project 2

profileMoona26
ProjectTwoGuidelinesandRubric-CYB-200-13406-M01CybersecurityFoundations2024C-5Sep-Oct.pdf

CYB 200 Project Two Guidelines and Rubric

Overview

This project is to create an incident analysis brief for your manager. Cybersecurity incidents will occur regardless of the level of protec�on and preven�on an organiza�on has in place. The

response to the incident is what may make or break an organiza�on. As you progress through your degree, you will build your skills to address all stages of incident response: prepara�on,

detec�on and analysis, containment, eradica�on and recovery, and post-incident ac�vity.

A cri�cal aspect of incident response is using the informa�on gained from an incident to improve the organiza�on’s security. The insight helps security professionals develop solu�ons that

reduce the likelihood of similar incidents in the future. It also helps balance the poten�al nega�ve impacts on the people, processes, and technologies the solu�ons ul�mately affect. In this

project, you will examine a past incident and use the Fundamental Security Design Principles to develop recommenda�ons that will protect the organiza�on in the future.

In this assignment, you will demonstrate your mastery of the following course competency:

Describe fundamental principles of cybersecurity

Scenario

In a course announcement, your instructor will provide you with a scenario to base your work on. In the scenario, you are a security analyst crea�ng an incident analysis brief that explains to

the security or IT director explaining how to apply the Fundamental Security Design Principles to strengthen the organiza�on’s security posture following the incident described in the case.

The scenario will provide all the specific technical informa�on you need for your brief. You should address each cri�cal element in the Project Two prompt, speaking broadly to your analysis

and recommenda�ons based on your research from the course materials in previous modules.

Prompt

Using evidence from the scenario, prepare an incident analysis brief for your manager. Limit your analysis to one security objec�ve and two Fundamental Security Design Principles from the

lists below.

Security Objec�ve (Choose One):

Confiden�ality

Integrity

Availability

Fundamental Security Design Principles (Choose Two):

Separa�on (of domains and du�es)



10/7/24, 3:33 PM Assignment Information

https://learn.snhu.edu/d2l/le/content/1698647/viewContent/35102839/View 1/4

Isola�on

Encapsula�on

Modularity

Simplicity of design (economy of mechanism)

Minimiza�on of implementa�on (least common mechanism)

Open design

Complete media�on

Layering (defense in depth)

Least privilege

Fail-safe defaults and fail secure

Least astonishment (psychological acceptability)

Minimiza�on of trust surface (reluctance to trust)

Usability

Trust rela�onships

Specifically, you must address the cri�cal elements listed below:

I. Scenario Analysis: Using your work in the case study analyses (Modules Two through Four) and other course resources as reference, select the security objec�ve you think is most

relevant to the organiza�on in the case.

A. Describe why the loss of your selected security objec�ve (confiden�ality, integrity, or availability) reflects the greatest overall nega�ve impact on the organiza�on. Use evidence

from the scenario and your coursework to support your selec�on.

B. Summarize the nega�ve impacts on people, processes, and technologies associated with the loss of your selected security objec�ve.

II. Recommenda�ons: Select two Fundamental Security Design Principles as criteria, and recommend solu�ons to remedy the loss of the selected security objec�ve based on your

assessment of the incident.

A. Explain how your solu�on implements the selected Fundamental Security Design Principles. Provide evidence from the scenario and your coursework to support your selec�ons.

B. Describe how your solu�on balances impacts on people, processes, and technologies.

C. Explain which aspect of your solu�on you would recommend to your manager as the most important to the organiza�on. Support your response with evidence from the

coursework or scenario

10/7/24, 3:33 PM Assignment Information

https://learn.snhu.edu/d2l/le/content/1698647/viewContent/35102839/View 2/4

What to Submit

Your submission should be 3 to 5 pages in length (plus a cover page and references) and should be wri�en in APA format. Use double spacing, 12-point Times New Roman font, and one-inch

margins. Include at least three references, which should be cited according to APA style. Use a file name that includes the course code, the assignment �tle, and your name—for example,

CYB_200_Project_Two_Neo_Anderson.docx.

Project Two Rubric

Criteria Exemplary (100%) Proficient (85%) Needs Improvement (55%) Not Evident (0%) Value

Scenario Analysis: Greatest

Overall Nega�ve Impact

Meets “Proficient” criteria and

addresses cri�cal element in an

excep�onally clear, insigh�ul,

sophis�cated, or crea�ve

manner

Describes why the loss of the

selected security objec�ve

reflects the greatest overall

nega�ve impact on the

organiza�on with evidence

from the scenario and

coursework to support the

selec�on

Addresses “Proficient” criteria,

but there are gaps in clarity,

logic, or detail

Does not address cri�cal

element, or response is

irrelevant

19

Scenario Analysis: Nega�ve

Impacts

Meets “Proficient” criteria and

addresses cri�cal element in an

excep�onally clear, insigh�ul,

sophis�cated, or crea�ve

manner

Summarizes the nega�ve

impacts on people, processes,

and technologies associated

with the loss of the selected

security objec�ve

Addresses “Proficient” criteria,

but there are gaps in clarity,

logic, or detail

Does not address cri�cal

element, or response is

irrelevant

19

Recommenda�ons:

Implementa�on of

Fundamental Security

Design Principles

Meets “Proficient” criteria and

addresses cri�cal element in an

excep�onally clear, insigh�ul,

sophis�cated, or crea�ve

manner

Explains how the solu�on

implements the selected

Fundamental Security Design

Principles with evidence to

support the selec�ons

Addresses “Proficient” criteria,

but there are gaps in clarity,

logic, or detail

Does not address cri�cal

element, or response is

irrelevant

19

Recommenda�ons:

Balancing Impacts

Meets “Proficient” criteria and

addresses cri�cal element in an

excep�onally clear, insigh�ul,

sophis�cated, or crea�ve

manner

Describes how the solu�on

balances impacts on people,

processes, and technologies

Addresses “Proficient” criteria,

but there are gaps in clarity,

logic, or detail

Does not address cri�cal

element, or response is

irrelevant

19

10/7/24, 3:33 PM Assignment Information

https://learn.snhu.edu/d2l/le/content/1698647/viewContent/35102839/View 3/4

Criteria Exemplary (100%) Proficient (85%) Needs Improvement (55%) Not Evident (0%) Value

Recommenda�ons:

Importance to Organiza�on

Meets “Proficient” criteria and

addresses cri�cal element in an

excep�onally clear, insigh�ul,

sophis�cated, or crea�ve

manner

Explains which aspect of the

solu�on is most important to

the organiza�on with evidence

to support the explana�on

Addresses “Proficient” criteria,

but there are gaps in clarity,

logic, or detail

Does not address cri�cal

element, or response is

irrelevant

19

Ar�cula�on of Response Submission is free of errors

related to cita�ons, grammar,

spelling, and organiza�on and

is presented in a professional

and easy-to-read format

Submission has no major errors

related to cita�ons, grammar,

spelling, or organiza�on

Submission has some errors

related to cita�ons, grammar,

spelling, or organiza�on that

nega�vely impact readability

and ar�cula�on of main ideas

Submission has cri�cal errors

related to cita�ons, grammar,

spelling, or organiza�on that

prevent understanding of ideas

5

Total: 100%

10/7/24, 3:33 PM Assignment Information

https://learn.snhu.edu/d2l/le/content/1698647/viewContent/35102839/View 4/4