Denial of Service Attack
I'm thinking when I have Denial of Service Attack what asset should I put this into
I mean it is digital, but what documents can be affected by this
My question was regarded to DDoS attack as I am filling up the risk report. I downloaded a template and Im trying to follow that. I work for Web Hosting company so this report is for IT department only and obviously it is just a starting point.
Assign topic to the user
The main assets you must consider as affected by a Denial of Service Attack are the information you need to access through the systems under attack (not necessarily documents).
For example:
- if the attacked system is an e-commerce website, among other information, the information it provides about products on sale are affected (customers won't know what to buy)
- if the attacked system is an internal financial system, the information about invoices are affected (you cannot charge customers or pay suppliers)
- if the attacked system is your file server, then, in this case, your documents are affected
This article will provide you a further explanation about DDoS:
- Can ISO 27001 help your organization in a DDoS attack? https://advisera.com/27001academy/blog/2017/12/04/can-iso-27001-help-your-organization-in-a-ddos-attack/
Comment as guest or Sign in
May 01, 2020