contemporary network security issues

  • Assessment Instructions

Outcomes

The purpose of this assessment task is to apply the student’s understanding and knowledge gained from the weekly content in articulating and writing a report that:

  • analyses contemporary network security issues and develops appropriate mitigation strategies, and
  • evaluates a contemporary network for vulnerabilities.

Overview

Internet of Things (IoT) devices can be used to sense and share data from its surrounding environment for various purposes that can be useful for both humans and machines. These can be as simple as measuring the temperature of a room or more critical tasks such as monitoring the heart-rate of a sick patient in a hospital. The advances in hardware design, communication protocols, and computing technologies have created an ecosystem of a variety of IoT devices by numerous vendors and underlying infrastructure.

The network diagram provided (Figure 1 – see below) illustrates the various IoT devices integrated in a medium sized organisation’s IT network. Table 1 (see below) provides detailed specifications of the devices including hardware, software, and firmware details. Although the network is already secured with various defences, there are several problems that can lead to the organisation being compromised by cyber criminals.

Instructions

You have been hired as an external cyber security consultant to analyse the network for security issues and recommend solutions to mitigate these risks in the form of a technical report. The report is intended to be submitted to the management committee of the organisation. Therefore, highly technical concepts must be further described to a level understood by a novice audience.

Your report should consist of the following:

  • Identify and contextualise two (2) security issues related to the IoT devices and two (2) security issues related to the IT infrastructure. You may consider aspects related to hardware, software, firmware, and protocols.
  • Further support the above security issues by describing an actual attack that has occurred for both IoT and IT.
  • Explain four two vulnerabilities including the CVE that exist in this organisation.
  • Propose and justify solutions to address the issues that you have identified in the task (1).

Please note that discussions related to security policies are beyond the scope of this assessment and therefore should be excluded from your report.

Marking Criteria

Each of the following criteria are worth 8 marks, with a total of 40 marks for the whole assessment.

  • Identification of security issues (two for IoT and two for IT)
  • Actual attacks described for IoT and IT
  • Four Two vulnerabilities/CVE explained
  • Solutions proposed and justified to address the four security issues identified
  • Quality of report based on sources and referencing, depth of research, critique, and writing

Resources

  • Visio file PDF/SVG/draw.io File
  • Report template

Resources

Figure 1:

The above diagram has been created using draw.io for broader compatibility instead of Visio. You can download the file in various formats as indicated below.

Download:

PDF version

SVG version

draw.io version

Visio version

Table 1:

Device Details
Cisco ASA 5585-X Used as the edge firewall for the organisation. Last software/firmware update unknown.
Netgear GS116PP-100AJS Unmanaged network switch.
Linksys WRT1900AC Wireless router using WEP shared key authentication.
Wireless Temperature Sensor Custom built temperature sensor. Waterproof DS18B20 Digital temperature sensor connected to an ESP8266 board. Using MQTT to communicate to an Ubuntu desktop installed in LAN1.
File Server Windows Server 2016
Directory Server Windows Server 2016
Proxy Server Ubuntu Server 16.04 LTS Squid proxy
Mail Server Ubuntu Server 16.04 LTS Postfix 3.2 SquirrelMail 1.4.23 Apache 2 PHP 5
LAN 1 Various Desktop configurations 9 x Windows 10 PCs 1 x Ubuntu Desktop 18.10 running the MQTT broker software for the temperature sensor
LAN 2 Various Desktop configurations 15 x Windows 10 PCs

The post contemporary network security issues appeared first on My Assignment Online.

Reference no: EM132069492

WhatsApp
Hello! Need help with your assignments? We are here

GRAB 25% OFF YOUR ORDERS TODAY

X