Premium Essay

Nt1310 Unit 9 Paper

Submitted By
Words 1569
Pages 7
1. What is the process an auditor would use to audit Section 12 of the PCI DSS for an organization undergoing an audit for PCI compliance? Include the documentation that would be required to prove compliance and describe in detail how you would review the documentation, conduct interviews and system demonstrations.
Answer:
Section 12 of PCI DSS audit deals with the maintaining a policy that addresses information security for all personnel, a strong policy helps the organization to ensure information security and through the awareness and dissemination of policies to the employees we can ensure that everyone is aware of their responsibilities and we can ensure sense of responsibility for securing the cardholder data.
It has 11 major requirements, under the process which I will …show more content…
Will interview personnel and I will sample documents to understand the response and action to the previous breaches.
I will verify that the incident response plan is reviewed at least annually. I will verify that specific personnel is assigned 24/7 to respond to alerts, I will interview specific personnel who are assigned to respond to alerts. I will interview a sample of stakeholders to ensure that they are properly trained incident response plans and best practices. I will verify through documentation the process to evolve the documentation to improvise and update the incident response plan.
12.11: Perform reviews at least quarterly to confirm personnel are following security policies and operational procedures (For service providers

Similar Documents

Premium Essay

Nt1310 Unit 1

...Nt1310 9/17/2014 Unit 1 Assignment 1 Cell phones – Cell phones use data networks to communicate over radio frequencies. The frequencies that they use are also shared with television, Bluetooth, and Wi-Fi. Landline phones – Landline phones use voice networks only because they do not need as much speed as anything else. Normal house phones use approximately 10 MB/s which is all that voice networks handle. SMS/Text messaging – Text messaging uses data networks because they can also be sending media like pictures and video. The other reason that I believe that text messaging uses data networking is because it is faster. Fax machines – Fax machines use voice because they only transmit exactly what is on the paper. It is not being transformed into little packets and sent over the internet to another place; it is just sent from one place to another through the phone line. Pagers – Pagers use the same as cell phones and that is data networks because it is wireless, and does not have to be plugged into anything. Pagers are not that common due to the cell phone industry growing swiftly. VOIP – VOIP as it says in the name of it uses a data network. It uses IP for talking so that the communication is more secure and not many people can tap in as easily as people can over regular phones. Skype/Facetime – Skype and facetime both use data networks to communicate because you are sharing video with somebody else. You are also receiving video, and video cannot be shared over a voice...

Words: 263 - Pages: 2

Premium Essay

Nothing

...ITT Technical Institute NT1310 Physical Networking Student Course Package Bring this document with you each week Students are required to complete each assignment and lab in this course package on time whether or not they are in class. Late penalties will be assessed for any assignments or labs handed in past the due date. The student is responsible for replacement of the package if lost. Table of Contents Syllabus 2 Student Professional Experience 19 Graded Assignments and Exercises 23 Labs 47 Documenting your Student Professional Experience 57 ITT Technical Institute NT1310 Physical Networking Onsite Course SYLLABUS Credit hours: 4.5 Contact/Instructional hours: 56 (34 Theory Hours, 22 Lab Hours) Prerequisite(s) and/or Corequisite(s): Prerequisites: NT1210 Introduction to Networking or equivalent Course Description: This course examines industry standards and practices involving the physical components of networking technologies (such as wiring standards and practices, various media and interconnection components), networking devices and their specifications and functions. Students will practice designing physical network solutions based on appropriate capacity planning and implementing various installation, testing and troubleshooting techniques for a computer network. Where Does This Course Belong? | | | NT2799 | | | | | | | | NSA Capstone | | | | | | | Project | | | | | NT2580...

Words: 10839 - Pages: 44

Premium Essay

Unit

...ITT TECHNICAL INSTITUTE NT1310 Physical Networking GRADED ASSIGNMENTS ------------------------------------------------- Student Professional Experience Project NSA SPE Project 1 (to be completed by the end of NT1310): Install, Configure, Test, Maintain and/or Document the Worksite Local Area Network and Its Components Purpose The purpose of the Student Professional Experience (SPE) project is to provide you an opportunity for work experience in your field or in a related field to add to your résumé. You may have an opportunity to serve your community or work for a local employer for a project that will take between 20 and 30 hours. Project Logistics Career Services will identify an employer with needs in the following areas: Network related tasks (mostly confined to the LAN and Microsoft Windows Server 2008 environments) Students are expected to practice various skills discussed in all the technical courses in Quarters 1 through 3 of the NSA program at an employer’s site on network related tasks (more confined to the LAN and Microsoft Windows Networking with Server 2008 environments) that would involve installation, configuration, testing, maintenance and documentation of the worksite network and its components, and to properly document the technical information in all involved activities. Such documentation will be used as the source material for Items 2 and 3 defined in the Deliverables section of this document. Possible example projects could...

Words: 6762 - Pages: 28

Premium Essay

Network Topology Paper

...Christopher A. Lee Sr. NT1310 Week 3 Assignment.Network Topology Paper Network topology is the arrangement of the various elements (links, nodes, etc.) of a computer network.[1][2] Essentially, it is the topological[3] structure of a network, and may be depicted physically or logically. Physical topology refers to the placement of the network's various components, including device location and cable installation, while logical topology shows how data flows within a network, regardless of its physical design. Distances between nodes, physical interconnections, transmission rates, and/or signal types may differ between two networks, yet their topologies may be identical. A good example is a local area network (LAN): Any given node in the LAN has one or more physical links to other devices in the network; graphically mapping these links results in a geometric shape that can be used to describe the physical topology of the network. Conversely, mapping the data flow between the components determines the logical topology of the network. Contents * 1 Topology * 1.1 Point-to-point * 1.2 Bus * 1.3 Star * 1.4 Ring * 1.5 Mesh * 1.6 Tree * 1.6.1 Advantages * 1.6.2 Disadvantages * 1.7 Hybrid * 1.8 Daisy chain * 2 Centralization * 3 Decentralization * 4 See also * 5 References * 6 External links Topology There are two basic categories of network topologies:[4] 1. Physical topologies ...

Words: 5057 - Pages: 21