This exam consists of one scenario question. The grading rubric follows the scenario. Good luck.
1. You have been assigned as the cybersecurity architect in charge of implementing the security procedures for a network used in an upcoming project. The project is highly classified due to market competition. You have the full array of tools and capabilities at your disposal and expense is no object. Utilizing the security mechanisms you have learned design the security plan for the network according to the project manager’s requirements.
The project manager provided you the following requirements and criteria:
a. Only the project team of 25 employees is allowed to access the network and the information residing on it.
b. The 25 employees are divided into four separate groups consisting of six members each plus the project manager: Product Development (Group A); Marketing (Group B); Sales (Group C); and Production (Group D).
c. Each group requires their own data storage with restricted access only to that group and the project manager.
d. Each group has deliverables that require data storage accessible by each member of the project team.
e. The project team requires access to the Internet for research and communication both internally and with external partners.
f. The project team will only be working between the hours of 0600-1800, Mon-Fri.
g. The project is expected to last for six months.
Grading Rubric: You begin with a score of 100%. Five points will be deducted for each vulnerability you fail to address in your security plan.