05 - Security - Assignment Brief 1 - Final
05 - Security - Assignment Brief 1 - Final
Assignment Brief
Student Name/ID
Number
Academic Year
Unit Tutor
Issue Date
Submission Date
Submission Format
Assignment scenario
You work as a trainee IT Security Specialist for a leading Security consultancy in
Vietnam called FPT Information security FIS.
FIS works with medium sized companies in Vietnam, advising and implementing
technical solutions to potential IT security risks. Most customers have outsourced
their security concerns due to lacking the technical expertise in house. As part of
your role, your manager Jonson has asked you to create an engaging presentation to
help train junior staff members on the tools and techniques associated with
identifying and assessing IT security risks together with the organizational policies to
protect business critical data and equipment.
Tasks
In addition to your presentation, you should also provide a detailed report containing
a technical review of the topics covered in the presentation.
Your presentation should:
Discuss types of security risks FIS secure may face if they have a security
breach. Give an example of a recently publicized security breach and discuss
its consequences
Assess a variety of organizational procedures an organization can set up to
reduce the effects to the business of a security breach.
Analyse three benefits to FIS of implementing network monitoring system
giving supporting reasons.
Propose a method that FIS can use to assess and treat IT security risks.
Discuss the potential impact to IT security of incorrect configuration of firewall
policies and third-party VPNs in FIS.
Discuss, using an example for each, how implementing a DMZ, static IP and
NAT in a network can improve network security in FIS.
Evaluate a range of physical and virtual security measures that can be
employed by FIS to ensure the integrity of organisational IT security.
Your detailed report should include a summary of your presentation as well as
additional, evaluated or critically reviewed technical notes on all of the expected
topics.
P4 Discuss, using an
example for each, how
implementing a DMZ,
static IP and NAT in a
network can improve
network security.