Question

In: Computer Science

Case Study Project – PART I Overview The purpose of the case study project is to...

Case Study Project PART I

Overview

The purpose of the case study project is to get you acquainted with the security challenges of a real, complex, messy software product. In class, you will be learning about security ideals,   and best practices. In the case study, you will see how those ideals are applied, or not applied.

This case study is designed to help you in two key ways: investigation and co-authorship. The investigative part of this project is to help you to learn about software projects from the outside in. This means reading bug reports, documentation, mailing lists, commit logs, and anything else you can get your hands on to understand what's going on. The co-authorship part of this project is to help you learn what it's like to describe complex arguments (i.e. specific security risks) to a technical, yet non-security-minded audience. The "co-" part is to help you learn how to write much like how you've learned how to code... communicating, coordinating, know when to work alone, know when to work collaboratively, giving good feedback, and reacting to feedback.

Case Study Proposal

Phase 1:

As a team, choose a case study project. Choosing a project may take some effort, as not every project out there makes a good candidate. Here are the minimum requirements for a good case study:

  • Must have a domain that has significant security risks
  • Non-trivial. The larger the better. Minimum of 10k lines of code or 20 developers. You will not need get this system to build.
  • Must be actually used in production
  • Source code must be available
  • Must have had a list of reported vulnerabilities. The more detailed the records, the better (e.g. do they trace to bugs and source code patches?)

In your proposal, include the following:

  • The names of each team member
  • Project overview.
    • What is the product used for?
    • What is the development team like?
    • How often does the project release?
  • Security Risks. This section can be very brief
    • What kinds of data does this product protect?
    • What are the ramifications of this software is compromised?
  • Provide links (using just a regular hyperlink) to the project website, the source code repository, issue tracker, past vulnerabilities, and any other relevant information.

Submission

For this proposal, create a document called "X Case Study Proposal".

Grading scheme (10marks)

  • 6marks - Submit a case study proposal naming a project.
  • 1mark- Project matches the minimum criteria
  • 3marks - Proposal demonstrates a surface-level understanding of the project security risks

minimum words or number of pages for the project proposal? it is not project proposal it is just final project of one course which is 15 marks and the minimum pages are 10 pages and maximum 15 pages . It is about software vulnerability case study.

Solutions

Expert Solution

Univeristy management case study :

In the view of the global pandemic due to COVID-19 , the univeristy has decided to upgrade it previous univeristy management system for the more learning management feature to be incorporated, Like the university has decide to open it next semester studies , the student will be able to register for thenext semester using the system , the system will allow the student to attend the classes online using the system , the student will be able to enroll in the courses , view marks , view assignment and submit assignment using the same platform and will be able to interact with teacher and other classmate to have more engagement of the student by alowing them to interact with each other, for this purpose the univeristy has hired a development of 50 member which consist of designer , backend developer , frontend developers , etc,. The system should be developed within a course of 3 month to restart the fallen education system of the univeristy and restart the studies of the student and it will be updated and maintained at regualr in the view of the bugs and errors. the risk assocaited with system is that the system might not be abe to handle the number of student estimated at a given time and there are security risk such as the student might try to hack into the system to update marks or other things , other risk can be that if the system is not developed at the time given than the univeristy will facing the loss as they announced a date for the commencement of the next semester. the system will be using the older database that contain the information of the student , tehir corresponding details about the year , courses , and it will be also having the details of the teache to allocate the classes and courses to the teacher to teach the class , these system needs to protect the details of all the student and teacher along with corresponding about the attendance, marks .If the system is not developed with proper developement model and does not have the security feature to protect the data of the user than the system compromise could result in total data loss and system failure , the attacker could use the data for its purpose.As th leader of the developer team it is development responsibility to ensure the system works efficientlt and have proper security protocol.


Related Solutions

Cost Accounting Project Part I Template Project Part I 1 An overview of the job-costing system...
Cost Accounting Project Part I Template Project Part I 1 An overview of the job-costing system is: 2 Budgeted manufacturing overhead divided by allocation base: a. Machining Department: b. Finishing Department: Show work 3 Machining Department overhead Finishing Department overhead Total manufacturing overhead allocated $0 4 Total costs of Job 431: Direct costs: Show work Direct materials Machining Department Finishing Department Direct manufacturing labor Machining Department Finishing Department 0 Indirect costs: Machining Department overhead Finishing Department overhead 0 Total costs...
Seminar in Business Finance: Group Project This group project includes One part: Case Study . Part...
Seminar in Business Finance: Group Project This group project includes One part: Case Study . Part I: We have studied several cases this semester which focus on a common corporate action: merger or acquisition. In your group project please select a recent M&A example, either successful or unsuccessful, recent is defined as having occurred in the last three years. You will be tasked with preparing a case study to explain the details of the corporate action. Specifically what led to...
Case Study : "Global Warming" Case study 1.1: Global Warming Part I: What to do about...
Case Study : "Global Warming" Case study 1.1: Global Warming Part I: What to do about global warming Yet hot-headed attempts to link specific weather A UN treaty now under discussion looks promising - disasters to the greenhouse effect are scientific bunk. as long as it remains flexible The correct approach is coolly to assess the science of How should reasonable people react to the hype and climate modelling is still in its infancy, and for most of climate change...
I need proper and details explanation for this case study Financial statement part (i, ii &...
I need proper and details explanation for this case study Financial statement part (i, ii & iii Area of concern) Analyse the financial statements that have been prepared by Home Range Ltd’s financial director. In particular, comment on the following aspects of the company: i. Areas of concern in financial performance, focusing mainly on information from the income statement ii. Areas of concern in financial health, focusing on ratios dependent on the income statement and the balance sheet iii. Areas...
Course Project: Nutrition Care Process: Assessment Assignment Overview After reading the case study below, you will...
Course Project: Nutrition Care Process: Assessment Assignment Overview After reading the case study below, you will create a nutrition care plan for the client. This week you will complete section A, the nutritional assessment. This portion of your nutrition care plan is worth 40 points. Please refer to the Grading section of this document for the distribution of these points. You will also find Writing Guidelines at the end of this document that will assist you in meeting the expectations...
Case Study: Project Communications Management: Best Practices in Practice As part of a large IT systems...
Case Study: Project Communications Management: Best Practices in Practice As part of a large IT systems integration project for the State of California, I witnessed the Project Management Office (PMO) do an excellent job of ensuring that the project stakeholders were properly informed of the project’s progress, outstanding issues, risks, and change requests. Information was gathered from multiple sources (for example, Project Schedule, Issue and Risk Repositories, Testing Tool Data Metrics, Change Request Log, and so on) and compiled into...
For each case study, you will be provided a brief overview, the actual problem, and the...
For each case study, you will be provided a brief overview, the actual problem, and the steps to follow on Minitab. Each case study will require you to follow the five step hypothesis testing process in addition to providing the computer output AND templated results. Case Study 1: Applying a Completely Randomized Design (Detecting Changes in Salaries) That the starting salaries of new accounting graduates would differ according to geographic regions of the United States seems logical. A random selection...
Part A: Case study – IKEA Part A of this EMA will be marked out of...
Part A: Case study – IKEA Part A of this EMA will be marked out of 60 marks. The word limit is 2400 words. Read the case study, which you can find in the assessment area and on the study planner in Week 23, and answer the following questions: Using concepts and theories from Block 1, explain why IKEA places high importance on innovation. You should consider how the various business functions within IKEA integrate to facilitate innovation. Globalisation has...
Part 1: Case study analysis These questions relate to the case study and should be answered...
Part 1: Case study analysis These questions relate to the case study and should be answered in the context of the information provided. Case 1: A midsized biopharmaceutical (ALFA) company with hundreds of employees worldwide recently faced a crossroads. The company was growing rapidly, but its internal contract management process wasn’t equipped to keep up with the demands of a larger company. Because the company relied on paper-based manual processes, it encountered inefficiency across departments. End users submitted paper forms...
i have a case study : a case study of HP. subject : managing diversity at...
i have a case study : a case study of HP. subject : managing diversity at workplace please answer those two questions : a) what is meant by diversity and what are the different diemensions of diversity mentioned in the case study. (explain with example) b) what are the challenges faced in diversity management? How has HP successfully managed diversity? please visit this websites to read the case study: https://papers.ssrn.com/sol3/papers.cfm?abstract_id=1944511
ADVERTISEMENT
ADVERTISEMENT
ADVERTISEMENT