Design a comprehensive security system for a hypothetical company.
Company Background: Give a brief overview of the hypothetical company – its size, industry, key operations, type of data it handles, etc.
Company Name: Bookster
Industry: Online Retail (Books)
Company Size: Small to Medium Business (250 employees)
Operations: Bookster is a dynamic online retailer specialized in selling books. Their business operations are entirely online, with no physical retail outlets. They host a website where customers can browse their book collection, order books, and write reviews. They also have an e-reader app available for iOS and Android where users can purchase and read e-books.
Data Handled: Bookster handles a lot of sensitive data, including customer names, addresses, credit card information, and purchasing history. On the employee side, they store personally identifiable information (PII), payroll data, and HR records.
Cloud Services: Bookster leverages cloud services for many operations. Their entire book inventory database is hosted on a cloud server, their website is hosted on a cloud platform, and they use a cloud-based CRM for customer relations and marketing.
Mobile Presence: Bookster has a mobile application available on both Android and iOS platforms. Customers can use these apps to browse, purchase, and read books, as well as leave reviews.
Security Concerns: Given their online presence, Bookster faces a variety of security threats, including potential data breaches, DoS/DDoS attacks, phishing attempts, and vulnerabilities in their web and mobile applications. They are also concerned about protecting their customer and employee data and ensuring their services remain available and reliable.
Upload the completed plan in doc or pdf format below.