subject

Given the data below that was collected during a risk identification and assessment initiative, answer the questions below. Asset ID Information Asset Asset Weighted Score
A Internet Gateway Network 50
Component
B e-commerce web server 80
An evaluation of the provided asset vulnerabilities results in:
Asset A: This is a network component that has two vulnerabilities. The first vulnerability involves a traffic overflow condition with a likelihood of 0.2 with a current control to address 40% of its risk. The second vulnerability involves a DoS attack likelihood of 0.4 with a current control to address 90 % of its risk.
Asset B: This is a web server that deals with e-commerce transactions. It has one vulnerability with a likelihood of 0.25 with a current control to address 60 % of its risk.
Let: Like=Likelyhood
AWScore=Asset
Weighted Score Control=Current Control Assumption= (1 - decimal value of the % Accuracy of Assumptions) IE: (1-6) or 4 Risk Rating = (AWScore *Like) - (AWScore*Like) *Control) + ((AWScore *Like) *Assumption) It is estimated that Assumptions and data on all assets are 80 % accurate.
a. Compute the relative risk ratings for each asset/vulnerability pair. Show your work.
b. Which asset/vulnerability needs to be examined first for implementing an additional control?
c. Which asset/vulnerabilities have residual risk?

ansver
Answers: 3

Other questions on the subject: Computers and Technology

image
Computers and Technology, 22.06.2019 23:30, TheBurntToast
What is the digital revolution and how did it change society? what are the benefits of digital media?
Answers: 1
image
Computers and Technology, 23.06.2019 08:00, ionmjnm3041
The managing director of a company sends a christmas greeting to all his employees through the company email. which type of network does he use? he uses an .
Answers: 3
image
Computers and Technology, 23.06.2019 11:00, danielcano12281621
Sports and entertainment class, your goal is to increase attendance and make a profit for a game by getting your team on a winning track with total salaries less than $3,000,000
Answers: 3
image
Computers and Technology, 23.06.2019 11:20, 1tzM3
Http is the protocol that governs communications between web servers and web clients (i. e. browsers). part of the protocol includes a status code returned by the server to tell the browser the status of its most recent page request. some of the codes and their meanings are listed below: 200, ok (fulfilled)403, forbidden404, not found500, server errorgiven an int variable status, write a switch statement that prints out the appropriate label from the above list based on status.
Answers: 2
You know the right answer?
Given the data below that was collected during a risk identification and assessment initiative, answ...

Questions in other subjects:

Konu
Social Studies, 18.10.2019 05:00