198k views
1 vote
For each of the following assets, assign a low, moderate, or high impact level for the loss of confidentiality, availability, and integrity, respectively. Justify your answers.

a. KFU Web server managing public data.
b. KFU Banner managing Grades of students.
c. KFU systems managing routine administrative information (not privacy- related information).

User Updogliu
by
6.5k points

1 Answer

3 votes

Answer:

Here is my assessment of the impact level for the loss of confidentiality, availability, and integrity for each of the assets:

a. KFU Web server managing public data:

Confidentiality: Low (since the data is public, the loss of confidentiality would not have a significant impact)

Availability: High (if the web server is not available, users will not be able to access the data)

Integrity: Moderate (while the loss of integrity may not have a significant impact on the data itself, it may affect the reputation of the organization and the trust of users in the data)

b. KFU Banner managing grades of students:

Confidentiality: High (the loss of confidentiality could compromise the privacy of the students and their grades)

Availability: High (if the system is not available, students and faculty may not be able to access or update grades)

Integrity: High (the loss of integrity could affect the accuracy and credibility of the grades, which could have serious consequences for the students and the organization)

c. KFU systems managing routine administrative information (not privacy-related information):

Confidentiality: Low (since the information is not privacy-related, the loss of confidentiality would not have a significant impact)

Availability: High (if the systems are not available, administrative tasks may be disrupted or delayed)

Integrity: Moderate (while the loss of integrity may not have a significant impact on the data itself, it may affect the efficiency and reliability of the administrative processes)

User LaYer Sutachad
by
7.0k points