• Home
  • Southern New Hampshire University
  • Network Defense CYB-310-T5690
  • Network Defense CYB-310-T5690

Network Defense CYB-310-T5690

Southern New Hampshire University CYB 310 Project Two Stepping Stone Template I.IDS Best Prac ces Table IDS Best Prac ces IDS component What does it detect? What could a threat actor accomplish if you were not monitoring this component? Tenet of the security (CIA) triad most a ected Sensors Monitors the network tra c and checks for suspicious ac vity If this component is not placed Availibility on the network properly a threat actor could compromise the network If this was not a component Con den ality being monitored a threat actor could poten ally have a successful a ack on the network Without this being monitored by Con den ality the administrator the threat actor could have in Itrated the network without anyone knowing exactly where Without this being monitored a Availability threat actor could redirect the tra c to have and this could cause a data breach If this was not monitored a threat Availibilty actors were le undetected this could cause major security concerns Signature based detec on Detects known a acks Command console Allows the network administrator to use commands in order to see if the network is being a ected by malicious ac vity Network TAPS This detects and redirects network tra c to an analyzer HIDS Detects threats inside of the network by monitoring the hosts II. Applica on Ques on 1 Southern New Hampshire University Aft The recommenda ons that I have for this company would be to use HIDS because it is host based and the company is going to be smallft The other recommenda on that I have is to have use command console because it would allow the IT admin to be able to see where exactly a threat came from if there were anyft