Get Instant Help From 5000+ Experts For
question

Writing: Get your essay and assignment written from scratch by PhD expert

Rewriting: Paraphrase or rewrite your friend's essay with similar meaning at reduced cost

Editing:Proofread your work by experts and improve grade at Lowest cost

And Improve Your Grades
myassignmenthelp.com
loader
Phone no. Missing!

Enter phone no. to receive critical updates and urgent messages !

Attach file

Error goes here

Files Missing!

Please upload all relevant files for quick & complete assistance.

Guaranteed Higher Grade!
Free Quote
wave
CDF 290 Legal Aspects of Cyber Security

Question:
Starwood Hack

Beginning in 2014, malware infected the reservation system of Starwood Hotels, which included Sheraton, W Hotels, Westin, Le Meridien, Four Points by Sheraton, Aloft and St. Regis.� Then, in 2016, Marriott Hotels acquired Starwood. In November 2018, Marriott discovered and revealed the four-year hacking campaign that attacked Starwood's reservation database.A total of 383 million guests were eventually determined to have been affected. The data breach related in the theft of names, addresses, phone numbers, credit card information, email addresses, and millions of unencrypted passport numbers. The Data Breach has arguably subjected Starwood to legal liability both in the US (data breach and breach notification laws) and in the EU (the EU General Data Protection Regulation �GDPR).

�In your initial post, please answer both of the following questions:
Choosing either a US state data breach law or the EU GDPR (check our reading materials and PowerPoint slides, the links below, and ncsl.org for descriptions of applicable law) and explain how it applies or has already been applied to Starwood for its data security breach.
�
Using your best judgment, what would you recommend to create and maintain an infrastructure that would most robustly and effectively protect against future breaches and the liabilities resulting from those breaches? Include any specifics you may be familiar with such as hardware and software recommendations, compliance with specific US and� international laws, industry best practices, and any appropriate third-party vendor solutions. Here are some background links, not in chronological order.

Answer
Answers:

Starwood, a subsidiary of Marriott International, suffered a data security breach in 2018 that exposed the personal and financial information of millions of its customers. The breach involved the unauthorized access to Starwood's guest reservation database, which contained information such as names, addresses, phone numbers, email addresses, passport numbers, and credit card numbers of guests who had stayed at Starwood hotels.

Several technologies and practices could have been applied to prevent or mitigate the impact of this data security breach, including:

  1. Encryption: The use of encryption can help to protect sensitive data from unauthorized access. Starwood could have implemented encryption for the guest reservation database, making it more difficult for hackers to steal the data even if they gained access to the database.

  2. Multi-Factor Authentication (MFA): MFA is a security method that requires users to provide two or more forms of authentication to gain access to a system. Starwood could have implemented MFA for its systems to ensure that only authorized personnel could access sensitive data.

support
close