Information Systems

profileluckyqloo
Unit5RequiredReading.docx

Required Reading

· .

· Application of Security Principles to Security Failures

Introduction

Unit 5 contains a description of the security architecture within a particular organization. You are asked to analyze that description, identify the areas of weakness that exist, and align those weaknesses with the security principles that were covered in Unit 1 of this course. (For example, housing networking equipment in the janitors' closet would be a failure in the principle of physical security.) Once weaknesses are discovered, it is sometimes necessary to petition the executives of an organization to provide the financing necessary to mitigate those risks. Another objective of Unit 5 is to explore the communication strategies that security professionals can use in these situations to ensure the best outcome.

Objectives

To successfully complete this learning unit, you will be expected to:

1. Evaluate how the security principles have been implemented within a particular organization.

2. Analyze common security failures that exist within a particular organization.

3. Identify specific design principles that have been violated within this particular organization.

4. Explore the optimal means by which information security professionals can communicate potential areas of vulnerability to organizational executives.

5. Exhibit proficiency in writing, critical thinking, and research topic areas in IT security fundamentals.

· https://courserooma.capella.edu/images/ci/icons/generic_updown.gifAccordion Toolbar

· Required Reading

Use Nmap 6: Network Exploration and Security Auditing Cookbook to read the following:

· Chapter 1, "Nmap Fundamentals," pages 9–44.

· Chapter 2, "Network Exploration," pages 45–76.

· Web Resources

Video

The objective of this video is to provide examples of network security incidents and the steps taken to mitigate the vulnerabilities associated with those incidents. This will provide support for completion of the unit assignment and discussion.

· Information Security 2014: Dealing With Today's Threats and Vulnerabilities (52 minutes).

Optional Skillsoft Resource

· Skillsoft. (n.d.). CompTIA Network+ N10-006: Network Security [Tutorial].

· Lachance, D. (2015). CISSP: Network security and vulnerability management [Video]. Skillsoft Ireland.