Last month, Tech CON suffered a ransomware attack that encrypted customer data across their cloud services. Investigations revealed several critical flaws:
● Lack of a defined access control policy.
● No user training on social engineering or phishing.
● No formal backup or recovery solution.
● System logs were not retained, hindering the forensic investigation.
● No disaster recovery plan or off-site data storage.
The CIO has requested a comprehensive security and continuity audit, along with a plan to prevent such incidents in the future.
Task:
● Pinpoint three critical failures in Tech CON’s security architecture.
● Propose three essential technical and administrative controls to prevent future attacks.
Outline a disaster recovery and business continuity framework, including data backup, communication, and recovery timelines