Architecture Implementation
A security manager should consider the following aspects while implementing the architecture:
- Termination process: An effective termination process is one of the most important aspects of the information security process. Terminated employees can misuse their credentials for unauthorized activity. Hence, the termination process should ensure timely revocation of all access as soon as an individual is terminated or otherwise ceases to be in employment.
- Security rules: A security manager should ensure that rules related to security tools, such as firewalls, IDS, antimalware software, and security information and event management (SIEM), should be reviewed at periodic intervals. Rules should be simple and easy to implement. It is difficult to manage an excessive number of rules, and there is a chance that a particular rule may conflict with another, which may lead to security vulnerabilities. Furthermore, it becomes difficult to test complex...