What needed to be addressed?
Translate broad infrastructure-security concerns into an organized set of risks and practical safeguards.
What I did.
- Reviewed the environment through a defense-in-depth lens
- Connected identified risks to access-control and protection concepts
- Organized recommendations so higher-priority improvements could be addressed first
What was produced.
A presentation that explains the assessed risk areas and proposes a layered security approach.
Why it matters beyond the classroom.
Security recommendations are more useful when they connect technical controls to the operational risk the organization is trying to reduce.
What this project does not prove.
Academic project based on a defined scenario. It was not an intrusive production assessment or penetration test.