Question

In: Computer Science

MIS ASSURANCE 2. Case Description ABC Insurance Company is one of the largest insurance companies in...

MIS ASSURANCE

2. Case Description

ABC Insurance Company is one of the largest insurance companies in U.S. It has several branches/agents across the nation. Their branches can communicate with the central company headquarters and with each other through computer network. Customer information and company sensitive data has to be protected at all times. ABC Insurance Company has database servers, J2EE application server, and web application server for its employers to access. It allows the customers to access insurance policy information, purchase, and change or cancel insurance policies online, and other services. The customers include individual policy holders and business policy holders.

The company employees and the customers need login accounts to access the company servers. The company adopts the JRA architecture for the log-in capability. This infrastructure has many components. Many of the components consist of active directories, web servers, and databases. Each of the JRA architectures has a Business to Enterprise connection which is internal, Business to Customers which is individual policy customers and Business to Business which is business customers with the insurance company. These connections are called realms. Each realm is located at a different physical location.

ABC Insurance Company holds customer information which is a valued asset to the company. The company has to ensure that this information is confidential to have the customers’ trust. The company has to protect the customers’ insurance policies which are the drive for the company's success. Agents’ login credentials and data needs to be secure too.

A problem with ABC Insurance Company is the amount of hours needed to maintain the architecture. ABC Insurance Company wants a different way to implement this architecture. It was suggested to virtualize the JRA architecture. Virtualization can enable processes to share resources more efficiently. This would have different operating systems, web servers, and databases run on a virtual machine. Each realm would run on one machine as a virtual realm. This would cut down component costs, and cut down manpower to maintain the architecture. Two or more realms can run on one machine if they face the same kind of risks.

3. Case Discussion Questions and Their Mappings to Bloom’s Taxonomy

Table 1: Mapping of Virtualization case discussion questions to Bloom’s Taxonomy.

   Virtualization Case Discussion Questions

Cognitive Level

1. List in a table the assets and vulnerabilities associated with the assets when implementing virtualization. (Hint: List possible virtual server products, the price for each virtual server and its software license, threats to each type of virtual server. Thorough research is expected for this question).

Level 4 – Analysis

2. For each vulnerability identified in Question 1, determine the likelihood that the vulnerability could be exploited. (Hint: reference [1], Section 3.5, pg. 21).

Level 4 – Analysis

3. Determine the adverse impact resulting from a successful threat exercise of vulnerability. (Hint: reference: [1], Section 3.6, pg. 21)

Level 4 – Analysis

4. Determine the risk level of the vulnerabilities based on NIST methodology (reference [1], Section 3.7, pg. 23-25.

Level 4 – Analysis

5. Conduct cost benefit analysis on virtualization.

Level 4 – Analysis

6. Propose strategies and methods to mitigate the risks for virtualization. Be as specific and practical as possible.

Level 5 – Synthesis

7. Form justifications to convince CISO that virtualization is the correct way to go or virtualization has too much risk and it is not worth implementing in ABC insurance company.

Level 6 – Evaluation

[1] NIST Special Publication 800-30, http://csrc.nist.gov/publications/nistpubs/800-30/sp800-30.pdf

[2] Whitman, M.E. and Mattford, H.J. Principles of Information Security 3rd Edition, Thomson Course Technology, 2009

Solutions

Expert Solution

-----------------------------------

Please give me a UPVOTE. Thank you :)


Related Solutions

Case Let Analysis: Oman Commercial Vehicle Manufacturer Company is one of the largest companies in the...
Case Let Analysis: Oman Commercial Vehicle Manufacturer Company is one of the largest companies in the Sultanate of Oman. It is the third-largest manufacturer of passenger cars. Extensive quality enhancement and cost reduction task was initiated in September 2018. The outcome of this task helped the company to reach a profit of 28 million while the loss in the year ended March 2017 was 500 million. The company followed the cost cutting system and saved more than 300 million of...
The ABC Company is one of the largest producers of power tools in the United States....
The ABC Company is one of the largest producers of power tools in the United States. The company is preparing to replace its current product line with the next generation of products: specifically, three exciting new power tools with the latest state-of-the-art features. Because of the limited amount of capital available, management needs to make some difficult choices about how much to invest in each of these products. Another concern is the effect of these decisions on the company’s ability...
The ABC Company is one of the largest producers of power tools in the United States.
The ABC Company is one of the largest producers of power tools in the United States. The company is preparing to replace its current product line with the next generation of products: specifically, three exciting new power tools with the latest state-of-the-art features. Because of the limited amount of capital available, management needs to make some difficult choices about how much to invest in each of these products. Another concern is the effect of these decisions on the company's ability...
ABC Engineering Company is a Permanent Establishment in Oman. It is one of the largest, multi-disciplined...
ABC Engineering Company is a Permanent Establishment in Oman. It is one of the largest, multi-disciplined engineering, contracting and construction company in the Sultanate of Oman. Established in the year 1972, Its Engineering & Contracting SAOG, has today grown into one of the largest construction companies in the Middle East with a turnover of over US$1 billion. Their trading results for the year ended 31st December 2018 are as follows: The Net Sales and Net Purchases of the company for...
Marsh & McLennan Companies is the largest provider of insurance brokerage services in the world. It...
Marsh & McLennan Companies is the largest provider of insurance brokerage services in the world. It holds itself out to its clients as a fiduciary that will act solely on clients’ behalf in purchasing insurance policies for them. Starting in 1987, Emerson Electric Company hired Marsh to act as its fiduciary in procuring various insurance policies, such as excess liability, aircraft, and international. Emerson paid Marsh substantial amounts of money to recommend insurance policies that met its needs at the...
walmart is one of the largest companies in the world, however, they are only in 28...
walmart is one of the largest companies in the world, however, they are only in 28 countries. what can they do to expand and have a wider platform in the rest of the worlds countries?
Question 2 Case study on MIS :information system in restaurant. a waiter takes an order at...
Question 2 Case study on MIS :information system in restaurant. a waiter takes an order at a table ,and then enters it online via one of the six terminals located in the restaurant dinning room .the order is routed to a printer in the appropriate preparations area : the cold item printer if it is a salad, the hot -item printer if it is a hot sandwich or the bar printer if it is a drink. A customer's meal check-listing...
2. In one state, 9 insurance companies have at least a five percent share of the...
2. In one state, 9 insurance companies have at least a five percent share of the market. One firm controls a 30% share, two each have a 20% share, and the remaining six firms each have a 5% share. (show work) a) Calculate the HHI for insurance in this state. b) What does this say about the level of competition? Provide a 2-3 sentence explanation. c) Suppose the largest firm decides to split into two firms (each has a 15%...
Provide a description of Geico insurance company that you work for. As part of your description...
Provide a description of Geico insurance company that you work for. As part of your description include a discussion of the type of organizational structure.
QUESTION 2 CASE: TOYOTA’S EUROPEAN DRIVE Toyota, the largest auto manufacturing company in the world, sells...
QUESTION 2 CASE: TOYOTA’S EUROPEAN DRIVE Toyota, the largest auto manufacturing company in the world, sells vehicles in 170 countries and regions, has 54 manufacturing companies in 28 countries and regions outside of Japan, and has R&D facilities worldwide. In Europe, Toyota has manufacturing facilities in six countries, including France where the Yaris is manufactured. It also has R&D facilities in Belgium, the U.K., Germany, and France. So why has it taken Toyota so long to crack into the competitive...
ADVERTISEMENT
ADVERTISEMENT
ADVERTISEMENT