What is your takeaway from the attack

Assignment Help Other Subject
Reference no: EM132703291

Assignment: Public Sector Case Study In November 2012, South Carolina state officials disclosed a massive data breach at the Department of Revenue. Few details on the breach were disclosed. But it involved exposing more than 3.6 million taxpayers' personal information records and 650,000 business tax-related records. The breach occurred in September 2012. It's clear that massive amounts of personal information were stolen. A former top official with the FBI estimated the cost to the state at more than $350 million, based upon past FBI experience, including the cost of offering free credit monitoring to affected individual taxpayers and businesses.

The root cause of the breach cited in news reports was the lack of mandatory security policies across 100 state agencies, boards, commissions, and colleges and universities.

All state agencies have some type of computer security system in place. It's fair to assume they all have some level of security policy in place. But it is clear these policies were discretionary. That meant an approach to information security across state government that was at best inconsistent. Nor did the state appear to have a comprehensive approach to sharing best practices for information security or for coordinating response to these types of data breaches.

In the case of the South Carolina Department of Revenue, the policies clearly were neither adequate nor consistent. Additionally, reports indicate the source of the hack was in Eastern Europe. The hacker or hackers gained access through a phishing e-mail. Phishing e-mails try to trick a user to open an e-mail and execute a link or program with malware. Security awareness is a strong control that educates users on how to protect themselves from such attacks, including how to recognize such attacks and why not to open suspect links. If a phishing e-mail was a source of the attack, it might be an indication that the security awareness program at this state agency was inadequate
write a paper not more than 300-400 words on the following

1. Do you think that the attack could have been prevented? If so, how? Alternatively, if you disagree that the attack couldn't have been prevented, provide your analysis as well.

2. What is your takeaway from the attack? And how does it prepared you to prevent future attacks in your organization?

3. All papers must adhere to APA format. Please, don't forget to use double spacing, and create in-text citations before making any references.

Reference no: EM132703291

Questions Cloud

One type of evidence is direct evidence : One type of evidence is direct evidence, which is based on personal knowledge or observation of the person testifying.
Compute the debt-to-equity ratios for both companies : Comment on your results and discuss what they imply about the relative riskiness of companies. Compute the debt-to-equity ratios for both companies.
Discuss government planning and entrepreneurial innovation : Find a peer-reviewed scholarly journal article discussing government planning and/or entrepreneurial innovation. Complete a review of the article by writing.
Changes in an organisation management : Develop practicable strategies on the ways in which an organisation can assess hazards and risks following changes in an organisation's management
What is your takeaway from the attack : Public Sector Case Study In November 2012, South Carolina state officials disclosed a massive data breach at the Department of Revenue.
How will leaders react to the challenges : The impact currently on all organisations is substantial. How will leaders react to these challenges both now and during the recovery phase?
What are some of the key raw material and components : What are some of the key raw material and components that Marriot UK needs to build or sell its products?
How would progress to make a decision : There is a team of 9 decision makers made up of university residence management. Describe briefly how you would progress to make a decision.
Collecting data to measure performance : If a company is experiencing problems of absenteeism and quality declines, how should they go about collecting data to measure performance?

Reviews

Write a Review

Other Subject Questions & Answers

  Create a content objective and a language objective

Create a content objective and a language objective using the English Language Arts Standards from AZ or from your state for your group of ELLs.

  Describe the potential pitfalls planners in a municipality

Describe the potential pitfalls planners in a municipality or facility are likely to encounter by not engaging in their own emergency planning process.

  How might we test the perception

Our constructs of reality are based on stories which we perceive as truth. These stories are our own perceptions, and people consider their perceptions.

  Difference between handoff and roaming

How does Code Division Multiple Access (CDMA) allow channel reuse? What is the difference between "handoff" and "roaming"? How can cellular customers connect with wired customers? What technologies are available to allow cell phones to connect to the..

  Brief summary of your practicum project focus

Brief summary of your Practicum Project focus, including the goal and objectives of your Practicum Project (to serve as a reminder for your colleagues). Explain your selected methodology, and justify your selection

  How quality indicators influence your practice setting

Using the Walden Library, locate at least two scholarly research articles that discuss how quality indicators influence your practice setting.

  How your company will use enterprise resource planning

As an IT manager, discuss how your company will use Enterprise Resource Planning (ERP) to integrate the various functions of an entity

  Public offering versus bank financing

What issues should PCI, Inc. consider in its choice of a public offering versus bank financing?

  Describe the strategy you implemented in your group project

Describe the strategy (assigned in Week 7) you implemented in your Group Project. Describe the process and the level of difficulty/comfort you found in doing.

  What does control mean in research

This discussion will revolve around the topic of control. In quantitative studies, control is an important issue. What does control mean in research?

  How did the vietnam war affect american society

How did the Vietnam War affect American society? How should the US have conducted the war? Is the draft moral or constitutional?

  Write a professional profile about small ngo

This is an assignment about small NGO which works in small villages of Pakistan.

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd