TIM7030 Northcentral Week 6 Phishing Spear Phishing Assignment Please see the attached documents for instruction on whats need for these assignemtns. ***PLEASE ENSURE ALL REFERENCES ARE SCHOLARLY RESOURCES***
Instructions
Gathering of evidence is a key step to determine the impact of a security event on a target.
In addition, evidence gathered can also be useful in the audit process. A cybersecurity
professional should be aware of the relevance of the techniques and procedures involved in
gathering and reviewing evidence.
For this task, imagine that the CISO of a healthcare organization has asked you to explain the
following evidence-gathering techniques to an audience of senior-level executives. It may help to
pick a specific healthcare organization with which you are familiar.
•
•
•
•
•
•
•
Structured walkthrough
Observing processes and employee performance
Interviewing appropriate personnel
Reviewing information system documentation
Reviewing information system standards
Reviewing information systems policies and procedures
Reviewing information system organization structure
Keep your audience in mind. Remember you are not preparing this for an academic audience.
Your audience will not care about theoretical or conceptual issues in information security and
healthcare in particular. They will only care about specific issues, strategies, and scenarios that
are relevant to their organization.
Length: 12-15 slides (with a separate reference slide)
Notes Length: 200-350 words for each slide (in lieu of speaker notes, you may record a video
or screen capture of yourself delivering the presentation, upload it to a video-sharing site such as
YouTube, and submit the presentation along with a link to where the video can be viewed).
Be sure to include citations for quotations and paraphrases with references in APA format and
style where appropriate.
***PLEASE ENSURE ALL REFERENCES ARE SCHOLARLY RESOURCES***
***PLEASE ENSURE ALL REFERENCES ARE SCHOLARLY RESOURCES***
Instructions
For this task, imagine that an international organization has hired a national agency to
levy phishing, spear phishing, and whaling attacks on a local competitor. The purpose of the
attacks is to gain unauthorized access to the local company’s business systems at a later date. In
this scenario, the nature of the event is the malicious action by the international organization.
The spam email that is received and accessed by employees of the local competitor results in
users being tricked into providing their logon credentials. The hackers then use the credentials to
gain access to the local competitor’s business systems and information. It is critical that the
events of the attacks be detected quickly because the local competitor is planning a marketing
action, and the international organization could use this hacked information to get to their
product or service to the market sooner.
Write a paper that addresses the following:
1. Differentiate between phishing, spear phishing, and whaling attacks.
2. Delineate risk responses in terms of:
1. Risk Avoidance
2. Risk Acceptance
3. Risk Sharing/Transfer
4. Risk Mitigation
•
Determine risk mitigation through the application of industry best principles and
practices and information security policies.
1. Determine risk mitigation through the application of well-known commercial tools such
as PhishMe and PhishGuru.
2. Develop a plan for monitoring the infrastructure for security-related events.
3. Develop a plan for securing information assets.
•
Provide details on security awareness, training, and education.
Length: 5-7 pages, not including titles and reference pages.
Your paper should demonstrate thoughtful consideration of the ideas and concepts that are
presented in the course and provide new thoughts and insights relating directly to this topic. Your
response should reflect scholarly writing and current APA standards.
***PLEASE ENSURE ALL REFERENCES ARE SCHOLARLY RESOURCES***
Purchase answer to see full
attachment
Science is the pursuit and application of knowledge and understanding of the natural and social…
Clearly stating the definition, the values, the meaning of such values and the type of…
All answered must be typed using Times New Roman (size 12, double-spaced) font. No pictures…
All answered must be typed using Times New Roman (size 12, double-spaced) font. No pictures…
https://www.npr.org/sections/ed/2018/04/25/605092520/high-paying-trade-jobs-sit-empty-while-high-school-grads-line-up-for-university Click on the link above. Read the entire link and answer the questions below…
All answered must be typed using Times New Roman (size 12, double-spaced) font. No pictures…