Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Exam (elaborations)

WGU C845 VUN1 Task 3| Passed on First Attempt |Latest Update with Complete Solution

Rating
-
Sold
-
Pages
5
Grade
A+
Uploaded on
13-01-2026
Written in
2025/2026

WGU C845 VUN1 Task 3| Passed on First Attempt |Latest Update with Complete Solution WGU C845 VUN1 Task 3| Passed on First Attempt |Latest Update with Complete Solution WGU C845 VUN1 Task 3| Passed on First Attempt |Latest Update with Complete Solution

Show more Read less

Content preview

WGUC845VUN1Task3|PassedonFirst l’ l’ l’ l’ l’ l’ l’ l’ l’




Attempt |Latest Update with Complete Solution
l’ l’ l’ l’ l’ l’ l’




VUN1— VUN1Task3:Evaluating&DefendingData Securityand SystemOperations
l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’




INFORMATION SYSTEMS SECURITY – C845
l’ l’ l’ l’ l’




A. DataProtectionRisksandCryptographic l’ l’ l’ l’




Recommendations
l’




A1.IdentifiedDataProtectionRisks
l’ l’ l’ l’




1. Risk1(DataatRest):UnencryptedDataRepositoryLeadingtoMassDataBreach.
l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’




o Vulnerability:Theon-premisesFinanceserverdatabasestoreshighlysensitivecustomer PII l’ l’ l’ l’ l’ l’ l’ l’ l’ l’




and financial records in clear text.
l’ l’ l’ l’ l’ l’




o Threat:Anattackerwhogainsaccesstotheserver(e.g.,throughacompromised l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’




applicationorsystemvulnerability)candirectlyexfiltratetheentiredatabasefile.
l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’




o Consequence:Thiswouldleadtoacatastrophicmassdatabreach,violatingregulations (like l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’




GDPR or GLBA), causing significant financial loss, and irreparably damaging customer trust.
l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’




2. Risk2(DatainTransit):UnencryptedInternalDataTransferLeadingtoEavesdroppingand
l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’




Manipulation. l’




o Vulnerability: The HR and Finance departments use an internal FTP server with legacy l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’




protocols that do not encrypt data during transfer.
l’ l’ l’ l’ l’ l’ l’ l’




o Threat: A malicious insider or an attacker who has gained a foothold on the corporate l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’




network can trivially intercept (eavesdrop on) the data packets containing payroll and
l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’




employee information. They could also alter the data in transit.
l’ l’ l’ l’ l’ l’ l’ l’ l’ l’




o Consequence: This exposes sensitive employee data (like salaries and social security l’ l’ l’ l’ l’ l’ l’ l’ l’ l’




numbers) for theft and allows for fraudulent manipulation of payroll data, leading to
l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’




financial fraud and compliance failures.
l’ l’ l’ l’ l’




A2. Recommended Cryptographic Methods
l ’ l ’ l ’




1. Tomitigatetheriskoftheunencrypteddatabase,FinSecureshouldimplementApplication-Level
l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’




Encryption for the most sensitive fields (e.g., SSN, account numbers) in addition to full-disk or
l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’

, database-levelencryption.Thisprovidesadefense-in-depthapproach. l’ l’ l’ l’ l’ l’




2. To mitigate the risk of the unencrypted FTP transfer, FinSecure must decommission the legacy FTP
l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’




server and mandate the use of SFTP (SSH File Transfer Protocol) or HTTPS for all internal file transfers
l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’




containing sensitive data.
l’ l’ l’




A2a. Justification of Recommendations
l ’ l ’ l ’




1. Application-Level Encryption for Dataat Rest: Thismethod encrypts data beforeit iswritten to the
l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’




database. It directly supports data confidentiality by ensuring that specific, high-value data elements
l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’




areencryptedwithauniquekey,separatefromthedatabaseorstoragesystem.Evenif anattacker
l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’




bypassesthedatabaseserver'ssecurityandgains direct accesstothe storagemedia or database files,
l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’




the encrypted fields remain unreadable. This provides a critical layer of protection beyond
l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’ l’




transparent disk encryption.
l’ l’ l’

Document information

Uploaded on
January 13, 2026
Number of pages
5
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

$16.89
Get access to the full document:

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF


Also available in package deal

Thumbnail
Package deal
Package deal for WGU C845 VUN1 Task 1 ,2& 3 | Passed on First Attempt |Latest Update with Complete Solution
-
3 2026
$ 47.87 More info

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
HAVENSTUVIA Chamberlain College Of Nursing
View profile
Follow You need to be logged in order to follow users or courses
Sold
12
Member since
4 year
Number of followers
6
Documents
463
Last sold
4 days ago
HAVENS STORES

Having problems with assignments? Tough exams? Am an online tutor dealing with major courses in psychology, Nursing, Mathematics . I provide valid study resources in the form of study notes and exam reviews that guarantee excellent grades in your exams and assignments.

3.0

1 reviews

5
0
4
0
3
1
2
0
1
0

Trending documents

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions