SESSION : 1:2021
DEPARTMENT : JTMK
ASSESSMENT : PROBLEM BASED TASK
CODE COURSE: DFT20083
COURSE NAME: SECURITY BASICS AND IT PROFESSIONAL
PROGRAMME DDT SEMESTER 2
DATE 14/11/2021
INSTRUCTION TO CANDIDATES:
2. This paper contains : Subjective (5 questions- Answer All)
(Group of 2 persons)
Num Name Matric No
1 NOR HANIEFA BINTI ABDUL MUFTI 19DDT20F2016
2 MUHAMMAD AIMAN BIN ZAMRI 19DDT20F2017
LECTURER : [Link] BIN ALIAS
Prepared by: Verified by:
(Lecturer ) (Head of Department/Head of Programme/ Head of Course
Course Coordinator)
Date: Date:
PROBLEM BASED TASK
DFT 20083
BASIC SECURITY & IT PROFESSIONAL
TOPIC 2 & TOPIC 3 - CLO2A
Problem Based Task 1 (Group of 2 persons)
Responding to an Attack
As a security administrator, you know all about the different types of attacks that can occur,and
you’re familiar with the value assigned to the data on your system. Now imagine that the log files
indicate that an intruder entered your system for a lengthy period last week while you were away
on vacation.
The first thing you should do is make a list of questions you should begin asking to deal
with the situation, using your network as a frame of reference. Some of the questions you
should be thinking of include the following:
1. How can you show that a break-in really occurred?
2. How can you determine the extent of what was done during the entry?
3. How can you prevent further entry?
4. What should you do next?
The most important question on the list, though, is whom you should inform in your
[Link]’s important to know the escalation procedures without hesitation and be
able to act quickly.
QUESTION: Based on the above situation
1. Explain security policy, based on your organization (PMS/JTMK) (2m)
Security policy based on PMS is data protection and storage security
2. Explain further about the 2 actions taken above. (2m)
-The action taken in data protection is using encryption software to protect and maintain
compliance to strict security standard to prevent unauthorized access.
-For storage security, used the appropriate security technologies to store and secure all
electronic storage and transmission of personal data.
3. Describe 3 physical security activities you can apply in order to prevent any
intrusion to your company’s data from outside of the company’s network. (6m)
I. Access control-Limit and control the access to what people have access to
sites, facilities and material. Limit exposure of certain assets to authorized
personnel only. Examples of these corporate barriers often include ID badges,
keypads and security guards.
II. Surveillance- monitor the activity of different real-world locations and facilities.
example used patrol guard, notification system or CCTV
III. Testing-The only way to ensure that such disaster recover policies and
procedures will be effective when the time comes is to implement active testing.
Example Fire drills are a necessary activity for schools and buildings because
they help to coordinate large groups, as well as their method of response.
4. Explain 3 ways to back up your company’s data. (6m)
I. Cloud backup-backups are created automatically and everything is synced, don’t have to
worry about hardware failures because files are stored in the cloud, and can access files
no matter where we are. In addition, the files are encrypted and kept 100% secure
II. Offsite backup-locally backup your data to external drive and put the storage drive to
another location inside or outside company or other building.
III. Local backup- use a variety of disk storage units to hold backups of data. The most
popular forms of disk storage used are hard drives or optical disks. These systems use
more modern storage methods, backup and recovery can generally be carried out far
quicker than with tape systems, and can be more reliable, especially if take care of
systems and the disks the backups are stored on. It can fit more data on fewer devices,
and this also helps keep costs manageable, and may result in reduced costs over time.
5. Whom you should inform in your organization about this intrusion? Define data breach
and step to handle it. (4m)
I. -The person to inform when there is an intrusion in my organization is person in
charge example, technician in PMS.
II. -Data breach means an incident where information is stolen or taken from a system
without the knowledge or authorization of the system's owner.
III. Steps to handle security breach
Find out what kind of organization data was stolen and corrupted.
Contact your organization financial institution to discuss next steps such as
changing organization account numbers, disputing or canceling fraudulent charges,
and setting up fraud alerts.
Change and strengthen your passwords on all accounts that associated with your
organization.
Check organization free credit reports, this can help your organization to spot errors
and fraud, such as new accounts you didn't authorize.
Look for suspicious activity, monitor organization accounts and look for suspicious
activity. This may include charges or withdrawals you didn't make or new accounts
that appear on your credit report.