Task 1 - Possible Threats to Companies
Possible Threats There are many different threats that can be harmful to a company’s computer system. They can be internal, like Viruses, or External, like Acts of God.
Here is a list of just a few threats that could compromise or potentially wipe out a company’s IT systems:
Any one of these threats could lead a company to be compromising data of an employee or customer, which would be against the Data Protection Act and could lead to prosecution, or damage to hardware, which would mean the company would have to pay for new hardware. This is just some of the potential problems that could be apparent if these types of threats could happen
![]() Site Referances http://www.westfordcomputer.com/images/virus-detected.jpg - Virus Picture http://watermarked.cutcaster.com/cutcaster-photo-100268975-Data-corruption.jpg - Corruption Picture | ![]() Threats to E-Commerce There are different types of threats that relate to e-commerce. Some include website defacement, which can create a bad image for the company because it shows that the company is not smart enough to go through the right procedures to protect their sight, which can makes customers think that they cannot secure their personal details properly. Another threat could be a DDoS attack. This could render a companies computer systems useless for many hours, depending on the scale of the attack and the amount of skill the technicians have. Other types of risks could be;
|
Task 2 - Secure Your Threats
Security and Recovery To protect against threats you have to use different types of security or recovery. There are 3 main areas of security; Physical, Software and Network and Encryption. Physical Physical security is essential for protecting against malicious damage and theft. Here are a few examples of different types; · Lock and Key (Low security, low cost) · Key code or password (Medium security, medium to high cost) · Biometric - Fingerprint, Retina scan, voice command (High security, high cost) Biometric locks work by using mathematical algorithms which allocate a specific pattern which will link into your fingerprint/retinal image and this pattern will be unique to you and only you. Voice commands work by taking different samples of your voice, in different circumstances, like being ill or in different moods, so that it has a wider variable to be able to know your voice. You can use a combination of one or more of these but the best, in my opinion, is a combination of password and biometric locks. This means if someone has found your password, they still cannot get into the secure area because they need a biometric signature, like your fingerprint and vice versa. Every door that may have any of your companies systems behind needs at least a lock and key. Some systems that store more precious data, like band details or even government information, may need something more sophisticated, like passcode or biometric.
![]() Disaster Recovery Having a disaster revovery plan, in the event of a disaster you will want to get your systems back online as soon as possible, and having one can help this. If you do not have one, it could take days, even weeks to get your systems back online, but even if your sytems are back all the data on them is lost. A data recovery plan should include some key aspects;
| ![]() Software and Network This type of security is crucial for protecting you systems against virus' and data corruption. Here are a few examples; · Firewalls · Anti-virus · Secure Internet Connections · VPNs Firewalls and anti-virus software are crucial for the prevention of unauthorised access or corruption of system files. These can be relatively expensive but they guarantee 99% protection. If you are accessing data from another location, like at home, you would need to use a secure internet connection and a VPN. This is because if you don not, if someone is piggybacking on your home network they could access your company’s servers through your own PC. Encryption Encryption is vital to protect information that you are sending to ther users, for example over email. If you are not encrypting your files before sending, someone could grab the file and look at the data. Encryption works by scrambling up the file into a certain pattern of code, using an algorithm, which can only be decrypted by someone with the algorithm us ![]() |
Site Referances
http://www.techdigest.tv/fingerprint_scanners.jpg - Fingerprint Scan Image
http://pfsensesetup.com/wp-content/uploads/2013/11/77-Free-Clipart-Illustration-Of-A-Computer-Firewall.jpg - Firewall Image
http://www.neponline.co.uk/wp-content/uploads/2012/04/network_monitor.jpg - Network Image




