Knowee
Questions
Features
Study Tools

What you'll do: You’ll create a security infrastructure design document for a fictional organization. Your plan needs to meet the organization's requirements and the following elements should be incorporated into your plan:Authentication systemExternal website securityInternal website securityRemote access solutionFirewall and basic rules recommendationsWireless securityVLAN configuration recommendationsLaptop security configurationApplication policy recommendationsSecurity and privacy policy recommendationsIntrusion detection or prevention for systems containing customer data1 point

Question

What you'll do: You’ll create a security infrastructure design document for a fictional organization. Your plan needs to meet the organization's requirements and the following elements should be incorporated into your plan:Authentication systemExternal website securityInternal website securityRemote access solutionFirewall and basic rules recommendationsWireless securityVLAN configuration recommendationsLaptop security configurationApplication policy recommendationsSecurity and privacy policy recommendationsIntrusion detection or prevention for systems containing customer data1 point

...expand
🧐 Not the exact question you are looking for?Go ask a question

Solution

Sure, here's a step-by-step guide on how to create a security infrastructure design document for a fictional organization:

  1. Authentication System: Start by outlining the authentication system. This could include multi-factor authentication, biometric authentication, or password-based systems. Discuss how this system will ensure that only authorized individuals have access to the organization's data.

  2. External Website Security: Discuss the security measures for the external website. This could include SSL certificates, secure login systems, and regular security audits.

  3. Internal Website Security: Outline the security measures for the internal website. This could include IP restrictions, secure login systems, and encryption of sensitive data.

  4. Remote Access Solution: Describe the remote access solution. This could include VPNs, secure remote desktop software, and strict access controls.

  5. Firewall and Basic Rules Recommendations: Recommend firewall settings and basic rules. This could include blocking all incoming traffic by default, allowing only necessary ports, and regularly updating firewall rules.

  6. Wireless Security: Discuss the wireless security measures. This could include WPA2 or WPA3 encryption, disabling SSID broadcasting, and MAC address filtering.

  7. VLAN Configuration Recommendations: Recommend VLAN configurations. This could include separating different types of traffic, limiting inter-VLAN routing, and using VLAN tagging.

  8. Laptop Security Configuration: Outline the laptop security configuration. This could include full disk encryption, regular software updates, and the use of antivirus software.

  9. Application Policy Recommendations: Recommend application policies. This could include limiting the use of certain applications, regularly updating applications, and using application whitelisting.

  10. Security and Privacy Policy Recommendations: Recommend security and privacy policies. This could include regular security training, strict data handling procedures, and regular privacy audits.

  11. Intrusion Detection or Prevention: Discuss the intrusion detection or prevention measures for systems containing customer data. This could include the use of IDS/IPS systems, regular security audits, and real-time monitoring of system logs.

Remember, this is a high-level overview. Each section should be expanded upon with more detail based on the specific needs and capabilities of the organization.

This problem has been solved

Similar Questions

security advisory plan for a public website

Question 5A security professional is researching compliance and the law in order to define security goals. Which domain does this scenario describe?1 pointSecurity architecture and engineering Security assessment and testingSecurity and risk managementIdentity and access management

Question 1What does a security professional use to create guidelines and plans that educate employees about how they can help protect the organization? 1 pointSecurity postureSecurity auditSecurity frameworkSecurity hardening

Which domain involves defining security goals and objectives, risk mitigation, compliance, business continuity, and the law?1 pointSecurity architecture and engineeringSecurity assessment and testingIdentity and access managementSecurity and risk management

Question 3In which domain would a security professional conduct security control testing; collect and analyze data; and perform security audits to monitor for risks, threats, and vulnerabilities?1 pointSecurity architecture and engineeringIdentity and access managementCommunication and network engineeringSecurity assessment and testing

1/3

Upgrade your grade with Knowee

Get personalized homework help. Review tough concepts in more detail, or go deeper into your topic by exploring other relevant questions.