Academic Integrity: tutoring, explanations, and feedback — we don’t complete graded work or submit on a student’s behalf.

MINIMUM 300 WORDS PLEASE. Most of the computer attacks could be traced to the fa

ID: 3589379 • Letter: M

Question

MINIMUM 300 WORDS PLEASE.

Most of the computer attacks could be traced to the fact that security engineers do not fully understand the psychology of the users as well as how scammers get to fool their victims.
Attached you will find a very useful article titled "Understanding scam victims: seven principles for systems security". Read the article carefully and address the following questions:

* Do you think understanding scams as an engineer will make the system you design more secure?
* Psychology of the user is a key factor when it comes to system security. Is a security engineer supposed to be a psychologist then?
* Do you have any experience with any of the scams listed on the paper?

Explanation / Answer

* Do you think understanding scams as an engineer will make the system you design more secure?

No we need to follow more things and steps in order to secure the system like:
- Saving and securing all the data of a organisation or a big company.
- In order to align security with the corporate culture we should Understand the values and culture of your organization
- Understand the current Strengths and the Weaknesses, and Opportunities, and Threats in the business.
- Identifying what needs to be done in the company or in an organisation.
- Identifying what should be done first in business.
- Approaches to obtaining funding
- Promoting the work of the team
- we must know How policy protects people, organizations, and information
- we must know the Relationship of mission statement to policy
- we must know the Policy versus procedure.
- we must know the Policy needs assessment.
- we must know the Governing policy
- we must know the Issue-specific policy
- Developing effective metrics and Dashboards in the business
- Learning to innovate with the business so that it will be useful to business development.
- Make more informed purchase decisions to Apply analysis on vendors
- Understand the hackers and attacker motivations and techniques in all aspects
- Understand assets and process of business that are most valuable to the business.
- Learn the strategic planning of kill chain and threat intelligence in all levels.

* Psychology of the user is a key factor when it comes to system security. Is a security engineer supposed to be a psychologist then?

Then the strategies that are available to security engineer would prevent security breaches and the laws, rules, and standards that may be applicable to a company and this possible security breach are:

- Always Change the default passwords for the default users.
- And Do not reuse the same passwords.
- when ever an employee is in leave Always disable the user accounts.
- Always track the logs in the server or systems and examine all kind of security logs in servers.
- Always do the regular network scans in the server or system.
- Always monitor the outbound network traffic in order to avoid the Malware detection.
- Always patch the systems and updates which are available and Keep the operating system and application software up to date.
- Always have plan for security precautions and implement the security plan.
- In between the clients and vendors raise user awareness about the security info.
- And have the management support to implement the security plan.


* Do you have any experience with any of the scams listed on the paper?

Yeah we have used the tools adminer,firebird in order to secure the database which prevent security breaches

- The tool like Adminer which allows to manage databases,tables,columns,users,relations, indexes,
permissions, and user interface using in web.

- The tool like DBComparer which allows to compare and analyse the differences in Microsoft SQL database
structures from an easy-to-use UI.

- The tool called Firebird which is a very powerful and lightweight SQL relational database with open source which is managed onlyu on Windows and Linux.

- The tool called FlySpeed SQL Query which is a database query tool that aims to make working with data easy.

- The tool called HeidiSQL which is a database query tool that supports MySQL, PostreSQL databases and Microsoft SQL Server.

Hire Me For All Your Tutoring Needs
Integrity-first tutoring: clear explanations, guidance, and feedback.
Chat Now And Get Quote