Last month, Tech CON suffered a ransomware attack that encrypted customer data across their cloud services. Investigations revealed several critical flaws:
β Lack of a defined access control policy.
β No user training on social engineering or phishing.
β No formal backup or recovery solution.
β System logs were not retained, hindering the forensic investigation.
β No disaster recovery plan or off-site data storage.
The CIO has requested a comprehensive security and continuity audit, along with a plan to prevent such incidents in the future.
Task:
β Pinpoint three critical failures in Tech CONβs security architecture.
β Propose three essential technical and administrative controls to prevent future attacks.
Outline a disaster recovery and business continuity framework, including data backup, communication, and recovery timelines