MEMORANDUM: High Priority Security Audit Task
FROM: Evelyn Vance, Chief Information Security Officer (CISO)
TO: You (Associate Security Analyst, Day 1)
Welcome to the Nexus Defense Security Operations Center (SOC).
Our recent internal assessment revealed alarming vulnerabilities across four key enterprise divisions: Executive Finance Portal, R&D Quantum Server Vault, Point-of-Sale Retail System, and Employee Cloud Storage. Each division currently relies on a single security control—a classic Single Point of Failure (SPOF).
As outlined in the AP Cybersecurity Framework (Standard 2.1.G), an enterprise security strategy must employ Defense-in-Depth—a layered security approach spanning six distinct defense domains:
YOUR OBJECTIVES TODAY:
- Spot the Single Layer: Audit each division and identify which single security layer is being relied upon.
- Simulate the Attack: Run a Red Team breach simulation to observe how easily a single layer crumbles.
- Fortify with Defense-in-Depth: Design a multi-layered defense strategy with at least 3 independent layers for each division.
- Present to the Board: Defend your security proposal in front of the Executive Board of Directors.