MIS607 Cybersecurity Threat Model Report

MIS607 Cybersecurity Threat Model Report
ASSESSMENT 2 BRIEF
Subject Code and TitleMIS607 Cybersecurity
AssessmentThreat Model Report
Individual/GroupIndividual
Length1500 words (+/- 10%)
Learning OutcomesThe Subject Learning Outcomes demonstrated by successful completion of the task below include: Explore and articulate cyber trends, threats and staying safe in cyberspace, plus protecting personal and company data.Analyse issues associated with organisational data networks and security to recommend practical solutions towards their resolution.Evaluate and communicate relevant technical and ethical considerations related to the design, deployment and/or the uses of secure technologies within various organisational contexts.
Submission  Due by 11.55 pm AEST Sunday end of Module 4.1
Weighting30%
Total Marks100 marks

Task Summary

The goal of assessment 2 (A2) is to identify threats/vulnerabilities in the case scenario described in the associated file, Assessment Initial Case Scenario.docx. Not all threats/vulnerabilities you “discover” are in the initial case scenario. The scenario discusses some elements of the business that are needing mitigation, but you will need to also “discover” other threats/vulnerabilities.

The word count for this assessment is 1,500 words (±10%), not counting tables or figures. Tables and figures must be captioned (labelled) and referred to by caption (note that publishers do not guarantee tables and figures to be placed the same order or location as in your article). Caution: Items without a caption may be treated as if they are not in the report.

Be careful not to use up word count discussing cybersecurity basics. This is not an exercise in summarising your class notes, and such material will not count towards marks.

The report will not be marked without an Academic Integrity Declaration (see below).

DFD Requirements

The DFD must relate to the business described in the initial case scenario. Remember, the DFD is the first step in the risk analysis, but it is not the main output of the assessment. The main output is the categorised threats, see below.

For the DFD, you need at least a context diagram and a level-0 diagram. You can include further levels if you feel they are needed to show a threat boundary, but this is not necessary. The level-0 diagram (and further level diagrams, if needed) must not break the rules for proper DFD formation. And the DFDs (excluding the context diagram) must have labelled threat boundaries.

You must use the symbol convention shown in classes:

Threat Discovery

The main output of A2 should be a set of no less than 10 threats or vulnerabilities that need mitigation in the organisation. You will discover these with the help of the DFD and the threat boundaries.

The main threat for this assessment resembles a real-world attack. You need to develop a brief, factual overview of the real-world attack (web links can count as references here since the attack might not yet be covered academically). You are required to reference suggested mitigations, or costs in the real-world attack, this will help enormously with both A2 and A3 and will be taken into consideration when marking. Note carefully that any explanation of the real-world case is based on real information/data, not speculation or simulated “discovery”.

It is important to understand that you need to “discover” additional threats/vulnerabilities on the associated initial case scenario. The scenario is only an initial assessment of the organisation. Your “discovery” can be simulated, based on your simulated investigation.

Obviously, you must cover the main threats already identified in the scenario, but other threats/vulnerabilities should be “discovered” by you.

Inform the reader about what discovery techniques were used. In dot points inform the audience…..who you talked to, questions you asked – but keep this very brief…8-10 dot points max.

Imagine yourself as a consultant called in to work inside the business to discover threats.

For this assignment, business acumen and business logic in approaching threats is what is required of you.

STRIDE methodology will be used for the reports. Note carefully that the DFD itself is not the main output of the assignment. The main result of the report is a set of threats or vulnerabilities. Important points are:

  • Try to map these threats/vulnerabilities as best you can against threat boundaries;
  • and categorize them as best you can against STRIDE categories. The STRIDE categories are not the threats.

Do not be concerned if the threats you discover do not fit all STRIDE categories. In a full, real-world assessment with hundreds of threats, this would be the case, but with around 10 threats this will probably not be possible. Try to cover at least three.

You can make assumptions, but the report is written from the point of view of a consultant who has made “discoveries” from their investigations. In the simulation you may gather needed information from stakeholders. Assessment markers are aware that the technical information “discovered” by you might not be 100% accurate in all details. However, your discoveries should be somewhat realistic.

Reference Requirement

For A2 the requirement is a minimum of 3 references overall. You can have as many references as you like, but a minimum of 3.

At least one of the references needs to be a reference to a peer reviewed journal or conference article. (This will change for A3.)

Report Structure & Format

The report should have the following heading structure.

·        Title Page

With subject code and name, assignment title, student’s name, student number, and lecturer’s

name. Also include AI declaration.

·        Executive Summary

This should be written after the report and should briefly summarise what you did and what you found. It should be capable of being read by management generally, even those with relatively little IS experience.

·        Body of the Report

DFD

threat discovery

threat list and STRIDE categorisation

·        Conclusion

Summarise major findings or recommendations that the report puts forward.

·        References

Use only APA style for citing and referencing. Please see more information on referencing

·        Appendix

An appendix is not necessary but place it here if you intend to use one.

The report should use Arial or Calibri fonts, 11 point. It should be line spaced at 1.5 for ease of reading, and have page numbers on the bottom of each page.

Possible Later A2 Remediation

If you do not perform so well with A2 (less than 60%), you will need to fix issues noted in A2 and include this in appendix in your A3. There will be no marks for the remediation of A2.

Academic Integrity Declaration

The following must be included in the report. The report will be marked late until it is included.

I declare that, except where I have referenced, the work I am submitting for this assessment task is my own work. I have read and am aware of the Torrens University Australia Academic Integrity Policy and Procedure viewable online at.

I am aware that I need to keep a copy of all submitted material and their drafts, and I will do so accordingly.

Submission Instructions

Submit Assessment 2 via the Assessment link in the main navigation menu in MIS607 Cybersecurity. The Learning Facilitator will provide feedback via the Grade Centre in the LMS portal. Feedback can be viewed in My Grades. Any uploaded files must be in Word (.doc or .docx) format.

Tips:

You are advised to read the case study, several times. Then read through this brief and note requirements. You can also to read the rubric.

Discovery techniques can include interview, questionnaire, observation, documentation. You may have others. So, to “discover” vulnerabilities you can use one of these techniques.

Leading into A3, try to concentrate on threats with corresponding controls, e.g.

  • week passwords: password policy and/or 2 factor,
  • Fire: fire alarms and extinguishers and/or fire insurance,
  • Theft: CCTV system.

Assessment Rubric

CriteriaRatingsPts
Citation practice and  
engagement with relevant 
literature Cited material and 
citations related to 
      
report APA citation style,20 Pts High Distinction15-19 Pts Distinction13-14 Pts Credit11-12 Pts Pass0-10 Pts NN 
At least one peer- reviewed article,All elements met well. Also, peer-reviewed articles of good quality. Citations are relevant to the articleAlmost all elements inMost elements metAbout half theLess than half the20 pts
3 or more references,Correct citation, correctcontent. More than one citation. Citation relates to the main topic of the article, not just a side issue.evidence elements metelements 
referencing,  
Peer-reviewed 
citation(s) used more 
than once. 
DFD and Threat Boundaries Diagrams related to  
20 Pts High Distinction All elements met well. At the highest level, DFD should be a close representation of the case business, and threat boundaries should be high quality with recognised threats against boundaries.15-19 Pts Distinction Almost all elements in evidence    
case scenario13-14 Pts11-12 Pts0-10 Pts 
All data flows start or end in a processAt least context diagram and level-0 diagramProperly recognisedCredit Most elements metPass About half the elements metNN Less than half the elements  20 pts
 
entities, data stores, 
CriteriaRatingsPts
data flows and processes All elements appropriately named, including data flowsVerbs used in processes (not in context diagram)Threat boundaries namedThreat boundaries make sense  
Threat Discovery At least 10 threats clearly identifiedReal-world attack in the case scenario timeline and brief explaination,Real-world attack covered in the threat list,Threats mapped against STRIDE categoriesThreats cover vulnerabilities in management, operational, and technical processes.                 35 pts
35 Pts High Distinction All elements met well. Also, threat list is very clear and easy to read for all, including stakeholders with little cybersecurity experience26-34 Pts Distinction Almost all elements in evidence22-25 Pts Credit Most elements met19-21 Pts Pass About half the elements met0-18 Pts NN Less than half the elements
 
CriteriaRatingsPts
Overall threat “discovery” techniques explained well, with a few discussed in more detail. Threats make sense in the case scenario (e.g. appropriate for the size of the organisation)List of threats  
Communication &  
Presentation Writing is persuasive, 
logical and 
communicates meaning 
clearly. 
      
Uses appropriate15 Pts12-14 Pts10-11 Pts8-9 Pts0-7 Pts 
vocabulary consistently. Spelling and punctuation completely accurate. Consistently integratesHigh Distinction All elements met well. Full marks requires exceptionally clear communication.Distinction Almost all elements in evidenceCredit Most elements metPass About half the elements metNN Less than half the elements  15 pts
 
research and ideas from 
relevant and 
appropriate sources 
Consistently uses 
accurate references, 
CriteriaRatingsPts
appropriately positioned. Executive summary is appropriate for a business report, is in past tense, summarises what has been done, and is not a mere covering of basic theory from classesDemonstration of topics and principles acquired from course material; use of relevant theories, concepts and frameworks to support analysis; own input, insight and interpretation.  
Basic formatting and  
submission requirements Captioning of all figures, 
10 Pts8-9 Pts6-7 Pts4-5 Pts0-3 Pts 
etc. and referred to only by caption Format of Word fileCorrect file submission and Word formatHigh Distinction All elements met well. Layout very clear and tidyDistinction Almost all elements in evidenceCredit Most elements metPass About half the elements metNN Less than half the elements  10 pts
 
Page numbers 
CriteriaRatingsPts
Correct Title PageCorrect Heading Structure  
Total points: 100
Order Now

Get expert help for MIS607 Cybersecurity Threat Model Report and many more. 24X7 help, plag free solution. Order online now!

Universal Assignment (March 26, 2023) MIS607 Cybersecurity Threat Model Report. Retrieved from https://universalassignment.com/mis607-cybersecurity-threat-model-report/.
"MIS607 Cybersecurity Threat Model Report." Universal Assignment - March 26, 2023, https://universalassignment.com/mis607-cybersecurity-threat-model-report/
Universal Assignment February 2, 2023 MIS607 Cybersecurity Threat Model Report., viewed March 26, 2023,<https://universalassignment.com/mis607-cybersecurity-threat-model-report/>
Universal Assignment - MIS607 Cybersecurity Threat Model Report. [Internet]. [Accessed March 26, 2023]. Available from: https://universalassignment.com/mis607-cybersecurity-threat-model-report/
"MIS607 Cybersecurity Threat Model Report." Universal Assignment - Accessed March 26, 2023. https://universalassignment.com/mis607-cybersecurity-threat-model-report/
"MIS607 Cybersecurity Threat Model Report." Universal Assignment [Online]. Available: https://universalassignment.com/mis607-cybersecurity-threat-model-report/. [Accessed: March 26, 2023]

Please note along with our service, we will provide you with the following deliverables:

Please do not hesitate to put forward any queries regarding the service provision.

We look forward to having you on board with us.

Get 90%* Discount on Assignment Help

Most Frequent Questions & Answers

Universal Assignment Services is the best place to get help in your all kind of assignment help. We have 172+ experts available, who can help you to get HD+ grades. We also provide Free Plag report, Free Revisions,Best Price in the industry guaranteed.

We provide all kinds of assignmednt help, Report writing, Essay Writing, Dissertations, Thesis writing, Research Proposal, Research Report, Home work help, Question Answers help, Case studies, mathematical and Statistical tasks, Website development, Android application, Resume/CV writing, SOP(Statement of Purpose) Writing, Blog/Article, Poster making and so on.

We are available round the clock, 24X7, 365 days. You can appach us to our Whatsapp number +1 (613)778 8542 or email to info@universalassignment.com . We provide Free revision policy, if you need and revisions to be done on the task, we will do the same for you as soon as possible.

We provide services mainly to all major institutes and Universities in Australia, Canada, China, Malaysia, India, South Africa, New Zealand, Singapore, the United Arab Emirates, the United Kingdom, and the United States.

We provide lucrative discounts from 28% to 70% as per the wordcount, Technicality, Deadline and the number of your previous assignments done with us.

After your assignment request our team will check and update you the best suitable service for you alongwith the charges for the task. After confirmation and payment team will start the work and provide the task as per the deadline.

Yes, we will provide Plagirism free task and a free turnitin report along with the task without any extra cost.

No, if the main requirement is same, you don’t have to pay any additional amount. But it there is a additional requirement, then you have to pay the balance amount in order to get the revised solution.

The Fees are as minimum as $10 per page(1 page=250 words) and in case of a big task, we provide huge discounts.

We accept all the major Credit and Debit Cards for the payment. We do accept Paypal also.

Popular Assignments

BAFI1002 Financial Markets: FX Dealing Session Report

Introduction: This is a written report authorised by Snowy River Ltd to deliver and improve the trading strategy for a renowned FX trading company. Due to the high market uncertainty caused by the coronavirus pandemic so that its profitability can be enhanced in the upcoming future. BAFI1002 Financial Markets –

Read More »

Binomial Trees and Properties of Options

In this question, you need to price options with binomial trees. You will consider puts and calls on a share with spot price of $30. Strike price is $34. Furthermore, assume that over each of the next two four-month periods, the share price is expected to go up by 11%

Read More »

Enterprise Risk Management Assignment

ASSESSMENT FEEDBACK TO BE FILLED BY THE ASSESSOR Assessment types Marks Marks Awarded Executive Summary 7   Introduction 8   Literature Review 20   Application of Theory to Practice 20   Developing Risk Management 25   Conclusion & Recommendation 10   References 10   Overall Marks 100   Overall Grade

Read More »

CAPM Assignment Help

Year                    After tax cash flow (2 marks)                                             USD Initial cash outlay              80000 Discount rate                        10% Expected cash flow(end of the year)    Y1 = 20000                                                                      Y2 = 20000 till Y6 20000    Telex Ltd is an all-equity financed firm and is considering the following projects: Project           Beta              Expected Return A                 

Read More »

GGR240: Geographies of Colonialism in North America

This assignment requires you to build on the research you conducted for Assignment 2 and craft a seven-to-eight-page expository essay (maximum 2000 words, before notes and bibliography) on the topic you chose for that Assignment. (If you wish to change your topic, please discuss it with me.) Your essay MUST

Read More »

FIN4001 Introduction to Finance Assignment

Date for Submission: Please refer to the timetable on ilearn (The submission portal on ilearn will close at 14.00 UK time on the date of submission) Page 1 of 11 [1289] As part of the formal assessment for the programme you are required to submit an Introduction to Finance assignment.

Read More »

SOE11144- Global Business Economics and Finance

Project 1 A. Project background Story of ScotchExtract taken from the Scotch Whisky Association web page. Scotch Whisky must, by law, be distilled and matured in Scotland in oak casks for at least three years and bottled at a minimum alcoholic strength of 40% abv. The robust legal protection of

Read More »

ACT305 CORPORATE ACCOUNTING

Submission Requirements. UNIT CODE: ACT305 UNIT NAME: CORPORATE ACCOUNTING Assignment Information Semester 2 2021 Assessment 20% This assignment is to be submitted before 23.59pm Friday 29th October in Week 11 Assignments are to be submitted by one of the following means; DO NOT LODGE BY FAX nor EMAIL nor at

Read More »

MITS4002 OBJECT-ORIENTED SOFTWARE DEVELOPMENT

MITS4002 OBJECT-ORIENTED SOFTWARE DEVELOPMENT Activity 03 Weightage: 15% Due date: Sunday Lesson 04 11:59 PM       Late penalty applies on late submission, 10% per day would be deducted 0 mark for LATE Submission more than one week     You will be marked based on your submitted zipped

Read More »

PROJECT MANAGEMENT OVERVIEW (PRJM6000)

Assessment One Learning Objective PART A (PROJECTS) (700-1100 words) – ( 35 marks) You have learnt the key characteristics of projects in Topic 1 of this unit. Part A requires you to apply this knowledge and any further research to a real project. (400-500 words) (15 marks) PART B (PROJECT

Read More »

CVEN6005 – Advanced Hydraulics & Hydrology

Assignment Brief – Part 1 Unit CVEN6005 – Advanced Hydraulics & Hydrology Assignment Weight 25% of unit     Issue Date w/c 27th February 2023 Due Dates 23:59, 22nd April 2023 (Part 1A) 23:59, 6th May 2023 (Part 1B)     Group Size Maximum 2 students per group Students completing

Read More »

Assignment 1: Identifying a Research Problem

Guideline 1: Choose an appropriate area of enquiry. The area of inquiry that you choose must: Guideline 2: Adhere to best practices for each component of the ‘Introduction’ chapter. Guideline 3: Use academic English throughout your project. You must incorporate these elements to ensure that your project is professional and

Read More »

The Global Economy Assignment help

Unit Name: The Global Economy Answer all the questions below. Question 1 (this question has three parts, (a), (b) & (c)) Country A Country B phones computers phones computers 1000 0 600 0 500 200 400 300 0 400 0 800 (i) Can you tell which country has a comparative

Read More »

MAE 203 The Global Economy Estimated Reading

DEAKIN UNIVERSITY FACULTY OF BUSINESS AND LAW Department of Economics FINAL EXAMINATION TRIMESTER 1, 2021 Unit Code: MAE 203 Unit Name: The Global Economy Estimated Reading Time: 15 minutes Estimated Working Time: 2 hours Estimated time for preparing and submitting your final responses to CloudDeakin Dropbox: 45 minutes This is

Read More »

Property Asset Finance Assignment

QUESTION 1 (This question has three parts, (a) , (b) and (c) ) Discuss the following questions in detail: QUESTION 2 (This question has three parts, (a), (b) and (c)) QUESTION 3 (This question has three parts, (a), (b) and (c)) Abacus Property Group, a diversified property group listed on

Read More »

ICT201 BUSINESS INFORMATION SYSTEMS

COURSE:                                 BACHELOR OF ACCOUNTING UNIT:                                       ICT 201 BUSINESS INFORMATION SYSTEMS ASSESSMENT TASK:                                    ASSIGNMENT 2 ASSESSMENT MARKS:            30% DUE DATE:                              Week 12 ASSESSMENT INSTRUCTIONS The second assignment provides an opportunity to applied knowledge of the concept of data and information and business information systems for the purpose of strategic and operational

Read More »

Critically evaluate the auditors’ role in detecting financial statement frauds

Semester April 2021 Module Code ACC4304 Module Title Auditing Coursework Structure Essay (1,800 words) Assignment Weighting 40% Assignment Title Critically evaluate the auditors’ role in detecting financial statement frauds. Coursework Submission Deadline Date: Week 13 of April 2021 Session Time: 5pmMethod: SafeAssign via Blackboard Assessment Criteria Learning Outcomes: Knowledge and

Read More »

Computer Security Vulnerabilities and Countermeasures

Computer Security (CSI1101) Case Study:                  Computer Security Vulnerabilities and Countermeasures Weighting:                    40% of the final mark of the unit Due Date:                     Check Blackboard under Assessment à Assignments à Assessment Overview Word count:                 3500 words excluding the Title Page, Table of Contents, Reference list, and Appendices (if you wish to add).

Read More »

System Analysis & Design

To make this assignment (and thus the module) more relevant and interesting for you, rather than give all students the same fixed (and artificial) case study, you will select your own realworld case study and then apply the concepts and techniques you have learned from this module to that case

Read More »

CBOP3103 OBJECT ORIENTED APPROACH IN SOFTWARE DEVELOPMENT

_________________________________________________________________________ CBOP3103 OBJECT ORIENTED APPROACH IN SOFTWARE DEVELOPMENT PENDEKATAN BERORIENTASIKAN OBJEK DALAM PEMBANGUNAN PERISIAN MAY 2021 SPECIFIC INSTRUCTION / ARAHAN KHUSUS Jawab dalam BAHASA INGGERIS atau BAHASA MELAYU. Jumlah patah perkataan: 2500 – 3000 patah perkataan tidak termasuk rujukan. Hantar tugasan SEKALI sahaja dalam SATU fail. Tugasan ini dihantar secara

Read More »

Assignment 2: Case study – Template and tips

Assignment 2: Case study – Template and tips Contents Overview of the assignment………………………………………………………………………………… 2 Aim of the Case Study assignment…………………………………………………………………….. 2 Selecting a behaviour……………………………………………………………………………………… 2 Overview of structure…………………………………………………………………………………….. 3 General formatting notes………………………………………………………………………………… 3 Frequently Asked Questions…………………………………………………………………………….. 3 Assignment structure………………………………………………………………………………………… 5 HEADING: Reason for Referral………………………………………………………………………….. 5 HEADING: Assessment……………………………………………………………………………………. 5 SUBHEADING: Behaviour

Read More »

BUSM4741 Financial Analytics for Managerial Decisions

Graduate School of Business and Law — Course Code: BUSM4741 Subject Name: Financial Analytics for Managerial Decisions Assessment # 1: Reflective Exercises Assessment Type: Individual Reflections Word limit: 2,000 (+/– 10%)   Due date:     Weighting   Sunday of Week 3, 23:59 (Melbourne time)     20 %  

Read More »

PROJ6004: Contracts and Procurement

ASSESSMENT BRIEF – Assessment 2 Subject Code and Title PROJ6004: Contracts and Procurement Assessment Assessment 2: Contracts and Procurement Review of the case study and associated Learning Resources, including detailed analysis of findings. Individual/Group Individual Report Length 2400 words Learning Outcomes Critically evaluate the risks associated with contract and procurement

Read More »

FINANCIAL MANAGEMENT (FM202B)

ASSIGNMENT 1: 2nd SEMESTER 2021 FINANCIAL MANAGEMENT (FM202B) Please note that this assignment consists of three sections, all of which should be completed. SECTION 1 Working capital [10] Extract from Shoprite Holdings group financial statements   Rm Rm   2020 2019 Revenue 83 430 79 711 Cost of sales –     

Read More »

Research & Enquiry – Assignment Two

In what ways can an organisation increase an employee’s work motivation? 1.0 Introduction The main objective of human resource management is to ensure long term organisational performance by aiming for optimal employee productivity (Hanaysha & Majid, 2018). Employees are an organisation’s most valuable assets and managers are always looking for

Read More »

BBF308/03 International Financial Management Assignment

BBF308/03 International Financial Management Assignment 1 (50%) September 2021 Semester Instructions BBF308/03 ASSIGNMENT 1 Part 1 (100 marks) Answer ALL questions. QUESTION 1 (25 MARKS) QUESTION 2 (25 MARKS) Three friends Derek (Malaysia), Nook (Thailand) and Minori (Japan) decided to join an international competition of innovation product. The registration fee

Read More »

LAW203 Taxation Law

Course:                            Bachelor of Accounting Unit:                                LAW203 Taxation Law Assessment Task:                                        Task 2 – Individual Assignment Assessment Marks:                             30% or 30 marks Assessment task Type (1) When assessed – year, session and week Weighting (%        of total marks for unit) Cross reference to learning outcomes Case Study Assignment and Class Debate:

Read More »

Can't Find Your Assignment?

Open chat
1
Free Assistance
Universal Assignment
Hello 👋
How can we help you?