IDS Analysis Paper CYB-310 PROJECT TWO HANNAH KRAMER October 5 2023
In this analysis paper I will attempt to address intrusion detection systems (IDS) and security objectives and how they each effect and interact with each tenet of the CIA triad. The second element of this analysis paper will be to create a fictitious scenario about a company that resides in two separate buildings and I am tasked with describing how I would implement the best IDS protection for the company. I will need to justify my response and demonstrate that I have the knowledge on how to implement an IDS to best secure the fictitious company's network. Everyone wants privacy to some degree. When it comes to personal data in the U.S. it is even more important to maintain the privacy and security of data. The goal for anyone or entities is to keep outside intruders that do not have authorized access away from their data. This would be the definition of confidentiality which is one of the three tenets of the CIA triad. When looking at the components of an IDS there can be parts of an IDS that help maintain the confidentiality. For example, in real situations where there might be intruders on your network an IDS can scan the network for any known vulnerabilities and report on any suspicious or irregularities within your network that might seek to jeopardize the confidentiality. Which in turn helps you to avoid the loss confidentiality of your data. The next tenet of the CIA triad is Integrity. The idea of foreign entities or outsiders being able to infiltrate a network and tamper with or change the data in an undesirable way would be an example where the integrity of data and network was broken or compromised. However, the components of an IDS system that looks at the network and can report to an analyst known indicators of malware would greatly help their efforts in avoiding that outcome. IDS's which can either be network-based or host-based, assist security analyst with monitoring the system for any threats that may seek to enter your system and tamper with any data. IDS's can also be used to
work with computers, firewalls, and other network equipment to help detect and watch out for possible behavioral changes that might indicate a problem on the network. Some IDS's can also be configured in tandem with an Intrusion Preventions System (IPS) lock down ports or sector to keep data secure and then notify the security analysts that there has been a breach in their networks security. One of the most common ways the tenet of integrity is maintained is through hashing. Hashing is a method of verifying the message's sender and receiver by encrypting and decrypting digital signatures (Read, 2023). When using this signature-based detections system in tandem with a set of rules that is provided by a software vendor, an IDS should be able to determine if the traffic on the network is acceptable by comparing it