[SOLVED] scenario is based on an actual attack deconstructed at a seminar

I’m studying and need help with a Writing question to help me learn.

Struggling to find relevant content or pressed for time? – Don’t worry, we have a team of professionals to help you on
[SOLVED] scenario is based on an actual attack deconstructed at a seminar
Get a 15% Discount on this Paper
Order Now

The following scenario is based on an actual attack deconstructed at a seminar. The names and locations have been removed to preserve the privacy of the organization in question.

Background:

  • No-Internal-Controls, LLC is a mid-sized pharmaceutical company in the Midwest of the US employing around 150 employees. It has grown over the past decade by merging with other pharmaceutical companies and purchasing smaller firms.
  • Recently No-Internal-Controls, LLC suffered a ransomware attack. The company was able to recover from the attack with the assistance of a third-party IT Services Company.

Attack Analysis:

  • After collecting evidence and analyzing the attack, the third party was able to recreate the attack.
  • No-Internal-Controls, LLC has a number of PCs configured for employee training
  • These training computers use generic logins such as “training1”, “training2”, etc. with passwords of “training1”, “training2”, etc.
  • The generic logins were not subject to lock out due to incorrect logins
  • One of the firms purchased by No-Internal-Controls, LLC allowed Remote Desktop connections from the Internet through the firewall to the internal network for remote employees
  • Due to high employee turnover and lack of documentation, none all of the IT staff were aware of the legacy remote access
  • The main office has only a single firewall and no DMZ or bastion host exists to mediate incoming remote desktop connections
  • The internal network utilized a flat architecture
  • An attacker discovered the access by use of a port scan and used a dictionary attack to gain access to one of the training computers
  • The attacker ran a script on the compromised machine to elevate his access privileges and gain administrator access
  • The attacker installed tools on the compromised host to scan the network and identify network shares
  • The attacker copied ransomware into the network shares for the accounting department allowing it spread through the network and encrypt accounting files
  • Critical accounting files were backed up and were recovered, but some incidental department and personal files were lost

Instructions:

You have been hired by No-Internal-Controls, LLC in the newly created role of CISO and have been asked to place priority on mitigating further attacks of this type.

  • Suggest one or more policies that would help mitigate against attacks similar to this attack
  • Suggest one or more controls to support each policy
  • Identify each of the controls as physical, administrative, or technical and preventative, detective, or corrective.
  • Keep in mind that No-Internal-Controls, LLC is a mid-sized company with a small IT staff and limited budget
  • Do not attempt to write full policies, simply summarize each policy you suggest in one or two sentences.
  • Clearly indicate how each policy you suggest will help mitigate similar attacks and how each control will support the associated policy
  • Be sure to follow APA formatting and provide references to support your key points in the case. Use the book and library resources to find references. Remember references add credibility to writing as well as providing proper credit to your sources.

Requirements:

  • Need minimum 1000 words
  • Need minimum 5 APA References
  • No Plagiarism please

Calculate the price
Make an order in advance and get the best price
Pages (550 words)
$0.00
*Price with a welcome 15% discount applied.
Pro tip: If you want to save more money and pay the lowest price, you need to set a more extended deadline.
We know how difficult it is to be a student these days. That's why our prices are one of the most affordable on the market, and there are no hidden fees.

Instead, we offer bonuses, discounts, and free services to make your experience outstanding.
Sign up, place your order, and leave the rest to our professional paper writers in less than 2 minutes.
step 1
Upload assignment instructions
Fill out the order form and provide paper details. You can even attach screenshots or add additional instructions later. If something is not clear or missing, the writer will contact you for clarification.
s
Get personalized services with MyCoursebay
One writer for all your papers
You can select one writer for all your papers. This option enhances the consistency in the quality of your assignments. Select your preferred writer from the list of writers who have handledf your previous assignments
Same paper from different writers
Are you ordering the same assignment for a friend? You can get the same paper from different writers. The goal is to produce 100% unique and original papers
Copy of sources used
Our homework writers will provide you with copies of sources used on your request. Just add the option when plaing your order
What our partners say about us
We appreciate every review and are always looking for ways to grow. See what other students think about our do my paper service.
Nursing
Thank you to the writer and also thank you to the support team I got an A for the paper
Customer 452635, June 17th, 2022
Nursing
Fantastic work on this project as usual.
Customer 452707, July 5th, 2022
Technology
Great job on the paper!
Customer 452885, December 28th, 2022
English 101
Although a little late, the content and structure of the paper was great! I would definitely use this writer again!
Customer 452561, July 12th, 2021
Technology
My paper was sent back after my due date time
Customer 452901, November 12th, 2022
Social Work and Human Services
Thank You, Don!!! :)
Customer 452587, November 9th, 2021
Social Work and Human Services
Great Work !!!
Customer 452587, November 9th, 2021
Criminal Justice
Impressive! Will be using the service again.
Customer 452485, December 5th, 2021
Education
Thank you so much for all the help, I really appreciate it!
Customer 452631, November 3rd, 2021
Nursing
Everything was done thoroughly and with care. Awesome job!!!
Customer 452453, April 10th, 2021
English 101
The paper was late. However, it was excellent quality.
Customer 452561, July 2nd, 2021
Management
Comprehensively done. Thank you
Customer 452583, July 20th, 2021

[SOLVED] scenario is based on an actual attack deconstructed at a seminar

I’m studying and need help with a Writing question to help me learn.

Struggling to find relevant content or pressed for time? – Don’t worry, we have a team of professionals to help you on
[SOLVED] scenario is based on an actual attack deconstructed at a seminar
Get a 15% Discount on this Paper
Order Now

The following scenario is based on an actual attack deconstructed at a seminar. The names and locations have been removed to preserve the privacy of the organization in question.

Background:

  • No-Internal-Controls, LLC is a mid-sized pharmaceutical company in the Midwest of the US employing around 150 employees. It has grown over the past decade by merging with other pharmaceutical companies and purchasing smaller firms.
  • Recently No-Internal-Controls, LLC suffered a ransomware attack. The company was able to recover from the attack with the assistance of a third-party IT Services Company.

Attack Analysis:

  • After collecting evidence and analyzing the attack, the third party was able to recreate the attack.
  • No-Internal-Controls, LLC has a number of PCs configured for employee training
  • These training computers use generic logins such as “training1”, “training2”, etc. with passwords of “training1”, “training2”, etc.
  • The generic logins were not subject to lock out due to incorrect logins
  • One of the firms purchased by No-Internal-Controls, LLC allowed Remote Desktop connections from the Internet through the firewall to the internal network for remote employees
  • Due to high employee turnover and lack of documentation, none all of the IT staff were aware of the legacy remote access
  • The main office has only a single firewall and no DMZ or bastion host exists to mediate incoming remote desktop connections
  • The internal network utilized a flat architecture
  • An attacker discovered the access by use of a port scan and used a dictionary attack to gain access to one of the training computers
  • The attacker ran a script on the compromised machine to elevate his access privileges and gain administrator access
  • The attacker installed tools on the compromised host to scan the network and identify network shares
  • The attacker copied ransomware into the network shares for the accounting department allowing it spread through the network and encrypt accounting files
  • Critical accounting files were backed up and were recovered, but some incidental department and personal files were lost

Instructions:

You have been hired by No-Internal-Controls, LLC in the newly created role of CISO and have been asked to place priority on mitigating further attacks of this type.

  • Suggest one or more policies that would help mitigate against attacks similar to this attack
  • Suggest one or more controls to support each policy
  • Identify each of the controls as physical, administrative, or technical and preventative, detective, or corrective.
  • Keep in mind that No-Internal-Controls, LLC is a mid-sized company with a small IT staff and limited budget
  • Do not attempt to write full policies, simply summarize each policy you suggest in one or two sentences.
  • Clearly indicate how each policy you suggest will help mitigate similar attacks and how each control will support the associated policy
  • Be sure to follow APA formatting and provide references to support your key points in the case. Use the book and library resources to find references. Remember references add credibility to writing as well as providing proper credit to your sources.

Requirements:

  • Need minimum 1000 words
  • Need minimum 5 APA References
  • No Plagiarism please

Calculate the price
Make an order in advance and get the best price
Pages (550 words)
$0.00
*Price with a welcome 15% discount applied.
Pro tip: If you want to save more money and pay the lowest price, you need to set a more extended deadline.
We know how difficult it is to be a student these days. That's why our prices are one of the most affordable on the market, and there are no hidden fees.

Instead, we offer bonuses, discounts, and free services to make your experience outstanding.
Sign up, place your order, and leave the rest to our professional paper writers in less than 2 minutes.
step 1
Upload assignment instructions
Fill out the order form and provide paper details. You can even attach screenshots or add additional instructions later. If something is not clear or missing, the writer will contact you for clarification.
s
Get personalized services with MyCoursebay
One writer for all your papers
You can select one writer for all your papers. This option enhances the consistency in the quality of your assignments. Select your preferred writer from the list of writers who have handledf your previous assignments
Same paper from different writers
Are you ordering the same assignment for a friend? You can get the same paper from different writers. The goal is to produce 100% unique and original papers
Copy of sources used
Our homework writers will provide you with copies of sources used on your request. Just add the option when plaing your order
What our partners say about us
We appreciate every review and are always looking for ways to grow. See what other students think about our do my paper service.
Criminal Justice
Excellent Work!!!
Customer 452587, March 10th, 2022
Nursing
Did not receive paper on time.
Customer 452693, November 9th, 2022
Technology
Great job on the paper!
Customer 452885, December 14th, 2022
Nursing
This is great! Thank you
Customer 452679, December 16th, 2021
Social Work and Human Services
Great Work!
Customer 452587, September 8th, 2021
Technology
I can work with it and massage it to what I need. Thank You
Customer 452827, July 19th, 2022
Other
NICE
Customer 452813, June 30th, 2022
Philosophy
i got the paper a bit late but it is good quality will for sure come back and use this website.
Customer 452611, September 9th, 2021
Other
Great work! Thank so much!
Customer 452707, March 1st, 2022
Wellness
The skilled writer did a great job on assignment!! Thank you!!
Customer 452547, June 16th, 2021
Other
GREAT
Customer 452813, September 20th, 2022
Nursing
Excellent work!! Thanks again!
Customer 452707, October 14th, 2022
OUR GIFT TO YOU
15% OFF your first order
Use a coupon FIRST15 and enjoy expert help with any task at the most affordable price.
Claim my 15% OFF Order in Chat

Get top-notch homework help now. 20% off first 10 orders!

NEW

Thank you for choosing MyCoursebay. Your presence is a motivation to us. All papers are written from scratch. Plagiarism is not tolerated. Order now for a 15% discount

Order Now