Question

In: Computer Science

Regarding Risk Assessment Security is imperative in payroll systems. Payroll information security is about more than...

Regarding Risk Assessment

Security is imperative in payroll systems. Payroll information security is about more than computer security. It covers a wide range of security measures like protecting the data or information from theft, misuse, natural disasters, social attacks, or hacking.

How can we advance the security in payroll transactions?

PLEASE MAKE COPY PASTE AVAILABLE

Solutions

Expert Solution

Payroll is a very important part of any company which need proper observation. When any area got related to money, the area got high priority in every aspect. Payroll is the system in which the company's employees are got paid for their job. This will be controlled by one or a group of authorities.There are different type of attacks or faulty actions happen on a payroll system. An attack can be hoped from outside the company or a miseuse from inside the company itself. Bot have to be stopped for the survival of the company.

An attacker from outside can do several type of attacks on a payroll system. Attacker can intrude to the payment portal and make false payments to attacker's accounts or attacker can pay more to a desired employee. Such attacks only be happen when attacker reached completely inside the system. This can be avoided by making the portal well secured without any vulnerabilities. The authntication process to the sysem should be enforced with maximum security by giving double authentication and all.

The next kind of attack that can expect from an attacker is breaching the database. The database will contain so much personal informations and their banking details. An attacker may access the database using a SQL injection. SQL injection is the process of injecting malicious SQL queries through the input fiels of the websites and accessing or altering the database. SQL injection is happening due to poor architecture or framework of the website. Making the system in a trusted framework and having well built database will prevent this.

The next expected malicious acitvity is from inside the company itself. The managers who are in charge of controlling the payroll system may do faulty actions. This is the most dangerous security threat that can happen on a payroll system because this will be very hard to find as the acitivities are done by company managers inside the company itself. They can make false records also to hide their manipulations. They can send money more to their accounts, to a desired employees account or even to someone outside the company showing that sucha a person is working inside the company. The only way to stop this faulty action is the supervision of top most authorities. The company CEO should be aware about transactions happening in the payroll system. CEO must check the bank statment and ensure everything is fine every month. No technological method could help here.


Related Solutions

Regarding Risk Management Security is imperative in payroll systems. Payroll information security is about more than...
Regarding Risk Management Security is imperative in payroll systems. Payroll information security is about more than computer security. It covers a wide range of security measures like protecting the data or information from theft, misuse, natural disasters, social attacks, or hacking. How can we advance the security in payroll transactions? PLEASE MAKE COPY PASTE AVAILABLE MUST BE 250 WORDS
Regarding Risk Assessment Regarding modernize payroll process. What's your take regarding this approach? Do you see...
Regarding Risk Assessment Regarding modernize payroll process. What's your take regarding this approach? Do you see the value in it? PLEASE MAKE COPY PASTE AVAILABLE
REGARDING RISK ASSESSMENT What are the different types of disclosure or brokerage of information? What is...
REGARDING RISK ASSESSMENT What are the different types of disclosure or brokerage of information? What is the probability of disclosure/brokerage of information (in terms of high, medium, low)? What is the potential impact of disclosure/brokerage (in terms of high, medium, low)? Explain. Determine the risk scale of disclosure/brokerage of information. PLEASE MAKE COPY PASTE AVAILABLE MUST BE 250 WORDS
REGARDING RISK ASSESSMENT What’s the recommendation by the risk assessment team? What are the final decisions...
REGARDING RISK ASSESSMENT What’s the recommendation by the risk assessment team? What are the final decisions made by HGA management? Justify their decisions based on cost benefit analysis. PLEASE MAKE COPY PASTE AVAILABLE MUST BE 250 WORDS
REGARDING RISK ASSESSMENT What’s the recommendation by the risk assessment team? What are the final decisions...
REGARDING RISK ASSESSMENT What’s the recommendation by the risk assessment team? What are the final decisions made by HGA management? Justify their decisions based on cost benefit analysis. PLEASE MAKE COPY PASTE AVAILABLE MUST BE 250 WORDS
REGARDING RISK ASSESSMENT What’s the recommendation by the risk assessment team?  What are the final decisions made...
REGARDING RISK ASSESSMENT What’s the recommendation by the risk assessment team?  What are the final decisions made by HGA management? Justify their decisions based on cost benefit analysis. PLEASE MAKE COPY PASTE AVAILABLE MUST BE 250 WORDS
As more is learned about genes, there is a risk that the information will be used...
As more is learned about genes, there is a risk that the information will be used to define certain members of society by their genetic makeup. What do you think is the meaning of the terms genetic discrimination and genetic privacy? What are some ways to protect against this type of genetic discrimination?
which of the following statements about risk management is false? - Don't risk more than you...
which of the following statements about risk management is false? - Don't risk more than you can afford to lose -Don't risk a lot for a little -The best buys in insurance cover those losses that are least likely to occur -you should always buy insurance
The development of accounting information systems is much more than the software for ledger posting and...
The development of accounting information systems is much more than the software for ledger posting and report formation. It also involves establishing procedures for capturing data and distribution, as well as analysis of accounting information. In an accounting information system, there are three basic entities that need to be considered when specifying a system, namely, transactions, account and processing period. Outline the relationship between these three entities. (Outline a range of considerations for developing accounting system specifications).
Entries for payroll and payroll taxesThe following information about the payroll for the week ended...
Entries for payroll and payroll taxesThe following information about the payroll for the week ended December 30 was obtained from the records of Saine Co.:Calculate Saine's gross pay, net pay, and payroll taxes. Show work.
ADVERTISEMENT
ADVERTISEMENT
ADVERTISEMENT