Question The office of the comptroller of the currency plans to review them next
ID: 3913877 • Letter: Q
Question
Question
The office of the comptroller of the currency plans to review them next year. What would you recommend 10: Real-Wire a public electronic funds transfer (EFT) netwo puter switch based Chic sist in e-commerce EFT rk with its head office and major com ed in Chicago. It is currently under contract to the Department of Treasury to ed rand EFT initiatives when federal systems are overloaded. They have handled l pocesing, which has increased their workload by 15-20% on y 15-20% on occasions. The company itches in each capital city throughout the United States, including Alaska and re linked into a national communications network. Approximately 200 financial ns (banks, building societies, and credit unions) use the network to provide automatic computer s dlr machine and point-of-sale services to their customers been in operation for 15 years, but during that time it has been very suc sfol. When the United States began to deregulate its financial markets in 1985 and foreign Real-Wire has o nly banks to enter the marketplace, Real-Wire obtained substantial new business because these financial institutions immediate EFT services. As a consultant specializing in computer controls and audit, you have been hired by the man ging director of Real-Wire to examine the state of controls within the EFT system. She explain b you that an increasing number of potential customers are requesting some type of independent asurance that controls within the system are reliable. Accordingly, she has decided to initiate a ols review of the entire system so that a third-party "letter of comfort" can be provided to potential customers. oital part of your controls review focuses on the main switch in Chicago. As part of your l examine the status of disaster recovery planning for the switch. In terms of short-terrm ntrols appear to be in place and working. Backup tapes for all data and programs are on- and off-site to enable recovery if programs and data are lost for some reason. In ort-term recovery are well documented, and operators seem familiar with these protocols. From time to time they have to exercise these protocols because The tored both addition, protoc for sh and well trained in protocols
Explanation / Answer
First we need a IT focused plan designed to restore operability in a timely manner at an alternate site. It is said that Real Wire is using TCP/IP heavily due to the type of business they have. And Real-Wire does not have strong software security installed
on thier intranet. So they are prone to attackers easily. The Federal Information Security Management Act of 2002 (FISMA)
and two other laws applies to RealWire. FISMA requires each federal agency to develop, document, and implement an agency-wide program to provide
information security. Hence My recommendation for RealWire is to use FISMA to protect their data. And they should focus on longterm solutions and policies to ensure the timely backup of their information.
i.e They should atleast back up their data once in a day or once in a month/week and transfer it to a safe location such that it is away from headquarters and natual disasters.
One more option is they can make use of Server Redundancy. i.e We can additional servers that may be deployed on runtime for backup, load balancing or temporarily halting a primary server for maintenance purposes.
I have given a brief discussion on server redundancy below as well.
Server Redundancy:
1.First to enable server redundancy, a server replica(same as the server) is created with the same computing power, storage, applications and other operational parameters.
2.A redundant server is kept offline.
3.It powers on with network/Internet connectivity but is not used as a live server.
Related Questions
drjack9650@gmail.com
Navigate
Integrity-first tutoring: explanations and feedback only — we do not complete graded work. Learn more.