Tuesday, June 07, 2011

Risks, Security & Disaster Recovery Plan Of United Motors Company

The Potential/ current risks identified

Although, United motors corp. have no such strong rivals in the kingdom of Saudi Arabia (in competition of dodge, Chrysler, & jeep Cars). But if an organization is a part of the society, so the society have crackers, hackers, & many more internet criminals to break the system and steal the data which can be a harmful action for an organization.

So far, from my point of view, the company have security problems. United Motors Company is using the Circuit-levels firewall type which is not good for their company’s security. As from its explanation “(Circuit-Level Firewalls) applications represent the technology of next to first generation .Firewall technology supervise TCP handshaking among packets to confirm a session is genuine. Firewall traffic is clean based on particular session rules and may be controlled to acknowledged computers only. Circuit-level firewalls conceal the network itself from the external, which is helpful for contradicting access to impostors. But Circuit-Level Firewalls don't clean entity packets.

(freewimaxinfo.com, 2011)

So if an internet criminal (hackers, cracker etc.) try to attack the company’s information system through entity packets, the firewall cannot help to overcome the cracking or hacking of the system.

Consequences of current/potential risks identified

The company can face many consequences due to their weak firewall system, if rivals can attack their system & delete or steal all the records. The company can be in a big problem because there is no strong disaster recovery plan in the organization so far. The company have weak disaster recovery plan like the IT department have the recovery material, & if the hacker attacks the security of the main head office (of United Motors corp.). The organization can lose all the data because head office contains all the information or data necessary for the company.

This can be a major potential risk for the company as this risk cannot be neglected.

RECOMMENDATIONS TO SOLVE THE RISKS

The company should focus on following points which can be a big disaster for the information system of the company.

· The United Motors Company should change their firewall security type from the circuit-levels firewall to Network-levels Firewall which is strong firewall type. The Network-levels Firewall has the main objective “to examine sachet headers and clean traffic based on the IP address of the starting place and the target. Some of these primitive safety applications could also sort out packets based on protocols. Network-Level Firewalls are very fast and upcoming technologies you will find them built in network appliances specially routers. Firewall has no aware of any language such as HTML, XML therefore Firewall capable of decoding SSL encrypted packets to inspect their data or text.”

So this can be a plus point for the security of the company.

· Another security, they can implement to their company is the FIRECALL to the information system which is “A call of fire alarm to a fire station.” The firecall can be defined as “Any method established to provide emergency access to a secure information system. In the event of a critical error or abnormal end, unprivileged users can gain access to key systems to correct the problem. When a firecall is used, there is usually a review process to ensure that the access was used properly to correct a problem. These methods generally either provide a one-time use User ID or one-time password.”

(wordnik.com, 2011)

· The company can make a disaster recovery plan like they can build a small building near the Head office which contains all the data or information similar to the head office, so if anything happens to the main building. The data can be easily recovered by the other building. E.g. the Maybank information system recovery plan.

These can be main recommendations for the company to implement in their information system, which can be an advantage for the company’s security, risks & disaster recovery plan.

References

Available at (http://www.freewimaxinfo.com/firewall-types.html) Accessed at June 07, 2011

Available at (http://www.wordnik.com/words/firecall) Accessed at June 07, 2011

No comments:

Post a Comment