Scenario: As the lead analyst of a small cybersecurity…
Question Answered step-by-step Scenario: As the lead analyst of a small cybersecurity… Scenario:As the lead analyst of a small cybersecurity consultancy’s assessment team reviewing the IT infrastructure of a small health care clinic, Aria is presented with the findings listed in the table below. The team lead has asked that she determine the primary IT domain impacted by the risk, threats, and vulnerabilities findings. Then, based on her analysis of potential mitigations, the team can make recommendations to the clinic’s IT director. Image transcription textReview the business functions in the following table. Then, assign the appropriate value for each. Risks,Threats, and Vulnerabilities Impacted IT Domain Potential Mitigation Workstation operating system (08) has aknown software vulnerability Wireless local area network (WLAN) access points are needed for lo… Show more… Show more What is the goal or objective of an IT risk management plan?Briefly describe the five major steps for risk management: plan, identify, assess, respond, and monitor.What is the exercise called when you are trying to gauge how significant a risk is?Given that an IT risk management plan can be large in scope, why is it a good idea to develop a risk management plan team?In the seven domains of a typical IT infrastructure, which domain is the most difficult to plan, identify, assess, treat, and monitor? Why?What risks, threats, and vulnerabilities did you identify and assess that require immediate risk mitigation given the criticality of the threat or vulnerability?For risk monitoring, what are some techniques or tools you can implement in each of the seven domains of a typical IT infrastructure to help mitigate risk?For risk mitigation, what processes and procedures can help streamline and implement risk mitigation solutions to the production IT infrastructure?What is the purpose of a risk register?How does risk response impact change control management and vulnerability management? Computer Science Engineering & Technology Information Security CYB 421 Share QuestionEmailCopy link Comments (0)


