An IT Architecture for Emory University
Adopted by CIRT
Security Domain Architecture
February 20, 2002
ITA Version 1.9.8
© 2000 Emory University
Page 12-33
C-13. Provide a clearinghouse of countermeasures.
Status: Adopted
The Security Architecture should include a clearinghouse of current and archived
countermeasures that have been validated and researched.
Justification
§
System administrators, IT department managers, policy makers, security analysts, and
others who must take countermeasures to threats need access to reliable information.
§
The clearinghouse would contain validated information from credible sources both
internal and external to Emory.
Implications
1.
Credible sources would need to be identified.
2.
A Security Analyst role would be needed to direct researching and validating the
information.
3.
A database or directory would be needed to store the information and make it
accessible and searchable as appropriate.
4.
A Security Administrator role would be needed to maintain the database and use the
information to implement policy.