Running Head: CYBER THREATS 2
CYBER THREATS 2
Executive Summary
Cyber Threats
Institutional Affiliation
Students Name
Course details
Submissions Date
Executive Summary
The rise of the cybersecurity threats is alarming, and organizations need to be up to date in everything that matters internet security since there many ways through which their online presence, as well as data, can be breached. The organization must identify those areas that need serious protection and prioritize them accordingly to deal with them individually depending on the risk they expose organization into.
Categories of cyber attacks
The cybersecurity attacks are categorized depending on how they pose threats to the organization. The cybersecurity threat can be used depending on the existing vulnerability in the organization. Cybersecurity threats are categorized into three: malware, deception, and attacks (Lawson, 2013,).
Malware
The cybercriminal designs software basing on the existing vulnerability and used it to attack the organization’s resources. malware or malicious software is designed in such a way that it can access restricted information in an organization without the owners knowledge. The malware is a term used to describe all the malicious software that tries to access the organizations computer resources through back door or cause attacks to the resources so that they cannot function effectively (Luna, Rhine, Myhra, Sullivan, & Kruse, 2016). The malware includes computer viruses, worms, trojan horses, ransomware, spyware, adware, scarecrow, etc.
Deception
It is not always common for the cybercriminal to use the malware to launch an attack or to access restricted information; they can also use the art of deception to get information that they can use to gain access to the very important information. The criminal in this type of attack uses the art of social engineering to launch an attack. They rely entirely on the peoples willingness to offer while they assess their weaknesses and exploit them (Luna, Rhine, Myhra, Sullivan, & Kruse, 2016). Social engineering is categorized into two: pretexting, where the attack makes a call to the target and try to gain access to get access Privileges and Quid pro quo (something for something), which the attacker requests personal information for the exchange of another thing such as a gift.
Attack
This is the last category of cyber threat, where the attacker uses skills and knowledge to gain access to private and restricted information. The attack in this particular form of treatment has gathered adequate information that they can use to launch attacks depending on the existing vulnerabilities (insightsforprofessionals.com, 2019). The attacks are categorized as man-in-the-middle, zero-day attack, keylogging, Dos attack, sniffing, spoofing, etc (Wilson, 2014).
Challenges of cybersecurity and their impacts
Challenge
Challenge
Impact
1
Ransomware Evolution
Leads to the most detrimental attack on the information technology resources.
2
The introduction of Artificial intelligence
This is the method to control It resources but comes with huge costs.
3
Threats from IOT
The increase number of IOT makes it difficult to offer protection to all of them.
4
Revolution of Blockchain
Blockchain is the newest target of cybercriminal. This means that it would be hard to control if they are not prioritized in advance.
5
Serverless Application
Most of the application used do not have centralized suffer; hence, can be easily target by cybercriminals.
6
Evolving method of attacks
Cybercriminal are not sleeping but always finding new vulnerabilities that they can utilize for selfish gains.
7
Cyberwarfare
This is the war involving countries. in this instance it is important for a country to put in place strategies to protect national infrastructure
8
Use of software in machinery
Though it increases efficiency of the machine, software are prone to damage because of the fact that they have to process information before they act.An action plan is often developed to assist project leaders to effectively demonstrate what items need to be addressed when charged to create or improve a business process, program, practice, etc. A plan should break down individual requirements and issues into steps that can be tracked, indicate team member(s) responsibility, and completion (including prerequisites) dates. A plan usually includes goals, steps, assignments, and deadlines.
The executive staff at Dayton Soft Products did not agree with your first recommendations provided in your executive summary. They asked that you go with your number 2 and number 4 recommendations, which they thought would be best for their organization. This presents a challenge to you, but you must go ahead with what your client wants.
Create an action plan with a total of at least 10 tasks. Each task must address the following three issues:
o Risk assessment (overall strategy)
o Contingency planning
o What is your plan if there is a problem? Who sets the priorities following an incident? Who is going to do what? What are the priorities? How do you keep the plan going?
o Vulnerability management
o What is the strategy for ongoing risk identification?
o Once you’ve identified the risk, how do you mitigate the risk? What are the steps?
You may complete this action table either as a 4- to-5-page Microsoft Word document or as a detailed Microsoft Excel spreadsheet. The following are examples of column heading titles for a table-formatted action plan:
o Column 1: Action Item
o Column 2: Description/Details
o Column 3: Person Responsible
o Column 4: Status
o Column 5: Due Date
o Column 6: Prerequisites
o Column 7: Date Completed
o Column 8: Comments/Notes
NO PLAGIARISM APA Format Please provide sources
Based on this course scenario:
· Organization: Dayton Soft Products, established 2001
· Headquarters: Biloxi, MS
· Product Line: Tripled in the past five years
· Staff: Increased from 100 on-site employees to 155 onsite and 743 offsite (globally)
· Revenues: Grown from $73k in 2010 to $3.3 million currently (fiscal year 2017)








Recent Comments