1 / 42100%
)
STRAYER
UNIVERSITY
Preview:
CIS560
:
Security
Access
and
Control
Strategies
Course
Guide
Prerequisites
CIS502
Course
Description
This
course
presents
typical
cyber
operations,
including
access
and
control,
where
ethical
dilemmas
arise
and
provides
tools
for
legal
and
ethical
decision-making.
Topics
include
various
stages
of
a
cyber
operation,
U.S.
regulations,
and
the
ethical
implications
of
granting
access
and
control.
Students
will
explore
the
authorities,
roles,
and
steps
associated
with
ethical
cyber
operations.
Instructional
Materials
Required
Resources
Mike
Chapple.
2020.
Access
Control
and
Identity
Management.
CIS560
Jones
and
Bartlett
Learning
3rd
edition
textbook
available
at
https://www.strayerbookstore.com
Jones
&
Bartlett
Learning
Virtual
Security
Cloud
Labs
for
Access
Control
and
Identity
Management.
Note:
Lab
Guides
for
each
lab
are
available
within
the
online
lab
environment.
Wall
Street
Journal
Online.
No
date.
No
title.
https://partner.wsj.com/partner/strayeruniversity
U.S.
Newsstream.
No
date.
No
title.
http://libdatab.strayer.edu/login?
url=https://search.proquest.com/usnews/news/fromDatabasesLayer?accountid=30530
Josephine
Wolff.
2021.
The
Arrest
of
a
Florida
Data
Scientist
Demonstrates
a
Weird
Hole
in
Cybercrime
Law.
https://slate.com/technology/2021/01/rebekah-jones-arrest-cybercrime-
hacking-florida-covid.html
Brett
Stone-Gross.
November
2009.
Your
Botnet
is
my
Botnet:
Analysis
of
a
Botnet
Takeover.
https://dl-acm-org.liodatab.strayer.edu/doi/10.1145/1653662.1653738
Supplemental
Resources
Michael
N.
Schmitt.
(Ed.).
2017.
Tallinn
Manual
2.0
on
the
International
Law
Applicable
to
Cyber
Operations.
https://www.cambridge.org/us/academic/subjects/law/numanitarian-
law/tallinn-manual-20-international-law-applicable-cyber-operations-2nd-edition?format=PB
Course
Learning
Outcomes
©
Determine
an
access
control
strategy.
Review
the
legal
and
ethical
aspects
of
cyber
operations.
Evaluate
the
stages
and
motivating
factors
of
a
cyber
operation
in
network
traffic.
Examine
the
ethical
considerations
and
dilemmas
of
a
diverse
and
interconnected
world.
Research
examples
of
physical
security
breaches.
Weekly
Course
Schedule
Week
1
-
To
Do
List
Learn:
Read
Chapters
1
and
2
in
Access
Control
and
Identity
Management
and
review
the
associated
PowerPoint
presentations.
Discuss:
Introduce
yourself
and
complete
the
discussion,
SolarWinds.
Assignment:
Complete
the
Pre-Lab
assignment.
Prepare:
Review
the
preparation
instructions
for
the
assignment
due
next
week.
Week
2
-
To
Do
List
Learn:
Read
Chapter
3
in
Access
Control
and
Identity
Management
and
review
the
associated
PowerPoint
presentation.
Week
2
-
To
Do
List
Discuss:
Complete
the
discussion,
Twitter
Breach.
Assignment:
Complete
Lab
Assignment
1,
Designing
an
Access
Control
System.
Assignment:
Complete
the
assignment,
Access
Control
Strategies.
Week
3
-
To
Do
List
Learn:
Read
Chapter
4
in
Access
Control
and
Identity
Management
and
review
the
associated
PowerPoint
presentation.
Discuss:
Complete
the
discussion,
IBM
Threat
Intelligence
Report.
Assignment:
Complete
Lab
Assignment
2,
Conducting
a
Risk
Assessment
of
an
Access
Control
System.
Prepare:
Review
the
preparation
instructions
for
the
assignment
due
next
week.
Week
4
-
To
Do
List
Learn:
Read
Chapters
5
and
6
in
Access
Control
and
Identity
Management
and
review
the
associated
PowerPoint
presentations.
Discuss:
Complete
the
discussion,
Access
Control
for
the
Enterprise.
Assignment:
Complete
the
assignment,
The
Stages
of
Cyber
Operations.
Week
5
-
To
Do
List
Learn:
Read
Chapters
7
and
8
in
Access
Control
and
Identity
Management
and
review
the
associated
PowerPoint
presentations.
Discuss:
Complete
the
discussion,
Access
Control
in
an
lol
Environment.
Assignment:
Complete
Lab
Assignment
3,
Configuring
an
Active
Directory
Domain
Controller.
Assignment:
Complete
Lab
Assignment
4,
Managing
Windows
Accounts
and
Organizational
Units.
Week
5
-
To
Do
List
Prepare:
Review
the
preparation
instructions
for
the
assignment
due
next
week.
Week
6
-
To
Do
List
Learn:
Read
Chapter
9
in
Access
Control
and
Identity
Management
and
review
the
associated
PowerPoint
presentation.
Discuss:
Complete
the
discussion,
U.S.
Capitol
Physical
Security
Breach.
Assignment:
Complete
the
assignment,
Physical
Access
Security.
Week
7
-
To
Do
List
Learn:
Read
Chapter
10
in
Access
Control
and
Identity
Management
and
review
the
associated
PowerPoint
presentation.
Discuss:
Complete
the
discussion,
Remote
Access.
Assignment:
Complete
Lab
Assignment
5,
Configuring
Windows
File
System
Permissions.
Assignment:
Complete
Lab
Assignment
6,
Configuring
a
Remote
Access
VPN.
Prepare:
Review
the
preparation
instructions
for
the
assignment
due
next
week.
Week
8
-
To
Do
List
Learn:
Read
Chapter
11
in
Access
Control
and
Identity
Management
and
review
the
associated
PowerPoint
presentation.
Discuss:
Complete
the
discussion,
Encryption.
Assignment:
Complete
Lab
Assignment
7,
Encrypting
and
Decrypting
Files
with
Public
Key
Infrastructure.
Assignment:
Complete
the
assignment,
Legal
and
Ethical
Aspects
of
Cyber
Operations.
Week
9
-
To
Do
List
Week
9
-
To
Do
List
Learn:
Read
Chapters
12
and
13
in
Access
Control
and
Identity
Management
and
review
the
associated
PowerPoint
presentations.
Discuss:
Complete
the
discussion,
Development
Life
Cycles.
Assignment:
Complete
Lab
Assignment
8,
Scanning
an
Active
Directory
Domain
Controller
for
Vulnerabilities.
Assignment:
Complete
Lab
Assignment
9,
Enabling
Audit
Trails
to
Enforce
Accountability.
Prepare:
Review
the
preparation
instructions
for
the
assignment
due
next
week.
Week
10
-
To
Do
List
Learn:
Read
Chapters
14
and
15
in
Access
Control
and
Identity
Management
and
review
the
associated
PowerPoint
presentations.
Discuss:
Complete
the
discussion,
Access
Control
Laws.
Assignment:
Complete
Lab
Assignment
10,
Applying
the
Security
Policy
Framework
to
an
Access
Control
Environment.
Assignment:
Complete
the
assignment,
Building
Ethical
Judgement
Capabilities.
Week
11
-
To
Do
List
Discuss:
Complete
the
discussion,
Lessons
Learned.
Grading
Scale
Participation
Total
Points
y/o)
mel
e-[e[:
Discussion
Participation
200
Assignment
Total
Points
“%
of
Grade
Assignment
Total
Points
“%
of
Grade
Week
2
Assignment
1
-
Lab
Assignment
1:
35
3.5%
Designing
an
Access
Control
System
Week
2
Assignment
2
-
Access
Control
Strategies
90
9%
Week
3
Assignment
-
Lab
Assignment
2:
35
3.5%
Conducting
a
Risk
Assessment
of
an
Access
Control
System
Week
4
Assignment
-
The
Stages
of
Cyber
90
9%
Operations
Week
5
Assignment
1
-
Lab
Assignment
3:
35
3.5%
Configuring
an
Active
Directory
Domain
Controller
Week
5
Assignment
2
-
Lab
Assignment
4:
35
3.5%
Managing
Windows
Accounts
and
Organizational
Units
Week
6
Assignment
-
Physical
Access
Security
90
9%
Week
7
Assignment
1
-
Lab
Assignment
5:
35
3.5%
Configuring
Windows
File
System
Permissions
Week
7
Assignment
2
-
Lab
Assignment
6:
35
3.5%
Configuring
a
Remote
Access
VPN
Week
8
Assignment
1
-
Lab
Assignment
7:
35
3.5%
Encrypting
and
Decrypting
Files
with
Public
Key
Infrastructure
Week
8
Assignment
2
-
Legal
and
Ethical
Aspects
90
9%
of
Cyber
Operations
Week
9
Assignment
1
-
Lab
Assignment
8:
35
3.5%
Scanning
an
Active
Directory
Domain
Controller
for
Vulnerabilities
Assignment
Total
Points
“%
of
Grade
Week
9
Assignment
2
-
Lab
Assignment
9:
35
3.5%
Enabling
Audit
Trails
to
Enforce
Accountability
Week
10
Assignment
1
-
Lab
Assignment
10:
35
3.5%
Applying
the
Security
Policy
Framework
to
an
Access
Control
Environment
Week
10
Assignment
2
-
Building
Ethical
Judgment
90
9%
Capabilities
Totals
1000
100%
Final
Course
Grade
Points
Percentage
900
-
1000
90%
-
100%
A
800
-
899
80%
-
89%
B
700
-
799
70%
-
79%
C
0
-
699
69%
and
below
F
Unique
Course
Features
Grading
Scale
Notation
Please
consult
the
University
Catalog
and
your
academic
advisor
to
determine
the
final
grade
needed
in
this
class
to
satisfy
your
specific
degree
conferral
requirements.
Academic
Integrity
Please
be
sure
to
review
the
entire
Academic
Integrity
Policy
in
the
Student
Handbook
before
submitting
anything
in
this
course.
In
order
to
enforce
its
Academic
Integrity
Policy,
the
University
reserves
the
right
to
review
any
work
(draft
or
otherwise)
or
exam
submitted
by
a
student
during
his
or
her
entire
academic
career
at
Strayer.
Lab
Participation
and
Attendance
Policy
The
Jones
&
Bartlett
Learning
labs
are
used
to
support
your
learning
in
this
course.
However,
activities
completed
in
during
these
labs
do
not
count
for
attendance.
You
are
only
given
credit
for
attendance
when
you
complete
one
of
the
following
tasks
in
Blackboard
before
11:59
p.m.
EST
on
Sunday:
submit
a
discussion
post,
complete
a
quiz
or
exam,
or
submit
an
assignment.
Be
sure
to
complete
one
of
these
activities
each
week
in
Blackboard
to
be
counted
present.
Reminders
for
Discussions
1—11
Post
your
initial
thoughts
by
Wednesday
this
week
to
give
your
classmates
some
time
to
read
your
post
and
post
their
own
thoughts.
This
isn’t
an
essay
assignment;
it's
a
discussion,
just
as
you'd
have
in
a
traditional
classroom.
However,
you
should
provide
references
and
citations,
where
appropriate,
to
support
your
position.
If
you
cite
a
web
source,
don’t
forget
to
include
the
link.
Consult
the
Strayer
Writing
Standards
for
proper
formatting.
On
Thursday
or
Friday,
come
back
and
read
a
few
of
your
classmates’
posts.
Try
to
find
one
that
is
interesting
to
you.
Based
on
your
classmates’
posts,
what
did
you
learn
that
you
didn't
previously
know?
Let
your
classmates
know
how
their
posts
helped
you!
Remember,
you're
not
expected
to
be
an
expert.
It
is
assumed
that
you
will
work
hard
to
become
an
expert,
so
do
your
research.
During
the
week,
return
to
the
discussion
thread
often
and
reply
to
any
classmates
who
have
left
you
posts.
Remember,
discussions
are
supposed
to
be
a
conversation.
Just
like
people
use
social
media,
so
too
can
you
use
these
discussions
to
facilitate
a
dialogue.
Getting
the
conversation
going
early
typically
ensures
better
quality
interactions
with
your
classmates.
Enjoy
the
conversations!
Assignments
Week
2
Assignment
1
-
Lab
Assignment
1:
Designing
an
Access
Control
System
Summary
Click
the
linked
activity
title
to
access
this
assignment.
Text
Instructions
Log
into
your
Jones
&
Bartlett
Learning
account
and
access
the
lab.
Open
the
Lab
Guide.
Complete
the
guided
exercises.
Download
the
lab
report
PDF
and
submit
the
report
as
your
deliverable
for
the
assignment.
scoring
Guide
Complete
lab
and
submit
with
all
required
materials.
100
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%)
19%)
Completed
80-89%
of
Completed
90-—100%
Completed
less
than
Completed
70-79%
of
the
lab
submission.
of
the
lab
submission.
70%
of
the
lab
the
lab
submission.
submission.
Week
2
Assignment
2
-
Access
Control
Strategies
Summary
Click
the
linked
activity
title
to
access
this
assignment.
Text
Introduction
In
this
assignment,
you
will
develop
strategies
to
protect
the
data
and
file
systems
of
fictitious
software
development
company.
The
specific
course
learning
outcome
associated
with
this
assignment
is:
Determine
an
access
control
strategy
based
on
existing
documents.
This
course requires
the
use
of
Strayer
Writing
Standards.
For
assistance
and
information,
please
refer
to
the
Strayer
Writing
Standards
link
in
the
left-hand
menu
of
your
course.
Check
with
your
professor
for
any
additional
instructions.
Scenario
Independent
Software
Incorporated
(ISI)
is
a
small
software
development
company
with
eight
employees
that
work
at
the
home
office.
Their
primary
accounts
are
associated
with
major
market
retailers,
the
federal
government,
and
large
state
governments.
The
computer
environment
for
ISI
contains
a
Linux
file
and
print
server,
a
Linux
Web
server,
and
ten
heterogeneous
workstations
running
multiple
operating
systems.
ISI's
coding
development
projects
often
encompass
classified
information
and
personally
identifiable
information
(PIl).
Instructions
Write
a
2-
to
4-page
paper
in
which
you:
Explain
why
ISI
needs
an
access
control
plan
and
the
goals
of
the
plan,
citing
specific,
credible
sources
that
support
your
assertions
and
conclusions.
Develop
at
least
three
layered
access
security
strategies
that
can
be
used
to
protect
ISI's
data
at
rest,
data
in
motion,
and
file
systems;
citing
specific,
credible
sources
that
support
your
proposed
strategies.
Explain
a
best
practice
process
and
procedures
for
implementing
ISI's
access
security
strategies
and
the
overall
framework
in
which
they
will
reside,
citing
specific,
credible sources
that
support
your
assertions
and
conclusions.
Describe
the
verification
process
that
can
be
used
to
ensure
that
ISI's
access
control
plan
is
effective,
citing
specific,
credible sources
that
support
your
assertions
and
conclusions.
Explain
how
ISI's
verification
process
will
be
maintained
and
updated
in
response
to
future
changes
in
access
requirements.
Support
your
main
points,
assertions,
arguments,
or
conclusions
with
at
least
three
specific
and
credible
academic
references
synthesized
into
a
coherent
analysis
of
the
evidence.
Cite
each
source
listed
on
your
source
page
at
least
one
time
within
your
assignment.
For
help
with
research,
writing,
and
citation,
access
the
library
or
review
library
guides.
Write
clearly
and
concisely
in
a
manner
that
is
well-organized;
grammatically
correct;
and
free
of
spelling,
typographical,
formatting,
and/or
punctuation
errors.
Use
section
headers
in
your
paper
to
clearly
delineate
your
main
topics.
Scoring
Guide
Explain
why
a
particular
organization
needs
an
access
control
plan
and
the
goals
of
the
plan,
citing
specific,
credible
sources
that
support
one's
assertions
and
conclusions.
18
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%) 79%)
Explained
why
a
Explained
why
a
Did
not
submit
or
Provided
a
vague
or
particular
organization
particular
organization
complete
the
implausible
needs
an
access
needs
an
access
explanation
of
why
a
assignment.
control
plan
and
the
control
plan
and
the
particular
organization
goals
of
the
plan.
goals
of
the
plan,
needs
an
access
citing
specific,
control
plan,
and/or
credible
sources
that
the
goals
of
the
plan.
support
one’s
assertions
and
conclusions.
Develop
at
least
three
layered
access
security
strategies
that
can
be
used
to
protect
an
organization's
data
at
rest,
data
in
motion,
and
file
systems;
citing
specific,
credible
sources
that
support
the
proposed
strategies.
18
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%) 19%)
Developed
at
least
Developed
at
least
Did
not
submit
or
Developed
at
least
three
layered
access
three
layered
access
three
layered
access
complete
the
security
strategies
security
strategies
assignment.
security
strategies,
that
can
be
used
to
that
can
be
used
to
one
or
more
of
which
protect
an
protect
an
will
not
adequately
organization's
data
at
organization's
data
at
protect
an
rest,
data
in
motion,
rest,
data
in
motion,
organization's
data
at
and
file
systems.
and
file
systems;
rest,
data
in
motion,
or
citing
specific,
file
systems.
credible sources
that
support
the
proposed
strategies.
Explain
a
best
practice process
and
procedures
for
implementing
an
organization's
access
security
strategies
and
the
overall
framework
in
which
they
will
reside,
citing
specific,
credible
sources
that
support
one’s
assertions
and
conclusions.
18
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%) 79%)
Explained
a
process
Explained
a
best
Did
not
submit
or
Provided
a
vague
or
and
procedures
for
practice process
and
complete
the
implausible
implementing
an
procedures
for
explanation
of
a
assignment.
organization's
access
implementing
an
process
and
organization’s
access
security
strategies
procedures
for
and
the
overall
security
strategies
implementing
an
framework
in
which
and
the
overall
organization's
access
framework
in
which
they
will
reside.
security
strategies
they
will
reside,
citing
and/or
the
overall
specific,
credible
framework
in
which
sources
that
support
they
will
reside.
one's
assertions
and
conclusions.
Describe
a
verification
process
that
can
be
used
to
ensure
that
an
organization's
access
control
plan
is
effective,
citing
specific,
credible sources
that
support
one’s
assertions
and
conclusions.
18
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%) 79%)
Described
a
Described
a
Did
not
submit
or
Described
a
verification
process
verification
process
complete
the
verification
process
that
can
be
used
to
that
can
be
used
to
that
can
be
used but
assignment. ensure
that
an
ensure
that
an
which
is
unlikely
to
organization's
access
organization's
access
ensure
that
an
control
plan
is
control
plan
is
organization's
access
effective.
effective,
citing
control
plan
is
specific,
credible
effective.
or
capable
sources
that
support
of
being
maintained
one’s
assertions
and
and
updated
for
future
conclusions.
changes
in
access
requirements.
Explain
how
an
access
control
plan
verification
process
will
be
maintained
and
updated
in
response
to
future
changes
in
access
requirements,
citing
specific,
credible
sources
that
support
one's
assertions
and
conclusions.
18
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%) 79%)
Explained
how
an
Explained
how
an
Did
not
submit
or
Described
an
access
access
control
plan
access
control
plan
complete
the
control
plan
verification
process
verification
process
verification
process
assignment.
will
be
maintained
and
will
be
maintained
and
that
is
incapable
of
updated
in
response
updated
in
response
being
maintained
and
to
future
changes
in
to
future
changes
in
updated
in
response
access
requirements.
access
requirements,
to
future
changes
in
citing
specific,
access
requirements.
credible
sources
that
support
one’s
assertions
and
conclusions.
Support
main
points,
assertions,
arguments,
or
conclusions
with
at
least
four
high-quality
academic
references.
5%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%) 79%)
Cited
the
required
Supported
main
Did
not
submit
the
Did
not
cite
the
number
of
references,
points,
assertions,
required
number
of
assignment
or
provide
but
one
or
more
arguments,
or
references
and/or
one
any
references.
sources
did
not
conclusions
with
at
or
more
sources
did
support
main
points,
least
three
specific
not
support
main
and
credible
assertions,
points,
assertions,
academic
references
arguments,
or
arguments,
or
conclusions
synthesized
into
a
conclusions.
coherent
analysis
of
the
evidence.
Write
clearly
and
concisely
in
a
manner
that
is
well-organized;
grammatically
correct;
and
free
of
spelling,
typographical,
formatting,
and/or
punctuation
errors.
5
%
Needs
Improvement
(70-
Unacceptable
(Below
Competent
(80-89%)
Exemplary
(90-100%)
70%) 19%)
Wrote
clearly
and
Wrote
clearly
and
Did
not
submit
the
Writing
lacked
clarity
concisely
in
a
manner
concisely
in
a
manner
or
organization,
with
assignment;
or
writing
that
is
well-organized;
that
is
well-organized;
lacked
clarity
and
grammatical,
spelling,
grammatically
correct;
grammatically
correct;
organization,
was
typographical,
and
nearly
free
of
and
free
of
spelling,
formatting,
and/or
grammatically
spelling,
typographical,
punctuation
errors
incorrect,
and
formatting,
and/or
typographical,
contained
numerous
that
inhibit
readability
punctuation
errors.
formatting,
and/or
and
detract
from
the
spelling,
punctuation
errors.
overall message.
typographical,
and/or
punctuation
errors.
Week
3
Assignment
-
Lab
Assignment
2:
Conducting
a
Risk
Assessment
of
an
Access
Control
System
Summary
Click
the
linked
activity
title
to
access
this
assignment.
Text
Instructions
Log
into
your
Jones
&
Bartlett
Learning
account
and
access
the
lab.
Open
the
Lab
Guide.
Complete
the
guided
exercises.
Download
the
lab
report
PDF
and
submit
the
report
as
your
deliverable
for
the
assignment.
Scoring
Guide
Complete
Lab
Assignment
3
and
submit
the
Lab
Report.
100
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%)
19%)
Completed
80-89%
of
Completed
90—100%
Completed
less
than
Completed
70-79%
of
the
|ab.
of
the
lab.
70%
of
the
lab.
the
lab.
Week
4
Assignment
-
The
Stages
of
Cyber
Operations
Summary
Click
the
linked
activity
title
to
access
this
assignment.
Text
Introduction
Cyber
operations
have
a
long
and
storied
history
that
has
evolved
tremendously
over
the
last
few
decades.
Cyber
operations,
and
in
particular
its
subset
of
cyber
warfare,
came
into
realization
during
the
1980s,
took-off
as
an
information-gathering
mechanism
during
the
late
1990s
and
early
2000s,
then
became
militarized
and
still
is
to
this
day.
Two
major
incidents
that
characterize
the
late
1990s
and
early
2000s
are
the
Moonlight
Maze
and
the
Stuxnet
incidents,
respectively.
Cyber
operations
were
performed
throughout
each
of
these
incidents.
In
this
assignment,
you
will
describe
the
goals
and
objectives
of
cyber
operations,
examine
the
Moonlight
Maze
and
Stuxnet
incidents,
and
identify
the
regulations
or
laws
that
were
instituted
in
the
U.S.
because
of
these
incidents.
The
specific
course
learning
outcome
associated
with
this
assignment
is:
Evaluate
the
stages
and
motivating
factors
of
a
cyber
operation
in
network
traffic.
This
course requires
the
use
of
Strayer
Writing
Standards.
For
assistance
and
information,
please
refer
to
the
Strayer
Writing
Standards
link
in
the
left-hand
menu
of
your
course.
Check
with
your
professor
for
any
additional
instructions.
Instructions
Write
a
3-
to
5-page
paper
in
which
you:
Describe
the
goals
and
objectives
of
each
of
the
seven
stages
of
cyber
operations,
defined
for
this
assignment
as:
Target
recognition.
Reconnaissance.
Gaining
access.
Hiding
presence.
Establishing
persistence.
Execution.
Assessment.
Moonlight
Maze
Incident
Explain
how
each
cyber
operations
stage
of
the
Moonlight
Maze
incident
was
implemented
and
what
motivated
the
activities
during
each
stage.
Describe
the
regulations
or
laws
that
were
instituted
in
the
U.S.
because
of
the
Moonlight
Maze
incident,
citing
specific,
credible
sources.
Stuxnet
Incident
Explain
how
each
cyber
operations
stage
of
the
Stuxnet
incident
was
implemented
and
what
motivated
the
activities
during
each
stage.
Describe
the
regulations
or
laws
that
were
instituted
in
the
U.S.
because
of
the
Stuxnet
incident,
citing
specific,
credible
sources.
Source
Citations
and
Writing
Support
your
main
points,
assertions,
arguments,
or
conclusions
with
at
least
three
specific
and
credible
academic
references
synthesized
into
a
coherent
analysis
of
the
evidence.
Cite
each
source
listed
on
your
references
page
at
least
one
time
within
your
assignment.
For
help
with
research,
writing,
and
citation,
access
the
library
or
review
library
guides.
Write
clearly
and
concisely
in
a
manner
that
is
well-organized;
grammatically
correct;
and
free
of
spelling,
typographical,
formatting,
and/or
punctuation
errors.
Use
section
headers
in
your
paper
to
clearly
delineate
your
main
topics.
Scoring
Guide
Describe
the
goals
and
objectives
of
each
stage
of
cyber
operations,
citing
specific,
credible sources
that
support
one's
assertions
and
conclusions.
18
%
Needs
Improvement
(70-
Unacceptable
(Below
Competent
(80-89%)
Exemplary
(90-100%)
70%) 19%)
Described
the
goals
Described
the
goals
Did
not
submit
or
Described
each
cyber
and
objectives
of
and
objectives
of
operations
stage
or
complete
the
each
stage
of
cyber
each
stage
of
cyber
overlooked
key
goals
assignment.
operations.
operations,
citing
and
objectives
of
one
specific,
credible
or
more
stages
of
sources
that
support
cyber
operations.
one's
assertions
and
conclusions.
Explain
how
each
cyber
operations
stage
was
implemented
during
the
Moonlight
Maze
incident
and
what
motivated
the
activities
during
each
stage.
18
%
Needs
Improvement
(70-
Unacceptable
(Below
Competent
(80-89%)
Exemplary
(90-100%)
70%) 19%)
Explained
how
each
Explained
how
each
Did
not
submit
or
Provided
a
vague
or
cyber operations
cyber
operations
complete
the
implausible
stage
was
stage
was
explanation
of
how
assignment.
implemented
during
implemented
during
each
cyber
operations
the
Moonlight
Maze
the
Moonlight
Maze
stage
was
incident
but
was
incident
and
what
implemented
during
unclear
about
what
motivated
the
the
Moonlight
Maze
motivated
the
activities
during
each
incident.
activities
during
each
stage.
stage.
Describe
the
regulations
or
laws
that
were
instituted
in
the
U.S.
because
of
the
Moonlight
Maze
incident,
citing
specific,
credible
sources.
18
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%) 79%)
Described
the
Described
the
Did
not
submit
or
Briefly
outlined
the
regulations
or
laws
regulations
or
laws
regulations
or
laws
complete
the
that
were
instituted
in
that
were
instituted
in
that
were
instituted
in
assignment.
the
U.S.
because
of
the
U.S.
because
of
the
U.S.
because
of
the
Moonlight
Maze
the
Moonlight
Maze
the
Moonlight
Maze
incident.
incident,
citing
incident,
or
cited
specific,
credible
regulations
or
laws
sources.
not
specifically
attributable
to
this
incident.
Explain
how
each
cyber
operations
stage
was
implemented
during
the
Stuxnet
incident
and
what
motivated
the
activities
during
each
stage.
18
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%) 19%)
Explained
how
each
Explained
how
each
Did
not
submit
or
Provided
a
vague
or
cyber
operations
cyber
operations
complete
the
implausible
stage
was
stage
was
explanation
of
how
assignment.
implemented
during
implemented
during
each
cyber
operations
the
Stuxnet
incident
the
Stuxnet
incident
stage
was
but
was
unclear
about
and
what
motivated
implemented
during
what
motivated
the
the
activities
during
the
Stuxnet
incident.
activities
during
each
each
stage.
stage.
Describe
the
regulations
or
laws
that
were
instituted
in
the
U.S.
because
of
the
Stuxnet
incident,
citing
specific,
credible
sources.
18
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%) 79%)
Described
the
Described
the
Did
not
submit
or
Briefly
outlined
the
regulations
or
laws
regulations
or
laws
complete
the
regulations
or
laws
that
were
instituted
in
that
were
instituted
in
assignment.
that
were
instituted
in
the
U.S.
because
of
the
U.S.
because
of
the
U.S.
because
of
the
Stuxnet
incident.
the
Stuxnet
incident,
the
Stuxnet
incident
citing
specific,
or
cited
regulations
or
credible
sources.
laws
not
specifically
attributable
to
this
incident.
Support
main
points,
assertions,
arguments,
or
conclusions
with
at
least
three
specific
and
credible
academic
references
synthesized
into
a
coherent
analysis
of
the
evidence.
5
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%) 79%)
Cited
the
required
Supported
main
Did
not
submit
the
Did
not
cite
the
number
of
references,
points,
assertions,
assignment
or
provide
required
number
of
but
one
or
more
arguments,
or
any
references.
references
and/or
one
sources
did
not
conclusions
with
at
ormore
sources
did
support
main
points,
least
three
specific
not
support
main
assertions,
and
credible
points,
assertions,
arguments,
or
academic
references
arguments,
or
conclusions
synthesized
into
a
conclusions.
coherent
analysis
of
the
evidence.
Write
clearly
and
concisely
in
a
manner
that
is
well-organized;
grammatically
correct;
and
free
of
spelling,
typographical,
formatting,
and/or
punctuation
errors.
5
%
Needs
Improvement
(70-
Unacceptable
(Below
Competent
(80-89%)
Exemplary
(90-100%)
70%) 19%)
Wrote
clearly
and
Wrote
clearly
and
Did
not
submit
the
Writing
lacked
clarity
concisely
in
a
manner
concisely
in
a
manner
or
organization,
with
assignment;
or
writing
that
is
well-organized;
that
is
well-organized;
lacked
clarity
and
grammatical,
spelling,
grammatically
correct;
grammatically
correct;
organization,
was
typographical,
and
nearly
free
of
and
free
of
spelling,
formatting,
and/or
grammatically
spelling,
typographical,
punctuation
errors
incorrect,
and
formatting,
and/or
typographical,
contained
numerous
that
inhibit
readability
punctuation
errors.
formatting,
and/or
and
detract
from
the
spelling,
punctuation
errors.
overall message.
typographical,
and/or
punctuation
errors.
Week
5
Assignment
1
-
Lab
Assignment
3:
Configuring
an
Active
Directory
Domain
Controller
Summary
Click
the
linked
activity
title
to
access
this
assignment.
Text
Instructions
Log
into
your
Jones
&
Bartlett
Learning
account
and
access
the
lab.
Preview
the
Lab
Guide.
Start
and
complete
the
lab.
Download
the
lab
report
PDF
and
submit
the
report
as
your
deliverable
for
the
assignment.
Scoring
Guide
Complete
Lab
Assignment
5
and
submit
the
Lab
Report.
100
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%)
19%)
Completed
80-89%
of
Completed
90—100%
Completed
less
than
Completed
70-79%
of
the
|ab.
of
the
lab.
70%
of
the
lab.
the
lab.
Week
5
Assignment
2
-
Lab
Assignment
4:
Managing
Windows
Accounts
and
Organizational
Units
Summary
Click
the
linked
activity
title
to
access
this
assignment.
Text
Instructions
Log
into
your
Jones
&
Bartlett
Learning
account
and
access
the
lab.
Preview
the
Lab
Guide.
Start
and
complete
the
lab.
Download
the
lab
report
PDF
and
submit
the
report
as
your
deliverable
for
the
assignment.
scoring
Guide
Complete
Lab
Assignment
6
and
submit
the
Lab
Report.
100
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%)
19%)
Completed
80-89%
of
Completed
90-100%
Completed
less
than
Completed
70-79%
of
the
Jab.
of
the
lab.
70%
of
the
lab.
the
lab.
Week
6
Assignment
-
Physical
Access
Security
Summary
Click
the
linked
activity
title
to
access
this
assignment.
Text
Introduction
In
this
assignment,
you
will
search
the
Web
to
identify
incidents
of
current
physical
security
breaches,
analyze
each
incident,
and
identify
best
practices
that
could
have
been
used
to
prevent
the
attacks.
The
specific
course
learning
outcome
associated
with
this
assignment
is:
Research
examples
of
physical
security
breaches.
This
course
requires
the
use
of
Strayer
Writing
Standards.
For
assistance
and
information,
please
refer
to
the
Strayer
Writing
Standards
link
in
the
left-hand
menu
of
your
course.
Check
with
your
professor
for
any
additional
instructions.
Instructions
Write
a
3-
to
5-page
paper
in
which
you
analyze
two
physical
security
breaches.
Using
either
the
Wall
Street
Journal
or
U.S.
Newsstream,
search
for
the
term
"physical
security
breach."
Select
two
news
articles
on
the
search
topic
that
were
posted
within
the
last
six
months.
Article
1
Summarize,
concisely,
the
key
details
of
the
physical
security
breach
described
in
Article
1.
Include
the
date
of
the
attack,
the
type
of
attack,
who
or
what
was
affected,
and
any
reported
loss
of
revenue
or
personally
identifiable
information
(PII).
Provide
a
screenshot
that
includes
the
article's
name
and
the
date
it
was
published,
along
with
a
valid
URL.
Describe,
clearly
and
accurately,
the
steps
described
in
Article
1
that
were
taken,
or
are
being
taken,
to
alleviate
the
effects
of
the
breach
after
the
fact
or
to
resolve
the
issue.
Explain
whether
the
physical
security
breach
described
in
Article
1
was
preventable,
why
or
why
not,
and
if
preventable,
what
preventive
steps
could
have
been
taken.
Note:
These
are
steps
that
would
have
prevented
the
security
breach
from
having
occurred
in
the
first
place,
not
mitigation
steps
taken
after
the
breach
has
already
occurred.
Describe
the
physical
access
security
best
practices
that
could
have
been
used
to
prevent
the
breach
described
in
Article
1,
citing
specific,
credible
sources
of
best
practices.
Article
2
Summarize,
concisely,
the
key
details
of
the
physical
security
breach
described
in
Article
2.
Include
the
date
of
the
attack,
the
type
of
attack,
who
or
what
was
affected,
and
any
reported
loss
of
revenue
or
personally
identifiable
information
(PII).
Provide
a
screenshot
that
includes
the
article's
name
and
the
date
it
was
published,
along
with
a
valid
URL.
Describe,
clearly
and
accurately,
the
steps
described
in
Article
2
that
were
taken,
or
are
being
taken,
to
alleviate
the
effects
of
the
breach
after
the
fact
or
to
resolve
the
issue.
Explain
whether
the
physical
security
breach
described
in
Article
2
was
preventable,
why
or
why
not,
and
if
preventable,
what
preventive
steps
could
have
been
taken.
Note:
These
are
steps
that
would
have
prevented
the
security
breach
from
having
occurred
in
the
first
place,
not
mitigation
steps
taken
after
the
breach
has
already
occurred.
Describe
the
physical
access
security
best
practices
that
could
have
been
used
to
prevent
the
breach
described
in
Article
2,
citing
specific,
credible
sources
of
best
practices.
source
Citations
and
Writing
Support
your
main
points,
assertions,
arguments,
or
conclusions
with
at
least
three
specific
and
credible
academic
references
synthesized
into
a
coherent
analysis
of
the
evidence.
Cite
each
source
listed
on
your
references
page
at
least
one
time
within
your
assignment.
For
help
with
research,
writing,
and
citation,
access
the
library
or
review
library
guides.
Write
clearly
and
concisely
in
a
manner
that
is
well-organized;
grammatically
correct;
and
free
of
spelling,
typographical,
formatting,
and/or
punctuation
errors.
Use
section
headers
in
your
paper
to
clearly
delineate
your
main
topics.
Scoring
Guide
Summarize,
concisely,
the
key
details
of
the
physical
security
breach
described
in
Article
1.
11
%
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
Unacceptable
(Below
70%)
,
79%)
Summarized,
Summarized
the
key
Did
not
submit
or
Briefly
summarized
details
of
the
physical
concisely,
the
key
complete
the
the
physical
security
security
breach
details
of
the
physical
breach
described
in
assignment.
described
in
Article
1.
security
breach
Article
1,
omitting
key
described
in
Article
1.
details.
Describe,
clearly
and
accurately,
the
steps
in
Article
1
that
were
taken,
or
are
being
taken,
to
alleviate
the
effects
of
the
breach
after
the
fact
or
to
resolve
the
issue.
11
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%) 79%)
Described
the
steps
in
Described,
clearly
and
Did
not
submit
or
Described
the
basic
Article
1
that
were accurately,
the
steps
complete
the
approach
to
in
Article
1
that
were
taken,
or
are
being
assignment.
alleviating
the
effects
taken,
or
are
being
taken,
to
alleviate
the
of
the
breach
after
the
effects
of
the
breach
taken,
to
alleviate
the
fact
or
to
resolving
the
after
the
fact
or
to
effects
of
the
breach
issue
described
in
resolve
the
issue.
after
the
fact
or
to
Article
1.
resolve
the
issue.
Explain
whether
the
physical
security
breach
described
in
Article
1
was
preventable,
why
or
why
not,
and
if
preventable,
what
preventive
steps
could
have
been
taken.
11
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%) 79%)
Explained
whether
the
Explained
whether
the
Did
not
submit
or
Explained
whether
the
breach
described
in
physical
security
breach
described
in
complete
the
Article
1
was
breach
described
in
Article
1
was
assignment.
Article
1
was
preventable
and
why.
preventable
but
preventable,
why
or
offered
no
rationale
why
not,
and
if
for
why.
preventable,
what
preventive
steps
could
have
been
taken.
Describe
physical
access
security
best
practices
that
could
have
been
used
to
prevent
the
breach
described
in
Article
1,
citing
specific,
credible sources
of
best
practices.
12
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%) 79%)
Described
physical
Describe
physical
Did
not
submit
or
Described
physical
access
security
best
access
security
best
access
security
complete
the
practices
that
could
practices
that
could
practices
that
would
assignment.
have
been
used
to
have
been
used
to
not
have
prevented
prevent
the
breach
prevent
the
breach
the
breach
described
described
in
Article
1.
described
in
Article
1,
in
Article
1
or
that
are
citing
specific,
not
considered
best
credible sources
of
practices.
best
practices.
Summarize,
concisely,
the
key
details
of
the
physical
security
breach
described
in
Article
2.
11
%
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
Unacceptable
(Below
70%)
,
79%)
Summarized,
Summarized
the
key
Did
not
submit
or
Briefly
summarized
details
of
the
physical
concisely,
the
key
complete
the
the
physical
security
security
breach
details
of
the
physical
breach
described
in
assignment.
described
in
Article
2.
security
breach
Article
2,
omitting
key
described
in
Article
2.
details.
Describe,
clearly
and
accurately,
the
steps
in
Article
2
that
were
taken,
or
are
being
taken,
to
alleviate
the
effects
of
the
breach
after
the
fact
or
to
resolve
the
issue.
11
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%) 79%)
Described
the
steps
in
Described,
clearly
and
Did
not
submit
or
Described
the
basic
Article
2
that
were accurately,
the
steps
complete
the
approach
to
in
Article
2
that
were
taken,
or
are
being
assignment.
alleviating
the
effects
taken,
or
are
being
taken,
to
alleviate
the
of
the
breach
after
the
effects
of
the
breach
taken,
to
alleviate
the
fact
or
to
resolving
the
after
the
fact
or
to
effects
of
the
breach
issue
described
in
resolve
the
issue.
after
the
fact
or
to
Article
2.
resolve
the
issue.
Explain
whether
the
physical
security
breach
described
in
Article
2
was
preventable,
why
or
why
not,
and
if
preventable,
what
preventive
steps
could
have
been
taken.
11
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%) 79%)
Explained
whether
the
Explained
whether
the
Did
not
submit
or
Explained
whether
the
breach
described
in
physical
security
breach
described
in
complete
the
Article
2
was
breach
described
in
Article
2
was
assignment.
Article
1
was
preventable
and
why.
preventable
but
preventable,
why
or
offered
no
rationale
why
not,
and
if
for
why.
preventable,
what
preventive
steps
could
have
been
taken.
Describe
physical
access
security
best
practices
that
could
have
been
used
to
prevent
the
breach
described
in
Article
2,
citing
specific,
credible sources
of
best
practices.
12
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%) 79%)
Described
physical
Describe
physical
Did
not
submit
or
Described
physical
access
security
best
access
security
best
access
security
complete
the
practices
that
could
practices
that
could
practices
that
would
assignment.
have
been
used
to
have
been
used
to
not
have
prevented
prevent
the
breach
prevent
the
breach
the
breach
described
described
in
Article
2.
described
in
Article
2,
in
Article
2
or
that
are
citing
specific,
not
considered
best
credible
sources
of
practices.
best
practices.
Support
main
points,
assertions,
arguments,
or
conclusions
with
at
least
three
specific
and
credible
academic
references
synthesized
into
a
coherent
analysis
of
the
evidence.
5
%
Needs
Improvement
(70-
Unacceptable
(Below
Competent
(80-89%)
Exemplary
(90-100%)
70%) 19%)
Cited
the
required
Supported
main
Did
not
cite
the
Did
not
submit
the
number
of
references,
points,
assertions,
required
number
of
assignment
or
provide
but
one
or
more
arguments,
or
references
and/or
one
any
references.
sources
did
not
conclusions
with
at
or
more
sources
did
least
three
specific
support
main
points,
not
support
main
and
credible
assertions,
points,
assertions,
academic
references
arguments,
or
arguments,
or
conclusions
synthesized
into
a
conclusions.
coherent
analysis
of
the
evidence.
Write
clearly
and
concisely
in
a
manner
that
is
well-organized;
grammatically
correct;
and
free
of
spelling,
typographical,
formatting,
and/or
punctuation
errors.
5
%
Needs
Improvement
(70-
Unacceptable
(Below
Competent
(80-89%)
Exemplary
(90-100%)
70%) 79%)
Wrote
clearly
and
Wrote
clearly
and
Did
not
submit
the
Writing
lacked
clarity
concisely
in
a
manner
concisely
in
a
manner
or
organization,
with
assignment;
or
writing
that
is
well-organized;
that
is
well-organized;
lacked
clarity
and
grammatical,
spelling,
grammatically
correct;
grammatically
correct;
organization,
was
typographical,
and
nearly
free
of
and
free
of
spelling,
formatting,
and/or
grammatically
spelling,
typographical,
punctuation
errors
incorrect,
and
formatting,
and/or
typographical,
contained
numerous
that
inhibit
readability
punctuation
errors.
formatting,
and/or
and
detract
from
the
spelling,
punctuation
errors.
overall message.
typographical,
and/or
punctuation
errors.
Week
7
Assignment
1
-
Lab
Assignment
5:
Configuring
Windows
File
System
Permissions
Summary
Click
the
linked
activity
title
to
access
this
assignment.
Text
Instructions
Log
into
your
Jones
&
Bartlett
Learning
account
and
access
the
lab.
Preview
the
Lab
Guide.
Start
and
complete
the
lab.
Download
the
lab
report
PDF
and
submit
the
report
as
your
deliverable
for
the
assignment.
Scoring
Guide
Complete
Lab
Assignment
7
and
submit
the
Lab
Report.
100
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%)
19%)
Completed
80-89%
of
Completed
90-100%
Completed
less
than
Completed
70-79%
of
the
lab.
of
the
lab.
70%
of
the
lab
the
lab.
submission.
Week
7
Assignment
2
-
Lab
Assignment
6:
Configuring
a
Remote
Access
VPN
Summary
Click
the
linked
activity
title
to
access
this
assignment.
Text
Instructions
Log
into
your
Jones
&
Bartlett
Learning
account
and
access
the
lab.
Preview
the
Lab
Guide.
Start
and
complete
the
lab.
Download
the
lab
report
PDF
and
submit
the
report
as
your
deliverable
for
the
assignment.
Scoring
Guide
Complete
Lab
Assignment
8
and
submit
the
Lab
Report.
100
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%)
19%)
Completed
80-89%
of
Completed
90—100%
Completed
less
than
Completed
70-79%
of
the
|ab.
of
the
lab.
70%
of
the
lab.
the
lab.
Week
8
Assignment
1
-
Lab
Assignment
7:
Encrypting
and
Decrypting
Files
with
Public
Key
Infrastructure
Summary
Click
the
linked
activity
title
to
access
this
assignment.
Text
Instructions
Log
into
your
Jones
&
Bartlett
Learning
account
and
access
the
lab.
Preview
the
Lab
Guide.
Start
and
complete
the
lab.
Download
the
lab
report
PDF
and
submit
the
report
as
your
deliverable
for
the
assignment.
Scoring
Guide
Complete
lab
and
submit
with
all
required
materials.
100
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%)
19%)
Completed
80-89%
of
Completed
90-100%
Completed
less
than
Completed
70-79%
of
the
lab
submission.
of
the
lab
submission.
70%
of
the
lab
the
lab
submission.
submission.
Week
8
Assignment
2
-
Legal
and
Ethical
Aspects
of
Cyber
Operations
Summary
Click
the
linked
activity
title
to
access
this
assignment.
Text
Introduction
The
"Tallinn
Manual
2.0
on
the
International
Law
Applicable
to
Cyber Operations"
(1)
is
one
of
the
most
comprehensive
studies
on
the
applicability
of
international
law
to
cyberspace
conflict,
and
thus
cyber
operations.
In
this
study,
multiple
legal
experts
derived
154
rules
from
existing
law.
Several
Opinions
on
these
rules
were
divided,
so
interpretation
of
the
rules
remains
open
for
discussion.
In
this
assignment,
you
will
examine
two
of
these
rules,
consider
the
ethical
and
legal
aspects
of
these
rules,
and
offer
your
perspective
on
each.
The
specific
course
learning
outcome
associated
with
this
assignment
is:
Review
the
legal
and
ethical
aspects
of
cyber
operations.
This
course
requires
the
use
of
Strayer
Writing
Standards.
For
assistance
and
information,
please
refer
to
the
Strayer
Writing
Standards
link
in
the
left-hand
menu
of
your
course.
Check
with
your
professor
for
any
additional
instructions.
Instructions
Write
a
3-
to
5-page
paper
in
which
you
evaluate
Rules
4
and
9.
Rule
4
Rule
4
states
that,
according
to
international
law,
a
state
must
not
conduct
cyberspace operations
that
violate
the
sovereignty
of
another
state.
A
large
part
of
cyber
operations
includes
performing
the
collection
of
detailed
intelligence
on
another
state.
This
reconnaissance
and
access
is
often
done
“without
causing
physical
damage
or
loss
in
functionality"
at
the
targeted
state.
(1)
Describe
the
laws
and
rules
that
govern
sovereignty,
citing
specific,
credible sources
that
support
your
assertions
and
conclusions.
Explain
why
a
state
would
want
to
collect
intelligence,
why
it
might
be
required
ethically,
and
whether
cyber
operations
that
collect
detailed
intelligence
on
another
state
violate
its
sovereignty.
Provide
a
thorough,
researched
rationale
for
your
perspective.
Rule
9
Rule
9
states
that
a
state
may
exercise
territorial
jurisdiction
over
cyberspace
infrastructure
and
persons
engaged
in
cyberspace
activities
within
its
territory;
cyberspace
activities
originating
in,
or
completed
within,
its
territory;
or
cyberspace
activities
having
a
substantial
effect
within
its
territory.
A
large
part
of cyber
operations
includes
transmitting
data—usually
encrypted—which,
because
of
network
routing,
may
transit
through
the
territorial
cyberspace
architecture
of
another
state.
(1)
Describe
the
laws
and
rules
that
govern
territorial
jurisdiction,
citing
specific,
credible
sources.
Explain
whether
cyber operations
that
collect
detailed
intelligence
on
another
state
may
exercise
jurisdiction
over
data
that
traverses
its
territory,
citing
specific,
credible
sources
that
support
your
assertions
and
conclusions.
Provide
a
thorough,
researched
rationale
for
your
perspective.
source
Citations
and
Writing
Support
your
main
points,
assertions,
arguments,
or
conclusions
with
at
least
three
specific
and
credible
academic
references
synthesized
into
a
coherent
analysis
of
the
evidence.
Cite
each
source
listed
on
your
references
page
at
least
one
time
within
your
assignment.
For
help
with
research,
writing,
and
citation,
access
the
library
or
review
library
guides.
Write
clearly
and
concisely
in
a
manner
that
is
well-organized,
grammatically
correct,
and
free
of
spelling,
typographical,
formatting,
and/or
punctuation
errors.
Use
section
headers
in
your
paper
to
clearly
delineate
your
main
topics.
Sources
1.
Michael
N.
Schmitt.
(Ed.).
2017.
Tallinn
Manual
2.0
on
the
International
Law
Applicable
to
Cyber
Operations.
https://www.cambridge.org/us/academic/subjects/law/humanitarian-law/tallinn-
manual-20-international-law-applicable-cyber-operations-2nd-edition?format=PB
Scoring
Guide
Describe
the
laws
and
rules
that
govern
sovereignty,
citing
specific,
credible
sources.
(Rule
4)
22
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%) 19%)
Described
the
laws
Described
the
laws
Did
not
submit
or
Briefly
outlined
the
and
rules
that
govern
and
rules
that
govern
laws
and
rules
that
complete
the
sovereignty. sovereignty,
citing
assignment.
govern
sovereignty.
specific,
credible
sources.
Explain
why
a
state
would
want
to
collect
intelligence,
why
it
might
be
required
ethically,
and
whether
cyber
operations
that
collect
detailed
intelligence
on
another
state
violate
its
sovereignty,
citing
specific,
credible
sources
that
support
one's
assertions
and
conclusions.
(Rule
4)
23
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%) 79%)
Explained
why
a
state
Explained
why
a
state
Did
not
submit
or
Provided
a
vague
or
would
want
to
collect
would
want
to
collect
complete
the
implausible
intelligence,
why
it
intelligence,
why
it
explanation
of
why
a
assignment.
might
be
required
might
be
required
state
would
want
to
ethically,
and
whether
ethically,
and
whether
collect
intelligence,
cyber
operations
that
cyber
operations
that
why
it
might
be
collect
detailed
collect
detailed
required
ethically,
or
intelligence
on
intelligence
on
whether
cyber
another
state
violate
another
state
violate
operations
that
collect
its
sovereignty.
its
sovereignty,
citing
detailed
intelligence
specific,
credible
on
another
state
sources
that
support
violate
its
sovereignty.
one’s
assertions
and
conclusions.
Describe
the
laws
and
rules
that
govern
territorial
jurisdiction,
citing
specific,
credible
sources.
(Rule
9)
22
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%) 79%)
Described
the
laws
Described
the
laws
Did
not
submit
or
Briefly
outlined
the
and
rules
that
govern
and
rules
that
govern
laws
and
rules
that
complete
the
territorial
jurisdiction.
territorial
jurisdiction,
assignment.
govern
territorial
citing
specific,
jurisdiction.
credible
sources.
Explain
whether
cyber
operations
that
collect
detailed
intelligence
on
another
state
may
exercise
jurisdiction
over
data
that
traverses
its
territory,
citing
specific,
credible
sources
that
support
one's
assertions
and
conclusions.
(Rule
9)
23
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%) 79%)
Explained
whether
Explain
whether
cyber
Did
not
submit
or
Provided
a
vague
or
operations
that
collect
cyber
operations
that
complete
the
implausible
collect
detailed
detailed
intelligence
explanation
of
assignment.
on
another
state
may
intelligence
on
whether
cyber
another
state
may
exercise
jurisdiction
operations
that
collect
over
data
that
exercise
jurisdiction
detailed
intelligence
over
data
that
traverses
its
territory,
on
another
state
may
traverses
its
territory.
citing
specific,
exercise
jurisdiction
credible
sources
that
over
data
that
support
one’s
traverses
its
territory.
assertions
and
conclusions.
Support
main
points,
assertions,
arguments,
or
conclusions
with
at
least
three
specific
and
credible
academic
references
synthesized
into
a
coherent
analysis
of
the
evidence.
5
%
Needs
Improvement
(70-
Unacceptable
(Below
Competent
(80-89%)
Exemplary
(90-100%)
70%) 19%)
Cited
the
required
Supported
main
Did
not
submit
the
Did
not
cite
the
number
of
references,
points,
assertions,
required
number
of
assignment
or
provide
but
one
or
more
arguments,
or
references
and/or
one
any
references.
sources
did
not
conclusions
with
at
or
more
sources
did
least
three
specific
support
main
points,
not
support
main
and
credible
assertions,
points,
assertions,
academic
references
arguments,
or
arguments,
or
conclusions
synthesized
into
a
conclusions.
coherent
analysis
of
the
evidence.
Write
clearly
and
concisely
in
a
manner
that
is
well-organized;
grammatically
correct;
and
free
of
spelling,
typographical,
formatting,
and/or
punctuation
errors.
5
%
Needs
Improvement
(70-
Unacceptable
(Below
Competent
(80-89%)
Exemplary
(90-100%)
70%) 79%)
Wrote
clearly
and
Wrote
clearly
and
Did
not
submit
the
Writing
lacked
clarity
concisely
in
a
manner
concisely
in
a
manner
or
organization,
with
assignment;
or
writing
that
is
well-organized;
that
is
well-organized;
lacked
clarity
and
grammatical,
spelling,
grammatically
correct;
grammatically
correct;
organization,
was
typographical,
and
nearly
free
of
and
free
of
spelling,
formatting,
and/or
grammatically
spelling,
typographical,
punctuation
errors
incorrect,
and
formatting,
and/or
typographical,
contained
numerous
that
inhibit
readability
punctuation
errors.
formatting,
and/or
and
detract
from
the
spelling,
punctuation
errors.
overall message.
typographical,
and/or
punctuation
errors.
Week
9
Assignment
1
-
Lab
Assignment
8:
Scanning
an
Active
Directory
Domain
Controller
for
Vulnerabilities
Summary
Click
the
linked
activity
title
to
access
this
assignment.
Text
Instructions
Log
into
your
Jones
&
Bartlett
Learning
account
and
access
the
lab.
Preview
the
Lab
Guide.
Start
and
complete
the
lab.
Download
the
lab
report
PDF
and
submit
the
report
as
your
deliverable
for
the
assignment.
Scoring
Guide
Complete
Lab
Assignment
9
and
submit
the
Lab
Report.
100
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%)
19%)
Completed
80-89%
of
Completed
90-100%
Completed
less
than
Completed
70-79%
of
the
Jab.
of
the
lab.
70%
of
the
lab.
the
lab.
Week
9
Assignment
2
-
Lab
Assignment
9:
Enabling
Audit
Trails
to
Enforce
Accountability
Summary
Click
the
linked
activity
title
to
access
this
assignment.
Text
Instructions
Log
into
your
Jones
&
Bartlett
Learning
account
and
access
the
lab.
Preview
the
Lab
Guide.
Start
and
complete
the
lab.
Download
the
lab
report
PDF
and
submit
the
report
as
your
deliverable
for
the
assignment.
Scoring
Guide
Complete
Lab
Assignment
10
and
submit
the
Lab
Report.
100
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%)
19%)
Completed
80-89%
of
Completed
90—100%
Completed
less
than
Completed
70-79%
of
the
|ab.
of
the
lab.
70%
of
the
lab.
the
lab.
Week
10
Assignment
1
-
Lab
Assignment
10:
Applying
the
Security
Policy
Framework
to
an
Access
Control
Environment
Summary
Click
the
linked
activity
title
to
access
this
assignment.
Text
Instructions
Log
into
your
Jones
&
Bartlett
Learning
account
and
access
the
lab.
Open
the
Lab
Guide.
Complete
the
guided
exercises.
Download
the
lab
report
PDF
and
submit
the
report
as
your
deliverable
for
the
assignment.
Scoring
Guide
Complete
lab
and
submit
with
all
required
materials.
100
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%)
19%)
Completed
80-89%
of
Completed
90-—100%
Completed
less
than
Completed
70-79%
of
the
lab
submission.
of
the
lab
submission.
70%
of
the
lab
the
lab
submission.
submission.
Week
10
Assignment
2
-
Building
Ethical
Judgment
Capabilities
Summary
Click
the
linked
activity
title
to
access
this
assignment.
Text
Introduction
Computer
ethics
is
a
rich
topic
that
affects
all
of
us
in
our
interconnected
world.
To
build
good
ethical
judgment
capabilities,
Bynum
and
Rogerson
(1)
suggest
applying
a
multi-staged
approach
to
case
study
analysis
where
these
stages
are
defined
as:
(1)
detailing
the
case
study,
(2)
identifying
key
ethical
principles
and
specific
ethical
issues
raised
by
the
case,
(3)
calling
on
your
experience
and
skills
for
evaluation,
and
(4)
applying
a
systematic
analysis
technique.
In
this
assignment,
you
will
perform
the
first
three
of
these
steps
for
a
case
study.
The
specific
course
learning
outcome
associated
with
this
assignment
is:
Examine
the
ethical
considerations
and
dilemmas
of
a
diverse
and
interconnected
world.
This
course
requires
the
use
of
Strayer
Writing
Standards.
For
assistance
and
information,
please
refer
to
the
Strayer
Writing
Standards
link
in
the
left-hand
menu
of
your
course.
Check
with
your
professor
for
any
additional
instructions.
Instructions
Write
a
3-
to
5-page
paper
in
which
you
analyze
a
computer
ethics
cases.
Read
the
article
entitled,
"Your
Botnet
is
My
Botnet:
Analysis
of
a
Botnet
Takeover,"
about
a
team
of
researchers
who
reverse
engineered
the
Torpig
botnet,
controlled
it,
and
captured
data.
Describe
the
nature
and
details
of
the
case,
including
the
persons,
organizations,
and
stakeholders
involved.
Describe
ethical
principles
both
supporting
the
actions
of
the
principal
actors
(such
as
minimizing
harm
or
damage
to
targets
of
the
attacks)
in
a
computer
ethics
case
and
contradicting
the
actions
of
the
principal
actors,
citing
specific,
credible sources
that
support
one’s
assertions
and
conclusions.
Explain
why
you
agree
or
disagree
with
the
actions
of
the
principal
actors
in
the
case,
citing
specific,
credible
sources
that
support
your
position
from
an
ethical
perspective.
Justify
your
position
from
an
ethical
perspective.
Support
your
main
points,
assertions,
arguments,
or
conclusions
with
at
least
three
specific
and
credible
academic
references
synthesized
into
a
coherent
analysis
of
the
evidence.
Cite
each
source
listed
on
your
references
page
at
least
one
time
within
your
assignment.
For
help
with
research,
writing,
and
citation,
access
the
library
or
review
library
guides.
Write
clearly
and
concisely
in
a
manner
that
is
well-organized;
grammatically
correct;
and
nearly
free
of
spelling,
typographical,
formatting,
and/or
punctuation
errors.
Use
section
headers
in
your
paper
to
clearly
delineate
your
main
topics.
Sources
1.
Terrell
Ward
Bynum.
2003.
Computer
Ethics
and
Professional
Responsibility:
Introductory
Text
and
Readings.
Cambridge,
MA:
Blackwell
Publishers,
Inc.
Scoring
Guide
Describe
the
nature
and
details
of
a
computer
ethics
case,
including
the
persons,
organizations,
and
stakeholders
involved.
30
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%) 79%)
Described
the
nature
Described
the
nature
Did
not
submit
or
Briefly
summarized
and
details
of
a
and
details
of
a
complete
the
the
details
of
the
computer
ethics
case
computer
ethics
case,
assignment.
case.
but
overlooked
key
including
the
persons,
stakeholders.
organizations,
and
stakeholders
involved.
Describe
ethical
principles
both
supporting
the
actions
of
the
principal
actors
in
a
computer
ethics
case
and
contradicting
the
actions
of
the
principal
actors,
citing
specific,
credible sources
that
support
one's
assertions
and
conclusions.
30
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%) 79%)
Described
ethical
Described
ethical
Did
not
submit
or
Described
ethical
principles
both
principles
both
complete
the
principles
relevant
to
supporting
the
actions
supporting
the
actions
the
case,
which
assignment.
of
the
principal
actors
of
the
principal
actors
neither
specifically
in
a
computer
ethics
in
a
computer
ethics
support
nor
contradict
case
and
case
and
the
actions
of
the
contradicting
the
contradicting
the
principal
actors.
actions
of
the
actions
of
the
principal
actors.
principal
actors,
citing
specific,
credible
sources
that
support
one’s
assertions
and
conclusions.
Explain
why
one
agrees
or
disagrees
with
the
actions
of
the
principal
actors
in
a
computer
ethics
case,
Citing
specific,
credible
sources
that
support
one’s
position
from
an
ethical
perspective.
30
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%) 79%)
Explained
why
one
Explained
why
one
Did
not
submit
or
Provided
a
vague
or
agrees
or
disagrees
agrees
or
disagrees
complete
the
implausible
with
the
actions
of
the
with
the
actions
of
the
assignment.
explanation
of
why
principal
actors
in
a
principal
actors
in
a
one
agrees
or
computer
ethics
case.
computer
ethics
case,
disagrees
with the
citing
specific,
actions
of
the
credible sources
that
principal
actors
in
a
support
one’s
position
computer
ethics
case.
from
an
ethical
perspective.
Support
main
points,
assertions,
arguments,
or
conclusions
with
at
least
three
specific
and
credible
academic
references
synthesized
into
a
coherent
analysis
of
the
evidence.
5
%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%)
79%)
Cited
the
required
Supported
main
Did
not
submit
the
Did
not
cite
the
number
of
references,
points,
assertions,
required
number
of
assignment
or
provide
but
one
or
more
arguments,
or
references
and/or
one
any
references.
sources
did
not
conclusions
with
at
or
more
sources
did
support
main
points,
least
three
specific
not
support
main
and
credible
assertions,
points,
assertions,
academic
references
arguments,
or
arguments,
or
conclusions.
synthesized
into
a
conclusions.
coherent
analysis
of
the
evidence.
Write
clearly
and
concisely
in
a
manner
that
is
well-organized;
grammatically
correct;
and
nearly
free
of
spelling,
typographical,
formatting,
and/or
punctuation
errors.
5%
Unacceptable
(Below
Needs
Improvement
(70-
Competent
(80-89%)
Exemplary
(90-100%)
70%) 79%)
Wrote
clearly
and
Wrote
clearly
and
Did
not
submit
the
Writing
lacked
clarity
concisely
in
a
manner
concisely
in
a
manner
or
organization,
with
assignment;
or
writing
that
is
well-organized;
that
is
well-organized;
lacked
clarity
and
grammatical,
spelling,
grammatically
correct;
grammatically
correct;
organization,
was
typographical,
and
nearly
free
of
and
nearly
free
of
grammatically
formatting,
and/or
spelling, spelling,
punctuation
errors
incorrect,
and
typographical,
typographical,
contained
numerous
that
inhibit
readability
formatting,
and/or
formatting,
and/or
and
detract
from
the
spelling,
punctuation
errors.
punctuation
errors.
typographical,
and/or
overall
message.
punctuation
errors.
©
2020
Strayer
University.
All
Rights
Reserved.
This
document
contains
Strayer
University
Confidential
and
Proprietary
information
and
may
not
be
copied,
further
distributed,
or
otherwise
disclosed
in
whole
or
in
part,
without
the
expressed
written
permission
of
Strayer
University.
Students also viewed