Order for this Paper or Similar Assignment Writing Help

Fill a form in 3 easy steps - less than 5 mins.

Posted: April 20th, 2022

Information Systems Risk & Cybersecurity Risk – March,

Information Systems Risk & Cybersecurity Risk – March,
Information Systems Risk & Cybersecurity Risk – March, 2022
You must do Q1 and then you must do two out of the three problems Q2, Q3, and Q4.
1. (Cryptography – 40 points – maximum 3 pages (1.5 spaced))
a.) Describe the functioning of
(i) symmetric-key cryptosystems
(ii) asymmetric-key cryptosystems
(iii) Message Authentication Codes (MAC)
For (i) and (ii), please list two examples of the currently important methods.
b.) Explain the role of Hardware Security Modules for Key Management.
c.) What is a digital certificate and a certification authority? For which purposes are digital certificates being used in current network infrastructures? How can a sophisticated threat actor use compromised digital certificates for attacks?
d.) Explain the concept of authenticity and integrity and how this can be implemented with cryptographic hash-functions and digital certificates.
e.) What is the major shortcoming of the Vernam Code and why can quantum cryptography mitigate this shortcoming?
f.) How can asymmetric-key cryptosystems being used to ensure non repudiation?
g.) Some users of asymmetric-key cryptosystems are publishing the public key on their web site. Explain how this can be exploited by an attacker. How can this exploit risk being mitigated by the involvement of a Certification Authority and a digital certificate.
h.) How can a virus use cryptographic routines to avoid detection by antivirus programs? Explain the term “polymorphic virus”.
i.) Explain technical building blocks like Firewalls, IDS and SIEM and how this can be used to implement a concept of multilevel security.
j.) Briefly explain the difference between Steganograpy and Cryptography.
k.) Explain the meaning of Cyber Threat Intelligence.
2. (TCP/IP – 30 points – maximum 2 pages (1.5 spaced))
a) Explain the different levels of the DoD-architecture.
b) Explain the differences between UDP and TCP.
c) Explain how TCP/IP stack breed critical vulnerabilities in IoT devices.
d) Why this is relevant for Real Time Operating Systems?
e) Describe the service provided by the Internet-Protocol (IP).
f) Explain the security architecture IPsec for IP. What are the main differences between IPsec and SSL/TLS?
g) What is the meaning of tunneling and what are virtual private networks (VPNs) ?
h) How can VPNs being used to provide remote access ?
i) How can IPsec being used for tunneling and the set up of VPNs?
j) What is the difference of HTTPS and HTTP and what is the role of SSL/TLS?
k) Give an example how tunneling can be used for circumventing firewall policies.
l) What is the role of the Diffie Hellman Key Exchange for network security?
m) How are Man in the Middle Attacks mitigated in relevant protocols for network security?
3. (System Development Life Cycle – 30 points – maximum 2 pages (1.5 spaced))
Explain term Data Governance and the role of this term for firms with data driven business models and changing digital infrastructures.
In your role of the Chief Information Officer of a financing institution, you realize that the dynamic growth of the firm’s equipment leasing business threatens to overstretch the capacities of the existing database in which the information on client master data, key contract specifications, ratings, collateral values, and payment transactions is being managed. You reach the conclusion that a major redesign of the existing system, in which both the scalability of the system and the scope of the analytical functionalities it offers need to be greatly enhanced, is required.
a) Please name the successive phases of developing a successor system to the current solution.
b) Explain the terms DevOps and DecSecOps.
c) Please enumerate, and briefly explain, two weaknesses that are frequently encountered in such projects.
d) Explain the term Backdoor and applicable countermeasures.
e) Please explain how security aspects integrated into the different stages of the review process.
f) Please summarize the key characteristics of the “agile” approach to software development.
4. (Security controls – 30 points – maximum 2 pages (1.5 spaced))
Discuss the relationship of Cybersecurity Risk, Operational Risk and Reputational Risk.
Startled by recent news about “cyberattacks” on financial institutions, the directors of your company have commissioned a comprehensive assessment of the effectiveness and quality of existing controls directed at safeguarding data security and integrity inside the organization.
Please briefly describe
• the nature and purpose of the related testing procedures,
• the key prerequisites to be ensured prior to the performance of such an assessment, and
• the key conditions that must be met to ensure its effectiveness.
Briefly explain how the outcomes of such an assessment relate to the concept of “platform hardening”.
Your company has decided to shift critical business processes to the cloud. Briefly describe the concept of shared responsibility for security in the cloud.
GOOD LUCK!!

Tags: , , , , , , , , , , , , ,

Why choose us

You Want Quality and That’s What We Deliver

Top Skilled Writers

Our writing team is assembled through a rigorous selection process, where we handpick accomplished writers with specialized expertise in distinct subject areas and a proven track record in academic writing. Each writer brings a unique blend of knowledge and skills to the table, ensuring that our content is not only informative but also engaging and accessible to a general college student audience

Discounted Prices

Competitive pricing is a cornerstone of our service, where we balance affordability with exceptional quality. In offering the best writers at rates that rival other writing services, we ensure that students can access top-notch content without breaking the bank unnecessarily. Our fair and transparent pricing structure is designed to provide value for money, making us a go-to choice for students seeking high-quality writing services at an affordable price.

100% Plagiarism-Free

Academic integrity is paramount to our writing service, which is why we produce original research and writing content for every paper. Each piece of work is carefully written from scratch, ensuring that every sentence, paragraph, and page is authentic and free from plagiarism. Our rigorous quality control process involves thorough scanning of every final draft, guaranteeing that the content meets the highest standards of originality and academic integrity. With keen attention to citation and referencing, we ensure that every source is properly credited, giving you complete peace of mind. We also have the best plagiarism checkers like safeassign and turnitin thus providing similarity score for each paper.

How it works

When you decide to place an order with Dissertation Help, here is what happens:

Complete the Order Form

You will complete our order form, filling in all of the fields and giving us as much detail as possible.

Assignment of Writer

We analyze your order and match it with a writer who has the unique qualifications to complete it, and he begins from scratch.

Order in Production and Delivered

You and your writer communicate directly during the process, and, once you receive the final draft, you either approve it or ask for revisions.

Giving us Feedback (and other options)

We want to know how your experience went. You can read other clients’ testimonials too. And among many options, you can choose a favorite writer.