Security Services - Exercise

Course project: Solving a security problem

Objective: Evaluate options for securing and monitoring access at your site.

For this installment of the course project, you will recommend several steps to take, given the situation described below. You will then be provided with information so that you can check your own solution with that of industry best practice.
  1. First concern: The site is planning to hire 20 new employees. Five employees will be responsible for configuring the hardware, five will be responsible for the HTML and Web-to-database connectivity, two will be graphic artists, and the remaining will be support staff who man the customer service desk and provide other support. Create a short outline for a security policy that can help ensure that these employees remain productive and follow industry best practices. This outline should include two specific ways for employees to keep the site secure.
  2. Second concern: You have purchased the appropriate server hardware and software. You are using an Intel platform with
    1. Ubuntu 18.04 x64 Linux
    2. PHP 7.2 and FPM
    3. NGINX
    4. MySQL
    Two Web servers are running: the 1) production server and 2) the staging server. You are now concerned with securing access to these servers so that hackers cannot wage denial of service attacks against them. List three practices and software/equipment purchases necessary to secure and monitor access to this server.

