This assignment requires acting as a Managed Security Service Provider (MSSP) analyst and using the ConnectSecure platform to assess the security posture of a company called XYZ Test Company.
The work involves logging into ConnectSecure using the tenant name usf-bellini, reviewing Windows and Mac assets, vulnerability severities (Critical, High, Medium, Low), asset risk scores, vulnerable applications, and network exposure.
The assignment contains 15 questions, which include:
- Comparing vulnerability severity counts between Windows and Mac systems
- Identifying the operating system mix and most vulnerable applications
- Listing the top three highest-risk assets and their vulnerability breakdowns
- Checking for VMware-based assets with vulnerabilities
- Explaining how ConnectSecure assesses internal and dynamic environments
- Identifying vulnerabilities with non-standard scoring approaches
- Prioritizing vulnerabilities based on likelihood of exploitation
- Assessing exposure to HTTP (port 80) and Telnet (port 23)
- Evaluating macOS patch urgency using threat intelligence
- Checking for expired SSL certificates
- Responding to CISA known exploited vulnerabilities
- Identifying end-of-life software
- Assessing ransomware robustness
- Selecting the most urgent Microsoft-related remediation action
Some questions require short explanations and justifications, and one question requires a screenshot from ConnectSecure. No programming, hacking, or reverse engineering is involvedthis is strictly a security analysis and reporting task.
The final deliverable should be clear, well-justified written answers based on the data visible in ConnectSecure.
Requirements: 15 answers

Leave a Reply
You must be logged in to post a comment.