Which of the following security investments to you recommend? Why? Invest $50,000 to increase the estimated time to penetrate the system by 4 minutes
Invest $50,000 to reduce the time to detect an attack to between 2 minutes (best case) and 6 minutes (worst case)
Invest $50,000 to reduce the time required to implement corrective actions to between 4 minutes (best case) and 14 minutes (worst case).
Solution: Option 3 is the best choice because it is the only one that satisfies the time-based model of security under the worst case conditions:
Option
P (worst case)
D (worst case)
C (worst case)
1
29
10
20
2
25
6
20
3
25
10
14
8.7 Explain how the following items individually and collectively affect the overall level of security provided by using a password as an authentication credential.