Which is why least privilege is one of the most important

Assignment Help Computer Engineering
Reference no: EM133401243

Case Study: When it comes to security, many ideas may come to mind. Locks, doors, passwords and many other security means are used to protect sensitive information, however, one particular security method is more useful than most might think. That security method is based on one of the First Principles of cybersecurity, Least Privilege. Least Privilege states that for any given job the least amount of "power" possible should be assigned to complete the task (Payne and Antonia, p.3). For example, a maintenance employee does not need to have access to any and all company records to change a light bulb. They simply need access to certain rooms containing the required electrical breakers and equipment. Another good example is a house key. Although you may trust possibly hundreds of people with your house key, you wouldn't necessarily go around handing out keys to those people. The reason for this when broken down is simply because they don't need to have a key. Only those who live in the house and possibly an emergency contact would need it. In addition, if you were to make hundreds of keys the chances of losing one or having it stolen would increase dramatically. This could then lead to robberies while having to replace all the locks and their keys with new ones to "reset" security, which would be all around rather costly.

Question: All of these ideas apply to cybersecurity in the same way as they do physical security. The least Privilege means fewer people will have access to certain sensitive information and those who do have access have a very valid reason for said access. Usually, once an assignment is complete the access or privilege is then revoked to once again tighten up security. Similar to the house analogy, breaches in cybersecurity can be extremely costly for companies and detrimental if not dangerous for users, which is why Least Privilege is one of the most important means of cybersecurity.

 

Reference no: EM133401243

Questions Cloud

Cultural norms-fair and lovely and advertising : Identify the CRS issues and dilemmas. Consider and identify the CSR- focused stakeholders. Identify the ethical issues and dilemmas.
What are the overall observations : From your work experience, can you discuss about a technological change that was implemented in the organization, what was the outcome, how did the employee
Describe one non-traditional price structure : Describe one "non-traditional" price structure that you have seen in the real world.
What are the advantages of becoming excel certified : What are the advantages of becoming Excel certified? How will adding this skill help boast your resume specifically for the jobs you will be seeking
Which is why least privilege is one of the most important : Similar to the house analogy, breaches in cybersecurity can be extremely costly for companies and detrimental if not dangerous for users
Assess organizations internal environment and capabilities : Unit 32 Business Strategy - Pearson BTEC Level 4 Higher National Certificate and Level 5 Higher National Diploma in Business
What did mixer get wrong : What did MIXER get wrong? The assessment should consider the relevant stakeholders. When possible, feel free to make direct contrasts and comparisons.
What type of targeting strategy is samsung using : In your opinion with the introduction of this new fridge what type of targeting strategy is Samsung using?
Describing collection of big data that needs to be analyzed : describing a collection of big data that needs to be analyzed and integrated into a visualization solution that produces actionable data for end users.

Reviews

Write a Review

Computer Engineering Questions & Answers

  Mathematics in computing

Binary search tree, and postorder and preorder traversal Determine the shortest path in Graph

  Ict governance

ICT is defined as the term of Information and communication technologies, it is diverse set of technical tools and resources used by the government agencies to communicate and produce, circulate, store, and manage all information.

  Implementation of memory management

Assignment covers the following eight topics and explore the implementation of memory management, processes and threads.

  Realize business and organizational data storage

Realize business and organizational data storage and fast access times are much more important than they have ever been. Compare and contrast magnetic tapes, magnetic disks, optical discs

  What is the protocol overhead

What are the advantages of using a compiled language over an interpreted one? Under what circumstances would you select to use an interpreted language?

  Implementation of memory management

Paper describes about memory management. How memory is used in executing programs and its critical support for applications.

  Define open and closed loop control systems

Define open and closed loop cotrol systems.Explain difference between time varying and time invariant control system wth suitable example.

  Prepare a proposal to deploy windows server

Prepare a proposal to deploy Windows Server onto an existing network based on the provided scenario.

  Security policy document project

Analyze security requirements and develop a security policy

  Write a procedure that produces independent stack objects

Write a procedure (make-stack) that produces independent stack objects, using a message-passing style, e.g.

  Define a suitable functional unit

Define a suitable functional unit for a comparative study between two different types of paint.

  Calculate yield to maturity and bond prices

Calculate yield to maturity (YTM) and bond prices

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd