Introduction to IT Security (ITM 431)
Module #1 Case Assignment
The Oxford American Dictionary of Current English defines admonition as "to reprove. Urge. Give earnest advice to. Warn". Understanding this how do we employ admonitions systems to information technology to make it more useful in-regards to Network and system security? Using admonition software we are attempting to create an environment that will either prevent data from being in-advertently distributed across networks. Act as a deterrent to those trying to access the network illegally. Or warning users of the potential harm their actions may cause. In developing an IT security strategy, potential risks will need to be anticipated along with policies and procedures for the effective mitigation of these risks. There needs to be governing documentation that entails network design as well as security measures to safeguard the network from intrusion. Effective administrative procedures that ensure personnel are properly trained and continually advised of updates and/or changes to security.
In today’s world the collection, processing, and sharing of information has reached all time highs. It is because of this that the Internet as well as "IT Networks" occasionally referred to as "Intranets" need securing to protect from potentially harmful entities. The Handbook of Information Security Management tells us that there are a number of ways to identify, analyze, and assess risk. In developing a plan to secure a network there are many areas to focus on. One of them is risk, and the potential for risks should be addressed and plans and procedures developed to mitigate such risks. Risks can come in the form of external and internal threats.
Whether of a physical, logical, or social nature , a plan that will outline the company’s approach to risks that will affect security will need to be developed. Targeting key areas of the network and developing countermeasures to provide solutions to the potential risks. Taking into consideration all the elements of risk management, identifying, analyzing, and assessment of risks using admonition can play a part in answering some of the questions that can arise. Whether those questions concern network security or data security. A company can significantly mitigate the risk of adverse attacks to its network by developing and employing the appropriate security measures. Depending on the level of security needed, these measures should provide for monitoring of the network at all levels and be an on-going process. Reviewing the results of the monitoring will to keep systems administrators aprised of areas that may require added securing. Performing constant security tests and evaluating new and existing security components will ensure that the network will have the latest security programs in place. One of the main goals involing risk is the prevention of an unauthorized user the ability to gain access to the...