Security assigment unit 5, Assignments of Computer science

HND unit 5 assignment with answers. Perfect english and correct answers included. Perfectly finished assignment document

Typology: Assignments

2020/2021
On special offer
30 Points
Discount

Limited-time offer


Uploaded on 07/12/2021

shamraz-nazeer
shamraz-nazeer 🇮🇳

5

(1)

1 document

1 / 14

Toggle sidebar

This page cannot be seen from the preview

Don't miss anything!

bg1
Higher Nationals
Internal verification of assessment decisions – BTEC (RQF)
INTERNAL VERIFICATION – ASSESSMENT DECISIONS
Programme title BTEC Higher National Diploma in Computing
Assessor Internal Verifier
Unit(s)
Unit 05: Security
Assignment title
EMC Cyber
Student’s name
List which assessment
criteria the Assessor has
awarded.
Pass Merit Distinction
INTERNAL VERIFIER CHECKLIST
Do the assessment criteria awarded
match those shown in the assignment
brief? Y/N
Is the Pass/Merit/Distinction grade
awarded justified by the assessor’s
comments on the student work? Y/N
Has the work been assessed
accurately? Y/N
Is the feedback to the student:
Give details:
Constructive?
Linked to relevant assessment
criteria?
Identifying opportunities for
improved performance?
Agreeing actions?
Y/N
Y/N
Y/N
Y/N
Does the assessment decision need
amending? Y/N
Assessor signature Date
Internal Verifier signature Date
Programme Leader signature (if
required) Date
pf3
pf4
pf5
pf8
pf9
pfa
pfd
pfe
Discount

On special offer

Partial preview of the text

Download Security assigment unit 5 and more Assignments Computer science in PDF only on Docsity!

Higher Nationals

Internal verification of assessment decisions – BTEC (RQF)

INTERNAL VERIFICATION – ASSESSMENT DECISIONS

Programme title BTEC Higher National Diploma in Computing Assessor Internal Verifier Unit(s) Unit 05: Security Assignment title EMC Cyber Student’s name List which assessment criteria the Assessor has awarded. Pass Merit Distinction INTERNAL VERIFIER CHECKLIST Do the assessment criteria awarded match those shown in the assignment brief? Y/N Is the Pass/Merit/Distinction grade awarded justified by the assessor’s comments on the student work? Y/N Has the work been assessed accurately? Y/N Is the feedback to the student: Give details:

  • Constructive?
  • Linked to relevant assessment criteria?
  • Identifying opportunities for improved performance?
  • Agreeing actions? Y/N Y/N Y/N Y/N Does the assessment decision need amending? Y/N Assessor signature Date Internal Verifier signature Date Programme Leader signature (if required) Date

Confirm action completed Remedial action taken Give details: Assessor signature Date Internal Verifier signature Date Programme Leader signature (if required) Date

Pearson

Higher Nationals in

Computing

Unit 5 : Security

General Guidelines

  1. A Cover page or title page – You should always attach a title page to your assignment. Use previous page as your cover sheet and make sure all the details are accurately filled.
  2. Attach this brief as the first section of your assignment.
  3. All the assignments should be prepared using a word processing software.
  4. All the assignments should be printed on A4 sized papers. Use single side printing.
  5. Allow 1” for top, bottom , right margins and 1.25” for the left margin of each page. Word Processing Rules
  6. The font size should be 12 point, and should be in the style of Time New Roman.
  7. Use 1.5 line spacing. Left justify all paragraphs.
  8. Ensure that all the headings are consistent in terms of the font size and font style.
  9. Use footer function in the word processor to insert Your Name, Subject, Assignment No, and Page Number on each pag e. This is useful if individual sheets become detached for any reason.
  10. Use word processing application spell check and grammar check function to help editing your assignment. Important Points:
  11. It is strictly prohibited to use textboxes to add texts in the assignments, except for the compulsory information. eg: Figures, tables of comparison etc. Adding text boxes in the body except for the before mentioned compulsory information will result in rejection of your work.
  12. Carefully check the hand in date and the instructions given in the assignment. Late submissions will not be accepted.
  13. Ensure that you give yourself enough time to complete the assignment by the due date.
  14. Excuses of any nature will not be accepted for failure to hand in the work on time.
  15. You must take responsibility for managing your own time effectively.
  16. If you are unable to hand in your assignment on time and have valid reasons such as illness, you may apply (in writing) for an extension.
  17. Failure to achieve at least PASS criteria will result in a REFERRAL grade.
  18. Non-submission of work without valid reasons will lead to an automatic RE FERRAL. You will then be asked to complete an alternative assignment.
  19. If you use other people’s work or ideas in your assignment, reference them properly using HARVARD referencing system to avoid plagiarism. You have to provide both in-text citation and a reference list.

10. If you are proven to be guilty of plagiarism or any academic misconduct, your grade could be reduced to A

REFERRAL or at worst you could be expelled from the course

Assignment Brief Student Name /ID Number Unit Number and Title Unit 5- Security Academic Year 2020/ Unit Tutor Assignment Title EMC Cyber Issue Date Submission Date IV Name & Date Submission Format: The submission should be in the form of an individual written report written in a concise, formal business style using single spacing and font size 12. You are required to make use of headings, paragraphs and subsections as appropriate, and all work must be supported with research and referenced using Harvard referencing system. Please provide in- text citation and an end list of references using Harvard referencing system. Section 4.2 of the assignment required to do a 15 minutes presentation to illustrate the answers. Unit Learning Outcomes: LO1 Assess risks to IT security. LO2 Describe IT security solutions. LO3 Review mechanisms to control organisational IT security. LO4 Manage organisational security. Assignment Brief and Guidance:

Scenario

‘EMC Cyber’ is a reputed cyber security company based in Colombo Sri Lanka that is delivering

security products and services across the entire information technology infrastructure. The company

has a number of clients both in Sri Lanka and abroad, which includes some of the top-level companies

of the world serving in multitude of industries. The company develops cyber security software

including firewalls, anti-virus, intrusion detection and protection, and endpoint security. EMC Cyber is

tasked with protecting companies’ networks, clouds, web applications and emails. They also offer

advanced threat protection, secure unified access, and endpoint security. Further they also play the

role of consulting clients on security threats and how to solve them. Additionally the company follows

different risk management standards depending on the company, with the ISO 31000 being the most

prominent.

One of the clients of EMC Cyber, Lockhead Aerospace manufacturing which is a reputed aircraft

manufacturer based in the US, has tasked the company to investigate the security implications of

developing IOT based automation applications in their manufacturing process. The client has

requested EMC to further audit security risks of implementing web based IOT applications in their

manufacturing process and to propose solutions. Further, Lockhead uses ISO standards and has

instructed EMC to use the ISO risk management standards when proposing the solution.

The director of the company understands such a system would be the target for cyber-attacks. As you

are following a BTEC course which includes a unit in security, the director has asked you to investigate

and report on potential cyber security threats to their web site, applications and infrastructure. After

the investigation you need to plan a solution and how to implement it according standard software

engineering principles.

Activity 01

Activity 03

3.1 Discuss suitable risk assessment integrated enterprise risk management procedures for EMC

Cyber solutions and the impact an IT security audit will have on safeguarding organization and its

clients. Furthermore, your discussion should include how IT security can be aligned with an

organizational IT policy and how misalignment of such a policy can impact on organization’s security.

(This can include one or more of the following: network change management, audit control, business

continuance/disaster recovery plans, potential loss of data/business, intellectual property, Data

Protection Act; Computer Misuse Act; ISO 31000 standards.)

3.2 Explain the mandatory data protection laws and procedures which will be applied to data storage

solutions provided by EMC Cyber. You should also summarize ISO 31 000 risk management

methodology.

Activity 04

4.1 Design an organizational security policy for EMC Cyber to minimize exploitations and misuses

while evaluating the suitability of the tools used in an organizational policy.

4.2 Develop and present a disaster recovery plan for EMC Cyber according to the ISO/IEC 17799:

or similar standard which should include the main components of an organizational disaster recovery

plan with justifications. Discuss how critical the roles of the stakeholders in the organization to

successfully implement the security policy and the disaster recovery plan you recommended as a part

of the security audit.

(Students should produce a 15 minutes PowerPoint presentation which illustrates the answer for

this section including justifications and reason for decisions and options used).

Grading Rubric

Grading Criteria Achieved Feedback

LO1 Assess risks to IT security

P1 Identify types of security risks to organisations.

P2 Describe organizational security procedures.

M1 Propose a method to assess and treat IT security risks.

LO2 Describe IT security solutions

P3 Identify the potential impact to IT security of incorrect

configuration of firewall policies and thirparty VPNs.

P4 Show, using an example for each, how implementing a DMZ, static

IP and NAT in a network can improve Network Security.

M2 Discuss three benefits to implement network monitoring systems

with supporting reasons.

D1 Evaluate a minimum of three of physical and virtual security

measures that can be employed to ensure the integrity of

organisational IT security.

LO3 Review mechanisms to control organisational IT

security

P5 Discuss risk assessment procedures.

P6 Explain data protection processes and regulations as applicable to

an organisation.