Finding countermeasures for active directory threats using NIST 800-30 frameworks
Data showed that many Active Directory (AD) implementations in the enterprises /organizations are insecure. Since AD is ubiquitous and it is an essential part of a security enterprise, security of AD is imperative. This research focuses on how to secure an AD environment. It uses a risk assessment approach to find threats in existing AD and then recommend countermeasures for these threats. A new AD risk assessment is developed for the purpose of this research. Components of AD, where the risk assessment is performed, are also defined. The results of the assessment are a series of countermeasures for AD and a set of security-based GPO, both to be implemented in the assessed AD environment. To ensure the effectiveness, implementable level, and evaluation of the risk assessment results, demonstration of the countermeasures and experts' judgment are also conducted. The research concludes that risk assessment approach for securing an AD environment is highly implementable for securing an organization's AD. Specific threats on an organization's AD environment and the recommended countermeasures are identified in well-structured processes, which can be performed in accordance to the developed framework.
M00294 | (wh) | Available |
No other version available