Some government officials are known to be complacent when it comes to the management of government institutions and systems. However, you have been hired as the Information Security Manager in the Department of Finance and you are to be reporting directly to the Minister of Finance who has been newly deployed in this position. You are fully conscient that this is a very key department and so is the department's information systems management in terms of security maintenance

Computer Networking: A Top-Down Approach (7th Edition)
7th Edition
ISBN:9780133594140
Author:James Kurose, Keith Ross
Publisher:James Kurose, Keith Ross
Chapter1: Computer Networks And The Internet
Section: Chapter Questions
Problem R1RQ: What is the difference between a host and an end system? List several different types of end...
icon
Related questions
Question

Security Maintenance Model
Some government officials are known to be complacent when it comes to the management of
government institutions and systems. However, you have been hired as the Information Security
Manager in the Department of Finance and you are to be reporting directly to the Minister of Finance
who has been newly deployed in this position. You are fully conscient that this is a very key department
and so is the department's information systems management in terms of security maintenance

 

6.2 The concept of vulnerability assessment (VA) and penetration testing (PT) can be confusing to the minister given that he is not an information security specialist. Briefly point out to the minister the difference between vulnerability assessment and penetration testing

Expert Solution
Step 1

A vulnerability scanning and assessment tool: 

 

  • Utilizations an expansive way to deal with recognize defects and weaknesses across the undertaking 
  • Sweeps against a rundown of known dangers, given through a weakness data set 
  • Can run naturally and on a planned premise 
  • Is comprised of four fundamental regions: User interface, weakness list, filter motor, and detailing instrument 
  • Can focus on weaknesses dependent on seriousness, earnestness, and simplicity of fix 
  • Will give ideas to fixing recognized blemishes 

Vulnerability assessment are early and dependable distinguishing proof of IT shortcomings. These instruments rely upon the product seller consistently recognizing dangers and coordinating them into the weakness information base. Since these instruments survey recently realized security issues, they will likewise feature remedial activities to fix those defects. Weakness appraisal centers around dependable distinguishing proof of dangers and remediation of IT defects across the undertaking. 

steps

Step by step

Solved in 2 steps

Blurred answer
Recommended textbooks for you
Computer Networking: A Top-Down Approach (7th Edi…
Computer Networking: A Top-Down Approach (7th Edi…
Computer Engineering
ISBN:
9780133594140
Author:
James Kurose, Keith Ross
Publisher:
PEARSON
Computer Organization and Design MIPS Edition, Fi…
Computer Organization and Design MIPS Edition, Fi…
Computer Engineering
ISBN:
9780124077263
Author:
David A. Patterson, John L. Hennessy
Publisher:
Elsevier Science
Network+ Guide to Networks (MindTap Course List)
Network+ Guide to Networks (MindTap Course List)
Computer Engineering
ISBN:
9781337569330
Author:
Jill West, Tamara Dean, Jean Andrews
Publisher:
Cengage Learning
Concepts of Database Management
Concepts of Database Management
Computer Engineering
ISBN:
9781337093422
Author:
Joy L. Starks, Philip J. Pratt, Mary Z. Last
Publisher:
Cengage Learning
Prelude to Programming
Prelude to Programming
Computer Engineering
ISBN:
9780133750423
Author:
VENIT, Stewart
Publisher:
Pearson Education
Sc Business Data Communications and Networking, T…
Sc Business Data Communications and Networking, T…
Computer Engineering
ISBN:
9781119368830
Author:
FITZGERALD
Publisher:
WILEY