Consider the generic cloud-based Electronic Health Record system below. Use the STRIDE model to identify four potential threats at the components and flow elements of the system, which are numbered 1-4 in the diagram. a) Describe the four threats. b) Provide a mitigation for each of the four threats.
Blog
In reviewing an event log, we have a need to be sure that th…
In reviewing an event log, we have a need to be sure that the identified user, process, or action owner is without question. The certainty that processes were followed to ensure the identity of a user or process that has performed an action is called…
a) Discuss why managing supply chain is important for system…
a) Discuss why managing supply chain is important for system security and resilience. Use real-world supply chain attacks to illustrate your points. b) Which actions can you take to mitigate supply chain risks? Your discussion should be in the context of the attacks that you cited.
Resiliency is the ability to effectively and efficiently res…
Resiliency is the ability to effectively and efficiently restore a system to a…
One form of Access Control is predicated on the use of a val…
One form of Access Control is predicated on the use of a value not assigned by the user directly and not assigned by system administrators, but based on a system attribute or value such as an approval or a department membership or a clearance level. It is called:
An Access Control Policy that is based on role, employee ID,…
An Access Control Policy that is based on role, employee ID, job position, security clearance, access time, and location is:
Arguably the greatest challenge with log review is (select t…
Arguably the greatest challenge with log review is (select the best answer):
DE.AE (Adverse Event Analysis) includes which outcome:
DE.AE (Adverse Event Analysis) includes which outcome:
Anomaly detection flags:
Anomaly detection flags:
A Requirements Traceability Matrix (RTM) is used to
A Requirements Traceability Matrix (RTM) is used to