Scope of work for penetration test

Assignment Help Computer Engineering
Reference no: EM13818837

• Scope of Work for Penetration Test

Assignment Requirements:

You work for EGS Testing Solutions; your company is involved in testing related to access control systems. A large, private fitness club contacted your company because their Web server was hacked. The fitness club has a corporate office with 50 workstations, 4 application servers, 2 e-mail servers, 2 Web servers, and 129 franchisees with 10 workstations and about 3,500 members at each location. Except for the equipment at the franchisees' locations, all other equipment resides at the central headquarters.

The fitness club was unsure whether the Web server hacking took place because of the former administrator, who quit under less than amenable circumstances, or if an external party had found their "Achilles heel." The perpetrator was able to access the corporate Web server by using the remote login of the Microsoft (MS) Windows network administrator.

Once the hack was realized, the administrator was forced to shut down the connections to all their 129 franchisees that needed access to the corporate Web server. The franchisees require access to the Web server to review their customers' personal information, fitness progress, and goals as well as to share information with the corporate headquarters in a secure manner. Members and club staff also make periodic payments for dues and services using this system, including credit card payments.

Your company has been engaged to provide a cost-effective solution that would allow the new administrator to do the following:

• Control access to resources by preventing unauthorized users from logging in to privileged areas.

• Audit and review user activities to prevent future hacks that could compromise network integrity.

• Change the existing system to strengthen it as necessary.

• Add technology, as necessary, to detect security breaches.

To be able to develop a cost-effective solution, your company must focus on developing a reasonable and cost-effective testing plan to identify any weaknesses in the network.

Develop a comprehensive and ongoing vulnerability and penetration test plan. Include solutions in the test plan for unauthorized access in the corporate workstations, application servers, mail and Web servers, and wireless routers.

Reference no: EM13818837

Questions Cloud

Write review on a management problem and proposed resolution : Write a 10 page literature review on a Management "Problem" and Proposed "Resolution". Because this is the Independent Study writing course.
Describe what specifically medical marijuana : What are the same events in this same perceptive: For example, state where marijuana use is legal social movement or group that advocate for the decriminalization of medical marijuana.
What is the break-even price for the toy truck : Now the original manufacturer is deciding whether they should continure production of the toy truck. If the estimated demand is 100,000 trucks, what is the break-even price for the toy truck? should you shut down?
Types of organizational cultures : What is organizational culture? What are the three [3] levels of organizational culture? What are the four [4] types of organizational cultures
Scope of work for penetration test : Scope of Work for Penetration Test
Create a program that develops an amortization schedule : Your project as a programming consultant is to create a program that develops an amortization schedule. Your program should be written as a Java applet. The applet input will be the loan amount, annual percentage rate (APR), and the number of years t..
Write a paper on labor and employment law : Write a seven pages paper on labor and employment law. Any topic on Unions and something new that you have learned. must have 10 sources and they can only be journals and peer reviews no articles.
The mutex and condition portions of messagesystem : the mutex and condition portions of MessageSystem
Analyze various codes regarding discretionary employee : Analyze the various codes and acts regarding discretionary employee benefits discussed in Chapter "Contextual Influences on Compensation Practice" and determine which code or law has had the greatest impact on the largest number of organizations.

Reviews

Write a Review

Computer Engineering Questions & Answers

  Mathematics in computing

Binary search tree, and postorder and preorder traversal Determine the shortest path in Graph

  Ict governance

ICT is defined as the term of Information and communication technologies, it is diverse set of technical tools and resources used by the government agencies to communicate and produce, circulate, store, and manage all information.

  Implementation of memory management

Assignment covers the following eight topics and explore the implementation of memory management, processes and threads.

  Realize business and organizational data storage

Realize business and organizational data storage and fast access times are much more important than they have ever been. Compare and contrast magnetic tapes, magnetic disks, optical discs

  What is the protocol overhead

What are the advantages of using a compiled language over an interpreted one? Under what circumstances would you select to use an interpreted language?

  Implementation of memory management

Paper describes about memory management. How memory is used in executing programs and its critical support for applications.

  Define open and closed loop control systems

Define open and closed loop cotrol systems.Explain difference between time varying and time invariant control system wth suitable example.

  Prepare a proposal to deploy windows server

Prepare a proposal to deploy Windows Server onto an existing network based on the provided scenario.

  Security policy document project

Analyze security requirements and develop a security policy

  Write a procedure that produces independent stack objects

Write a procedure (make-stack) that produces independent stack objects, using a message-passing style, e.g.

  Define a suitable functional unit

Define a suitable functional unit for a comparative study between two different types of paint.

  Calculate yield to maturity and bond prices

Calculate yield to maturity (YTM) and bond prices

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd