[SOLVED] IT Audits and Planning

Topic: The purpose of this lab is to recognize the risks, threats, and vulnerabilities commonly found in the workstation domain. You will identify known vulnerabilities and exploits on the Common Vulnerabilities and Exposures (CVE) database listing. You will describe how risks, threats, and vulnerabilities or misconfigurations at the operating system level in the workstation domain might expose that workstation. You will also identify steps to harden the workstation domain operating system and applications installed on the user’s workstation for compliance and safeguarding of sensitive data and access to that data. Finally, you will apply Department of Defense (DoD) guidelines for securing the workstation domain, including the review and assessment of Windows 10 and Windows 2016 security guidelines. Participate in each section of the lab and follow the instructions for the exercises in each section. You will use a text document to develop your homework assignment by completing the sections listed below: Lab 5.1a Review the following scenario: You are a security consultant for an information systems security firm and have a new healthcare provider client under the Health Insurance Portability and Accountability Act (HIPAA) compliance. Your new client wants to know the requirements and business drivers for securing the workstation domain in its healthcare environment. Your new client requires compliance with HIPAA. Similarly, your firm has a DoD client that also wants you to perform a workstation domain compliance audit per DoD workstation hardening guidelines and baseline requirements. In your homework assignment, discuss how the compliance law requirements and business drivers for the healthcare provider’s workstation domain might differ from the DoD’s workstation domain security compliance requirements. Lab 5.1b Launch your Web browser. Navigate to the following website: http://cve.mitre.org/. Review the site, and then in your homework assignment, identify the risks, threats, and vulnerabilities commonly found in the workstation domain. Launch your Web browser. Navigate to the following website: https://public.cyber.mil/stigs /. Review the Security Technical Implementation Guides (STIGs) available and the proper implementation of security based on DoD’s workstation/desktop hardening guidelines. In your document, discuss three STIGs and the DoD’s workstation/desktop hardening guidelines. Lab 5.1c Launch your Web browser. Navigate to the following website: https://public.cyber.mil/stigs/ View and Download STIGs Search for the ‘Desktop Application’ Security Technical Implementation Guide (Version 4, Release 5) document from the STIG database website. Sunset-Desktop Applications General STIG-Ver4, Rel 5 Review the following concepts from this overarching DoD standards document, and, in your homework assignment, discuss the significant points of two of these topics: Appropriate backup strategy does not exist Public instant message clients are installed Peer-to-Peer clients or utilities are installed Execution Restricted File Type Properties Open-restricted File Type Properties You can view the contents of the STIG by visiting the following site: https://vaulted.io/library/disa-stigs-srgs/desktop_applications_general Lab 5.1d Launch your Web browser. Type the following Web address: https://public.cyber.mil/stigs/ Using the search tool search for and review Microsoft Windows Firewall STIG and Advanced Security. View the STIG. Determine which technical controls are appropriate for the Windows OS. Note these in your text document. The STIGs Master List (A to Z) link can be found at this link: https://public.cyber.mil/stigs/downloads/ Scroll down the list to locate and then download the following Windows OS security guideline documents/zip files: Windows 10 STIG (you will see several Windows 10 STIG options; click the one with only a Version number and a Release number after STIG). Microsoft Windows 10 STIG Ver 1, Rel 20 Windows 2016 STIG (you will see a couple of Windows 2016 STIG options; click the one with only a Version number and a Release number after STIG). Microsoft Windows Server 2016 STIG Ver 1,Rel 10 Once you have downloaded the Windows 10 STIG ZIP file to your desktop, double-click the ZIP file to extract the Windows 10 STIG folder. Double-click the folder to open it, double-click the Windows 10 Manual STIG ZIP file to extract the Windows 10 Manual STIG folder, double-click the folder to open it, and then double-click the Windows 10 STIG Manual XML file to open it. For help in viewing an XML file, watch the this video on How to Easily View a STIG XML file Review the following concepts. In your Microsoft Word document, list each of these and discuss a significant point about each one: display shutdown button, clear system pagefile, removable media devices, halt on audit failure, and security configuration tools. Next, you will work with the Windows 2016 STIG ZIP file on your desktop. Double-click the ZIP file to extract the Windows 2016 STIG folder. Double-click the folder to open it, double-click the Windows 2016 DC Manual STIG ZIP file to extract the Windows 2016 DC Manual STIG folder, double-click the folder to open it, and then double-click the Windows 2016 DC STIG Manual XML file to open it. Review the following concepts and vulnerabilities for configuring and hardening Windows 2016 Domain Controllers. In your document, list each of these and discuss a significant point about each one: system recovery backups, caching of logon credentials, dormant accounts, recycle bin configuration, password uniqueness, and printer share permissions. Lab 5.1e Navigate to the following website: http://cve.mitre.org/ Review the National Cyber Security Division of the U.S. Homeland Security Department’s CVE listing hosted by the Mitre Corporation. To access the CVE listing, click CVE List in the left-hand column to reach the CVE List main page. In your homework assignment, discuss how workstation domain OS and application software vulnerabilities are housed in the CVE listing. Next, click the National Vulnerability Database link on the CVE homepage or CVE List main page. In your text document, discuss how vulnerabilities are housed in the National Vulnerability Database. Discuss how this is both a security control tool and an attack tool used by hackers Lab 5.2 Write an executive summary to discuss the top workstation domain risks, threats, and vulnerabilities, and include a description of the risk mitigation tactics you would perform to audit the workstation domain for compliance. Use the U.S. DoD workstation hardening guidelines as your example for a baseline definition for compliance.

 

So much stress and so little time? Take care of yourself: let us help you with your task on
[SOLVED] IT Audits and Planning
Get a 20% Discount on this Paper
Get Help Now

Haven’t found relevant content or pressed for time? –Don’t worry,  you have a team of IT Management professionals to help you.

All you need to do is fill in the order form in the upper right corner and upload the files that are crucial for your assignment. Also, don’t forget to specify whether your assignment has to be based upon specific research, theory, method, or program. After that, we will assign the most suitable expert to complete your assignment. You can always chat with your expert and ask any questions you have during the working process.

Calculate the price
Make an order in advance and get the best price
Pages (550 words)
$0.00
*Price with a welcome 15% discount applied.
Pro tip: If you want to save more money and pay the lowest price, you need to set a more extended deadline.
We know how difficult it is to be a student these days. That's why our prices are one of the most affordable on the market, and there are no hidden fees.

Instead, we offer bonuses, discounts, and free services to make your experience outstanding.
How it works
Receive a 100% original paper that will pass Turnitin from a top essay writing service
step 1
Upload your instructions
Fill out the order form and provide paper details. You can even attach screenshots or add additional instructions later. If something is not clear or missing, the writer will contact you for clarification.
Pro service tips
How to get the most out of your experience with Do My Homeworkk
One writer throughout the entire course
If you like the writer, you can hire them again. Just copy & paste their ID on the order form ("Preferred Writer's ID" field). This way, your vocabulary will be uniform, and the writer will be aware of your needs.
The same paper from different writers
You can order essay or any other work from two different writers to choose the best one or give another version to a friend. This can be done through the add-on "Same paper from another writer."
Copy of sources used by the writer
Our college essay writers work with ScienceDirect and other databases. They can send you articles or materials used in PDF or through screenshots. Just tick the "Copy of sources" field on the order form.
Testimonials
See why 20k+ students have chosen us as their sole writing assistance provider
Check out the latest reviews and opinions submitted by real customers worldwide and make an informed decision.
Classic English Literature
Much appreciated - thank you very much!
Customer 452493, April 13th, 2022
Philosophy
The paper was done to my satisfaction. Thnk you.
Customer 452443, November 18th, 2021
Finance
Thank you
Customer 452445, September 8th, 2021
Management
Job done to satisfaction. Thank you!
Customer 452443, October 31st, 2021
Economics
THANK YOU! :)
Customer 452493, April 12th, 2022
Other
Thank you!
Customer 452493, May 29th, 2022
Philosophy
Thank you! Will definitely use the writer again.
Customer 452443, October 22nd, 2021
Nursing
Excellent! Followed directions and completed a great paper
Customer 452445, August 22nd, 2021
Chemical Engineering
Amazing. The writer delivered the draft earlier than expected, lol. I am pleased with the work; I hope my supervisor will like it too.
Customer 452443, September 1st, 2021
Leadership Studies
This is great! Thanks a bunch
Customer 452485, March 1st, 2022
Chemistry
Excellent services!
Customer 452443, November 11th, 2021
Finance
Excellent. Thnk you
Customer 452443, October 22nd, 2021
11,595
Customer reviews in total
96%
Current satisfaction rate
3 pages
Average paper length
37%
Customers referred by a friend
OUR GIFT TO YOU
15% OFF your first order
Use a coupon FIRST15 and enjoy expert help with any task at the most affordable price.
Claim my 15% OFF Order in Chat