Network security baseline analyzer

Assignment Help Computer Network Security
Reference no: EM132879289

Question: It's time to begin work on the next phase of the final analysis of the intrusion, which will include an incident response plan. Such a plan provides a method for containing the impact from a cybersecurity incident. It includes a plan for file recovery and remediation from an incident. All the actions will start from the security baseline analysis, which has been defined for all the nations' network topologies at the summit, using a network security baseline analyzer.

Your nation team will work together to develop an eight- to 10-page Incident Response Plan to use in the event of a cyber incident. This is one of your three final deliverables, which you will submit for feedback as a group, and then for individual assessment at the end of the project.

Begin your first half of the plan by focusing on the environmental conditions and coordination mechanisms. Include:

1. roles and responsibilities

2. phases of incident response

3. scenario-provide an incident response plan in the case of distributed data exfiltration attacks, specifically the case of loss of communications

4. activities, authorities pertaining to roles and responsibilities

5. triggering conditions for actions

6. triggering conditions for closure

7. reports and products throughout the incident response activity

8. tools, techniques, and technologies

9. communications paths and parties involved

10. coordination paths and parties involved

11. external partners and stakeholders, and their place in the coordination and communication paths

12. security controls and tracking

13. recovery objectives and priorities

Your team will continue working on the incident response plan in the next step. You will consider the processes of an active response.

Your team in this step will continue developing the Incident Response Plan. The second half of your report will focus on events and processes of your active response plan. Include the following:

14. incident response checklist. Refer to the NIST Computer Security Incident Handling Guide for an example.

15. data protection mechanisms

16. integrity controls (system integrity checks) after recovery

17. a plan to investigate the network behavior and a threat bulletin that explains this activity

18. defined triggering mechanisms for continuing alerts and notifications throughout the cyber incident

19. additional aspects of the incident response plan necessary to contain a cyber incident on the international domain

20. diagrams of swim lanes of authorities, activities and process flows, coordination and communication paths. Review the Swim Lane Template to familiarize yourself with the concept of swim lanes and swim lane diagrams.

You will complete your incident response plan in the next step. Your incident response plan is critical in outlining your activities during a cyberattack as well as providing direction for recovery.

Attachment:- Work IR Plan.rar

Reference no: EM132879289

Questions Cloud

What is an artificial neural network : Discussion:1. What is an artificial neural network and for what types of problems can it be used?
Structural configuration better suited to multiproduct : Specifically Analytical Exercise 8. Is another form of structural configuration better suited to multiproduct, multiservice companies?
Compute the revised annual depreciation : Machinery will have a life of only five more years and a $60,000 salvage value. Horton uses straight-line depreciation. Compute the revised annual depreciation.
Prepare the correct entry for the acquisition : Prepare the correct entry for the acquisition. Sophia Company purchased land and an office building on March 1 for a combined cash price of $1,600,000.
Network security baseline analyzer : Network security baseline analyzer - plan to investigate the network behavior and a threat bulletin that explains this activity
Does the policy violate the nlra : We value our employees' feedback and appreciate their questions and concerns. However, we also value confidentiality. Therefore, any complaints or grievances
Popular the concept of value chain : Michael Porter was a business researcher who made popular the concept of a "value chain" that is common to most business organizations.
What behaviors will make you a better leader : What behaviors will make you a better leader? How could these behaviors help you inspire and guide others?
What have learnt so far about the standard : IAS 16: Property, Plant and Equipment, what changes will you suggest to IASB board based on what you have learnt so far about the standard?

Reviews

len2879289

5/7/2021 12:47:48 AM

Grad level writing - must use in-text citations throughout the paper. For example, According to CyberCom, incident response plans must be created using special guidelines. CyberCom goes on to say, this is important. Any time a claim is made, it must be supported by a source.

Write a Review

Computer Network Security Questions & Answers

  Describe application of network security and management

Evaluate the ethical concerns that communication networks raise in a global context. Describe the application of network security and network management in communication technology environments.

  Decrypt the following message which was enciphered using

1 decrypt the following message which was enciphered using the vigenere cipher with encrypting key secret wbrcs lazgj

  Define social engineering security threats

Select an article relevant to current social engineering threats. Topics could include, but are not limited to, phishing, quid pro quo, or diversion theft. Research and examine current information security systems designed to address social engine..

  Implement the secure communication tool

ITNE2002 - Network and Information Security - Victorian Institute of Technology (VIC) - Discuss the challenges that would be encountered in key exchange

  Help us understand how to stop spreading

The online service should be easy to use, give us good information about any IP's the malware references, and help us understand how to stop spreading.

  Describe the difference between the osi and tcp models

Describe network devices and how they operate (be sure to include a hub, switch, router, server, firewall, access point, and cable modem).

  What is the new technology

What is the new technology - what does it do and what are the special features it has and when is it coming out in the market and how much will it cost?

  Define cybersecurity as an organizational strategy

Prepare a short paper of approximately 8-12 ( double spaced)pages investigating the strategic impact of cybersecurity in the organization with a special focus on its ethical and legal implications.

  Most damaging corporate computer crime

1. In your opinion, what is the most damaging corporate computer crime today? In your reply provide at least two recent examples with references to support your opinion.

  Identify all potential security threats on personal computer

Identify all the potential security threats on a personal computer. Identify some of the techniques an attacker might employ to access information on the system.

  Analyse data communication and networking technologies

Network Design Assignment - Analyse and design LAN architecture for organisational requirements and Analyse data communication and networking technologies

  Methods to combat technical-nontechnical attacks in wan

Explain a security strategy for a corporate WAN. Be sure to include methods to combat both technical and nontechnical attacks.

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd