For each scenario described, (1) identify the potential control issues/threats/vulnerabilities and (2) recommend applicable preventive, detective, and/or corrective control procedures. Please write your answers in well-developed, complete sentences.
The VP of Sales, Donna, has sent you an email relating to the following IT problem:
Something strange is happening. On Friday, our Customer Relationship management (CRM) software was working fine and now Monday morning the software keeps “crashing” on us. Did something happen over the weekend? Do we have any way to correct this problem or identify how to handle in the future? Thanks for your prompt response.
In the given situation, the potential control issue/ theat or vulnerability that would have affectdd the software can be a data theft by any employee or a potential competitor wanting to know about the customers that the company is handling.
The potential preventive control would be to employ logical access and physical controls to restrict the coming of an unknown person near the sofware.
Corrective control would be to use Anti-spyware software that automatically checks and cleans all detected spyware on an employee's computer as part of the logon process for accessing a company's information system
Get Answers For Free
Most questions answered within 1 hours.