Unit 11 Reading — Dialogue: A Company Security Policy Discussion

US male Listen as you read:
Dialogue: A Company Security Policy Discussion

Scene: a security discussion between two employees at a company

Nigel: Hello Mia, thanks for coming. I wanted to talk to you about the new security policy we’re drafting for the office.

Mia: Sure — I just read the draft. It looks good, but some parts were a bit technical. For starters, can you explain why we need both public and private keys for our authentication system?

Nigel: Of course. We use cryptography so that when a user logs in, their data is encrypted with a public key and only the server with the private key can decrypt it. That way our communications stay safe.

SORRY, BUT YOUR FREE VIEWS HAVE RUN OUT!

This educational ESP website is free from banner advertising and other distractions. Therefore, we rely solely on licenses to keep this service running. Your support is greatly appreciated. Have a great day!

If you honestly cannot afford a license, please contact us and we will try our best to help out.

Discussion Questions
  • Why is it important for companies to use both technical defenses (like cryptography and penetration tests) and human training (like social engineering awareness) to stay secure?
  • Do you think grey hat hackers should be punished by law, or rewarded with money when they discover and report vulnerabilities? Why?