
Security Assessment Report (SAR): This report should be a 7 pages double-spaced Word document with citations in APA format. The page count does not include figures, diagrams, tables, or citations.
Nontechnical presentation: This is a set of 8 PowerPoint slides for upper management that summarizes your thoughts regarding the findings in your SAR.
Your upper-level management team is not interested in the technical report you generated from your Workspace exercise. They are more interested in the bottom line.
You must help these nontechnical leaders understand the very technical vulnerabilities you have discovered. They need to clearly see what actions they must either take or approve. The following are a few questions to consider when creating your nontechnical presentation:
How do you present your technical findings succinctly to a nontechnical audience? Your Workspace exercise report will span many pages, but you will probably not have more than 30 minutes for your presentation and follow-up discussion.
How do you describe the most serious risks factually but without sounding too temperamental? No one likes to hear that their entire network has been hacked, data has been stolen, and the attackers have won. You will need to describe the seriousness of your findings while also assuring upper-level management that these are not uncommon occurrences today.
How do your Workspace exercise results affect business operations? Make sure you are presenting these very technical results in business terms that upper-level management will understand.
Be very clear on what you propose or recommend. Upper-level management will want to not only understand what you discovered; they will want to know what you propose as a solution. They will want to know what decisions they need to make based on your findings.
i will be uploading the lab results in a couple days so that the information can be added to the paper and the power point slide. The website with be shut down this entire weekend. So I will have it submitted before the so that it can be added. This is so that the writer is aware and I don’t get charged extra because I need the information added to my paper and powerpoint slides.
A few notes regarding your deliverables for this project:
The SAR: Your will find several examples and templates of Security Assessment Reports when you search online (some examples are also posted in the Project 2 Discussions area. For this class, I am not expecting a full blown SAR (it is outside the scope of this course). But you are expected to have a report that discusses the main areas of a SAR.
The SAR for this project concentrates on the state of the operating system within your hypothetical organization. You can continue using the organization from your previous project, or come up with a different one. The outline I have provided will help you organize the concepts you have learned during this project in order to produce the SAR. At a minimum, your SAR should discuss all 5 areas shown below.
Purpose & Scope of this SAR
Overview
OS Overview (concepts learned in step 1)
OS Vulnerabilities (overview of vulnerabilities – concepts learned in step 2 )
Windows
Mac
Linux
Assessment Methodology (vulnerability scans – concepts learned in step 3 and 4)
MBSA
OpenVAS
Results (lab results/conclusions & concepts from step 5)
Recommendations (concepts learned in step 6)
Make sure you include your opinion on how to address the risk(s) by either accepting, transferring, mitigating or eliminating.
The presentation: Step 7 of project 2 provides clear guidelines for the presentation (content). Same objective as the one you wrote for previous project, i.e., brief summary of your SAR.