CISB11  LAB: Network Security & Recovery

Instructions: (25 points maximum)  Create a Word document and name it YourLastName Security Recovery   Completeness of your answers as well as quality, spelling and grammar are part of your score.   When you have finished, save and close your Word document and submit your file at the class

Web site.

The two parts of this assignment will provide an opportunity to recommend solutions to  security issues.  Security affects all of us both in a business and in personal environment.

Part 1: Security Issues

American Insurance does not have a computer security specialist.  In the last two years the  company has experienced the following security problems:

 Terminated an employee for using her supervisor’s password to print confidential payroll information

 Losing productivity because employees use the Internet for personal use instead of doing their job

 An employee accidentally downloaded a computer virus from a web site that damaged his computer

 Confidential customer data was stolen from the company’s server by an outside hacker

 An employee’s laptop computer was stolen off his desk while he was at lunch

1. Start a new Word document with the name YourLastName Security Recovery

2. Hearing how much you learned about computer security in CISB 11, American Insurance  has decided to pay you $50,000 per year to be its new “Director of Information Security”.


i. Type the title: Security Policies and enter a blank line before you type your response.  ii. Using bullet points, briefly explain ten (10) security policies, procedures, and/or

technologies you would put into place during your first year on the job.    a. For each strategy, you must explain one type of security problem that the strategy

would attempt to prevent.     iii. The security problem does not have to be from the list provided above.


Part 2: Disaster Recovery Plan (DRP)

Assume  that  American  Insurance  does  not  have  a  disaster  recovery  plan  (DRP).    A  disaster  recovery plan contains information about how to get a business back up and running AFTER a  natural (earthquake, flood, tornado) or man‐made (bombing, fire) disaster occurs.

3. Under your answer to Part 1 enter a few blank lines, type Disaster Recovery Plan and then  type your answer to the following:


4. Assume that American Insurance does not have a disaster recovery plan.  A DRP is used to  restore business operations after a catastrophic event. You will probably need to research  the Internet for this answer.


i. After you finish part 1, enter a two blank lines   ii. Type the title: Disaster Recovery Plan and enter a blank line before you list your

response.  iii. Briefly list five (5) tasks that should be included in a disaster recovery plan (DRP) for

American Insurance.    a. Bullet points are OK as long as they include enough detail to explain the

task/item you are listing for the DRP.  iv. You will probably need to research using the Internet for this lab.