A. Defenses to protect against SQL injection attacks, XML injection attacks, and XSS
Roth, Gregory & Brandwin (2018) showed the following measures to prevent SQL attacks
Deactivate parsing of Inline DTDs- the Inline DTDs is a tool that is hardly used. Though external attacks will remain a threat due to XML parsing libraries and do not deactivate this tool by default.
Reduce the authorizations of web server process – execute most of your server processes with only sanctions they need. Track the least privilege principle. This is protecting directories that can be accessed in the file systems (EVANS &Flanagan 2018)
XSS is more difficult than SQL because it has only one strategy to control cross-site scripting vulnerabilities, unlike SQL which make use of set documents.
The use XML as a mark-up language may be ill-suited in postulating multifarious metadata that active dependencies or wiring a logic that is command based or that defines domain particular languages.
Ending tags in XML, SQL helps much during the nesting runs deep. But it may hurt in cases where there is a requirement to prompt a modest construct using small data items. The problem comes when there is a need to process a certain number of objects at a specific time to prevent threats.
Symantec data loss prevention
Is known for its important in preventing cybersecurity attacks. This helps to protect and monitor both the consumers and the organization itself.
Furthermore, it helps to control, see and regulate how information is used whether the workers are connected or not. The software puts in a very secure state hence the data would never be stolen or lost at wherever it is stored (Roth et al, 2018)
This tool provides companies with all the tools they might want to discover, secure and monitor information while obeying both external and internal regulations. The system is equipped with risk and policy settings which is very flexible all the business needs in safeguarding their platforms (Antoun & Zuo, 2018).)
It includes much unique cybersecurity procedure to help the company to prevent data from being sent accidentally or being leaked to the wrong hands. It aims to educate all the users of software on threats of data loss (Sarin, et al 2018)
HTTPS stands for HyperText Transfer Protocol Secure that is a combination of HTTP and SSL/TLS on the other hand HTTP is refers to HyperText Transfer Protocol. They are both made to transfer information between the server and the clients (QASAIMEH, ALA & KHAIRALLAH,2018)
While you are on the Wi-Fi, the HTTPS is always encrypted and adds another stratum of security that makes the browsing more secure. Your traffics would never be visible to hackers when snooping around the network.
You should use HTTPS for all your web traffic because the encryption feature found in it is made to provide benefits such as integrity, identity, and confidentiality.
How HTTPS protected you when you connected you connect to a Wi-Fi
While you are on the Wi-Fi, the HTTPS is always encrypted and adds another stratum of security that makes the browsing more secure. Your traffics would never be visible to hackers when snooping around the network.
a) Literature review
Cloud computing is a computing technique where a pool of systems are linked together in a public or a private network, to give enthusiastically scalable structure for application, data storage, computing cost and hosting services.
The prevailing information systems in cloud computing that the organization apply for shows that there is a lack of research on the adoption of technology. Moreover, there is a necessity to benchmark and apply knowledge use by big companies like that of Amazon Web service (Byres & Lowe 2004)
Cloud computing has developed gradually. It has upsurge interest from business since it was intercepted. By the use of an innovative technology delivery model, cloud technology can add strategic and technical value to companies
Cloud computing allows the business and its clients to assimilate and combine several diverse services together that give rise to productivity and creativity. Cloud computing leads to positive gain and motivates staff in an organization since it offers several solutions and rewards to business like scalability, flexibility and minimizes the cost of goods and service.
Cloud computing has aided several enterprises by minimizing cost and enhancing focus on basic business competence, not only the information technology but also in issues of infrastructure
Security is a significant factor in cloud computing that should not be taken literally because it holds most of the organization’s resources. In case of any threat arising in the application technology, the enterprise would server a lot.
Interviewer: Student
Interviewee: Network Administrator
Interview settings: Interview was carried out in the office of Network administrator at 4:20 PM on Tuesday afternoon:
Connection with the interviewee: the network administrator has been my lecturer for three units.
( Initiation of an interview)
Interviewer: mostly when it comes to cybersecurity, what is your role as a network administrator?
Interviewee: in my position, my work here is to safeguard the intuition’s data against unauthorized access and to put down measures that can help the organization to overcome the threats and vulnerability issues (Wang & Lu, 2013)
Interviewer: do you go for research?
Interviewee: many of my research are information technology
Interviewer: what kind of research do you do?
Interviewee: I major so much on threats and vulnerability issue that are related to cyber-attacks, everyday technology comes in with more IT techniques and inventions the fraudsters, on the other hand, work hard and takes the advantages of the technology to access people’s private information. Therefore there need to do everyday research to make sure that the institution is updated on such issues to take control (Antoun & Zuo,2018).
Interviewer: I have you ever work in any industry before you become a network administrator?
Interviewee? I was employed to be an assistant IT professional at FGIT Project for two years after my graduation with masters, and the field is not an industry, it’s more of educational.
Interviewer: what skills are required to overcome cybersecurity threats security?
Interviewee: security engineering skills are the first and most important, engineer and built a network that is very secure. The second skill is the encryption, protect network servers like a computer and the organization database, encryption is important to companies that have implemented the cloud computing technology, the third one detection to response skill, you need to examine any actions that look suspicious constantly monitor to prevent huge loses.
The fourth skill is firewall development that is getting read of data that might be malicious. Last but not least the vulnerability and analyses skills:
Interviewer: thank you for your time I have learned a lot.
Interviewee: you are always welcome.
Security is important given the design of how many work and our daily activities are getting embedded with the use of technology. When devices are connected it create a dialogs among devices interface, the cloud and private infrastructures, this create a chance for hackers to spy. This has led to high demand for information technology professionals to create and solid and less susceptible networks.
References
Antoun, R. A., & Zuo, J. (2018). U.S. Patent Application No. 15/419,756.
Armbrust, M., Fox, A., Griffith, R., Joseph, A. D., Katz, R., Konwinski, A., … & Zaharia, M. (2010). A view of cloud computing. Communications of the ACM, 53(4), 50-58.
Byres, E., & Lowe, J. (2004, October). The myths and facts behind cyber security risks for industrial control systems. In Proceedings of the VDE Kongress (Vol. 116, pp. 213-218).
EVANS, B. F., & Flanagan, D. (2018). Java in a nutshell: a desktop quick reference. O’REILLY MEDIA, Incorporated, USA.
Girisan, E. K., & Savitha, T. (2018). High Secure Web Service to Resolve Different Web Vulnerabilities. Journal of Network Communications and Emerging Technologies (JNCET) www. jncet. org, 8(2).
Girisan, E. K., & Savitha, T. (2018). High Secure Web Service to Resolve Different Web Vulnerabilities. Journal of Network Communications and Emerging Technologies (JNCET) www. jncet. org, 8(2).
Kalinin, D. (2018). Database web application.
Mell, P., & Grance, T. (2011). The NIST definition of cloud computing
Roth, Gregory Branchek, Eric Jason Brandwine, and Matthew James Wren. “Data loss prevention techniques.” U.S. Patent No. 9,912,696. 6 Mar. 2018.
Sarin, Sumit Manmohan, Sumant Modak, Amit Shinde, and Bishnu Chaturvedi. “Technique for data loss prevention through clipboard operations.” U.S. Patent Application 15/798,482, filed February 22, 2018.
Qasaimeh, M., Ala’A, S. H. A. M. L. A. W. I., & Khairallah, T. (2018). Black Box Evaluation Of Web Application Scanners: Standards Mapping Approach.. Journal of Theoretical and Applied Information Technology, 96(14).
Wang, W., & Lu, Z. (2013). Cyber security in the smart grid: Survey and challenges. Computer Networks, 57(5), 1344-1371.
Essay Writing Service Features
Our Experience
No matter how complex your assignment is, we can find the right professional for your specific task. Contact Essay is an essay writing company that hires only the smartest minds to help you with your projects. Our expertise allows us to provide students with high-quality academic writing, editing & proofreading services.Free Features
Free revision policy
$10Free bibliography & reference
$8Free title page
$8Free formatting
$8How Our Essay Writing Service Works
First, you will need to complete an order form. It's not difficult but, in case there is anything you find not to be clear, you may always call us so that we can guide you through it. On the order form, you will need to include some basic information concerning your order: subject, topic, number of pages, etc. We also encourage our clients to upload any relevant information or sources that will help.
Complete the order formOnce we have all the information and instructions that we need, we select the most suitable writer for your assignment. While everything seems to be clear, the writer, who has complete knowledge of the subject, may need clarification from you. It is at that point that you would receive a call or email from us.
Writer’s assignmentAs soon as the writer has finished, it will be delivered both to the website and to your email address so that you will not miss it. If your deadline is close at hand, we will place a call to you to make sure that you receive the paper on time.
Completing the order and download