Why is information security a management problem what can


You are to answer 5 out of the 19. Create a MS Word documentRemember yes or no answers will not work, the minimum requirement for each question is 1 paragraph (at least 4 sentences). More is welcome if needed. Be sure to number the questions you are answering.

Review Questions

1. Why is information security a management problem? What can management do that technology cannot?

2. Why is data the most important asset an organization possesses? What other assets in the organization require protection?

3. Which management groups are responsible for implementing information security to protect the organization's ability to function?

4. Has the implementation of networking technology created more or less risk for businesses that use information technology? Why?

5. What is information extortion? Describe how such an attack can cause losses, using an example not found in the text.

6. Why do employees constitute one of the greatest threats to information security?

7. What measures can individuals take to protect against shoulder surfing?

8. How has the perception of the hacker changed over recent years? What is the profile of a hacker today?

9. What is the difference between a skilled hacker and an unskilled hacker (other than skill levels)? How does the protection against each differ?

10. What are the various types of malware? How do worms differ from viruses? Do Trojan horses carry viruses or worms?

11. Why does polymorphism cause greater concern than traditional malware? How does it affect detection? The Need for Security 83 Copyright 2011 Cengage Learning. All Rights Reserved. May not be copied, scanned, or duplicated, in whole or in part. Due to electronic rights, some third party content may be suppressed from the eBook and/or eChapter(s). Editorial review has deemed that any suppressed content does not materially affect the overall learning experience. Cengage Learning reserves the right to remove additional content at any time if subsequent rights restrictions require it.

12. What is the most common form of violation of intellectual property? How does an organization protect against it? What agencies fight it?

13. What are the various types of force majeure? Which type might be of greatest concern to an organization in Las Vegas? Oklahoma City? Miami? Los Angeles?

14. How does technological obsolescence constitute a threat to information security? How can an organization protect against it?

15. Does the intellectual property owned by an organization usually have value? If so, how can attackers threaten that value? 16. What are the types of password attacks? What can a systems administrator do to protect against them?

16. What is the difference between a denial-of-service attack and a distributed denial-of-service attack? Which is more dangerous? Why?

17. For a sniffer attack to succeed, what must the attacker do? How can an attacker gain access to a network to use the sniffer system?

18. What methods does a social engineering hacker use to gain information about a user's login id and password? How would this method differ if it were targeted towards an administrator's assistant versus a data-entry clerk?

19. What is a buffer overflow, and how is it used against a Web server?

Solution Preview :

Prepared by a verified Expert
Computer Engineering: Why is information security a management problem what can
Reference No:- TGS01597941

Now Priced at $25 (50% Discount)

Recommended (99%)

Rated (4.3/5)