The institute had no dedicated security team and therefore till now no security policy is in place. Recently, the governing body of this business forms a security team and makes following two goals that they would like to achieve in six months – Assessing the current risk of the entire organization Treat the Risk as much as possible Task I: Risk Identification In achieving the above two goals, you will do the followings – Find at least five assets Find at least two threats against each asset Identify vulnerabilities for the assets Task II: Risk Assessment At the end of the risk identification process, you should have i) a prioritized list of assets and ii) a prioritized list of threats facing those assets and iii) Vulnerabilities of assets. At this point, create Threats- Vulnerabilities-Assets (TVA) worksheet and calculate the risk rating. Task III: Risk Treatment In terms of Risk Treatment, for each of the five identified risks, state what basic strategy you will take. Justify for each decision. Also, advise all possible protection mechanisms and corresponding place of application.
The institute had no dedicated security team and therefore till now no security policy is in place. Recently, the governing body of this business forms a security team and makes following two goals that they would like to achieve in six months –
- Assessing the current risk of the entire organization
- Treat the Risk as much as possible
Task I: Risk Identification
In achieving the above two goals, you will do the followings –
- Find at least five assets
- Find at least two threats against each asset
- Identify vulnerabilities for the assets Task II: Risk Assessment
At the end of the risk identification process, you should have i) a prioritized list of assets and ii) a prioritized list of threats facing those assets and iii) Vulnerabilities of assets. At this point, create Threats- Vulnerabilities-Assets (TVA) worksheet and calculate the risk rating.
Task III: Risk Treatment
In terms of Risk Treatment, for each of the five identified risks, state what basic strategy you will take. Justify for each decision. Also, advise all possible protection
Step by step
Solved in 3 steps with 2 images