Systems
ENT 101 Week 9 - Securing Information Systems
F24
Hello everyone and welcome to week 9 of CITM102. This week our focus is on Information
Systems Security.
Roger de Peiza 1
,CITM102 - Securing Information
Systems
This weeks learning objectives
By the end of today’s lesson students should be able to:
At the end of this module, you should be able to:
1. Explain why information systems are vulnerable to destruction, error, and
abuse.
2. Assess the business value of security and control.
3. Identify the components of an organizational framework for security and
control.
4. Evaluate the most important tools and technologies for safeguarding
information resources.
Roger de Peiza 2
, CITM102 - Securing Information
Systems
Why systems are vulnerable
Use of networks and
Hardware
Software
Each of these •• For example:configuration
•Breakdowns,
Programming with domestic
errors, or offshore
installation
errors,errors,
damage from
Disasters
computers outside of components
improper
presents
• Power failures,
unauthorized
use or
changes
crime
security
flood, fires, etc. challenges and
problems outsourcing vendors
firm’s control vulnerabilities.
If we have a look at this graphic carefully, we will observe that almost every component of an
information system, from client computers, to the corporate systems and the networks and
servers in between, is venerable to attack from an ever-changing series of sources that
present serious security challenges. Information systems are venerable to a whole host of
problems and attacks that come from various sources. These include hardware problems such
as computer breakdowns, configuration errors and damage from improper use or crime. They
include software problems such as programming errors, installation errors, unauthorized
changes. Then there are disasters (natural and unnatural) such as power failures, flood, fires,
etc.. Also, the use of the networks and computers outside of firm’s control exposes information
systems to tampering from outside sources.
Roger de Peiza 3