Reference no: EM132314265
Assignment - MSDL Security Architecture and Design
Problems -
1. Consider an electronic bill paying system (such as Quicken Bill Pay), The key features of this system is that a customer using Quicken (on their own computer) can pay bills using their computer's app (the Quicken program). Paying a bill with such a system directs the customer's bank to send money electronically to pay the bill. You can imagine that the bank just sends a check instead of the person writing the check themselves, but the payments are done electronically between the customer's bank and the payee's bank (and that transaction is outside the scope of our analysis).
To make communication between customers and the service more efficient, the service itself maintains an account for each customer. Also, for each customer, the service maintains records of the customer's bank and the customer's account for each payee. Such records include the customer's own account number for that payee and the local address of the payee.
a. Draw a network mode of the Quicken Bill Pay service. Use design/drawing tool (e.g. MS Visio, etc.). Remember, convert your final drawing to a PDF file. Make sure that your work is neat, lines are correct, and you use the correct design shapes (any shape will not work). Label each shape. (Refer Threat Modelling for more information)
b. From the point of view of the Quicken Bill Pay service, what are the assets to be protected in such a system? (Only consider the part of the service that allows bill payments and queries about bill payments by customers). [Do not other services such as transferring money between accounts]). You should list at least five.
c. From the point of view of the Quicken Bill Pay service, what are the threats for the service? List and explain five threats to the system.
Attachment:- Assignment File.rar