Digital Systems Security
Center for Disease Control - Genetics Research Project
Brandan Boggs, Daniel Moyal, Martha Carr, Gowri Alekhya Chintalapudi, Srujan Reddy, Siddhartha Kalyanapu
CDC - Genetics Research Project
Data Collected:
Mandatory Compliance with:
CDC - Genetics Research Project
Business Area (BA):
Secured Area (SA):
High Security Area (HSA):
High Security Area (HSA)
Security Area (SA)
Data Center
Business Area (BA)
Data Collection Site
Offsite Security Office
Security Cameras
Security Door
Security Cameras
Anti-virus Kiosk
Anti-virus Kiosk
PHYSICAL DIAGRAM
Servers
Data Collection Workstations
Admin Workstations
WWW
General Internet
Encrypted WiFi
Printers
Honeypot
NIDS/HIDS Sensor
Firewall
Firewall
Firewall
NIDS/HIDS Sensor
NIDS/HIDS Sensor
Honeypot
Honeypot
Honeypot
LOGICAL DIAGRAM
NIDS/HIDS Sensor
Level 0, 1, 2 - Physical Security
Level 3 - Physical Security
Level 4 - Physical Security
Direct
Level 0, 1 and 2 (Green):
All the customers and employees can access the general purpose computers by using their username and password or customer ID.
Can access the systems with their own USB or Cat cables.
Level 3 (Yellow):
Password Policy
Only limited employees can use cat or USB cables.
Level 4 (Red):
Virtual
No remote access :
Check IP addresses.
Detect spoofing.
Usage of a secured password:
Check for authentication by using more secure passwords.
Password with at least 10 and maximum 15 characters.
Password should contain an uppercase letter, a lowercase letter, a number and a special character.
Fingerprint recognition:
The use of ridges and valleys found on the surface tips of
a human finger.
No two individuals have a same pattern of ridges and valleys
which are found on the finger tips.
Eyes - Iris Recognition
The use of the features found in the iris to identify an individual.
Most advanced option which increases the security level.
Hand Geometry Recognition
The use of the geometric features of the hand such as the lengths.
of the finger and width of the hand to identify an individual.
Securing the CDC for levels
1. Level 0,1,2
2.Level 3
3. Level 4
Level 0, 1, 2 :
Level 3:
Level 4:
strong encryption
firewall
user 1
wireless signal passing through firewall
user 2
firewall
strong encryption
PMMD
PMMD
SIEM - AlienVault USM
SIEM Functions
Source: https://www.alienvault.com/products
Staff Education
Staff Education
The End