1. How do we know at what point we can consider our environment to be secure? 2.
ID: 3783811 • Letter: 1
Question
1. How do we know at what point we can consider our environment to be secure?
2. If the Web servers in our environment are based on Microsoft’s Internet Information Server (IIS) and a new worm is discovered that attacks Apache Web servers, what do we not have?
3.If we develop a new policy for our environment that requires us to use complex and automatically generated passwords that are unique to each system and are a minimum of 30 characters in length, such as!Hs4(j0qO$&zn1%2SK38cn^!Ks620!, what will be adversely impacted?
4.Considering the CIA triad and the Parkerian hexad, what are the advantages and disadvantages of each model?
Explanation / Answer
1.) Actually, we can consider our environment secure untill there is new form of cyber attacks which can affect our environment i.e., no environment is full-proof secure. But one system can said to be secure if it consider all previous threats that were applied to and if new threat occurs then it should be ready to recieve an patch update to encounter that threat as soon as possible.
2.) As mentioned in previous part, we can wait for patch update from the microsoft to encounter these worms and minimise the damage.
3.) Using 30 characters will be highly secured as it is very hard to crack that password but it will be very hectic for anyone to remember that long passwords. But if system used password management software then we can use any length of passwords.
4.) CIA triad deals with confidentiality, integrity and availability of data while on other hand, Parkerian hexad extends CIA triad and also deals with possession or control, authenticity and utility.
CIA prevents data from being tampered but it doesn't concerned with the fact that if someone is seeing our data but not changing anything to it while authenticity feature in Parkerian hexad using authenticity feature also deals with given concern.
Hope it helps. Feel free to ask any query.
Related Questions
Navigate
Integrity-first tutoring: explanations and feedback only — we do not complete graded work. Learn more.