Thursday, June 25, 2020

An Analysis Of The Security Technology Deployment Plan For Company XYZ - 3300 Words

An Analysis Of The Security Technology Deployment Plan For Company XYZ (Research Paper Sample) Content: Security Technology Deployment Plan Name Institution Security Technology Deployment Plan The paper evaluates the security deployment plan for company XYZ, in a semi-conductor manufacturing industry. The paper is structured in 6 different phases. The paper sets out by discussing the IT system architecture, then plan of protection. The third step highlights encryption technologies that will assist XYZ to protect intellectual property while maintaining competitive edge. In the fourth step, the paper provides network security and threat table followed by email security mechanisms. In the end, the discussion presents recommendations to the company leadership for safeguarding its network resources. Step 1: IT Systems Architecture Communication via local area network (LAN) is a common trend in the present world. While communication through LAN is not secure, most organizations use it since it is convenient. According to Cisco (n.d), communication of confidential information is vulnerable to attackers and other threats. It is the goal of each organization to safeguard its information against unauthorized users and malicious staff. The security of an organization’s data is based on identifying threats and addressing them to prevent access to confidential or sensitive information. For that reason, the organization should enhance its security by choosing an appropriate wireless LAN (WLAN). Specifically, the organization has to identify acceptable double connections while taking into account the security of its network. For example, to protect the organization’s network security, it is paramount to ensure that the WLAN has client devices when carrying out security assessment. The WLAN connect client devices to the computer and not directly to the network. Such an attempt is important when it comes to allowing client devices to communicate with the LAN via the wireless switch, which is easy to manage. In relation to security configuration, the organization should have a standard architecture to provi de not only protection but also reduce network threats and effects of attacks by enhancing predictability and consistency of security (Cisco, n.d). In the organization, LAN security can be threatened by unauthenticated users. Table 1. IT Systems Architecture ComponentExplanationLikelihoodSolutionLAN securityThis is the where with the local area. The firm’s wireless LAN is vulnerable to threats from unauthorized users LikelyImplement firewall to prevent unauthenticated access. Installing anti-spyware and adoption of intrusion prevention system (IPS) Identity managementThis involves identification of individuals across the network and controlling access to data based on their user-level rightsLikelyImplement user level rights and password introductionPhysical securityPhysical safeguard of software, hardware, personnel and network resources from damage or lossLikelyUse back-up strategy. Implementing locks and security staffs Personnel securityPolicies that c an help in managing the risk of employees using their legal rights to access the firm’s network resourcesUnlikelyImplementation of password policy and anti-virusAvailabilityInvolves the vulnerability of network assets to unauthorized users of failureUnlikelyRegularly upgradingPrivacyThe technologies and approaches used to safeguard organization’s dataLikelyEncrypt data and use of anti-virusStep 2: Plan of Protection Based on the needs and requirements of Company XYZ, a plan is required to protect identity; access, authorization and non-repudiation of information transmission, storage and use. Specifically, the effective plan for the organization leadership has to put emphasis on steganography technology. This technology can secure the organization’s assets by concealing network passwords (Sumathi, Santanam AES-192; AND AES-256 (Altigani, Abdelmagid & Barry, 2016). As a result, the organization should use ciphers while an identical secret key is u sed in decrypting and encrypting sensitive information. Cipher of 128 bits is suitable for protecting classified data up to the secret level while 192 and 256 bits is necessary for sensitive data. Symmetric Encryption. Symmetrical encryption is a secret key inform of text where a number of random letters are used on the message to change its content (Microsoft, 2018). Symmetrical encryption uses an algorithm and a secret key that makes hard to access the message, especially if the receiver does not have a secret key. In symmetrical encryption, both sender and recipient use an identical key for encrypting and decry...