Compare and contrast public and in-house


Public Key Infrastructure

Suppose you are the Information Security Director at a small software company. The organization currently utilizes a Microsoft Server 2012 Active Directory domain administered by your information security team. Mostly software developers and a relatively small number of administrative personnel comprise the remainder of the organization. You have convinced business unit leaders that it would be in the best interest of the company to use a public key infrastructure (PKI) in order to provide a framework that fosters confidentiality, integrity, authentication, and nonrepudiation. Email clients, virtual private network (VPN) products, Web server components, and domain controllers would utilize digital certificates issued by the certificate authority (CA). Additionally, the company would use digital certificates to sign software developed by the company in order to demonstrate software authenticity to the customer.

Write a two to three (2-3) page paper in which you:

1. Analyze the fundamentals of PKI, and determine the primary ways in which its features and functions could benefit your organization and its information security department.

2. Propose one (1) way in which the PKI could assist in the process of signing the company's software, and explain the main reason why a customer could then believe that software to be authentic.

3. Compare and contrast public and in-house CAs. Include the positive and negative characteristics of each type of certificate authority, and provide a sound recommendation of and a justification for which you would consider implementing within your organization. Explain your rationale.

4. Use at least three (3) quality resources in this assignment (no more than 2-3 years old) from material outside the textbook. Note: Wikipedia and similar Websites do not qualify as quality resources.

Solution Preview :

Prepared by a verified Expert
Basic Computer Science: Compare and contrast public and in-house
Reference No:- TGS01185644

Now Priced at $35 (50% Discount)

Recommended (92%)

Rated (4.4/5)

A

Anonymous user

4/20/2016 8:12:20 AM

Consider yourself as the Information Security Director at a small software company. The organization presently employs a Microsoft Server 2012 Active Directory domain administered by your information security team. Write down a 2 to 3 page paper in which you address: Q1: Examine the basics of PKI and find out the primary ways in which its characteristics and functions could profit your organization and its information security department. Q2: Suggest one way in which the PKI could help in the procedure of signing the company's software and describe the major reason why a customer could then suppose that software to be genuine. Q3: Differentiate public and in-house CAs. Comprise the positive-negative features of each kind of certificate authority and give a sound proposal of and a justification for which you would consider implementing in your organization. Describe your justification.