0% found this document useful (0 votes)
8 views3 pages

Computer Security Risks and Measures

The document discusses computer security risks, specifically malicious code and unauthorized access, highlighting the importance of security measures such as firewalls and employee education. It illustrates a scenario involving an employee, Jaafar, who faced risks due to malware and unauthorized use of office equipment. The conclusion emphasizes the necessity of understanding and implementing computer security practices to protect data and maintain privacy.
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
8 views3 pages

Computer Security Risks and Measures

The document discusses computer security risks, specifically malicious code and unauthorized access, highlighting the importance of security measures such as firewalls and employee education. It illustrates a scenario involving an employee, Jaafar, who faced risks due to malware and unauthorized use of office equipment. The conclusion emphasizes the necessity of understanding and implementing computer security practices to protect data and maintain privacy.
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd

Question 7

“Computer security risk is an event or action that could cause a loss of data or damage to
hardware of software.” ( Computer Hope, 2021). “Security measure is protection against
unwanted disclosure, modification, or destruction of data in a system and also to safeguarding of
systems themselves.” (National Research Coucil, 1990 ). The type of computer risk involve in the
scenario are malicious code and unauthorized access and use.

The first security risk in the scenario is malicious code. “Later, he found out various unrelated
advertisements and asked him to install some applications that appeared on his computer screen.
When he tried to turn on his PC it took longer than usual to start. “Malicious software (malware)
is a computer program designed to create harmful and undesirable effects. It considered as one of
the many dangerous threats for Internet users” (Rosli Salleh, et-all,2016). In Jaafar situation, the
computer has been infected with adware. Adware usually comes when you install a free computer
program that secretly have adware or website that displays an online advertisement in a banner on
web pages. Other example of malicious code is logic bomb. One of a famous logic bomb incident
in 1985, Donald Burleson, was employed as a systems analyst by USPA & IRA Company.
Burleson added an illicit program routine to the company’s IBM System 38 to erase database
entries unless a preset value was reset. On September 21, 1985 Burleson destroyed 168 000 records
of sales commissions owed to employees. In 1988 he gained the dubious distinction of becoming
the first American citizen to convicted of ‘harmful access to a computer’. This case is well-known
and frequently used as an illustration of the potential destruction that a reliable insider might cause.
( Edward Wilding, 2006).

In order to prevent the malicious code, Jaafar need to install a firewall. “Firewalls provide
protection against outside cyber attackers by shielding your computer or network from malicious
or unnecessary network traffic.” ( CISA, 2019) Additionally, firewalls can stop harmful software
from connecting to a computer or network over the internet. A firewall analyses a website based
on predefined rules. It tracks all attempts to access your website and blocks any data that does not
meet its criteria. If you use a firewall for your website, only trusted IP addresses and sources can
access it. For example, you can configure a firewall to block traffic from specific locations or
applications and only allow relevant and important data through. Firewall are a vital component
of computer security in the company. Jaafar also need to make sure constantly update firewall
because it can help against any newly discovered vulnerabilities.

Next, unauthorized access and use. This security risk involved in the scenario, “During his working
hour, he used his office computer to play games. He spends a long time at the computer”.
“Unauthorized access is when a person gains entry to a computer network, system, application
software, data, or other resources without permission.” ( Egnyte, 2021). In this scenario, Jaafar
used office computer to play games without his boss permission which is considered as
unauthorized use. It is because Jaafar use the computer of network for unapproved activities.
Another example of unauthorized access and use is Guessing passwords.” Guessing passwords is
a common entry vector for unauthorized access. Manual password guessing is done using social
engineering, phishing, or by researching a person to come up with information that could be the
password. In scaled attacks, software is used to automate the guessing of access information, such
as user names, passwords, and personal identification numbers (PIN)” ( Egnyte, 2021). This bad
behavior we have to avoid because it damages reputation and credibility and has a lasting impact
on company.

The computer security measure against this security risk in this scenario that Jaafar need to know
is human aspect. The human aspect of cyber security refers to the risks posed to an organization
when people, affiliated with that organization, interact with technology. (Cybsafe, 2018). The
leader of organization need to expose and educate employees about computer security. By doing
this, Jaafar can handle the computer information in a proper way and secure. For example,
employees should know how to use encryption for viewing and exchanging sensitive information.
Other than that, monitoring staff during work time also can prevent staff from been slacking off
and playing games during working hours.

In conclusion, this scenario shows that computer security risk and security measures is crucial
because it keeps our data and privacy. So, in order to protect the information from being leak, we
need to know and learn to handle the technology with more secure. Proper computer security also
helps prevent the computer from the malware and viruses. In this scenario shows that why
computer security education is important to us. Companies need to educate and remind employees
about security risk so that this scenario do not happen again and they may be more careful about
their own security habits.
REFERENCES

WEBSITE:

- Computer Hope. (2021). Computer Security. Retrieved from


[Link]
- CISA. (2019). Protecting Against Malicious Code. Retrieved from
[Link]
- Egnyte. (2021). Unauthorized Access: Prevention Best Practices. Retrieved from
[Link]
access#:~:text=Unauthorized%20access%20is%20when%20a,policy%20is%20considere
d%20unauthorized%20access
- Cybsafe. (2018). What Actually Is “The Human Aspect Of Cyber Security”? Retrieved from
[Link]

JOURNAL:

- Rosli Salleh, N. B. (2016, 11 1). The Rise Of Malware. Journal Of Network And Computer
Applications, 75(C), 58-76. doi:10.1016

BOOK :

- National Research Council, T. N. (1990). Computers at Risk: Safe Computing in the


Information Age. United State: National Academy Press.
- - Wilding, E. (2017). Information Risk and Security: Preventing and Investigating Workplace
Computer Crime. -: Routledge.

You might also like