cyber security

profileluckyqloo
W4D2...PS.docx

Respond to student… 100 min word

The risk assessment strategies and components I would deploy in order to ensure that secure defenses and compliance attributes are embedded into the core of your network and information security deployment are as follows. The CTO of the company wishes to bypass two-factor authentication in favor of basic password security authentication for ease of employees. I would recommend employees use “pass phrases” in place of a simple password, which may be easier for the employee to remember. The use of “pass phrases” increases the search space required to succeed in a brute force attack. In combination with the use of pass phrases I would iterate the company should not rely solely on low threshold lockouts, especially with simple basic passwords. The final recommendation I would make is to audit passwords periodically to identify accounts with weak passwords. The employees with weak passwords should be notified to change the password to something more complex, such as a pass phrase. The audit of the weak passwords is especially important for privileged and administrative employees.

 

Reference:

Retrieved from Perspective Risk. Top 5 Most Common Network Vulnerabilities: Weak Password Policies. https://www.perspectiverisk.com/top-5-common-network-vulnerabilities-weak-password-policies/