Overview
This project is to create an incident analysis brief
for your manager. Cybersecurity incidents will occur regardless of the
level of protection and prevention an organization has in place. The
response to the incident is what may make or break an organization. As
you progress through your degree, you will build your skills to address
all stages of incident response: preparation, detection and analysis,
containment, eradication and recovery, and post-incident activity.
A critical aspect of incident response is using the information
gained from an incident to improve the organization’s security. The
insight helps security professionals develop solutions that reduce the
likelihood of similar incidents in the future. It also helps balance the
potential negative impacts on the people, processes, and technologies
the solutions ultimately affect. In this project, you will examine a
past incident and use the Fundamental Security Design Principles to
develop recommendations that will protect the organization in the
future.
In this assignment, you will demonstrate your mastery of the following course competency:
Describe fundamental principles of cybersecurity
Scenario
In a course announcement, your instructor will provide you with a
scenario to base your work on. In the scenario, you are a security
analyst creating an incident analysis brief that explains to the
security or IT director explaining how to apply the Fundamental Security
Design Principles to strengthen the organization’s security posture
following the incident described in the case. The scenario will provide
all the specific technical information you need for your brief. You
should address each critical element in the Project Two prompt, speaking
broadly to your analysis and recommendations based on your research
from the course materials in previous modules.
Scenario Two
You are a security analyst at a local IT firm who has been contracted as a helpdesk for a financial
company. (In this situation, your director would be writing a plan for the company.) While on-site, you
learn that the company is made up of financial analysts who handle high-income accounts. You learn
that analysts are responsible for their own clients, and that they are contracted to not share the
personal information of their accounts with anyone outside the company. While you are helping the
administrative assistant for this company with an issue around securing the printer, you observe the
cleaning crew going from office to office and cubicle to cubicle. They appear to be taking great notice of
the information on the analysts’ screens. You observe one of the cleaning-crew workers take what
appears to be papers out of the “destroy” bin, then move them to try to hide them on their cleaning
cart. The other people in the office seem to be ignoring the cleaning crew as they go about their
business.
Prompt
Using evidence from the scenario, prepare an incident analysis brief
for your manager. Limit your analysis to one security objective and two
Fundamental Security Design Principles from the lists below.
Security Objective (Choose One):
Confidentiality
Integrity
Availability
Fundamental Security Design Principles (Choose Two):
Separation (of domains and duties)
Isolation
Encapsulation
Modularity
Simplicity of design (economy of mechanism)
Minimization of implementation (least common mechanism)
Open design
Complete mediation
Layering (defense in depth)
Least privilege
Fail-safe defaults and fail secure
Least astonishment (psychological acceptability)
Minimization of trust surface (reluctance to trust)
Usability
Trust relationships
Specifically, you must address the critical elements listed below:
Scenario Analysis: Using your work in the case
study analyses (Modules Two through Four) and other course resources as
reference, select the security objective you think is most relevant to
the organization in the case.
Describe why the loss of your selected security objective (confidentiality, integrity, or availability) reflects the greatest overall negative impact on the organization. Use evidence from the scenario and your coursework to support your selection.
Summarize the negative impacts on people, processes, and technologies associated with the loss of your selected security objective.
Recommendations: Select two Fundamental Security
Design Principles as criteria, and recommend solutions to remedy the
loss of the selected security objective based on your assessment of the
incident.
Explain how your solution implements the selected Fundamental Security Design Principles. Provide evidence from the scenario and your coursework to support your selections.
Describe how your solution balances impacts on people, processes, and technologies.
Explain which aspect of your solution you would recommend to your manager as the most important to the organization. Support your response with evidence from the coursework or scenario
What to Submit
Your submission should be 3 to 5 pages in length (plus a cover page
and references) and should be written in APA format. Use double spacing,
12-point Times New Roman font, and one-inch margins. Include at least
three references, which should be cited according to APA style. Use a
file name that includes the course code, the assignment title, and your
name—for example, CYB_200_Project_Two_Neo_Anderson.docx.
Rubric
Criteria Exemplary (100%) Proficient (85%) Needs Improvement (55%) Not Evident (0%) Value
Scenario Analysis: Greatest Overall Negative Impact Meets “Proficient” criteria and
addresses critical element in an exceptionally clear, insightful,
sophisticated, or creative manner Describes why the loss of the selected
security objective reflects the greatest overall negative impact on the
organization with evidence from the scenario and coursework to support
the selection Addresses “Proficient” criteria, but there are gaps in clarity, logic, or detail Does not address critical element, or response is irrelevant 19
Scenario Analysis: Negative Impacts Meets “Proficient” criteria and
addresses critical element in an exceptionally clear, insightful,
sophisticated, or creative manner Summarizes the negative impacts on
people, processes, and technologies associated with the loss of the
selected security objective Addresses “Proficient” criteria, but there are gaps in clarity, logic, or detail Does not address critical element, or response is irrelevant 19
Recommendations: Implementation of Fundamental Security Design Principles Meets “Proficient” criteria and
addresses critical element in an exceptionally clear, insightful,
sophisticated, or creative manner Explains how the solution implements the selected Fundamental Security Design Principles with evidence to support the selections Addresses “Proficient” criteria, but there are gaps in clarity, logic, or detail Does not address critical element, or response is irrelevant 19
Recommendations: Balancing Impacts Meets “Proficient” criteria and
addresses critical element in an exceptionally clear, insightful,
sophisticated, or creative manner Describes how the solution balances impacts on people, processes, and technologies Addresses “Proficient” criteria, but there are gaps in clarity, logic, or detail Does not address critical element, or response is irrelevant 19
Recommendations: Importance to Organization Meets “Proficient” criteria and
addresses critical element in an exceptionally clear, insightful,
sophisticated, or creative manner Explains which aspect of the solution is most important to the organization with evidence to support the explanation Addresses “Proficient” criteria, but there are gaps in clarity, logic, or detail Does not address critical element, or response is irrelevant 19
Articulation of Response Submission is free of errors related to
citations, grammar, spelling, and organization and is presented in a
professional and easy-to-read format Submission has no major errors related to citations, grammar, spelling, or organization Submission has some errors
related to citations, grammar, spelling, or organization that negatively
impact readability and articulation of main ideas Submission has critical errors related to citations, grammar, spelling, or organization that prevent understanding of ideas 5
Total: 100%
Overview This project is to create an incident analysis brief for your manager.
Struggling With a Similar Paper? Get Reliable Help Now.
Delivered on time. Plagiarism-free. Good Grades.
What is this?
It’s a homework service designed by a team of 23 writers based in Carlsbad, CA with one specific goal – to help students just like you complete their assignments on time and get good grades!
Why do you do it?
Because getting a degree is hard these days! With many students being forced to juggle between demanding careers, family life and a rigorous academic schedule. Having a helping hand from time to time goes a long way in making sure you get to the finish line with your sanity intact!
How does it work?
You have an assignment you need help with. Instead of struggling on this alone, you give us your assignment instructions, we select a team of 2 writers to work on your paper, after it’s done we send it to you via email.
What kind of writer will work on my paper?
Our support team will assign your paper to a team of 2 writers with a background in your degree – For example, if you have a nursing paper we will select a team with a nursing background. The main writer will handle the research and writing part while the second writer will proof the paper for grammar, formatting & referencing mistakes if any.
Our team is comprised of native English speakers working exclusively from the United States.
Will the paper be original?
Yes! It will be just as if you wrote the paper yourself! Completely original, written from your scratch following your specific instructions.
Is it free?
No, it’s a paid service. You pay for someone to work on your assignment for you.
Is it legit? Can I trust you?
Completely legit, backed by an iron-clad money back guarantee. We’ve been doing this since 2007 – helping students like you get through college.
Will you deliver it on time?
Absolutely! We understand you have a really tight deadline and you need this delivered a few hours before your deadline so you can look at it before turning it in.
Can you get me a good grade? It’s my final project and I need a good grade.
Yes! We only pick projects where we are sure we’ll deliver good grades.
What do you need to get started on my paper?
* The full assignment instructions as they appear on your school account.
* If a Grading Rubric is present, make sure to attach it.
* Include any special announcements or emails you might have gotten from your Professor pertaining to this assignment.
* Any templates or additional files required to complete the assignment.
How do I place an order?
You can do so through our custom order page here or you can talk to our live chat team and they’ll guide you on how to do this.
How will I receive my paper?
We will send it to your email. Please make sure to provide us with your best email – we’ll be using this to communicate to you throughout the whole process.
Getting Your Paper Today is as Simple as ABC
No more missed deadlines! No more late points deductions!
You give us your assignments instructions via email or through our order page.
Our support team selects a qualified writing team of 2 writers for you.
In under 5 minutes after you place your order, research & writing begins.
Complete paper is delivered to your email before your deadline is up.
Want A Good Grade?
Get a professional writer who has worked on a similar assignment to do this paper for you