Scenario: Career Training is acknowledged as an industry training… Scenario:Career Training is acknowledged as an industry training leader
Scenario: Career Training is acknowledged as an industry training… Scenario:Career Training is acknowledged as an industry training leader delivering nationally recognised and specialised courses. Career Training is a private registered training organisation (RTO) based in Geraldton, Western Australia with satellite offices in Broome, Derby and Perth.Registered training organisations (RTOs) are those training providers registered by ASQA (or, in some cases, a state regulator) to deliver vocational education and training (VET) services.RTOs are recognised as providers of quality-assured and nationally recognised training and qualifications.Only RTOs can: deliver nationally recognised courses and accredited Australian Qualifications Framework (AQF) VET qualifications, apply for Australian, state and territory funding to deliver vocational education and training.RTOs can offer qualifications at the following levels: Certificates I, II, III and IV Diploma Advanced Diploma Vocational Graduate Certificate Vocational Graduate Diploma.Career Training has a dedicated local network which is used by the RTO to use internal and internet services. Career Training has given access to staff and students for accessing internet and other services. Company has around 40 staff members and around 150 students who are using the network regularly.Recent black-hat hacker attack on organisation network has affected personal data of the staff and students. Career Training has recovered the affected data and restored the systems to normal.Career Training had implemented some cybersecurity policies before the cyber-attack:? Always connect to secure, password protected, Wi-Fi? Protect sensitive data? Talk to the IT department if something is behaving unusual or something unusual happens with their system? Avoid opening emails from an unknown/unauthorised address and avoid opening unknown attachmentsCareer Training is aware that a cyber-attack can take place in multiple ways. The most encountered cybersecurity risks according to Career Training IT department are:?- Phishing attack? -Hacking (man-in-the-middle attack)? -Ransomware? -Scareware Career Training IT department is aware of the common ways to resolve attempts and actual cyber-attacks.They are:? Implement, configure, and maintain strong data access security? Be aware that most of the staff do not work with sensitive/confidential information? Staff should be vigilant while opening emails and attachments from an unauthorised sender which ask for a usernames and passwords using the links to websites? Install an anti-virus and/or anti-malware software approved by IT department? Turn on built-in and custom spam filters for messages and emails? Configure/update and monitor a network firewallCareer Training needs to further develop and refine its cybersecurity policies and procedures. The previous policies and procedures do not sufficiently cover most of the information which might be the reason for the recent successful attack.You have joined the Career Training as a security subject matter expert (SME) and policy developer. You need to review the existing cybersecurity policies and complete the following activities. Assesment:Familiarise yourself with the above given scenario prior to commencing this activity.In this activity, you need to develop a report on organisational threats and trends associated with cybersecurity.The report needs to include the following information:1. Introduction2. Cybersecurity threats3. Ways to deal with the threats4. Cybersecurity trends5. List existing cybersecurity practices6. Techniques to resolve the phishing attack7.Techniques to resolve hacking8.Techniques to resolve Ransomware9. Conclusion Computer Science Engineering & Technology Information Security INFORMATION TECHNOLOGY BSBXCS402 Share QuestionEmailCopy link


