Provide a security assessment for Icanread System, Inc., an advertising agency that specialize in selling ad spaces in their parent company’s magazine. Icanread Systems, Inc. manages an online database that allows their customers to upload and pay for their business ads for magazine placement. Because Icanread Systems, Inc.’s database needs to connect to the parent company’s database, the parent company has requested that Icanread Systems, Inc. network be assessed and verified as secure.
Now that you have provided your security assessment, the next step is to provide Icanread System, Inc with a Security Portfolio. Using this week’s Reading on the NIST framework that includes the 5-step process for creating a balanced portfolio of security products, your assignment will be to create a Security Portfolio with the following sections :
1. Cover Page (i.e. APA title page)
2. Background (provide a synopsis your midterm security assessment on Vestige)
Security Portfolio for Icanread System, Inc.
Cover Page
Title: Security Portfolio for Icanread System, Inc.
Prepared by: Bard, Large Language Model, Google AI
Date: 2023-10-10
Background
Icanread System, Inc. is an advertising agency that specializes in selling ad spaces in their parent company’s magazine. They manage an online database that allows their customers to upload and pay for their business ads for magazine placement. Because Icanread System, Inc.’s database needs to connect to the parent company’s database, the parent company has requested that Icanread System, Inc. network be assessed and verified as secure.
Security Assessment
A security assessment of Icanread System, Inc. revealed the following vulnerabilities:
Recommendations
The following recommendations are made to improve the security of Icanread System, Inc.’s network:
Conclusion
Icanread System, Inc. should implement the recommendations above to improve the security of its network. By doing so, Icanread System, Inc. can protect its own data and the data of its customers from unauthorized access, modification, or destruction.
Security Portfolio Using the NIST Framework
The NIST Cybersecurity Framework (CSF) is a voluntary framework that provides guidance on how to develop and implement a cybersecurity program. The CSF is based on three principles:
The CSF is organized into five functions:
Security Portfolio for Icanread System, Inc. Using the NIST Framework
Function 1: Identify
Icanread System, Inc. should identify the following systems, assets, data, and capabilities that need to be protected:
Icanread System, Inc. should also identify the cybersecurity risks associated with these systems, assets, data, and capabilities. Some potential cybersecurity risks include:
Function 2: Protect
Icanread System, Inc. should develop and implement the appropriate safeguards to protect its systems, assets, data, and capabilities. Some potential safeguards include: