Ask Management Theories Expert

Exploiting Security Weaknesses Social Engineering

An employee who needs permission to access an electronic workspace, database, or other information systems resource typically fills in a request form and obtains approval from the responsible manager. The manager then routes the request to one of the system's administrators. Highly trusted and well-trained systems administrators spend a significant amount of time doing nothing more technical than adding or removing names from access control lists. In large organizations, it's not unusual for systems administrators to have never met any of the people involved in a specific request. The administrators may not even work in the same office. Hackers have learned to take advantage of this approach to access authorization. They begin by probing an organization. The hacker doesn't expect to compromise the system during this initial probe. He or she just starts by making a few phone calls to learn who is responsible for granting access and how to apply. A little more probing helps the hacker learn who's who within the organization's structure. Some organizations even post this information online in the form of employee directories. With this information in hand, the hacker knows whom to talk to, what to ask for, and what names to use to sound convincing. The hacker is now ready to try to impersonate an employee and trick a systems administrator into revealing a password and unwittingly granting unauthorized access. Organizations determine who needs access to which applications.

They also need a system through which they can authenticate the identity of an individual making a request. Finally, they need to manage this process both effectively and inexpensively.

a. Describe the business problems that this exercise presents.
b. Suggest several ways to reduce an organization's exposure to social engineering.
c. Prepare an orientation memo to new hires in your IT department describing "social engineering." Suggest several ways employees can avoid being tricked by hackers.

Management Theories, Management Studies

  • Category:- Management Theories
  • Reference No.:- M91776931

Have any Question?


Related Questions in Management Theories

Assignment -for this assignment analyze and discuss your

Assignment - For this assignment, analyze and discuss your personal leadership style. Based on your experiences, current readings, work experience, education, and use of self-assessment instruments describe what you thin ...

Assignment -personal reflection 1 -instructions - watch

Assignment - Personal Reflection 1 - Instructions - Watch Milgram's obedience video: Milgram Experiment Proves We Blindly Obey Authority. Consider the following. Christ called his disciples to follow him (Mark 1:17). He ...

Assignment -instructions - please follow instructions for

Assignment - Instructions - Please follow instructions for all for Personal Learning Journal. And each personal learning journal should be of 300words. Each student will keep a personal journal to reflect and record thei ...

Healthcare information technology overview the current

Healthcare Information Technology Overview: The current healthcare industry utilizes a plethora of healthcare information technology (HIT) systems. HIT systems are designed to enhance quality outcomes, prevent adverse ev ...

Archetypes in actionsenge ross smith roberts amp kleiner

Archetypes in Action Senge, Ross, Smith, Roberts, & Kleiner (1994) noted: At its broadest level, systems thinking encompasses a large and fairly amorphous body of methods, tools, and principles, all oriented to looking a ...

Assessment descriptionyou are required to read the

Assessment Description You are required to read the following journal article article: 1. How Risky is Your Company? HBR. May-June 1999 You are also required to read a fictional case study based on a company that will be ...

Discussion - this discussion deals with the important topic

Discussion - This Discussion deals with the important topic of whether money is a motivator for increased job performance and satisfaction. Look at your own history of how you have been compensated, what problems you saw ...

Question - choose a product or technology interview five

Question - Choose a product or technology. Interview five consumers who buy that product and ask them what major problems they have with the product (or what major things they dislike about it). Then ask them to describe ...

Questions -1 choose an industry and then use the library or

Questions - 1. "Choose an industry and then use the library or the Internet to find data from secondary sources that will be highly useful in developing a marketing plan." Start thinking of the industry that relates to t ...

Developing leaders and organisations assessment - report on

Developing, Leaders and Organisations Assessment - Report on Promoting Individual Informal Workplace Learning Brief - You are the newly-appointed Human Resource Advisor in a medium-sized business that employs approximate ...

  • 4,153,160 Questions Asked
  • 13,132 Experts
  • 2,558,936 Questions Answered

Ask Experts for help!!

Looking for Assignment Help?

Start excelling in your Courses, Get help with Assignment

Write us your full requirement for evaluation and you will receive response within 20 minutes turnaround time.

Ask Now Help with Problems, Get a Best Answer

Why might a bank avoid the use of interest rate swaps even

Why might a bank avoid the use of interest rate swaps, even when the institution is exposed to significant interest rate

Describe the difference between zero coupon bonds and

Describe the difference between zero coupon bonds and coupon bonds. Under what conditions will a coupon bond sell at a p

Compute the present value of an annuity of 880 per year

Compute the present value of an annuity of $ 880 per year for 16 years, given a discount rate of 6 percent per annum. As

Compute the present value of an 1150 payment made in ten

Compute the present value of an $1,150 payment made in ten years when the discount rate is 12 percent. (Do not round int

Compute the present value of an annuity of 699 per year

Compute the present value of an annuity of $ 699 per year for 19 years, given a discount rate of 6 percent per annum. As