Framework for Improving Critical Infrastructure Cyber Security”, NIST (Required Reading from Lecture 11) and “2016 Data Breach Investigations Report (DBIR)”, Verizon Enterprise (Required Reading from Lecture 12).
• This assignment is based on the “Framework for Improving Critical Infrastructure Cyber Security”, NIST (Required Reading from Lecture 11) and “2016 Data Breach Investigations Report (DBIR)”, Verizon Enterprise (Required Reading from Lecture 12).
• Please select one of the breaches highlighted on pages 78-80 of the Verizon report (see Appendix F: Year in Review (Links to an external site.) ). For the selected breach, using the NIST framework (see Table 2 on pages 20-35 (Links to an external site.) ), identify the controls that in your opinion could have been absent, and elaborate on how the lack of a specific control would have contributed to the breach. You should provide an explanation as to the significance of each of the controls in this context. Your reasoning must be consistent with publicly available information about the breach, but you may draw additional conclusions based on this information.
• You will be required to cite information sources as appropriate. Your assignment should be up to 10 (double-spaced) pages in length
• Please select one of the breaches highlighted on pages 78-80 of the Verizon report (see Appendix F: Year in Review (Links to an external site.) ). For the selected breach, using the NIST framework (see Table 2 on pages 20-35 (Links to an external site.) ), identify the controls that in your opinion could have been absent, and elaborate on how the lack of a specific control would have contributed to the breach. You should provide an explanation as to the significance of each of the controls in this context. Your reasoning must be consistent with publicly available information about the breach, but you may draw additional conclusions based on this information.
• You will be required to cite information sources as appropriate. Your assignment should be up to 10 (double-spaced) pages in length
Reading materials
1.Framework for Improving Critical Infrastructure Cyber Securityhttps://www.nist.gov/sites/default/files/documents/cyberframework/cybersecurity-framework-021214.pdf Read pages 1-17, review the framework on pages 19-35
2.2016 Data Breach Investigations Report (DBIR)—see the attachment (Read page 78-80)
1.Framework for Improving Critical Infrastructure Cyber Securityhttps://www.nist.gov/sites/default/files/documents/cyberframework/cybersecurity-framework-021214.pdf Read pages 1-17, review the framework on pages 19-35
2.2016 Data Breach Investigations Report (DBIR)—see the attachment (Read page 78-80)
Comments
Post a Comment