Thursday, June 6, 2019
Marketing Essay Example for Free
selling EssayFor any entrepreneur, merchandising is an important component for the success of all businesses. Marketing give the axe be identified as the process in which any business informs, satisfy and animation possessions of its customers. It is the main ingredient to bringing in customers to cast up profits for a business. Many may think that marketing is as simple as advertisements and promotions but in the real business world to be successful, marketing is a bit more complex. A business needs a solid marketing plan to succeed and similarly to show the investors the beau monde is able to return the investment the investors have given. For an entrepreneur to master the marketing skill the individual must understand the marketing mix. Marketing mix is the conspiracy of the elements of marketing and what roles each element plays in promoting your crossings and religious services and delivering those products and services to your customers (about. com). Elements of Ma rketing Mix The marketing mix has four elements and until recently there have been a few raw added elements which atomic number 18 referred to the 4 ps or the 7 ps of marketing mix.The 4 ps of marketing be product, place, price, and promotion and the redundant ps are process, people and physical evidence. When looking at it from a business sand of view it make a lot of sense because even though the added ps can be explained in the original 4 ps, they each can stand alone. For instance process can be looked at as the protocol used by businesses for the marketing strategies and people can be seen as what they used to explain in debt the product or services.Last but not least physical evidence is what most consumers today go by which shows firsthand that a product or services does work. Product is the product and services offered to your customer, and how they are different from the competitors products. Businesses also have to make sure when go a product to their customers it ha s to have the pose features meaning it must look good and work well and have enough to go roughly. Price is expound as how you price your product or service so that your price remains competitive but still allows you to make a profit.In pricing businesses should also keep their targeted market in mind ensuring it is affordable to them and potential future customers. come in is describe as the dispersion or where your business sells its products or services and how it gets those products or services to your customers. Place is very important because a business would want to make sure that their goods and services arrive when and where they are needed. For the promotion element it is the methods used to communicate the features and benefits of your products or services to your target customers.In today market promotion is made easier because your targeted consumer can be reached by the push of a button. With that being said businesses should keep technique and deliverance of the product and services offered into consideration also. The fifth p in marketing mix is described as people and is how your level of service and the expertise of the people who work for you can be used to set your business apart from the competitors. With the majority of products and services being offered by the click of a button, most consumers tend to rely on reviews to help them decide.If the business does not have the right people that look captain and have good ethics with the knowledge of the product or services they are selling it can hurt the business extremely. Which brings us to the saying a first impression last. make-up The Atlanta barber and beauty supply company or ABBS is an organization that supplies barber and beauty shops all around the country. They have been in business share professional barber shops since 1946 with new, used and antique barber supplies and equipment.It is specifically marketed to the licensed barber or beautician shop owners. Just like any f ormer(a) organization ABBS has used the four elements of marketing mix to assist in the marketing strategy. For the product element the company has shown how each of their products are of great professional quality and last for days. Even though they sell top quality products, they also return lower end products for those that maybe not willing or able to spend as much. They sell the same products as their competitors but they have a wider variety of clippers and shears in simple eye that are antiques.This allows them to provide their products to a larger consumer group from the older shops to the younger and ever changing shops. The company takes pride in having any kind of hair products in stock. some(prenominal) barbers have specialty shops that only cater to an older market and likes nostalgic products and equipment to make their shop look and feel like the barber shops of the past, and ABBS has these products and items in stock and can ship them anywhere all around the worl d.This element does not affect the development of the companys marketing strategy because it helps it by do sure the company keeps plenty of stock of their products. This element also gives the company a reason to look at other countries hair products to see what new products are being made and used in that country that can be sold to that market in the future. In the price element this affects the marketing strategy of the business by making the company decide how to price their products without making the price to expensive but earnive to customers to gain more customers than the competitors.The prices for the products are at competitive rates but lower than other barber supply companies because they give discounts to the owners of the barber shops. They also give a discount on shipping on all items purchased $60 and over. That is a strategy to bring in and keep more customers to use their internet website. The place element/distribution element for the ABBS is placed in 186 Mit chell St. S. W. Atlanta, GA that is the main building set for distribution of all barber and beauty products. The company utilizes its internet website by offering its products via e-commerce to a worldwide market.This affects the companys marketing strategy and tactics in a good way by broadening their market to attract more customers. The more the clients they can generate worldwide the more the companies profits will increase. The internet is the best tool to advertise a business and its products these days, because of its blur to reach a mass amount of people around the world in a matter of seconds. They also use catalogs to keep their existing customers updated on new products and price and can also be a good way of keeping them in the loop of new adventures to come.In past years the radio and TV ads were the top marketing tool for businesses, but it came with an expensive price to get a radio or TV ad spot it also only reached a local market so small businesses were stuck on ly doing business domestically. The internet made it easier and cheaper for mainly anyone to advertise anything to anyone all around the world. Now the company distributes its products from the main building in Atlanta to thousands of clients in many different countries. The ABBS Company has developed policies for its internet clients that are overseas it also ships to APO/FPO addresses.In the promotion element the company communicates through the internet to advertise its products it also sends out catalog magazines to all new barbershops that are listed in the yell books of each city. The company is a top search when searched on Google. ABBS promotes the business in all forms of the marketing aspect, from newspaper ads, magazines, radio/TV ads, and the internet. Conclusion In conclusion new entrepreneurs understand that the marketing mix is a good tool to use when planning the marketing strategy of the business.It shows that these strategies are ever evolving with measure and fo r a business to be and keep being successful their approach to cater to their consumer must also evolve. After identifying the four elements of marketing mix which are product, price, place, and promotion I was able to describe how each element affected the development of the companys market strategy and tactics. I also described how each of the four elements was implemented for the business, and identified the industry in which ABBS exists.
Wednesday, June 5, 2019
An Exploration Of Victorian Society English Literature Essay
An Exploration Of Victorian Society English Litearned contribute averageture EssayFrom start to finish The nameless Case of Dr Jekyll and Mr Hyde by Robert Louis Stevenson portrays harsh contrasts entire and detestation, rich and poor, morality and immorality, love and repulsion and the focal ratio and patheticer classes. However it is only when Christian ethics (previously forgetful challenged by other religions or learning), the Victorian obsession with respectability, the class establishment and other stereotypical Victorian military postures argon explored with these contrasts that it is made clear how duplicitous the era was. The novella acts as an engaging geographic expedition into other Victorian attitudes, interests, timiditys and obsessions. These include fear of social unrest, disability discrimination, sexism, a desire for resolved endings in literature, a need for biblical references, and clashes between science and religion.The obsession with wearing an air of respectability (as Jekyll is said to hold) is one of the greater reasons why Jekyll finds joy in saltation between his two personalities. It is likely that he would indulge in passions his peers would not have approved of a mixture of heavy drinking and sex. He overly went to prostitutes, a life he found hard to reconcile with his imperious desire to carry his head high. This is undoubtedly alike the reason why really few members of the frown classes hold important roles in the story. In fact the only lower class character to properly romp in the novella is the head-servant, Poole. Much closer to his master (he is referred to as Dear Poole on one occasion), he has authority over the other servants and certainly is not the lowest of the low this is probably the main reason why Stevenson considered Poole fit for such a role as he plays. The way in which the characters dress themselves, furnish their homes and sing of one another is also evidence of this obsession. Jekyll s home wore a great air of wealth and comfort to such an extent as that Utterson was wont to come up to of it as the pleasantest room in London.The novella reveals a lot about the class system, the cause of m some(prenominal) social problems, and its iron-grip on every Victorian citizen. The top(prenominal) classes in the book are portrayed as being upright and respectable, living in grand abodes, the spoils of well-paid professions Jekyll is a doctor and Utterson a respected lawyer. We are also told that Jekyll was born to a large fortune, endowed besides with excellent parts and fond of the respect of the wise and good among his fellowmen. When young he had seemed headed for an worthy and distinguished future. The lower classes could not be portrayed more(prenominal) dissimilarly. Other than servants, the novella indicates they would be unemployed, criminals or prostitutes working in Sohos sex district. They either kick the bucket in small quarters in their masters houses or amongst slatternly passageways in the dismal quarter of Soho. In the Victorian era people grew up knowing which class they belonged to and, as this was usually defined by birth it provided great benefits for the rich (who stayed rich) but ca apply the poor to either lose faith in social mobility, or else, to revolt.The Strange Case of Dr Jekyll and Mr Hyde did not just illustrate the class systems divisions but can serve to strengthen it. It portrays Sir Danvers immediately before his remnant as an old but beautiful gentleman with white hair. This could merely be an attempt by Stevenson to heighten the murders tension but I feel this sign of goodness and purity through the character commanding the highest social position is an attempt to highlight the insolubility and inferiority of the lower classes to those above them.The lower classes feature little in the story, only ever appearing as vehicles through which Stevenson could move the plot forward, or working under the instruc tion of their employers. This means the pep pill classes were expected to return the decisions whilst the lower classes ran errands in ineffectual lives. In the book this is demonstrated by the strict rule for addressing members of another class. Addressing an employer Mr or Sir is expected. Upon the rarity that an employer should gentle their servant with a name it would be their surname as the Christian name was considered too familiar and affectionate. Being seen as such could be electronegative to reputations so a more usual form of address would be Hold your tongueA hierarchical construction manifested from fear of scandal is also evidenced. Were scandals to be directed at upper class personage they could mean a decimated reputation. Yet through a circle of mutual fear the upper classes were able to indulge in whatever secret pleasures they wished, such as those that Jekyll confesses to and Hyde commits. The fear of scandal is most strong on page 37, w here(predicate) Utte rson is worried the good name of another would be sucked down in the eddy of a scandal. On page 38 Uttersons butler discovers information labelling Jekyll as a murderer. Utterson urges Jekyll to make a clean breast of this in confidence and when the butlers master asks him to keep the matter quiet he calmly says I understand. Therefore the mutual fear and loyalty in this scandalous system is even stronger than moral duty. Once Jekyll perfects his potion he must work alone to protect his standing, he sets up a room with the most studious care in a separate house in Soho for Hyde to reside in and found a silent and unprincipled woman to keep house there. He even goes to the aloofness of familiarizing all his servants with Hyde and writing a will leaving everything to Hyde in the event of his expiry or disappearance. It is implicit that the lengths Jekyll takes would mirror other respected characters.The novella portrays a society divided into two it is not only Jekyll that is commi tted to a difficult duplicity of life all the rich and powerful live in ignorant luxury, ignoring the suffering lower classes. Stephensons work also shines light on the system that kept the upper classes illegitimate indulgences hidden.Fear of revolutionist ideology was strong amongst members of the upper class. To find evidence of such in this story, one must shoot into the ways in which the poor are neglected, for example in voting, health, rights and legal representation and how these factors could lead to a massive uprising (such as was seen in France). Members of lower classes are left almost unrepresented in our story, the many servants, that would have moved quietly within the house, are rarely observed, when they are they are whimpering quietly. The root word of them whimpering shows them as inferior and over-emotional. If not for the more gradual changes in opinion over the class systems role from this under-representation to a world where all classes show some breaker point of solubility within society Britain may have seen a revolution on the very scale many Victorians had feared.The Victorians had strong expectations of the content and plots of their eras literature. Stephenson abstains from direct descriptions of immorality, alternatively only alluding to the novels graphic scenes. They also expected resolved endings the righteous prevailing, the evil punished.Many of Hydes crimes are only vaguely alluded to, particularly sexual ones. Others, such as Sir Danvers murder, are described briefly and in pellucidly, only that Hyde was hailing down a storm of blows. To heighten the shock factor of each crime Stevenson instead describes at length the earlier tranquillity and through later mentioning that a purse and gold watch were found upon the victim, illustrating that this attacks motive was purely sadistic. This idea of sadism, an utter, deeply entrenched evil is important to the novellas message and Jekylls hypothesis that evil is not only wh en brought about by necessity such as a beggared boy turning to take pocketing but is more deep-rooted and harks back to the idea of original sin and that man is no different to any other beast. Jekyll, reflecting on mankind, All kind-hearted being are commingled out of good and evil.Perhaps the abstinence from graphic description is due to the fact that Stevensons wife destroyed the first draft for its explicit descriptions of sex, violence and references to homosexuality. Suggestions that Jekyll/Hyde were homosexual are so watered down that many disregard them Hyde always enters by the rear door. This dilution typifies the desire for morality and the disgust at graphically intense descriptions a point which, if further extrapolated, reveals the desire of the upper classes (at whom the novel was targeted) to ignore or hide the huge social problems of their nation.Victorian novels preponderantly are resolved. I personally find archetypal works in which those that exhibit qualitie s like perseverance, god-centeredness, humility, generosity and dignity always win out in the end and where virtue is rewarded whilst wrongdoers are punished disappointing because they are too idealized. This concept is clearer in many earlier novels where even the toils of the poor are rewarded. adept vivid example of this is Jane Eyre by Charlotte Bronte in which Jane falls desperately in love with and (by the books completion) marries Mr Rochester despite his blindness and frailty. At first the tale of Dr Jekyll and Mr Hyde seems to have strayed from this structure because Dr Jekyll does not manage to separate himself from the evil side of his nature. However the closure of the novel is more complex. Upon re-examination of the concluding chapters it seems to be the case that Jekyll destroyed Hyde along with himself the intend that is closing in on both of us has already crushed himVictorian literature is usually rife with examples of biblical references, the most prominent her e being I incline to Cains heresy. This refers to Genesis 49 which describes Cain murdering his brother Abel. God is said to have asked him where Abel was to which Cain said Am I my brothers keeper? Utterson simply re-phrases this to I let my brother go to the devil in his own way. The phrase has become synonymous with peoples unwillingness to accept responsibility for the welfare of their fellows and is used by Stephenson to advance the plot and broaden Uttersons character.The need for biblical allusion in literature is one component in the mechanism by which Stevenson sheds light on the struggle between science and religion. On one hand, we see religion reflected in words throughout the novel Poole uses the phrase I give you my volume word to demonstrate his solemnity to his observation of Jekyll and Hyde but this contrasts with the emerging science. It is worth remembering that many Victorians saw science as an atheistic concept, Lanyon calls Jekylls works scientific heresies in an almost oxymoronic juxtaposition (in an atheistic world there would be no God for science to yield heresies about).The era brought many improvements in science up to now some seemed to threaten the literal meaning of the Bible. Most simply found ways to re-interpret the Bible in the light of such discoveries with little slander to their faith. However people especially struggled with ideas set out in The Origin of Species because they seemed too direct an attack on religion. It said that all life evolved from more primitive forms. Darwins theory is referenced many times such as when Hyde is said to possess ape-like fury, he is also described as troglodytic and degenerate perchance concurrent with a hypothesis of reverse evolution into a more primitive form. People now felt they had to choose between the dangerous novel scientific theories and the more venerable option of religion. From the viewpoint of any man choosing the latter, Jekylls experiments would be considered meddl ing in Gods affairs and something only God should have encounter over.The structure of parts of the book, also, reflects a more scientific approach to situations which would before have been tackled with superstition and the words of the bible. On pages 41 and 63, this is demonstrated by sections of textual matter that take each event methodically, as if they were notes from an experiment. Hydes transformations are also listed like scientific observations.Chemistry is also in evidence, as an emerging science, not yet tested. To exploit the curiosity of his audience to the complex moral implications of modern science Stephenson chose Jekyll as the novellas protagonist and uses many words connected to Jekylls profession to add learning and mystery to the plot the glazed presses full of chemicals, a graduated glass and a red tincture and powders. Jekyll uses chemistry to transform into Hyde, and part of the reason Stevenson approximation this more feasible was that nobody had yet fully explored chemistrys possibilities. Perhaps, if he were to write Jekyll and Hyde, today, the means of transformation might be genetic engineering/quantum physics.Drug and alcoholic drink abuse are witnessed at horrendous levels. Utterson describes a gin palace a woman passing out for her morning glass indicates the low set of gin and how this ravaged many lives. Drugs are only hinted at although the convulsive action of Hydes jaws and gagging described by Lanyon is now recognized as a indication of cocaine abuse.For me the most powerful symbol of sciences advancements is in Jekylls transformations which symbolise both progress and devolution making them a cause of fear. It is worth remembering Pooles precipitant return to the comfortable reassurance of religion, with the words God grant there be nothing wrong.In his novella, Stevenson repeatedly tells of some unnameable deformity that makes Uttersons blood run cold. Words like dwarfish all tell a similarly negative story of Hydes countenance. Enfield describing Hyde to Utterson said simply There is something wrong with his appearance something displeasing, something honorable detestable. The present day sees disability viewed less critically than the era that saw the publication of Dr Jekyll and Mr Hyde. It could be argued that Hyde is scary purely because of his tendency towards evil, but is this true? In my opinion Yes would be too shallow an answer. Stevenson plainly states such in the text evil had left on that body an imprint of deformity. Like so many fictional villains impairment and deformity contribute even to modern-day fearfulness of Hyde. Prejudice to the disabled/deformed is resultantly one heinous Victorian attitude that lingers still.Such prejudicial views were not just limited to the disabled women were also considered less valuable, sexism engrained in society. On page 55 Hyde is described as dolourous like a woman this succinctly illustrates how women were considered too frail. It was believed they lacked the cranial capacity in emotionally disturbing events. In The Last Night the cook was instantaneous out, Bless God Its Mr Utterson, the housemaid broke into hysterical whimpering, and then proceeded weeping loudly. Such instances were considered to demonstrate how women were unable to cope with complex or emotional situations. With such weak foundations in place, women were thought unsuitable for important jobs like government posts having said such, the head of the monarchy was a woman. However this did not result in any relaxation of the feminine ideal indeed only upper class women were not restricted to housework, and raising as many children as possible. This stereotypical idea of faintheartedness as opposed to intelligent thinking and decisions is also exemplified on page 30, after Sir Danvers murder at the horror of these sights and sounds, the maidservant fainted.Man is not truly one, but truly two. These words the conclusion to Jekylls life and research capture the essence of the entire novella and the stereotypical Victorian attitudes reflected in it most notably hypocrisy, from the division of the class system, other discriminatory bandings including sex and disability, and the division of faith between science and religion. So great were the contrasts in the novella that name evolved from Dr Jekyll Mr Hyde have become part of modern life. The phrase is used by newspapers to describe disturbing murderers with personalities not dissimilar to the characters or character, depending on how you look at it that are central to our story. As with the infamous Jack the Ripper (another affluent murderer) the stereotypically dark or primitive society that is too oft reflected by Victorian horror stories fails to fully explore the core the Jekyll in this instance a core of civility, respectability and prosperity. In this way the novella acts as an engaging, yet inaccurate exploration that only reinforces old stereotypes about Victorian society.
Tuesday, June 4, 2019
Security Forensics and Risk Management
Security Forensics and Risk perplexityAcknowledgementFore well-nigh I would worry vocalise thanks to god for e very(prenominal)(prenominal) support in only my life sentence and secondly University of Greenwich to go by this my life aim to complete my masters. Next my supervisor prof Kevin Parrott to the supports he gave beca practice session without his support I wouldnt be able to complete my disgorge with this quality. Especially the insinuations and appreciation ingestn my supervisor curb me feel better(p) and gave overconfident thinking. Finally requisite to thank my family and friends for unbelievable supports and encouragements.AbstractAs we argon in the info era the world is changing to use of goods and services electronic agency for twenty-four hour period to day use. The motif documents is g mavin and well-nigh of them argon paper free because of so m each reasons much(prenominal) as pollution, late, fast, etc At the same prison term this digital medi a has avai experience research laboratoryility, scalability, confidentiality and integrity which atomic number 18 required deportment for secure communication. The fortune is increased with the increase of data procedureor and digital core usage and the single warrantor escape whitethorn cause huge losses.There argon nigh surveys says approximately of the crimes argon spending through electronic means and the tar grow is figurer or reckoner peripherals. If the attacker found a single protection measure lack that is enough to start and break the whole establishment and the bail lack could be configuration mis go through, firewall issue and prefatorialally problems in the protection mechanism. Because of these reasons interrogatory become in truth important and this process called as canvassing.There are so mevery types in the visiting and this analyzeing requires technical knowledge to execute these running games perfect and to give an shadowervass overla y including suggestions. The studying falls into twain main categories such as autoloading(prenominal) and manual. The adjudicate result be economical if it is automated using test utensils which are called as automated or computerised test. Even though thither are nearwhat tests cannot be automated and subscribe to test manually.This size uping covers net mesh pledge test, carnal or environment shelter test, computer credentials test which includes packet package and hardware tests. The computerised test entrust carry on with some aegis tools and the manual pull up stakes use questioner to minimise sympathetic made delusions familiarly forgetting.Security take stock is the technical judging of the finishing or getation. The estimation may be manual or dodgingatic or both. In intimately case the size uping process uses manual and systematic/ automatic orders because there are some tests cannot be automatic such as review of the security indemnity , summation oversight, etcThis auditing has antithetical types such as knowledgeable or outside. This type is depends on the telephoner size and the resource availability. Usually big companies have their own security meeter so they go out get along the audit internally and the less(prenominal)ened and medium size companies mostly hire tender physique outside. Both types got pros and cons in security and fiscal manor.Chapter 1IntroductionThis chapter life-sizedly contains non-technical entropy to give the understanding of noble take objectives. Also describe the techniques and technologies utilize in the intent and research to come across the project Objectiveaudited accountThe audit is a systematic or manual security assessment of the profits, infrastructure, system, etc The complete audit should be the com stash a vogueation of manual and automatic assessment because in e very(prenominal) test target there will be some test cannot be automatic. The audit has so m each categories and the following paragraph will explain almost the categories and the functions or techniques behind that. There are 3 runs in the auditing process which arePreventive controlThe prophylactic controls are controls may in the form of software program or hardware or ant configuration to balk the misplay or vulnerabilities. This is an active type control everlastingly monitor the port wine for any vulnerabilities and block such vulnerabilities or errors before it enter into the system or infrastructure. This is most effective control mechanism because not frees the vulnerabilities.Detective controlThe detectives are in placed to monitor the vulnerabilities in the form of software or hardware simply the unalike between preventive and detective is the preventive wont allow the vulnerabilities into the system where detective allows entering every affaire and constituteing the vulnerabilities after enter. The best mannikin is for this control is fire alarm b ecause fire alarm wont prevent the fire before but if any fire it will field of study. corrective controlsThe disciplinal controls are the controls to correct the error or issue before it appoint any harm. This is very important control for all places even if they have another(prenominal) controls because there are some issues or vulnerabilities cannot detect by the controls if they will come and attack so there should be some control to correct those before loss occur. Addition to that the controls should up to date such as latest firmware or latest definition.Type of auditorsThere are two basic types of auditors in the tuition era the internal and international auditors. This excerpt of the auditor will be done by the management with the use of financial status of the organisation. Size of the organisation and the policies defined in the break openy. intrinsic auditorsInternal auditors are auditors belong to that particular company which is going to set the audit. That m eans the auditor is an employee of the company. So the auditor is always available to do the auditing and data or information will keep within the organisation. This is the main advantage of having the internal auditor and the same time and the employee solvely recruited for auditing indeed is cost a good deal for the company. So it is only thinkable for the big aim companies because they have huge investments and revenue. The in comelyice of the internal auditor is they may be up-to-date and dont have up-to-the-minute market or audit status such as new techniques and tools. otioseneous auditorsThe auditor recruited from other auditing firm for the auditing so it is very hard to take place professional auditor because of the availability and as the auditor recruited from outside the company information may go out. At the same time the auditor necessarily some time to get and understand the company process. But the advantage of recruiting the external auditor is their knowle dge and it is suitable for middle and petty direct companies.Types of AuditTraditional AuditIt is just like a manual auditing. It is useful when operative with a large amount of data in a large company. hither auditor took some sample data from different place then provide a report.AdvantageEasyCheaperDisadvantageAlways do not provide correct information.In IT sector it is not useful.Software auditSoftware audit is a wide fling offular for any educational institute or governing body. It is just like a review of the software and the system that can find all information of the system such as operating system, application software, processor, drives, controllers, bus adapters, multimedia, virus protection, system model, main circuit board, retentivity models, local drive volumes, net urinate drives, printers information etc.. There are so many auditing tools in the market such as Belarc Advisor, E-Z audit that are very power full. KW116 is the main testing ground for school of c omputing and mathematical science in University of Greenwich. CMS installed lashings of software for savants to continue study or research. According to likeness right, Design and Patents Act 1988, all Software must have a valid crowns to continue the process. As Lab uses large amount of software and different software expire on different time so it is very difficult for Lab administrator to keep up to date all licence by manually checks. Only auditing by software can accomplishable to give details report to administrator to keep up safe the system.AdvantagesCorrect Information Machine always provide the correct information so it has less chance to provide the incorrect information.Save time Software very quickly provides a report of the system so it saves time.Details definition It provide a details description of system including any warning or licences issues etcMinimise the cost By implementing the software audit two peoples work may possible with one people so it reduce the extra cost.Disadvantages enthronisation Costly Software is very expensive so university need extra money to buy this software.Risk Auditor knows the details information of the system.Work melt Auditor needs part of the lab to check the system. So it discontinues the student workflow.The approachThe typical audit has different approach to collect the data. The single audit will use multiple techniques to gather full information and it is necessary to use different technique for different train of people. These are common techniques here. dis cut throughThis technique uses to collect the information from outside people or diadem level people and the number should be limited. During the converse the auditor or interviewer will ask questions from other people and collect the information. So the person will be well prepared for the interview. This is very robust method because it will allow people to express fully and the method to a fault simple as it is talking which is natu ral way to communicate. Another advantage is this bi directional communication, means both parties allows to ask questions for clarification or gather information.ObservationThis method uses in the place where reliable time process monitoring or behavioural variegate is required. This is a powerful way of do the changes throughout the audit because other techniques exist in currently not possible to get real time information.InspectionThe technique required to do some movement with collected data to collect audit think information. This is the form of observation with lift criteria expected. This is extended version of observation because if the auditor apply any make criteria to gather the data which is necessary to the auditing.After collecting the data the next tint is to identify the weakness and process it. The identifying is the key work in the audit and after that categorising. The identifying uses some techniques to make that easy, preface and professional. The techni ques used here are foundation cause outlineGeneral technique for analyse and get the better solution for the vulnerability or weakness. Because this technique drilldowns to the issue and finds the root and assign the weakness. The basic technique behind this is if the root is fixed automatically it will fix all other problems related to that. So simply close all related issues at once. As mention the easy and robust way to land up the issues exist and the issues may come in the future.After root cause compendium the next step is to get the solution for the root of the issue. The important thing here is choosing better and effective solution for the issue. The selection depends on some external and internal restrictions.Organisation constitutionCost per benefitLegal restrictions availabilityCompatibilityVendor and citificationAdvantage of having AuditingSatisfaction It brings the confidence of the Lab administrator of the University of Greenwich to continue the credit line proc ess. Owner always thinks is there any lack that breaks down the pertinacity of the argumentation.Detection and prevention of errors Human can made error in any times .on one can say there is no error in there company. By auditing people can find the error and suggestion to recover the error.Detection and prevention of fraud It too just likes errors. sometimes drug exploiter intentionally or unintentionally does this thing. So after audit we can find out the fraud.Verification of the Licences KW116 Lab installs dissever of software for student. here(predicate) some software for 1 year some software for more(prenominal) than one year and some software has limitation (No. Of user can use) for use. So auditor can find all winning of licence issues.Independent impression Audit always done by the independent people .so this report always accepted by everyone.Safety form exploitation Health and resort always is a big issue for any organization. KW116 Lab got a great deal of eq uipment that are machine-accessible with electricity. So always chances for short circuit or exploitation. Audit identifies the all lack point and advice for prevention.Disadvantage of having AuditingIt is expensiveSometimes loath or stop the work flowExternal people know the company information.EncryptionEncryption is the simple technique in the different for to convey the date securely through shared place like internet. The form of encoding may vary from each other but they all commonly use digital certificate to encrypt and decrypt the data. Encryption use keys to make cipher text from actual message. The cipher text is not exonerated and it is the encrypted version of the massage using some algorithm.Security roles/user rolesThe security roles are very important technique to make network administration easy. This is essentially creating some groups with different permissions harmonise to the organisation operating theater or policy. A user or staff can have multiple se curity roles according to their need. This roles use to authorise the user permission.Security policySecurity policy is a document which has all rules and regulations documented and love by management and queue up with laws and legislation. This policy is used to define all activities and this is used to make some decision. chore ContinuityThere are trine things always we have to brainiac to continue the handicraftEssential to running the business any customer modulate cannot be delay more than seven days.Tolerate delay some application may delay to continue the business such as management pay. It is a midterm i.e. one to four weeks.Discretionary some application is useful for business but it is not affected to continue the business operation such as management report. It is a long term i.e. 3 to 6 months.Business continuity planningBusiness continuity planning (BCP) is the most important for any organization to continue the business. BCP engages with only different kind of r isk to continue the business process that might occur in the organization and it also reachs the policies, plan and procedures to reduce the risk. BCP can continue the business process in disaster situation as well. The main goal of the BCP is to combine unneurotic all policies, procedures and process so that any disruptive situation business process can continue or it may impact very little. Here main important function of BCP is Maintaining the business operationContinue the business in emergency situationReduce the riskIf any situation BCP cannot take over then Disaster recovery planning (DRP) takes over.British Auditing measuring rodBS7799It is a British stock called as BS7799 that developed by British standard institution where describes the security policy and standard procedures.BS7799 become the ISO IEC 17799 after pass judgment the ISO IEC technical committee for international use. Now a days information is a valuable asset for organization .So it is very important to protect the information like other corporate asset. Here BS7799 introduces how to protect the information from threats and suggest the three points to secure the information such as Integrity it is assurance the completeness and trueness of the information.Confidentiality Information can only access by the authorise peopleavailableness Authorise people can access the information when needed.Attacks and prevention for the attacksErrors and inattentionsErrors and Omission is one of the most common and toughest vulnerabilities .It is a human made error because human interact with computer programming, controlling and enter data for computer. There are no countermeasures to protect the errors and omission. role player and theftIt is a one kind of criminal activities that may occur in the KW116 Lab. It includes computer component such as mouse, keyboard, router, switch, cables, central processing unit box etc. It was observed that security person always not in the access point. So it i s harm to secure the lab from fraud and theft. By protecting the access control we can reduce the fraud and theft. Both internal and external people are responsible for that kind of activities. prevention of Fraud and theft continual auditing and monitoring program will help to identify all kind of fraud and theft.Deploy all of the access control.CCTV in decorous place.VirusVirus is a malicious enter that has ability to reproduce his autograph itself and spread one system to another system via netmail, downloading, storage devices (CD, DVD, depot tick, removal hard drive) and destroy the computer system. It was observed that removal memory stick all most every user are using and it is the most change to spread the virus in the Lab computer system and also observed user are using their own laptop and connected to the university wireless network. If user laptop effected with virus then it also change to spread the lab network that can affect the internal network and attack the s erver and crash the hard drive. barroomInstall the latest antivirus software.Regular update the antivirus software.Follow the backup procedures regularly.Scan the device when transfer data. place the NIDS (Network Intrusion detection system) and firewallMinimise the download from internet.Download only repudiated site blade site.Scan before the download.Care full to open nameless e-mail attach.Scan all incoming file from the remote site.Aware the user most danger of the virus.Trap-doorsIt is an undocumented command that might user can create to speed up the work flow. Unfortunately sometimes student might return these trap-doors.Prevention of Trap-doors usage latest antivirus software.Give permission to develop the code only authorise people.Check properly all coding before use it.Logic bombsIt work s like time bombs and affect the system in a particular event or day such as program launch, website logon. It changes the data and deletes the data from the system. Here student are accessing the lots software to do the course work or project. So they are safe enough to build the logic bombs. It is normally happen in company if employee leaves the job.PreventionAudit regularly and monitoringAlways back up the necessary fileAllow authorise people to develop the code collect record of all modification or changesTrojan HorsesIt is a software programming that contains the malicious code. Normally students are interested to download the music, free software from internet. It is the most change to affect the lab computer and destroy the data stored on lab computer system.PreventionAvoid unwanted software and music download from internet.Aware the user about Trojan Horses.WormWarm also is a malicious code that can spread itself without any human involvement from one system to another system .It works only computer network system and does not need any devices to transport.PreventionUse firewallUse update antivirus softwareSpywareIt is an unwanted software interface that monitors the activity of the user and transfers the important information like log in details or account details to the remote system that monitor the user activities.AdwareIt is also exchangeable to spyware but it does not intent to transfer the user details to a remote system. It works like advertisements on the internet. Some adware monitor the searching behaviour of the user and then redirect the related websites.Prevention of Adware /SpywareClose the pop up window.Aware about the spyware/adware.Click only reputed link.Social Engineering nearly of the users are getting unnoticeable mail and they are also chatting with unknown people. Social engineering is one of the most popular techniques that attackers use to access the system by agitateing the mail or chatting with people to know the password. So it is a major risk to the security of the password.PreventionNot response the unknown mail.Not chatting with unknown people.Dont give any one personal information or login id.Proper training or aware the new user about social engineering.Ping of death we have only permission to send the largest packet (65,536 bytes) on the server. Attackers know this amount of bytes from ICMP specialation. So they study to send the packets more than 65,536 bytes (at least 65,537). If the server does not check the size of the packet and try to process then it hung or crashed the operating system.Dumpster diving Every day Lab user printing there necessary document but sometimes by mistake they are printing unnecessary document and end of the day through all document in the bin. Hacker is very intelligence. They always look at the bin and find the necessary document to access the network.PreventionDestroy all documents before put in a binNatural disastersIf anything happen that is not under control of human it is called natural dusters such as earthquakes, volcano, floods, fires, storms, hurricanes etc It may occur in any time but most risk is the fire for KW116 lab. I t may cause from heater, power supply, over oestrus the power box, short circuit etc. Natural disaster is less chance for lab but it affect is more than any threat .It may destroy the part of the building, loses the all information.PreventionFollow the health and precaution procedures.Clear the fire exit.Aware the user about possible disaster.Man-Made DisastersIf anything happen intentionally to destroy the business process or destroy the part of the business and it is control of human then it is called the Man-Made Disaster such as Fire, Act of Terrorism, Bombings/Explosions, and Power Outages etc.PreventionCheck always ID tantaliseAllow only authorise peopleUse metal detectorCCTVEquipment unsuccessful personStudents are always busy with their course work and other course related work so equipment failure may loss the all data.PreventionUse extra UPSBack up all dataAuditing Stages/stairs setting and Pre-Audit survey formulationField work compendReportingScope and Pre-AuditingTh e first step or comprise of the audit is to understand the purpose of the audit and the areas need to cover during the audit. Understanding the audit purpose is basically get the idea why this audit needs to manage means any special risk assessment or annual audit. If it is special risk assessment audit this will be more specific and the scope will be narrow and deep otherwise if it is annual audit it will be the general audit to cover as much as possible area.Pre-Auditing survey is to verify the audit areas using risk management techniques and some general techniques such are reading previous audit report, web browsing, undercoat reading, etc This will reduce the chance of failure by correcting the plan by lesson learned.Planning and PreparationIn this stage the scope is going to break into small areas to make auditing easier and clear. So the clarity will be more and purpose will be easy to understand. Usually this stage will involve the work breakdown plan and risk control mat rix. The risk control matrix is just a check list contains questions to carry out during the audit.Field workActual auditing will perform during this stage by different techniques or methods. exclusively it starts with interviewing staff or students using questioner or oral interview to system or network test by auditing software tools. The result of this stage will be the evidence of the audit to get a culmination or submit to the management with audit report. So this will be the most important stage in the audit process.This step may use several testing software tools depend on the scope of the audit and the software selection is another key event of the audit process because there are so many fake software applications available in the market. rattling those are virus and the reason of making virus in the form of auditing tools. The reason of spreading the virus in the form of auditing or testing tool is very easy and hart to detect.AnalysisUsing the evidences or any results c ollected in the previous stage are the input of this stage. This stage is fully analytic thinking and decision making so it needs a lots of time to investigation and assessment. The most sensitive area of the audit process is analysis because this is the place going to take the decision to submit to the board so that should be perfect otherwise the audit is useless and it will lead to make some wrong decision.ReportingThe stage is to present all audit findings in the form of report. This is the document contains all evidences, analysis results, suggestions recommendations, conclusion, etc This document will pass to the management or the higher level people to review approve and take necessary action if necessary. The report should be clearly written and easy to understand because this document need for future also to give some information to start next auditing or to take some strategic decision. difficulty DomainBecause of the increased use of university of Greenwich KW116 lab t he chances of threats or issues are high and this is the responsibility of the student and the staff to make the lab secure in all aspects. The reason of this project based on KW116 is that is the lab used by the students largely and usually network related or any other lab sessions and happening in this lab so if the lab got any security hole or lack that may affect the student and the staffs.Easiest way to come across the security level of the lab is auditing. This auditing needs to cover all areas from physical security to network security. Then only this will the perfect audit and the audit can use some standard checklist to make more efficient and to eliminate human made errors such as forgotten, typing mistakes, etcThere are so many ways to make sure the security level such as penetration testing and vulnerability testing. These are more specific with attacks and threats and for the general purpose security audit is the suitable one as it will cover all areas of the security. According the reasons given above the general security audit is the most suitable technique to verify the security level of the lab.So the auditing will cover most of the areas of the lab with the aid of standard checklist which is approved by British Standard Institute.Test behind the auditingPhysical testNetwork testSoftware TestSecurity Policy testcomputer hardware/Peripherals testAccess control testObjectivesTo evaluate the actual level of security that exists at The University of Greenwich Maritime campus KW116 Lab.Activitiesplan and schedule the auditAuditing with software toolsAnalysis audit resultdeliverableDetailed audit report with suggestions and recommendationThis is the main objective of the project and this will carry on with several tools like packet sniffer, port scanner software, etc There are three different tests using these tools to identify internal and external vulnerabilities.To evaluate various methods of implementing the security policy, envision the secur ity weaknesses and implement risk management for the existing security weaknesses.University lab security policy reviewAnalysisDeliverableDetailed security policy analysis report with changes/suggestions/recommendation. The reason of this objective is to stop the holes from policy level because this is the easy way to implement.Learn Audit and Audit process and practice auditing and look into auditing products available in the market and select appropriate.This task is fully eruditeness about audit and audit related stuffs.This objective is the key or appetizer of this project because if project start without proper knowledge that will direct to somewhere else not to project aim.To draft a new security policy that addresses the existing weakness to the management.According to the analysis draft a security policy to fix or overcome all existing security holes.DeliverableDraft security policyHow the objectives will be achievedThird and poop objectives will be achieved with books and internet. This objective will give the idea about auditing the moment of this objective will be a documentation which contains all requirements which need to cover in this project.The research will give the details about tools which requires to perform the auditing the methods/process for the auditing. Internet is the main and basic mean for this research as it is easy to access and with wide range of data.Tools which identified from the research will used to perform the security auditing and this audit result will monitor in real-time and document instantly. Mostly these tools will be freeware and from well-known vendor.The auditing will perform in three different views to make sure the area is secured fully. The views are inside computer local network, outside computer local network, outside computer different network.Audit MethodologyThis project uses two different methodologies to accomplish the task such as checklist and questioner. The check list is an aid for the audi tor to perform the audit and it is a manual to the audit. So the checklist will contains all tests need to perform during the auditing where questioner is to get the opinion or feedback for the staffs and students (generally this will be feedback from stockholders). The analysis also will carry in two different way using questioner and the checklist and finally compare both and get the conclusion.The questioner and checklist covers most of the areas and those are grouped separately to make the auditors life easy and more understandable. The areas coved in the documents arePhysical Security/ ESecurity Forensics and Risk ManagementSecurity Forensics and Risk ManagementAcknowledgementForemost I would like say thanks to god for all support in all my life and secondly University of Greenwich to give this my life aim to complete my masters. Next my supervisor Professor Kevin Parrott to the supports he gave because without his support I wouldnt be able to complete my project with this qual ity. Especially the suggestions and appreciation given my supervisor make me feel better and gave positive thinking. Finally need to thank my family and friends for unbelievable supports and encouragements.AbstractAs we are in the information era the world is changing to use electronic means for day to day use. The paper documents is gone and most of them are paper free because of so many reasons such as pollution, easy, fast, etc At the same time this digital media has availability, scalability, confidentiality and integrity which are required behaviour for secure communication. The risk is increased with the increase of computer and digital means usage and the single security lack may cause huge losses.There are some surveys says most of the crimes are happening through electronic means and the target is computer or computer peripherals. If the attacker found a single security lack that is enough to start and break the whole system and the security lack could be configuration mist ake, firewall issue and basically problems in the protection mechanism. Because of these reasons testing become very important and this process called as Auditing.There are so many types in the auditing and this auditing requires technical knowledge to make these tests perfect and to give an audit report including suggestions. The auditing falls into two main categories such as Automatic and manual. The test will be efficient if it is automated using testing tools which are called as automated or computerised test. Even though there are some tests cannot be automated and need to test manually.This auditing covers network security test, physical or environment security test, computer security test which includes software and hardware tests. The computerised test will carry on with some security tools and the manual will use questioner to minimise human made errors mainly forgetting.Security audit is the technical assessment of the application or system. The assessment may be manual o r systematic or both. In most case the auditing process uses manual and systematic/ automatic methods because there are some tests cannot be automatic such as review of the security policy, asset management, etcThis auditing has different types such as internal or external. This type is depends on the company size and the resource availability. Usually big companies have their own security auditor so they will perform the audit internally and the small and medium size companies mostly hire auditor form outside. Both types got pros and cons in security and financial manor.Chapter 1IntroductionThis chapter largely contains non-technical information to give the understanding of high level objectives. Also describe the techniques and technologies used in the project and research to accomplish the project ObjectiveAuditThe audit is a systematic or manual security assessment of the network, infrastructure, system, etc The complete audit should be the combination of manual and automatic as sessment because in every test target there will be some test cannot be automatic. The audit has so many categories and the following paragraph will explain about the categories and the functions or techniques behind that. There are 3 controls in the auditing process which arePreventive controlThe preventive controls are controls may in the form of software or hardware or ant configuration to prevent the error or vulnerabilities. This is an active type control always monitor the interface for any vulnerabilities and block such vulnerabilities or errors before it enter into the system or infrastructure. This is most effective control mechanism because not allows the vulnerabilities.Detective controlThe detectives are in placed to monitor the vulnerabilities in the form of software or hardware but the different between preventive and detective is the preventive wont allow the vulnerabilities into the system where detective allows entering everything and correcting the vulnerabilities after enter. The best example is for this control is fire alarm because fire alarm wont prevent the fire before but if any fire it will work.Corrective controlsThe corrective controls are the controls to correct the error or issue before it make any harm. This is very important control for all places even if they have other controls because there are some issues or vulnerabilities cannot detect by the controls if they will come and attack so there should be some control to correct those before loss occur. Addition to that the controls should up to date such as latest firmware or latest definition.Type of auditorsThere are two basic types of auditors in the information era the internal and external auditors. This selection of the auditor will be done by the management with the use of financial status of the organisation. Size of the organisation and the policies defined in the company.Internal auditorsInternal auditors are auditors belong to that particular company which is going to perform the audit. That means the auditor is an employee of the company. So the auditor is always available to do the auditing and data or information will keep within the organisation. This is the main advantage of having the internal auditor and the same time and the employee purposely recruited for auditing then is cost a lot for the company. So it is only possible for the big level companies because they have huge investments and revenue. The disadvantage of the internal auditor is they may be up-to-date and dont have current market or audit status such as new techniques and tools.External auditorsThe auditor recruited from other auditing firm for the auditing so it is very hard to find professional auditor because of the availability and as the auditor recruited from outside the company information may go out. At the same time the auditor needs some time to get and understand the company process. But the advantage of recruiting the external auditor is their knowledge and it is suitable for middle and small level companies.Types of AuditTraditional AuditIt is just like a manual auditing. It is useful when working with a large amount of data in a large company. Here auditor took some sample data from different place then provide a report.AdvantageEasyCheaperDisadvantageAlways do not provide correct information.In IT sector it is not useful.Software auditSoftware audit is a wide popular for any educational institute or organization. It is just like a review of the software and the system that can find all information of the system such as operating system, application software, processor, drives, controllers, bus adapters, multimedia, virus protection, system model, main circuit board, memory models, local drive volumes, network drives, printers information etc.. There are so many auditing tools in the market such as Belarc Advisor, E-Z audit that are very power full. KW116 is the main Lab for school of computing and mathematical science in University of Gre enwich. CMS installed lots of software for students to continue study or research. According to Copy right, Design and Patents Act 1988, all Software must have a valid licences to continue the process. As Lab uses large amount of software and different software expire on different time so it is very difficult for Lab administrator to keep up to date all licence by manually checks. Only auditing by software can possible to give details report to administrator to keep up safe the system.AdvantagesCorrect Information Machine always provide the correct information so it has less chance to provide the incorrect information.Save time Software very quickly provides a report of the system so it saves time.Details description It provide a details description of system including any warning or licences issues etcMinimise the cost By implementing the software audit two peoples work may possible with one people so it reduce the extra cost.DisadvantagesInvestment Costly Software is very expensiv e so university need extra money to buy this software.Risk Auditor knows the details information of the system.Work flow Auditor needs part of the lab to check the system. So it discontinues the student workflow.The approachThe typical audit has different approach to collect the data. The single audit will use multiple techniques to gather full information and it is necessary to use different technique for different level of people. These are common techniques here.InterviewThis technique uses to collect the information from outside people or top level people and the number should be limited. During the interview the auditor or interviewer will ask questions from other people and collect the information. So the person will be well prepared for the interview. This is very robust method because it will allow people to express fully and the method also simple as it is talking which is natural way to communicate. Another advantage is this bi directional communication, means both parties allows to ask questions for clarification or gather information.ObservationThis method uses in the place where real time process monitoring or behavioural change is required. This is a powerful way of do the changes throughout the audit because other techniques exist in currently not possible to get real time information.InspectionThe technique required to do some action with collected data to collect audit related information. This is the form of observation with advance criteria expected. This is extended version of observation because if the auditor apply any advance criteria to gather the data which is necessary to the auditing.After collecting the data the next step is to identify the weakness and process it. The identifying is the key work in the audit and after that categorising. The identifying uses some techniques to make that easy, preface and professional. The techniques used here areRoot cause analysisGeneral technique for analyse and get the better solution for the vul nerability or weakness. Because this technique drilldowns to the issue and finds the root and fix the weakness. The basic technique behind this is if the root is fixed automatically it will fix all other problems related to that. So simply close all related issues at once. As mention the easy and robust way to stop the issues exist and the issues may come in the future.After root cause analysis the next step is to get the solution for the root of the issue. The important thing here is choosing better and effective solution for the issue. The selection depends on some external and internal restrictions.Organisation policyCost per benefitLegal restrictionsAvailabilityCompatibilityVendor and citificationAdvantage of having AuditingSatisfaction It brings the confidence of the Lab administrator of the University of Greenwich to continue the business process. Owner always thinks is there any lack that breaks down the continuity of the business.Detection and prevention of errors Human can made error in any times .on one can say there is no error in there company. By auditing people can find the error and suggestion to recover the error.Detection and prevention of fraud It also just likes errors. Sometimes user intentionally or unintentionally does this thing. So after audit we can find out the fraud.Verification of the Licences KW116 Lab installs lots of software for student. Here some software for 1 year some software for more than one year and some software has limitation (No. Of user can use) for use. So auditor can find all kind of licence issues.Independent opinion Audit always done by the independent people .so this report always accepted by everyone.Safety form exploitation Health and safety always is a big issue for any organization. KW116 Lab got lots of equipment that are connected with electricity. So always chances for short circuit or exploitation. Audit identifies the all lack point and advice for prevention.Disadvantage of having AuditingIt is expensiv eSometimes slow or stop the work flowExternal people know the company information.EncryptionEncryption is the simple technique in the different for to send the date securely through shared place like internet. The form of encryption may vary from each other but they all commonly use digital certificate to encrypt and decrypt the data. Encryption use keys to make cipher text from actual message. The cipher text is not readable and it is the encrypted version of the massage using some algorithm.Security roles/user rolesThe security roles are very important technique to make network administration easy. This is basically creating some groups with different permissions according to the organisation operation or policy. A user or staff can have multiple security roles according to their need. This roles use to authorise the user permission.Security policySecurity policy is a document which has all rules and regulations documented and approved by management and align with laws and legisla tion. This policy is used to define all activities and this is used to make some decision.Business ContinuityThere are three things always we have to mind to continue the businessEssential to running the business any customer order cannot be delay more than seven days.Tolerate delay some application may delay to continue the business such as management pay. It is a midterm i.e. one to four weeks.Discretionary some application is useful for business but it is not affected to continue the business operation such as management report. It is a long term i.e. 3 to 6 months.Business continuity planningBusiness continuity planning (BCP) is the most important for any organization to continue the business. BCP engages with only different kind of risk to continue the business process that might occur in the organization and it also creates the policies, plan and procedures to reduce the risk. BCP can continue the business process in disaster situation as well. The main goal of the BCP is to c ombine together all policies, procedures and process so that any disruptive situation business process can continue or it may impact very little. Here main important function of BCP is Maintaining the business operationContinue the business in emergency situationReduce the riskIf any situation BCP cannot take over then Disaster recovery planning (DRP) takes over.British Auditing StandardBS7799It is a British standard called as BS7799 that developed by British standard institution where describes the security policy and standard procedures.BS7799 become the ISO IEC 17799 after accepting the ISO IEC technical committee for international use. Now a days information is a valuable asset for organization .So it is very important to protect the information like other corporate asset. Here BS7799 introduces how to protect the information from threats and suggest the three points to secure the information such as Integrity it is assurance the completeness and accuracy of the information.Conf identiality Information can only access by the authorise peopleAvailability Authorise people can access the information when needed.Attacks and prevention for the attacksErrors and OmissionsErrors and Omission is one of the most common and toughest vulnerabilities .It is a human made error because human interact with programming, controlling and enter data for computer. There are no countermeasures to protect the errors and omission.Fraud and theftIt is a one kind of criminal activities that may occur in the KW116 Lab. It includes computer component such as mouse, keyboard, router, switch, cables, CPU box etc. It was observed that security person always not in the access point. So it is harm to secure the lab from fraud and theft. By protecting the access control we can reduce the fraud and theft. Both internal and external people are responsible for that kind of activities.Prevention of Fraud and theftRegular auditing and monitoring program will help to identify all kind of fraud a nd theft.Deploy all of the access control.CCTV in proper place.VirusVirus is a malicious code that has ability to reproduce his code itself and spread one system to another system via e-mail, downloading, storage devices (CD, DVD, memory stick, removal hard drive) and destroy the computer system. It was observed that removal memory stick all most every user are using and it is the most change to spread the virus in the Lab computer system and also observed user are using their own laptop and connected to the university wireless network. If user laptop effected with virus then it also change to spread the lab network that can affect the internal network and attack the server and crash the hard drive.PreventionInstall the latest antivirus software.Regular update the antivirus software.Follow the backup procedures regularly.Scan the device when transfer data.Installing the NIDS (Network Intrusion detection system) and firewallMinimise the download from internet.Download only repudiated site web site.Scan before the download.Care full to open unknown e-mail attach.Scan all incoming file from the remote site.Aware the user about danger of the virus.Trap-doorsIt is an undocumented command that might user can create to speed up the work flow. Unfortunately sometimes student might leave these trap-doors.Prevention of Trap-doorsUse latest antivirus software.Give permission to develop the code only authorise people.Check properly all coding before use it.Logic bombsIt work s like time bombs and affect the system in a particular event or day such as program launch, website logon. It changes the data and deletes the data from the system. Here student are accessing the lots software to do the course work or project. So they are strong enough to build the logic bombs. It is normally happen in company if employee leaves the job.PreventionAudit regularly and monitoringAlways back up the necessary fileAllow authorise people to develop the codeNeed record of all modification or changesTrojan HorsesIt is a software programming that contains the malicious code. Normally students are interested to download the music, free software from internet. It is the most change to affect the lab computer and destroy the data stored on lab computer system.PreventionAvoid unwanted software and music download from internet.Aware the user about Trojan Horses.WormWarm also is a malicious code that can spread itself without any human involvement from one system to another system .It works only computer network system and does not need any devices to transport.PreventionUse firewallUse update antivirus softwareSpywareIt is an unwanted software interface that monitors the activity of the user and transfers the important information like log in details or account details to the remote system that monitor the user activities.AdwareIt is also similar to spyware but it does not intent to transfer the user details to a remote system. It works like advertisements on the internet. So me adware monitor the searching behaviour of the user and then redirect the related websites.Prevention of Adware /SpywareClose the pop up window.Aware about the spyware/adware.Click only reputed link.Social Engineering Most of the users are getting unknown mail and they are also chatting with unknown people. Social engineering is one of the most popular techniques that attackers use to access the system by sending the mail or chatting with people to know the password. So it is a major risk to the security of the password.PreventionNot response the unknown mail.Not chatting with unknown people.Dont give any one personal information or login id.Proper training or aware the new user about social engineering.Ping of death we have only permission to send the largest packet (65,536 bytes) on the server. Attackers know this amount of bytes from ICMP specification. So they try to send the packets more than 65,536 bytes (at least 65,537). If the server does not check the size of the packet and try to process then it hung or crashed the operating system.Dumpster diving Every day Lab user printing there necessary document but sometimes by mistake they are printing unnecessary document and end of the day through all document in the bin. Hacker is very intelligence. They always look at the bin and find the necessary document to access the network.PreventionDestroy all documents before put in a binNatural disastersIf anything happen that is not under control of human it is called natural dusters such as earthquakes, volcano, floods, fires, storms, hurricanes etc It may occur in any time but most risk is the fire for KW116 lab. It may cause from heater, power supply, over heating the power box, short circuit etc. Natural disaster is less chance for lab but it affect is more than any threat .It may destroy the part of the building, loses the all information.PreventionFollow the health and safety procedures.Clear the fire exit.Aware the user about possible disaster.Man-Made D isastersIf anything happen intentionally to destroy the business process or destroy the part of the business and it is control of human then it is called the Man-Made Disaster such as Fire, Act of Terrorism, Bombings/Explosions, and Power Outages etc.PreventionCheck always ID cardAllow only authorise peopleUse metal detectorCCTVEquipment failureStudents are always busy with their course work and other course related work so equipment failure may loss the all data.PreventionUse extra UPSBack up all dataAuditing Stages/StepsScope and Pre-Audit surveyPlanningField workAnalysisReportingScope and Pre-AuditingThe first step or stage of the audit is to understand the purpose of the audit and the areas need to cover during the audit. Understanding the audit purpose is basically get the idea why this audit needs to perform means any special risk assessment or annual audit. If it is special risk assessment audit this will be more specific and the scope will be narrow and deep otherwise if it is annual audit it will be the general audit to cover as much as possible area.Pre-Auditing survey is to verify the audit areas using risk management techniques and some general techniques such are reading previous audit report, web browsing, background reading, etc This will reduce the chance of failure by correcting the plan by lesson learned.Planning and PreparationIn this stage the scope is going to break into small areas to make auditing easier and clear. So the clarity will be more and purpose will be easy to understand. Usually this stage will involve the work breakdown plan and risk control matrix. The risk control matrix is just a check list contains questions to carry out during the audit.Field workActual auditing will perform during this stage by different techniques or methods. Simply it starts with interviewing staff or students using questioner or oral interview to system or network test by auditing software tools. The result of this stage will be the evidence of the a udit to get a conclusion or submit to the management with audit report. So this will be the most important stage in the audit process.This step may use several testing software tools depend on the scope of the audit and the software selection is another key event of the audit process because there are so many fake software applications available in the market. Actually those are virus and the reason of making virus in the form of auditing tools. The reason of spreading the virus in the form of auditing or testing tool is very easy and hart to detect.AnalysisUsing the evidences or any results collected in the previous stage are the input of this stage. This stage is fully analysis and decision making so it needs a lots of time to investigation and assessment. The most sensitive area of the audit process is analysis because this is the place going to take the decision to submit to the board so that should be perfect otherwise the audit is useless and it will lead to make some wrong de cision.ReportingThe stage is to present all audit findings in the form of report. This is the document contains all evidences, analysis results, suggestions recommendations, conclusion, etc This document will pass to the management or the higher level people to review approve and take necessary action if necessary. The report should be clearly written and easy to understand because this document need for future also to give some information to start next auditing or to take some strategic decision.Problem DomainBecause of the increased use of university of Greenwich KW116 lab the chances of threats or issues are high and this is the responsibility of the student and the staff to make the lab secure in all aspects. The reason of this project based on KW116 is that is the lab used by the students largely and usually network related or any other lab sessions and happening in this lab so if the lab got any security hole or lack that may affect the student and the staffs.Easiest way to ensure the security level of the lab is auditing. This auditing needs to cover all areas from physical security to network security. Then only this will the perfect audit and the audit can use some standard checklist to make more efficient and to eliminate human made errors such as forgotten, typing mistakes, etcThere are so many ways to make sure the security level such as penetration testing and vulnerability testing. These are more specific with attacks and threats and for the general purpose security audit is the suitable one as it will cover all areas of the security. According the reasons given above the general security audit is the most suitable technique to verify the security level of the lab.So the auditing will cover most of the areas of the lab with the aid of standard checklist which is approved by British Standard Institute.Test behind the auditingPhysical testNetwork testSoftware TestSecurity Policy testHardware/Peripherals testAccess control testObjectivesTo evaluat e the actual level of security that exists at The University of Greenwich Maritime campus KW116 Lab.Activitiesplan and schedule the auditAuditing with software toolsAnalysis audit resultDeliverableDetailed audit report with suggestions and recommendationThis is the main objective of the project and this will carry on with several tools like packet sniffer, port scanner software, etc There are three different tests using these tools to identify internal and external vulnerabilities.To evaluate various methods of implementing the security policy, determine the security weaknesses and implement risk management for the existing security weaknesses.University lab security policy reviewAnalysisDeliverableDetailed security policy analysis report with changes/suggestions/recommendation. The reason of this objective is to stop the holes from policy level because this is the easy way to implement.Learn Audit and Audit process and practice auditing and Research auditing products available in t he market and select appropriate.This task is fully learning about audit and audit related stuffs.This objective is the key or starter of this project because if project start without proper knowledge that will mislead to somewhere else not to project aim.To draft a new security policy that addresses the existing weakness to the management.According to the analysis draft a security policy to fix or overcome all existing security holes.DeliverableDraft security policyHow the objectives will be achievedThird and fourth objectives will be achieved with books and internet. This objective will give the idea about auditing the outcome of this objective will be a documentation which contains all requirements which need to cover in this project.The research will give the details about tools which requires to perform the auditing the methods/process for the auditing. Internet is the main and basic mean for this research as it is easy to access and with wide range of data.Tools which identifi ed from the research will used to perform the security auditing and this audit result will monitor in real-time and document instantly. Mostly these tools will be freeware and from well-known vendor.The auditing will perform in three different views to make sure the area is secured fully. The views are inside computer local network, outside computer local network, outside computer different network.Audit MethodologyThis project uses two different methodologies to accomplish the task such as checklist and questioner. The check list is an aid for the auditor to perform the audit and it is a manual to the audit. So the checklist will contains all tests need to perform during the auditing where questioner is to get the opinion or feedback for the staffs and students (generally this will be feedback from stockholders). The analysis also will carry in two different way using questioner and the checklist and finally compare both and get the conclusion.The questioner and checklist covers most of the areas and those are grouped separately to make the auditors life easy and more understandable. The areas coved in the documents arePhysical Security/ E
Monday, June 3, 2019
Ethiopia PESTEL Analysis
Ethiopia PESTEL AnalysisPolitical ContextFor much of the twenty century, Ethiopia was ruled by highly centralized governments. The current ruling troupe EPRDF has governed Ethiopias since 1991 . Since taking power of the EPRDF has led an ambitious reform effort to initiate regeneration by more democratic governance of governance and decentralize pledge .It has involved devolving powers mandates primary by regional Empires then to woredas, district authorities, kebeles authorise and/or village authoised.Although the formal ethiopians state structure has been transfornance from highly centralized system to federal plus decentralized one a no. of challenges remain .National elections in 2005 2010 , and the hugely uncontested local anaesthetic elections in April month of 2008 , illustrated the fragility of the democratics transition Dominance by EPRDF , weakened state by opposition .In May 2010 parliamentary elections resulted in a 99.6 per centumage of huge victory for the ruling EPRDF this assort ,reducing the opposition from 174 to only two seats in the 547 lower.January 2009 Ethiopian Parliament passed legislation by regulate civilian society organize.. succession numerous CSOs had tenacious argued for new coherent frame trifle. the new honor is restrictive in demarcating areas of operations for different types of CSOs (for example receiving more than 10 pct of funding from external sources from many activity areas ) .The government DAG , comprising multilateral donors bilateral donors , agreed that the implementation of the CSO virtue will be reviewed regularly through their joint High-Level meeting place structures.CountryConventional long form federal authorised participatory Re earthly concern of Ethiopia conventional short form Ethiopia local long form Ityopiya Federalizing Demokrasiyawi Republic local short form Ityopiya former Abyssinia, Italian East Africa abbreviation FDRE Government typeFederal republicCapitalName Addisab aba geographic coordinates 902N, 3842E time battle UTC+3 (8 hours ahead of we shin ton, DC during Time)Administrative course of studys9 ethnically based states ,( singular kilo) self governing administrations* , Afar, Amara (Amhara), Binshangul Gumuz, Dire Dawa*, Gambela Hizboch (Gambela Peoples), Hareri Hizb , Oromia, Sumale Somalianan, Tigray, Ye Debub Biheroch Bihereseboch na Hizboch. independenceOldest independent country in Africa one of the oldest by world at least 2,000 geezerhood ( may be traced it to the Aksumite Kingdom , which was coalesced in the first century B.C.)ConstitutionRatified 8 December 1994, useful 22 August 1995Legal systemCivil police systemInternational law organization participationHas not succumb by ICJ jurisdiction declarare, non-party state to the IctusSuffrage18 years of age universalExecutive emergenceChief of state President GIRMA Woldegiorgis ( since 8th October 2001) Head of government P.M MELES Zenawi (since August 1995) Cabinet State Council of ministers, ministers selected by the prime minister and approved by the House of Peoples Representatives.Elections president elected by two department , chambers of Parliament for a six-year term (eligible for a second term) election last held on 9 October 2007 (next to be held in October 2013) prime minister designated by the party in power following legislative elections election results GIRMA Woldegiorgis was elected president percent of vote by the House of Peoples Representatives 79%Legislative branchBicameral Parliament consists of House of Federation (or upper chamber responsible for interpreting the create verbally and federal-regional issues) (108 seats members chosen by state assemblies to serve five-year terms) and the House of Peoples Representatives (or lower chamber responsible for passing legislation) (547 seats members directly elected by usual vote from single-member districts to serve five-year terms) elections last held on 23rd of May 2010 ( next to be held in 2015) election results percent of vote NA seats by party EPRDF 499, BGPDP 9, APDO 1, SPDP 24,ANDP 8, GPUDM 3, FORUM 1, HNL 1, independent 1Judicial branchFederal Supreme hail (the president and vice president of the Federal Supreme Court are recommended by the prime minister and appointed by the House of Peoples Representatives for separate federal judges ,Prime minister submits to the House of Peoples Representatives for appointment candidates selected by the Federal Judicial Administrat Council)Political parties and leadersAfar National Democratic Party or ANDP Mohammed KEDIR All Ethiopian angiotensin converting enzyme Organization or AEUO Hailu SHAWEL Arena Tigray GEBRU Asrat Argoba Peoples Democratic Organization or APDO Abdulkader MOHAMMED Benishangul Gumuz Peoples Democratic Party or BGPDP Mulualem BESSE Coalition for Unity and Democratic Party or CUDP AYELE Chamois Ethiopian Democratic Party or electronic selective information processing MUSHE Semen Ethiopi an Federal Democratic Forum or FORUM (a UDJ-led 6-party alliance established for the 2010 parliamentary elections) Dr. Moa FRISSA Ethiopian Peoples Revolutionary Democratic Front or EPRDF MELES Zenawi Gambella Peoples Unity Democratic Movement or GPUDM Garage Peoples Democratic Front GIRMA Boggle Harari National League or HNL YASIN Hussein Oromo Federalist Democratic Movement or OFDM Oromo Peoples Congress or OPC IMERERA Gudina Somali Democratic Alliance Forces or SODAF BUH Hussein Somali Peoples Democratic Party or SPDP Abdulfetah Shack ABDULAHI South Ethiopian Peoples Democratic Union or SEPDU TILAHUN Neodesha United Ethiopian Democratic Forces or UEDF BEYENE Petros Unity for Democracy and Justice or UDJ Dr. NEGASSO GadaraPolitical pressure groups and leadersEthiopian Peoples Patriotic Front or EPPF Ogden National dismission Front or ONLF Oromo Liberation Front or OLF DAOUD IbsenInternational organization participationACP, Fad, G-24, AU, FAO, COMESA, Interpol,G-77, IFAD, IAEA, PC A, IBRD, ICAO, IDA, IFC, ICRM, IFRCS, IGAD, ILO, IMF, IMO, UPU, IOC, WFTU, IOM (observer), IPU, ISO, ITSO, WHO, ITU, ITUC, UNISFA, MIGA, UNWTO, NAM, OPCW, UN, UNAMID, UNCTAD, UNESCO, UNHCR, UNIDO, UNMIL, UNOCI, WCO, WIPO, WMO, WTO (observer)Diplomatic representant in the USchief of mission Ambassador GIRMA Birru chancery 3506 International Drive Washington ,NW , DC 20008 telephone 1 (202) 364-1200 FAX 1 (202) 587-0195 consulate(s) general Los Angeles consulate(s) New YorkDiplomatic representation from the USchief of mission Ambassador E. carrel Donaldembassy Entoto Street, Addis Ababa mailing address P. O. Box no. 1014 , Addis Ababa ,Ethiopia. telephone 251 11-517-40-00 FAX 251 11-517-40-01Flag descriptionThree equal horizontal bands of green on top of sag down , yellow, and red ,yellow pentagrams single yellow rays emanat from the angles between the points on a light blue disk centered on the three bands green represent apprehend the fertilize of the land, yellow , while red s tands for sacrifice heroism in the defense of the land the blue of the disk symbolize peaces pentagram represents the unity equivalence of the nationalities and peoples of Ethiopia.Note Ethiopia is the oldest independented country in Africa, three main color of her flag ( adopted californias 1895) were often adopted other African countries upon independence that they became known as the Pan-African colors the emblem in the center of the current flag has added in 1996.National anthemName Whedefit Gesgeshi Woud Enact Ethiopia ( March Forward ,Respected Mother Ethiopia) lyrics/ unison DEREJE Maluku Mengesha/SOLOMON Lulu mark off adopted 1992GroupAll, APLAA, Sahel Region Africa, AfricaPresident Girma WoldegiorgisThe presidency is a very large ceremonial post , and has been held since 2001 by Girmas Woldegiorgis, veteran parliamentarian and civil aviation official.Presidents serve 6 year terms and are elected by parliament . mister woldegiorgis had re-elected by 2007 .Prime minist er Hailemariam Desalegnafter serving as dy. prime minister unconnected minister to his veteran predecessor Males Zenawi year 2010, Hailemariam Desalegns was sworn prime minister in September 2012.Relative outsider in the ranks by the governing Ethiopian Peoples Revolutionary Democratic Front , Mr. Hailemariam became acting prime minister on the dedte Mr. genus Meles in August but set about a backroom struggle to gain the approval of the Front leadership before assume by the most powerful post in the country.Mister Hailemariam was hunt in acadamic regional government while many EPRDF luminaries came to the fore through fighting against by communist government in the 1980.He benefited from a scheme Mr. Meles launched in 2009 he to bring technocrats into central government of state , earned a reputation as a loyal aide to the prime minister. scotch overview of EthiopiaEconomic OverviewEthiopia, with a commonwealth of about 84 million (2012), is the second-most populous country in Sub-Saharan Africa. One of the worlds oldest civilizations ,Ethiopia is alike one of the worlds much unfortunate countries .At USdollar 390 , Ethiopias per capita income is much lower than the Sub-Saharan African average of US$ 1,165 in FY 2010 , ranking it as the 6th poorest country in the world ( Atlas Method).After the major drought in 2002/03 that resulted in gross domestic product contract , Ethiopia has been one of the fastest growing economies in African countries . Official statistics indicated that an average real GDP growth of 11 percent over the last six consecutive years . its robust growth performance and considerable development gains came downstairs brat during 2008 and 2011 with the emergence of twin macroeconomic challenges of high inflation and a difficult balance of aspires situation .Problem was exacerbated by the high fuel and food prices in the world-wide market.Though Ethiopia made progress in tackling the 2008-2011 macroeconomic challenges . The rece nt surge of inflation depicts the countrys vulnerable macroeconomic condition .Annual end of period inflation which stood at 16.5 percent in February 2011 , more than twiced reaching 36 percent in February 2012 . Food inflation rate was increased from 13 percent to 47 percent while non food inflation , decreased moderately from 22 percent to 21 percent during the same period .It is unlikely that inflation will promptly fall towards the GTP goals of single digits within 2012 .Monetary factors played a key role in driving the inflation rate in Ethiopian states .For instance, reserve coin used by the National Bank as monetary policy anchor grew by 51 percent in February 2011 . It was very large referable to the accumulation of foreign exchange reserves without any offsetting utensil and increased borrowing by public enterprises for infrastructure investment which in effect contributed to the increase in money supply.In an effort by control inflation rising cost of living , Governm ent has been take various measure including compel tight cash controls on government expenditure, temporarily introducing price caps (which were subsequently lifted ) on selected goods increase the salary of civil servants by 35 to rough 39 percent. In early January 2012, the National Bank of Ethiopia lowered reserve requirement after the banking sector faced severe liquidity problem . This also lowered the minimum reserve ratio of deposit from 15 percent to ten percent , at the same time the amount of liquid assets as a proportion of deposits was also reduced from 25 percent to twenty percent . This measure was not accompanied by the admit sterilization mechanism and contributed to a sharp increase in money supply from 32 percent in December 2011 to 35 percent at the end of January 2012. While Ethiopias economy is evaluate by continue grow at a healthy pace macro situation will remain at a lower place adjudicate in the foreseeable futureEthiopias economy is based on agricult ure which accounts for 85% of total employ and41% of GDP. Coffee remains a major exportation crop for Ethiopia .The agricultural sector suffers of poor cultivation practices frequent drought.But recents joint effort by the Government of Ethiopia donors have strengthed Ethiopia agricultural resilience , contributing for a reduction in the number of Ethiopians threatened with starvation . 5 year Growth and Transformation Plan that Ethiopia unveiled in October 2010 presents a government-led effort to strain the ambitious development goals of Country .The banking, insurance, and micro-credit industries are restricted to domestic investors but Ethiopia has attracted significant foreign investment in commercial agriculture , textiles, leather and manufacturing products . on a lower floor Ethiopias constitution ,State owns all land and provides longterm leases to the tenants land use security systems are now being issued in some areas so that tenants have more recognizable rights to go along occupancy and hence make more concerted efforts to improve their leaseholds .While GDP growth has remained very high , per capita income of Ethiopia is among the lowest in the world.GDP (purchasing power parity)$94.76billion (2011est.) $88.13billion (2010est.) $81.6billion (2009est.) note data are in 2011 US dollarsGDP (official exchange rate)$30.5 billion (2011 EST.)GDP Real growth rate7.5 %( 2011est.) 8 %( 2010est.) GDP per capita (PPP)$1,100(2011est.) $1,000(2010est.) Note data are in 2011 US dollarsGDP composition by sectorAgriculture 41% industry 13% services 46% (2011 EST.)universe below poverty line29.2% (FY09/10 EST.)Labor force37.9 million (2007)Labor force by occupationAgriculture 85% indu1111stry 5% services 10% (2009 EST.)Unemployment rateNA%Unemployment, youth ages 15-24 summation 24.9% male 19.5% female 29.4% (2006)Household income or consumption by percentage sharelowest10% 4.1% highest 10% 25.6% (2005)Distribution of family income- Gina business leader 30(2000) 40 (1995)Investment (gross fixed)22.9% of GDP (2011 EST.)BudgetRevenues $5.355billion expenditures $5.988 billion (2011 EST.)Taxes and other revenues15.2% of GDP (2011 EST.)Budget surplus (+) or deficit (-)-2% of GDP (2011 EST.)Public Debt42.3%ofGDP(2011est.) 48.3%ofGDP(2010est.) Note official data cover central government debit , including debt instruments issued/owned by government entities other than the treasury and treasury debit owned by foreign entities the data exclude debt issued by sub national entities , as well as intergovernmental debt. debt instruments for the social funds are not sold at public auctionsInflation rate (consumer prices)33.2 %( 2011est.) 8.1% (2010 EST.)Central bank discount rateNA%Commercial bank prime lending rate15 %( 31December2011est.) 14.5% (31 December 2010 EST.) nervous strain of money$4.93billion (31December2008) $4.229 billion (31 December 2007)Agriculture productsCereals, sheep, pulses, fish coffee, oilseed, hides, cotton, sugarcane, cattle, potatoes, kyat, cut flowers,goatsIndustriesFood processing, textiles, chemicals, metals processing, beverages, leather,cement.Industrial production growth rate9.5% (2010 EST.) electricity production3.715 billion KWh (2008 EST.)Electricity consumption3.357 billion kWh (2008 est.)Oil production0 bbl/day (2010 est.)Natural gas production0 cup m (2009 est.)Exports$2.75 billion (2011 est.) $2 billion (2010 est.)Imports$8.25 billion (2011 est.) $8.46 billion (2010 est.)Exchange ratesBirr (ETB) per US dollar 17.2 (2011 est.) 14.41 (2010 est.) 11.78 (2009) 9.57 (2008) 8.96 (2007)Fiscal year8 July 7 JulySocio culture overview of EthiopiaReligionEthiopia is declare as a multi-religious country . Most of the Christians live in the highlands , as well as the Muslims mainly inhabit(live on) the lowlands .Adherents of traditional faiths are primarily concentrated in the southern regions.Ethiopian Orthodox 43.5%, Protestant 18.6% (which include Ethiopian Orthodox Tirades Church and the Ethiopian Evangelical Church Mekane Yeses), Muslim 20.5%, traditional (2.6%)Catholic 10.3%, all others 0.6%.1 flyspeck Ethiopian Jewish community, although most have migrated to Israel.LanguagesThere are 90 individual languages of Ethiopia according to Ethnologue , with the 1994 Ethiopian census indicating that some 77 tongues were spoken locally in Ethiopia .Many of these languages belong to the Afro-Asiatic family (Semitic and Cushitic). Osmotic languages are also spoken here,Additionally, Nilo-Saharan languages are spoken by the nations Niloticethnic minorities.Amharic 32.7 % as a 1st Ethiopian language, Oromigna 31.6%, Tigrinya 6.1%, Somali 6.0%, Sidamo 3.5%, Guragigna 3.5%, other local languages English (major foreign language taught in schooldayss), Arabic.Amharic is the official national language . Amharic was also the language of primary school instruction , but was replaced in many areas by local languages such as Tigrinya and Oromifa . English is the most widely sp oken foreign language and is taught in all secondary schools.Age structure0-14 years 46.3% (male 20,990,369 or female 21,067,961) 15-64 years 51% (male 22,707,235 and female 23,682,385) 65 years and over 2.7% (female 1,388,301 / male 1,037,488) (2011 EST.)Population growth rate3.179% (2011 EST.)Birth rate42.59 births/1,000 population (2011 est.)Death rate10.79 deaths/1,000 population (July 2011 est.)Net migration rate-0.01 migrant(s)/1,000 population Note repatriation of Ethiopian refugees residing in Sudan is expected to continue for several years some Somali, Sudanese and Eritrean refugees , who fled to Ethiopia from the famine or fighting in their own countries , continue to return to their homes .urbanizationUrban population 17% of total population (2010) rate of urbanization 3.8% annual rate of change (2010-15 EST.)Major cities populationADDIS ABABA (capital) 2.863 million (2009)Sex ratioAt birth 1.03 male(s)/female under 15 years 1 male(s)/female 15-64 years 0.96 male(s)/fema le 65 years and over 0.75 male(s)/female total population 0.97 male(s)/female (2011 EST.)Infant mortality rateTotal 75.29 deaths/1,000 live births male 86.03 deaths/1,000 live births female 64.23 deaths/1,000 live births (2011 EST.)Life expectancy at birthTotal population 56.56 years male 53.99 years female 59.21 years (2011 EST.)Total fertility rate5.97 children born/woman (2011 EST.)Major Infectious DiseasesDegree of endangerment high food or waterborne ailments bacterial and protozoa diarrhea, hepatitis A and E, and typhoid fever vector borne diseases malaria respiratory disease Meningococcal meningitis animal contact disease rabies water contact disease SchistosomiasisNationalityNoun Ethiopian(s) adjective EthiopianLiteracyDefinition age 15 or above can read and keep total population 42.7% male 50.3% Maternal mortality rate470 deaths/100,000 live births (2008)Age 35.1% (2003 EST.Legal overview of EthiopiaWORKING CONDITIONS OF WOMEN voice 87. General. (1) Women shall not be discriminated against as regards payment and employment on the basis of their sex.(2) It is prohibited to employ women or female on types of work that may be listed by the Minister as oddly arduous or harmful to their health.(3) No pregnant women shall be layed to eork in night between time limit 10 p.m. and 6 a.m. or be employed on overtime work. subdivision 88. Maternity leave. (1) An employer shall grant time off to a pregnant women worker without deducting her wages , for medical trial connected with her pregnancy, provided ,She is obliged to present a medical certificate of her examinationWORKING CONDITIONS OF YOUNG WORKERSSection 89. General. (1) For the purpose of this Proclamation , young worker agent a person who has attained the age of fourteen but is not over the age of 18 years.(2) It is prohibited to employ persons under fourteen years of age.(3) It is prohibited to employ young workers which are on account of its nature or due to the condition in which it is carr ied out, endanger the life or health of the young workers performing it.Section 90 . Limits of hours of work . Regular hours of work for young workers shall not exceed seven hours a day.Section 91. Night and overtime work It is prohibited to employ young workers on1.night work between 10 p.m. and 6 a.m.2.overtime work or3. weekly rest days or4.public holidaysLABOUR COURTSSection 137. Establishment of labor divisions. (1) There shall be set up labor divisions, as may be necessary, at each regional first instance court , each regional court which hears appeals from regional first instance courts and at the Central High Court .(2) The Minister shall submit the no. of labor divisions to be established in conformity with subsection (1) of this section to be determined by the appropriate authority.Section 138. Labor division of the regional first instance court. (1) The labor division of the regional first instance court shall have jurisdiction to settle and determine the following and other similar individual labor disputes(a)disciplinary measures including dismissal(b) Claims related to the cancellation or termination of employment contracts(c) Questions related to hours of work,leave remuneration and rest day(d)questions about the issuance of certificate of employment(e) Claims related to employment injury.(F) Unless provided for in this Proclamation , any petty and criminal offences under this Proclamation.CONTRACT OF EMPLOYMENTDivision 1. Formation of contractSection 4. Elements of a contract . (1) A contract of employment shall be deemed formed where a person agrees indirectly or directly , to perform work for and under the authority of an employer for a definite or indefinite period or piece work in return for remuneration.Section 5. Form. Unless otherwise provided by law , Contract of employment shall not be subject to any special form.Section 6. A written contract of employment ,Subject to the provisions of the pertinent law , a written contract of emplo yment shall specify the following(1) The name ,address and contact details of the employer(2) The name, age, address and work card number. if any of the worker(3) The balance of the contracting parties made in accordance with section 4(3) of this Proclamation and(4) The signature of the contracting parties.Section 7. Contract of employment not made in writing .(1) Contract of employment is not made in written form , they shall, within fifteen days from the conclusion of the contract , give the worker a signed and written statement containing the requirements specified under section 6 of this ProclamationSection 10. Contract for definite period or piece season of contract of employmentSection 9. Contract for an indefinite period . Any employment contract shall be deemed to have been concluded for an indefinite period exclude for those provided for under section 10 hereunder.work. A contract of employment may be concluded for a definite period or for piece work in the case of(1) Th e performance of specified piece work.(2) The replacement of a worker who is not temporarily present due to leave or affection or other dos(3) The work performance in the event of abnormal pressure of work(4) The performance of urgent work to prevent damage or disaster to life or property , to repair breakdowns or defects in kit and caboodle, materials, plant or building of the undertaking.(5) Irregular work, It relates to a permanent part of the works of an employer but is performed at irregular intervals(6)seasonal work which relates to the permanent part of the works of an employment but is performed only for a specified period of the year which is regularly repeated in the course of a number of years(7) Occasional work It doesnt form part of the permanent activity of the employer but which is done intermittently. marches OF EMPLOYMENT RELATIONSSection 23. General. (1) A contract of employment shall only be terminated upon initiation by the employer or worker and in accordance with the provisions of the law or a joint placement or by the correspondence of the two parties.(2) The amalgamation or division/transfer of self-will of an undertaking shall not have the effect of terminating a contract of employment.Division 1. Termination of contract of employment by law or by agreementSection 24. Termination by law. A contract of employment shall terminate on the following grounds(1) As on expiry of the period or on the completion of the work where the contract of employment is for a definite period or piece work(2) Upon the death of the worker(3) On the privacy of the worker in accordance with the relevant law(4) When the undertaking ceases operation permanently or due to bankruptcy or for any other cause(5) When the worker is not able to work due to partial or permanent incapacity.Section 25. Termination by agreement.(1) The parties have rights to terminate their contract of employment by agreement, provided however that waiver by the worker of any of hi s rights under the law shall have no legal effect.(2) Agreement termination shall be effective and bin.DETERMINATION OF WAGESSection 53. General. (1) Wages means the regular payment to which the worker is entitled in return for the performance of the work that he performs under a contract of employment.(2) For the purposes of the following payments shall not be considered as wages(a) Overtime pay(b) Amount received by way of transfer expenses , per diems , expatriation allowance, hardship allowances, and similar allowance payable to the worker on the occasion of travel or change of his residence(c) Bonus(D) Commission(E) Other incentives stipendiary for additional work results.(f) Service charge received by customers.Section 54. Conditions of payment for idle time ( 1) Unless otherwise provided for in this Proclamation or the relevant law , salaries shall be paid only for work done.(2) Notwithstanding subsection (1 )Section, a worker shall be entitled to his wage if he was ready t o work but, because of interruptions in supply of tools and raw materials or for reasons not attributable to him was not able to work ding on the worker only where it is made in writing.5.7 MODE AND EXECUTION OF PAYMENTSection 55. General. Wages shall be paid in cash , provided that where the worker and employer so agree, it may be paid in large-minded . Wages paid in kind may not exceed the market value in the area of the payment in kind and in no case may then exceed 30 per cent of the wages paid in cash.Section 56. Execution of payments 1) Unless otherwise agreed, wages shall be paid at the place of work and on working day.(2) In case the payment mentioned in subsection (1) of this falls on sunlight or a public holiday, the day of payment shall fall on the preceding working day.Section 57. Payment in person. Unless otherwise provided by collective agreement or law, wages shall be paid directly to the worker or to a person delegated by him.Section 58. Time of payment. Wages sha ll be paid at such intervals as are provided for by law or collective agreement or work rules or contract of employment.Section 59. Deduction from wages,1) The employer shall not deduct from , attach/set off the wages of the worker except where it is provided otherwise by law or collective agreement or work rules or in accordance with a court order or a written agreement of the worker.PREVENTIVE MEASURESSection 92. Obligations of an employer( An employer shall take the necessary measures) to safeguard adequately the health and safety of the workers he shall in particular1. Comply with the occupational health and safety requirements provided for in this Proclamation2.Take appropriate steps to ensure that workers are properly instructed and notified concerning the hazards of their respective occupations and the precautions necessary to avoid accident and injury to health ensure that directives are given and also assign safety officer3. Provide workers with personal protective equipmen t , materials and clothing and instruct them of their use4. Register employment accident and occupational diseases and notify the labor inspection of same5.arrange, according to the nature of the work , at his own expenses for the medical examination of newly recruited workers and for those workers engaged in hazardous work.6. Ensure that the workplace and exposit do not cause danger to the health and safety of the workers7.take appropriate pre-executions to ensure that all the processes of work s
Subscribe to:
Posts (Atom)