Explain how adversary could use the exploited intelligence

Assignment Help Computer Network Security
Reference no: EM131365758

Assignment

You are a cybersecurity analyst on a security team at Red Cell 637 Defense, a DoD contractor specializing in cyber operations and defensive strategies.

High-ranking federal government officials informed your team that recent intelligence shows an advanced persistent threat (APT) is looking at exploiting supply chain vulnerabilities against the computers that operate the Western Interconnection power grid. You are to assume that this APT originates from either a well-funded nation state or terrorist group. The APT has been able to probe and map the network over the course of several months. The officials have given your team access to classified intelligence indicating that the currently unidentified group may be planning to install malicious malware within the grid's computer network that will disrupt power to eleven states.

Your team has been asked to work closely with the DoD, Department of Homeland Security (DHS), and other federal stakeholders to strengthen the security and safety of the power grid and its related computer information systems.

The federal agencies responsible for critical infrastructure protection want to ensure that the Western Interconnection power grid computer network has the strongest possible defense while ensuring continued operation. They formally request that your team analyze common vulnerabilities in SCADA networks such as the western power connection grid, and then apply the Cyber Kill Chain to determine how this adversary could have exploited the vulnerabilities to attack the network. In addition, you will utilize the NSA's information assurance-based "Defense in Depth" strategy as it relates to the power grid's computer networks to make recommendations for implementing stronger information assurance measures and actions. You will compose a report with graphics, detailing your recommendations for securing the network against future cyberattacks.

Requirements:

Your submission must be your original work. No more than a combined total of 30% of the submission and no more than a 10% match to any one individual source can be directly quoted or closely paraphrased from sources, even if cited correctly. Use the Turnitin Originality Report available in Taskstream as a guide for this measure of originality.

You must use the rubric to direct the creation of your submission because it provides detailed criteria that will be used to evaluate your work. Each requirement below may be evaluated by more than one rubric aspect. The rubric aspect titles may contain hyperlinks to relevant portions of the course.

A. ICS Vulnerabilities and Cyber Kill Chain

1. Reconnaissance - Summarize plausible active gathering, passive gathering, and active reconnaissance techniques that the adversary could have executed to gain intelligence on the target in the scenario.

2. Weaponization and Delivery - Explain how the adversary could use the exploited intelligence to create a malicious payload, including plausible delivery methods of the payload to the target.

3. Exploitation and Installation - Describe the series of events that could occur during the exploitation and installation of a malicious payload, including where the payload could be delivered on the network to accomplish the adversary's goals as described in the scenario.

4. Command & Control - Create a visual representation of channels through which an adversary could use tools to exploit a compromised network and create an "at will" entry point for sending and receiving information. Be sure to clearly indicate each component represented in your visual.

5. Actions - Describe how the adversary is likely collecting and exfiltrating information from the Western Interconnection power grid, including how that information could be used to successfully execute an attack.

B. "Defense in Depth" Recommendations

1. People - Recommend information assurance policies or procedures specific to the facilities and personnel security that control and monitor access to facilities and critical infrastructures for the Western Interconnection power grid. Be sure to explain how each policy and procedure will raise information assurance levels.

2. Technology - Recommend technology acquisition policies or procedures that the Western Interconnection power grid should use to detect and protect against cyberattacks. Be sure to explain how these policies or procedures will raise information assurance levels.

3. Operations - Recommend policies or procedures to sustain security posture for the Western Interconnection power grid on a day-to-day basis. Be sure to explain how these policies or procedures will raise information assurance levels.

C. Acknowledge sources, using APA-formatted in-text citations and references, for content that is quoted, paraphrased, or summarized.

Reference no: EM131365758

Questions Cloud

Write an essay about deborahs life : Write a 600 word essay about Deborah's life, she was a Judge in the bible.- Somehow be related to something covered in the lectures or text, BUT not talked about specifically in our lectures.
Describ elements to include in psychiatric interviews : The psychiatric nurse stressed that a process recording, or written analysis of the interaction between the client and nurse, is essential for nurses to recognize the effects of their communication style in the assessment process. A review of the..
Write an essay about an event : Write an essay about an event. - Be before 922BC, when Solomon died, and where our semester ends which is Ecclesiastes
Describing the numerators and denominators : Summarize the prevalence & incidence rates by describing the numerators & denominators (how was the numerator defined? What was the denominator that was used or the population that you are referring to)
Explain how adversary could use the exploited intelligence : Explain how the adversary could use the exploited intelligence to create a malicious payload, including plausible delivery methods of the payload to the target.
How can the student nurses convey the essential elements : How can the student nurses convey the essential elements of a therapeutic relationship in talking to clients?How can the student nurses maintain a professional relationship and avoid a social one for clients in psychiatric settings?List the key ingre..
Discuss the role of multidisciplinary team in care of client : A multidisciplinary team meeting is in progress for Cindy, a 21-year-old college student who has recently been diagnosed with schizophrenia. Cindy had been an excellent student on the dean's list until 2 weeks ago, when she stopped attending clas..
What types of system requirements will you focus on : Use the Internet to find a site that contains current IT industry news, information, and links. Write a brief description of what you liked and didnt like.
How has my motivation changed or not changed : How has my motivation changed, or not changed, as I progressed in college? What persons external to the college environment have helped and supported me?

Reviews

Write a Review

Computer Network Security Questions & Answers

  An overview of wireless lan security - term paper

Computer Science or Information Technology deals with Wireless LAN Security. Wireless LAN Security is gaining importance in the recent times. This report talks about how vulnerable are wireless LAN networks without any security measures and also talk..

  Computer networks and security against hackers

This case study about a company named Magna International, a Canada based global supplier of automotive components, modules and systems. Along with the company analysis have been made in this assignment.

  New attack models

The Internet evolution is and is very fast and the Internet exposes the connected computers to attacks and the subsequent losses are in rise.

  Islamic Calligraphy

Islamic calligraphy or Arabic calligraphy is a primary form of art for Islamic visual expression and creativity.

  A comprehensive study about web-based email implementation

Conduct a comprehensive study about web-based email implementation in gmail. Optionally, you may use sniffer like wireshark or your choice to analyze the communication traffic.

  Retention policy and litigation hold notices

The purpose of this project is to provide you with an opportunity to create a document retention policy. You will also learn how to serve a litigation hold notice for an educational institute.

  Tools to enhance password protection

A report on Tools to enhance Password Protection.

  Analyse security procedures

Analyse security procedures

  Write a report on denial of service

Write a report on DENIAL OF SERVICE (DoS).

  Phising email

Phising email It is multipart, what are the two parts? The HTML part, is it inviting the recepient to click somewhere? What is the email proporting to do when the link is clicked?

  Express the shannon-hartley capacity theorem

Express the Shannon-Hartley capacity theorem in terms of where is the Energy/bit and is the psd of white noise.

  Modern symmetric encryption schemes

Pseudo-random generators, pseudo-random functions and pseudo-random permutations

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd