CISO

I would implement several security controls to mitigate risks to ensure availability of my systems. I would implement a hot site that is over 90 miles away from my organization. If an environmental threat were to occur like a fire, flood, tornado, or earthquake the hot site will keep the systems available. The distance from my organization will highly ensure that it is not at risk. Hostile actors search for vulnerabilities to exploit. I would implement a vulnerability scanner tool too better assess the present risks. Since their will still be the risk of internal threat actors, I would implement behavioral tests as well. This will make it easier for me to identify internal threats. I would also close ports out of use and implement a secure firewall to mitigate the risk of DDoS attacks. This is unused ports can be exploited to gain access within the organization. DDoS attacks can overload the servers disrupting the availability of my systems. To protect the business resources of my organization I would have a system where systems from suppliers are verified before they are put into use. This is to defend against supply chain attacks which could potentially disrupt the availability of my systems.

Leave a Reply

Your email address will not be published. Required fields are marked *