100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.6 TrustPilot
logo-home
Other

WGU C843 Performance Assessment: Managing Information Security (KOP2) | Latest 2026 Update with complete solutions.

Rating
-
Sold
-
Pages
9
Uploaded on
05-12-2025
Written in
2025/2026

WGU C843 Performance Assessment: Managing Information Security (KOP2) | Latest 2026 Update with complete solutions.










Whoops! We can’t load your doc right now. Try again or contact support.

Document information

Uploaded on
December 5, 2025
Number of pages
9
Written in
2025/2026
Type
Other
Person
Unknown

Subjects

  • wgu c843

Content preview

WGU C843 Performance Assessment: Managing Information Security (KOP2) |
Latest 2026 Update with complete solutions.




Western Governors University
Managing Information Security - C843
Performance Assessment:Managing Information Security (KOP2)

, Part I: Incident Analysis and Response
A. Determination of Successful Attack and Specific
Vulnerabilities
The cyber-attack against Azumer Water succeeded due to a combination of systemic
organizational negligence and specific, unmitigated technical vulnerabilities. The
organization’s reactive security posture, lack of enforced policies, and reliance on
outdated technologies created a high-risk environment that a motivated threat actor easily
exploited. Two specific vulnerabilities were instrumental:
1. Lack of Security Awareness Training and Phishing Susceptibility: The primary
attack vector was a phishing email sent to the volunteer coordinator, John Smith.
The email leveraged urgency (“offer expires in two days”) and a slight misspelling
in the domain (watersupp1y.int instead of a legitimate .com or .org) to trick John.
The case study explicitly states he “carelessly clicked on the link” while distracted
(Azumer Water Case Study, 2023). This human vulnerability was enabled by the
absence of a formal, recurring security awareness program. Without training,
employees cannot be expected to recognize and report sophisticated social
engineering attempts.
2. Insecure Configuration and Lack of Network Segmentation: The technical
environment was fundamentally insecure. Pruhart Tech had deferred the
configuration of the enterprise firewall, and the main office used the critically
compromised Wired Equivalent Privacy (WEP) protocol for its wireless network
(Azumer Water Case Study, 2023). An unconfigured firewall provides no
substantive access control or threat inspection, while WEP is trivially broken,
potentially allowing an attacker to gain initial access to the internal network. Once
John’s click likely executed malware, the absence of network segmentation (e.g.,
isolating the database server from general user workstations) allowed the threat
actor to pivot and locate the critical volunteer database.=

B. Compromise of Operations and Data
The attack compromised Azumer Water’s operations and data across the foundational
security triad of confidentiality, integrity, and availability (CIA), with severe implications
for Personally Identifiable Information (PII).
• Confidentiality, Integrity, and Availability: The confidentiality of the entire
volunteer database was breached, as evidenced by its disappearance, which is
more indicative of ransomware encryption or theft than mere deletion. The
integrity of organizational communication was sabotaged; the attacker spoofed
John Smith’s identity to send fraudulent donation emails to volunteers, destroying

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
Wiseman NURSING
View profile
Follow You need to be logged in order to follow users or courses
Sold
6803
Member since
4 year
Number of followers
3846
Documents
26351
Last sold
2 hours ago
Premier Academic Solutions

3.9

1387 reviews

5
683
4
249
3
215
2
76
1
164

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their exams and reviewed by others who've used these revision notes.

Didn't get what you expected? Choose another document

No problem! You can straightaway pick a different document that better suits what you're after.

Pay as you like, start learning straight away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and smashed it. It really can be that simple.”

Alisha Student

Frequently asked questions