100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.2 TrustPilot
logo-home
Essay

Information Security TM311 TMA01

Rating
-
Sold
1
Pages
8
Grade
C
Uploaded on
08-05-2024
Written in
2023/2024

Information Security TM311 TMA01










Whoops! We can’t load your doc right now. Try again or contact support.

Document information

Uploaded on
May 8, 2024
Number of pages
8
Written in
2023/2024
Type
Essay
Professor(s)
Unknown
Grade
C

Content preview

Question One


In accordance with the module guide introduced during the initial weeks of TM311, I have
diligently strived to stay informed of the forefront of information security. To comply with
the guidelines of the Open University, I have conscientiously recognised and acknowledged
the contributions of others, the source of the information presented for this question are:



Source 1 – Figure 1.1
Constatine, L. (2023) North Korea’s Lazarus Group hits organizations with two new RATs.
Available at: https://www.csoonline.com/article/650413/north-koreas-lazarus-group-hits-
organizations-with-two-new-rats.html#:~:text=%E2%80%9CLazarus%20Group%20remains
%20highly%20active,said%20in%20a%20new%20report. (Accessed: 25 October 2023).



Source 2 – Figure 1.2
Eston, T (2023) SEC VS. SolarWinds, CISO, Classiscam Scam-As-A-Service [Podcast]. 16
November 2023. Available at: https://sharedsecurity.net/2023/11/13/sec-vs-solarwinds-
ciso-classiscam-scam-as-a-service/ . (Accessed 25 November 2023).

, Question Two
To associate value with an asset, we must first define an “asset”. According to the ISO 27001 standards which is the International Organisation
for Standardisation in Information security, an asset is any location within an organisations system where sensitive information is stored,
processed or accessible, what would be the legal, reputational, or financial repercussions if the information is at risk or not accessible?

Organisations aiming to establish a robust Information Security Management System (ISMS) and secure ISO 27001 certification must undertake
an asset register. The register plays a role in the risk assessment process by helping to identify assets and evaluate potential information
security risks but also how it is managed and controlled during its lifecycle. The concept of vulnerabilities is central to this assessment,
representing organisational weaknesses that threats could exploit to compromise or harm assets (Irwin, 2022).

Figure: 2.1 – Draft information register.

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
Rekah The Open University
View profile
Follow You need to be logged in order to follow users or courses
Sold
116
Member since
3 year
Number of followers
69
Documents
27
Last sold
2 weeks ago

3.4

14 reviews

5
5
4
3
3
1
2
2
1
3

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their exams and reviewed by others who've used these revision notes.

Didn't get what you expected? Choose another document

No problem! You can straightaway pick a different document that better suits what you're after.

Pay as you like, start learning straight away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and smashed it. It really can be that simple.”

Alisha Student

Frequently asked questions