What is sues response in the given scenario

Assignment Help Other Subject
Reference no: EM132820867

Assignment: Internal Threats/Insider Threats Scenarios

The Quick Fix

SCENARIO 1: Joe, your network administrator, is overworked and underpaid. His bags are packed and ready for a family vacation to Disney World when he is tasked with deploying a critical patch. To make his flight, Joe quickly builds an installation file for the patch and deploys it before leaving for his trip. Next, Sue, the on-call service desk technician, begins receiving calls that nobody can log in. It turns out that no testing was done for the recently installed critical patch.

What is your response?

Discussion questions

• What is Sue's response in this scenario?

a. Does or should your on-call technician have the expertise to handle this incident? If not, are there defined escalation processes?

• Does or should your organization have a formal change control policy?

a. Should employees be trained on proper change control?

b. Does or should your organization have disciplinary procedures in place for when an employee fails to follow established policies?

• Does or should your organization have the ability to "roll back" patches in the event of unanticipated negative impacts?

An Unsecure Location

SCENARIO 2: An employee within your organization reports to you that an unanticipated shipment was received from a charitable organization consisting of 500 new laptops and 1,000 tablets and the Information Technology Department placed them in a building that has been the subject of several burglaries. The building is in an area surrounded by brush and poor to lighting due to burned out lights. No one was supposed to use the building until conditions were changed. It is 10:00 am Monday morning, you are the Head of Security and start a three-hour business meeting at 11:00 am.

What is your response?

Discussion questions

• Who within the organization would you need to notify?

• How should your department handle this problem?

a. Short-term

b. Long-term

• How can you prevent this from occurring again?

A Malware Infection

SCENARIO 3: An employee within your Research Department used the company's digital camera for business purposes. While doing so, he/she took a scenic photograph that he/she then loaded onto their personal computer by inserting the SD card. The SD card was infected with malware while connected to the employee's personal computer. When re-inserted into a company machine, it infected the organization's system with the same malware.

What is your response?

As the Head of Research, you have learned that five servers were infected before they were isolated through an automated process. The systems will disrupt operations in one critical department after eight hours. There is an existing contract with a cyber incident response company as well as internal company forensic resources.

• Who within the organization would you need to notify?

• How should an organization identify and respond to malware infecting your system through this vector?

a. What is the process for identifying the infection vector?

• What other devices could present similar threats?

• What should management do?

• How can you prevent this from occurring again?

a. Should your organization have training and policies in place to prevent this?

b. Should policies apply to all storage devices?

c. Should employees be prevented from using external drives?

Financial Break-in

SCENARIO 4: A routine financial audit reveals that several people receiving paychecks are not, and have never been, on payroll. A system review indicates they were added to the payroll approximately one month prior, at the same time, via a computer in the financial department.

What is your response?

You confirm the computer in the payroll department was used to make the additions. Approximately two weeks prior to the addition of the new personnel, there was a physical break-into the finance department in which several laptops without sensitive data were taken.

Further review indicates that all employees are paying a new "fee" of $20 each paycheck and that money is being siphoned to an offshore bank account. Having this additional information, how do you proceed?

• What actions should you take after the initial break in?

• Should you audit your physical security system?

• Who would/should be notified?

• How would you assess the damages associated with the break in?

• Should find out what credentials may have been stored on the laptop?

• How would you notify your employees of the incident?

a. Should the company compensate the employees?

• How do you contain the incident?

4 pages

Reference no: EM132820867

Questions Cloud

Is job satisfaction related to performance : Is job satisfaction related to performance? Are happy workers productive employees?
What is the holding period return : Assume the interest rate is 4%. What is the holding period return (HPR) and Annualized Return if price of the stock goes down to $40 in 6 months
Why the southwest airlines loyalty program most appeals : 1. Discuss why the Southwest Airlines loyalty program most appeals to you as a consumer. Justify your selection with specific examples.
What ethical and information security issues : what ethical and information security issues can arise when conducting E-business?
What is sues response in the given scenario : Joe, your network administrator, is overworked and underpaid. His bags are packed and ready for a family vacation to Disney World when he is tasked with.
Discuss the opportunities to support leadership development : Critically discuss the opportunities to support leadership development assessor comments; explain the process/steps to initiate or support leadership developmen
Make necessary adjusting entries to record bad debts expense : Make the necessary adjusting entries to record bad debts expense assuming this company's bad debts are estimated to equal
Is unethical for sharon to refuse to support the standards : Fulmar Manufacturing Co. is the manufacturer of miniature models, Is it unethical for Sharon to refuse to support the standards? Explain.
Is the opportunity cost really that important : Is the opportunity cost really that important? Can it influence a decision? What are the direct costs of going to college for you?

Reviews

Write a Review

Other Subject Questions & Answers

  What is taking off uncomfortable shoes

On your way home after the job interview you are so happy to take off the uncomfortable shoes. What is taking off your uncomfortable shoes?

  Ways that you have directly experienced dis-empowerment

1. Ways that you have directly experienced dis-empowerment. 2. What empathy blockers do you most often use with children?

  Explain the behavior and correlating perception driving you

Share in a journal assignment two to three behaviors you have exhibited in the workplace strictly due to your perception (e.g., you become nervous and speak).

  Investigate nature without preconceptions

Would it be possible to investigate nature without preconceptions? Explain why you either agree or disagree with this approach?

  Describe the resources you have previously used

Describe the resources you have previously used to do research either at work or school, what their strengths and weaknesses are?

  Identify any characteristics of egocentrism

Apply analytical reasoning and identify strategies for self-assessment to reconsider your decision-making patterns.

  How is maryland pilot program designed

With reference to specific examples, then, how is Maryland's pilot program designed to address these elements? Taken together, in addition to employment, why is it thought that the real challenge is in getting ex-offenders "life-ready" as well

  Discuss specific current policy from middle eastern country

Discuss a specific current policy from one Middle Eastern country. What are the impacts of the policy within the respective country, the Middle East.

  Discuss jack comes into a walk-in career counseling service

discuss specific interventions, follow-up questions and recommendations as well as address the special needs Jack might need

  Compute the 4-point dft using step by step method

Consider the 4-point DIT FFT with samples f(0), f(1), f(2), and f(3). Compute the 4-point DFT using step by step method to show in depth the algorithm computation.

  What are the sanctions for misconduct

To provide students with the opportunity to understand the role FLORIDA's state Board of Nursing (BON) and explore how it protects the welfare and safety of.

  Discuss the factors that influence the cost of health care

Describe the organization of the public healthcare subsystem at the federal, state, and local levels. Discuss the factors that influence the cost of health care

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd