, the student’s name, the professor’s name, the course title, and the date. The cover page and the reference page are not included in the required assignment page length.
The specific course learning outcomes associated with this assignment are:
·        Explain the concepts of information systems security as applied to an IT infrastructure.
·        Describe the principles of risk management, common response techniques, and issues related to recovery of IT systems.
·        Describe how malicious attacks, threats, and vulnerabilities impact an IT infrastructure.
·        Explain the means attackers use to compromise systems and networks, and defenses used by organizations.
·        Use technology and information resources to research issues in information systems security.
·        Write clearly and concisely about network security topics using proper writing mechanics and technical style conventions.Â
Â
|
Points: 75 |
Assignment 1:Â Identifying Potential Malicious Attacks, Threats, and Vulnerabilities |
||||
|
Criteria |
 Unacceptable Below 60% F |
Meets Minimum Expectations 60-69% D |
 Fair 70-79% C |
 Proficient 80-89% B |
 Exemplary 90-100% A |
|
1. Analyze three (3) specific potential malicious attacks and / or threats that could be carried out against the network and organization. Weight: 15% |
Did not submit or incompletely analyzed three (3) specific potential malicious attacks and / or threats that could be carried out against the network and organization. |
Insufficiently analyzed three (3) specific potential malicious attacks and / or threats that could be carried out against the network and organization. |
Partially analyzed three (3) specific potential malicious attacks and / or threats that could be carried out against the network and organization. |
Satisfactorily analyzed three (3) specific potential malicious attacks and / or threats that could be carried out against the network and organization. |
Thoroughly analyzed three (3) specific potential malicious attacks and / or threats that could be carried out against the network and organization. |
|
2. Explain in detail the potential impact of the three (3) selected malicious attacks. |
Did not submit or incompletely explained in detail the potential impact of the three (3) selected malicious attacks. |
Insufficiently explained in detail the potential impact of the three (3) selected malicious attacks. |
Partially explained in detail the potential impact of the three (3) selected malicious attacks. |
Satisfactorily explained in detail the potential impact of the three (3) selected malicious attacks. |
Thoroughly explained in detail the potential impact of the three (3) selected malicious attacks. |
|
3. Propose the security controls that you would consider implementing in order to protect against the selected potential malicious attacks. |
Did not submit or incompletely proposed the security controls that you would consider implementing in order to protect against the selected potential malicious attacks. |
Insufficiently proposed the security controls that you would consider implementing in order to protect against the selected potential malicious attacks. |
Partially proposed the security controls that you would consider implementing in order to protect against the selected potential malicious attacks. |
Satisfactorily proposed the security controls that you would consider implementing in order to protect against the selected potential malicious attacks. |
Thoroughly proposed the security controls that you would consider implementing in order to protect against the selected potential malicious attacks. |
|
4. Analyze three (3) potential concerns for data loss and data theft that may exist in the documented network. Weight: 15% |
Did not submit or incompletely analyzed three (3) potential concerns for data loss and data theft that may exist in the documented network. |
Insufficiently analyzed three (3) potential concerns for data loss and data theft that may exist in the documented network. |
Partially analyzed three (3) potential concerns for data loss and data theft that may exist in the documented network. |
Satisfactorily analyzed three (3) potential concerns for data loss and data theft that may exist in the documented network. |
Thoroughly analyzed three (3) potential concerns for data loss and data theft that may exist in the documented network. |
|
5. Explicate the potential impact of the three (3) selected concerns for data loss and data theft. |
Did not submit or incompletely explicated the potential impact of the three (3) selected concerns for data loss and data theft. |
Insufficiently explicated the potential impact of the three (3) selected concerns for data loss and data theft. |
Partially explicated the potential impact of the three (3) selected concerns for data loss and data theft. |
Satisfactorily explicated the potential impact of the three (3) selected concerns for data loss and data theft. |
Thoroughly explicated the potential impact of the three (3) selected concerns for data loss and data theft. |
|
6. Propose the security controls that you would consider implementing in order to protect against the selected concerns for data loss and data theft. |
Did not submit or incompletely proposed the security controls that you would consider implementing in order to protect against the selected concerns for data loss and data theft. |
Insufficiently proposed the security controls that you would consider implementing in order to protect against the selected concerns for data loss and data theft. |
Partially proposed the security controls that you would consider implementing in order to protect against the selected concerns for data loss and data theft. |
Satisfactorily proposed the security controls that you would consider implementing in order to protect against the selected concerns for data loss and data theft. |
Thoroughly proposed the security controls that you would consider implementing in order to protect against the selected concerns for data loss and data theft. |
|
7. 3 references Weight: 5% |
No references provided |
Does not meet the required number of references; all references poor quality choices. |
Does not meet the required number of references; some references poor quality choices. |
Meets number of required references; all references high quality choices. |
Exceeds number of required references; all references high quality choices. |
|
8. Clarity, writing mechanics, and formatting requirements Weight: 10% |
More than 8 errors present |
7-8 errors present |
5-6 errors present |
3-4 errors present |
0-2 errors present |
Â
----------- Â ----------- H-----------ell-----------o S-----------ir/-----------Mad-----------am ----------- Th-----------ank----------- yo-----------u f-----------or -----------you-----------r i-----------nte-----------res-----------t a-----------nd -----------buy-----------ing----------- my----------- po-----------ste-----------d s-----------olu-----------tio-----------n. -----------Ple-----------ase----------- pi-----------ng -----------me -----------on -----------cha-----------t I----------- am----------- on-----------lin-----------e o-----------r i-----------nbo-----------x m-----------e a----------- me-----------ssa-----------ge -----------I w-----------ill----------- be----------- qu-----------ick-----------ly