You are the CISO for a publicly traded company. What protections would you implement to ensure availability of your systems (and why)?

Information availability ensures that people can access information whenever they need it. Availability also guarantees reliable and constant access of information only to an authorized person. So if I were to be the chief information security officer of a publicly traded company, the main protection I would implement to ensure availability for my company’s systems would be authentication. Some examples that I would use throughout my systems would be encryption, two factor authentication, password security, and firewalls. When using encryption, a lot of users need to transfer data from one device to another which can sometimes be viewed from unauthorized users , so encoding the data would be very important before transmitting the data. Two factor authentication would also be a very useful thing to use, when one logs onto their account they would have to use another device to authenticate they are the person they say they are logging on as. Password security would be useful as well so others do not try to log on as you. When making your account you will need to make your passwords very complex, by adding numbers and symbols. I also would make sure you have to change your password regularly to ensure that your password would not be used again if it were to get compromised. Lastly I would ensure firewalls are being used to increase security. I would use a software firewall to protect the servers and computers, so if someone were to look up certain things on their accounts, unauthorized people wouldn’t be able to somehow get into their information/data.

Leave a Reply

Your email address will not be published. Required fields are marked *