430 and 490 dq1

profileRiri01
430wk2DQ1.docx

430 wk2 DQ1.100-150 words

After conducting a vulnerability scan, an organization can identify and remediate the configuration failures in their infrastructure. Once hardened, secured, patched, and in compliance, why is it important to continue conducting vulnerability scans on a periodic basis? Explain what could have changed from previous scans.

REPLIES 75-100 words

A Yamil Santana

Good Morning Class,

Vulnerabilities scans are an important asset to any person or business. You can use these scans to find any potential vulnerabilities or holes in your system and use that information to harden that system to patch that problem up. This doesn't mean you are in the clear because on a daily basis any little thing that happens on the network can potentially make another vulnerability open. Vulnerability scans should be conducted frequently to ensure that your system is in good standings. Any little thing can change after updates or regular use by users.

B Rotimi Akinbobola

Hello Class,

Per industry standards, periodic conduct of vulnerability scans should be done at least once every quarter. This is because the scan will be able to detect if the infrastructure, regardless if there are new installations or none, is compromised such as outdated protocols, certificates, services, or missing patches. As mentioned in the f-secure website ( https://blog.f-secure.com/ vulnerability-management-prevents-data-breaches/ ), there is an identified vulnerability detected every 90 minutes. From this number alone, if we would schedule the vulnerability scan at least once every quarter, there would be an estimated 1,460 vulnerabilities present in the system since the last scan.

 Elaborating further on the importance of the scan, there are a few incidents in the past that learned their lesson the hard way. One of which was the UC Berkeley incident where a hacker attacked the restricted database via the public website on the same server, compromising names, SSN, health insurance information, and patient health records of over 160,000 students and alumni. A thorough vulnerability scan would be able to detect this and apply a patch, protecting the server and preventing the incident to happen.

C Olatunbosun Osifowode

Hello Class,

It is vital to scan for vulnerabilities since online systems are typically inspected and attacked. This enhances the safety of your office network and can prevent an adversary from going from strategies to process and increase their rights throughout your corporate network. The significance of the checking vulnerability does not just apply to computers having access to the internet (Seyyar & Gül, 2018). It is also helpful to perform authentication server security audits so that any problems can indeed be corrected.

Although you do not perform security audits on your publicly exposed systems, your and your company's best interests are not considered. The worldwide development of the problem allows crooks in distant areas to brazenly exploit your computers but always check analyzed. Even if there is a patch for a particular vulnerability, cybercriminals can take advantage of the time delay that is not discovered (Yokum & Stice, 2021). A solution is addressed in a specific machine, which is why it is essential to periodic upgrading of the networks and identifying missing upgrades by performing a security assessment from the previous scans that have changed.