  1. Discuss the concept and application of Data Loss Protection (DLP) to protect data in an organization’s database? Consider the types of data, to be protected from loss. Is there some data too important to be on line in the first place?
  2. Discuss the implications of cloud data storage in conjunction with cloud-based databases – what additional considerations are needed in IaaS, PaaS, and SaaS cloud deployment strategy?
  3. In your opinion, what are the most possible reasons for failure in critical infrastructure protection?
  4. Do you think the governance of information security is evolving? If so, how?
  5. Which step in development of an awareness and training program (designing the program, developing the material or implementing) is the most challenging in your opinion? Why?
  6. What are the vulnerabilities of VPN?
  7. How is physical security a component of reducing attacks to routers and switches?
  8. Is there any legitimate reason to use remote administration applications?
  9. Is Nimda a Trojan horse? Why or why not?

