

Study with the several resources on Docsity
Earn points by helping other students or get them with a premium plan
Prepare for your exams
Study with the several resources on Docsity
Earn points to download
Earn points by helping other students or get them with a premium plan
Community
Ask the community for help and clear up your study doubts
Discover the best universities in your country according to Docsity users
Free resources
Download our free guides on studying techniques, anxiety management strategies, and thesis advice from Docsity tutors
A detailed analysis of the 2017 equifax data breach, outlining the key vulnerabilities that led to the incident. It proposes a comprehensive solution strategy to address the identified weaknesses, including enhancing it governance, strengthening security measures, improving patch management, enhancing employee training and awareness, and strengthening third-party vendor management. Valuable insights into data security best practices and the importance of proactive risk mitigation in the context of cybersecurity.
Typology: Assignments
1 / 3
This page cannot be seen from the preview
Don't miss anything!
Ronnie Earnest 9/19/ DeVry University Week 3: Course Project - Problem Definition Barham Zuhdi
Problem Statement:
The 2017 Equifax information breach uncovered the individual information of 147 million individuals, causing genuine reputational hurt and undermining partner believe. Destitute IT administration forms at Equifax, counting inadequate security safeguards and a delay in settling known vulnerabilities, were faulted for the occurrence. These issues appear how Equifax's IT administration framework must be settled to keep up the security and protection of client information. “The company was at first hacked by means of a buyer complaint web entrance, with the aggressors utilizing a broadly known helplessness that ought to have been fixed but, due to disappointments in Equifax’s inner forms, wasn’t.” Suggested Arrangement : The taking after steps will be done as portion of the arrangement to address the issue and halt assist violations: Enhance IT Administration Structure : A broad examination of the current rules, strategies, and organizational structure will be conducted to correct the deficiencies in Equifax's IT administration engineering. The IT administration framework's responsibility and decision- making insufficiencies will be found in this ponder. To empower productive oversight and decision-making, a characterized administration structure will at that point be outlined, indicating parts, obligations, and detailing lines. Strengthen Security Measures: An exhaustive chance assessment will be conducted to discover shortcomings in Equifax's framework and frameworks to reinforce its security strategies. Solid security arrangements, measures, and rules will be made and actualized based on the appraisal. These measures will address basic zones counting get to controls, organize security, information encryption, and occurrence reaction. Innovative security innovations like interruption discovery and avoidance frameworks, information misfortune anticipation instruments, and encryption methods will moreover be utilized to move forward the security posture. Improve Patch Management : A specialized group will be shaped to track, screen, and settle known vulnerabilities to ensure incite powerlessness administration. The usage of an proficient fix administration strategy will incorporate schedule framework filtering and assessment, prioritizing fixes, and fast fix sending to diminish defenselessness presentation. Moreover, customary reviews and evaluations will be conducted to analyze the effectiveness of the patch management procedure and pinpoint improvement opportunities. Enhance Employee Training and Awareness : To advise staff individuals approximately IT governance, security best hones, and their basic part in maintaining information security, Equifax will make a intensive preparing program. To move forward worker understanding of cybersecurity threats, visit security mindfulness campaigns, workshops, and recreated works out will be held in expansion to preparing. These programs look for to advance a climate of obligation and security mindfulness. Equifax will too set up a announcing framework so that staff individuals can trust in one another regarding potential security concerns. To resolve their concerns, continuous back and coaching rapidly and effectively will be offered.