P1 ct421 tmva | Computer Science homework help

Project1MemoTemplateCMIT_421_Project1_VulnerabilityManagementProcessMemorandumTEMPLATE.docx

MEMO

[date]

[Your name and course number/section]

[Opening Salutation]:

Overview

In this section, provide a brief overview to establish the purpose of your memorandum. You should introduce the topics in Parts 1, 2, and 3, below. Remember that you are writing to your immediate boss to help her address the CEO’s concerns over recent cybersecurity attacks against the transportation sector. Additionally, your boss has provided you with the results of a recent pen testing engagement performed by a third party on behalf of Mercury USA.

Part 1: Vulnerability Management (VM) Process Recommendation

In this section,
present a recommended VM process for Mercury USA. Highlight the major VM process components as you learned in your studies. Explain how your recommendation meets the business needs of Mercury USA. Consider the transportation sector and the overall scenario in context. The text and questions below represent specifics to focus on while writing the memorandum. Do not include the specific text of the questions in your final submission.

· What are the main elements of a VM process, tailored to Mercury USA and the transportation sector?

· How will you plan for and define the scope of a VM process?

· How will you identify the assets involved?

· How will you scan and assess vulnerabilities?

· What is/are the industry standard scanning tools? Support your findings.

· What frequency of scanning do you recommend and why?

· How will you report the results of scanning and recommended countermeasures?

Part 2: Vulnerability Scanning Tool Evaluation and Recommendations

After performing an analysis of the vulnerability report provided by the third-party penetration testers, present your evaluation of the tool and your recommendations here. The text and questions below represent the specifics to focus on while writing your memorandum. Do not include the specific text of the questions in your final submission.

· Identify the scanner used to produce the report. Is the tool open source or commercial? Do you consider the tool to be industry standard?

· What are some advantages to using the tool? Disadvantages?

· What is your overall impression of the tool’s output?

· Does the tool provide enough reporting detail for you as the analyst to focus on the correct vulnerabilities? Can you appropriately discern the most critical vulnerabilities?

· Do you think mitigations for the vulnerabilities are adequately covered in the report?

· Do you think the reports are suitable for management? Explain why or why not.

· Would you distribute the report automatically? Explain why or why not.

· Would you recommend that Mercury USA use the tool? Explain why or why not.

Part 3: Business Case Example

In this section, provide an example of what could happen if Mercury USA does not implement your recommendations for a VM process (e.g., data exfiltration, hacker intrusions, ransomware, etc.). The text and questions below represent the specifics to focus on while writing your memorandum. Do not include the specific text of the questions in your final submission.

· What are some of the outcomes to the business if your example occurred?

· How does your recommended VM process address the example you used?

· For the tool you evaluated in Part 2 above, do you think the tool will be adequate? Why or why not?

Closing

In this section, summarize the main points of your argument for a VM process, tool evaluation, and use the case example to support your recommendations. Keep in mind that you are addressing the CEO’s concerns over recent cybersecurity attacks against the transportation sector and how you can help increase Mercury USA’s overall security posture to protect the organization against attacks, breaches, and data loss.

<Closing Salutation>

<Your Name>
Cybersecurity Threat Analyst

Mercury USA

References

Use in-text citations in the body of your memorandum as appropriate. Add all sources you used here. This example citation uses IEEE style. Use a style of your choice or ask your instructor for clarification. When using the associated course content, ensure that you cite to the chapter level.

[1] “Chapter 5: Implementing an Information Security Vulnerability Management Process”, 
Pearson CompTIA Cybersecurity Analyst (CySA+), 2020. [Online]. Available: https://www.ucertify.com/. [Accessed: 28- Apr- 2020].


Vulnerability Management Process Memo | [Document subtitle]

image1.jpeg

Place your order
(550 words)

Approximate price: $22

Calculate the price of your order

550 words
We'll send you the first draft for approval by September 11, 2018 at 10:52 AM
Total price:
$26
The price is based on these factors:
Academic level
Number of pages
Urgency
Basic features
  • Free title page and bibliography
  • Unlimited revisions
  • Plagiarism-free guarantee
  • Money-back guarantee
  • 24/7 support
On-demand options
  • Writer’s samples
  • Part-by-part delivery
  • Overnight delivery
  • Copies of used sources
  • Expert Proofreading
Paper format
  • 275 words per page
  • 12 pt Arial/Times New Roman
  • Double line spacing
  • Any citation style (APA, MLA, Chicago/Turabian, Harvard)

Our guarantees

Delivering a high-quality product at a reasonable price is not enough anymore.
That’s why we have developed 5 beneficial guarantees that will make your experience with our service enjoyable, easy, and safe.

Money-back guarantee

You have to be 100% sure of the quality of your product to give a money-back guarantee. This describes us perfectly. Make sure that this guarantee is totally transparent.

Read more

Zero-plagiarism guarantee

Each paper is composed from scratch, according to your instructions. It is then checked by our plagiarism-detection software. There is no gap where plagiarism could squeeze in.

Read more

Free-revision policy

Thanks to our free revisions, there is no way for you to be unsatisfied. We will work on your paper until you are completely happy with the result.

Read more

Privacy policy

Your email is safe, as we store it according to international data protection rules. Your bank details are secure, as we use only reliable payment systems.

Read more

Fair-cooperation guarantee

By sending us your money, you buy the service we provide. Check out our terms and conditions if you prefer business talks to be laid out in official language.

Read more