Question: Side Panel Expand side panel Breadcrumb: Week 1 Discussion PreviousNext For this discussion, you will need to address all of the questions below and be

Side Panel

Expand side panel

Breadcrumb:

Week 1 Discussion

PreviousNext

For this discussion, you will need to address all of the questions below and be sure to participate fully by responding to your classmates and instructor. References are required to support your analysis and citations should be included in APA format.

Consider the following scenario: Paul Gray is the proprietor of a small share trading company that allows individuals to enter the stock market. He is currently running it with manual procedures and communicating with his clients using a free e-mail service provider and Skype telephone. He is planning to convert it to an online share trading company, but he is aware that there are security concerns when doing this. Gray needs his online trading portal to have the following key requirements:

It should allow its registered users to trade from any net-enabled PC.

It should allow real-time portfolio tracking.

It should enable instant credit and money transfer.

Its users should be able to communicate with the company using any e-mail service, free or paid.

You were hired as a security consultant for Gray. You need to respond to the queries below in your initial meeting with Gray.

Answer the following questions:

What are two to three possible security threats to the proposed online trading portal? Who would be interested in attacking the portal and what could the attacker gain by such an attack?

How would you mitigate these security threats? What are a few strategies that could deter or prevent unauthorized use of the portal? At this point, these suggestions can be preliminary and non-technical, but they should suggest means of preventing or deterring attack on the system.

What possible threats exist on Grays current use of free e-mail services? Consider the possible gain an attacker may have from attacking this system and enumerate several reasons why this would be a viable attack. Consider the risk of getting caught attacking this system. When would the payout make the attack worthwhile to the attacker? What factors would make this an undesirable target?

Step by Step Solution

There are 3 Steps involved in it

1 Expert Approved Answer
Step: 1 Unlock blur-text-image
Question Has Been Solved by an Expert!

Get step-by-step solutions from verified subject matter experts

Step: 2 Unlock
Step: 3 Unlock

Students Have Also Explored These Related Databases Questions!