Cybersecurity project
Budget: £20 – £250 GBP
Scenario and Environment Description
You are part of a digital information security team called InfoSafe who often act as consultant advisors to UK
businesses to assess and help improve their data security.
One of your current clients is a small enterprise called HealthyHerts, who are a community Health Centre.
HealthyHerts have a commercial building, just outside of Stevenage, which houses the main e-commerce servers and
a small LAN for the 25 or so employees. There are 4 main administration and reception staff, one personnel and HR
person, 5 community midwives, 10 general health practitioners, 2 technical staff (who look after the IT systems and
infrastructure as well as update the website and do incident response and data security), 1 building manager, 1
manager and a CEO who reports to the local trust and health services.
HealthyHerts have hired InfoSafe to help in reviewing their network and information security. In the previous year
they found that the number of cyber-attacks against the company increased. They were the targets of several social
engineering and phishing attacks, one mandate fraud attempt, one ransomware attack (on an older Windows 7
system) and - they think - a few hacking attempts. HealthyHerts do not believe (but cannot verify) that any data was
accessed in these hacking attempts.
You are part of a digital information security team called InfoSafe who often act as consultant advisors to UK
businesses to assess and help improve their data security.
One of your current clients is a small enterprise called HealthyHerts, who are a community Health Centre.
HealthyHerts have a commercial building, just outside of Stevenage, which houses the main e-commerce servers and
a small LAN for the 25 or so employees. There are 4 main administration and reception staff, one personnel and HR
person, 5 community midwives, 10 general health practitioners, 2 technical staff (who look after the IT systems and
infrastructure as well as update the website and do incident response and data security), 1 building manager, 1
manager and a CEO who reports to the local trust and health services.
HealthyHerts have hired InfoSafe to help in reviewing their network and information security. In the previous year
they found that the number of cyber-attacks against the company increased. They were the targets of several social
engineering and phishing attacks, one mandate fraud attempt, one ransomware attack (on an older Windows 7
system) and - they think - a few hacking attempts. HealthyHerts do not believe (but cannot verify) that any data was
accessed in these hacking attempts.