Skip to content

AhndreWalters/Cybersecurity-Risk-Assessment-Framework-Analysis

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

3 Commits
 
 
 
 
 
 

Repository files navigation

Cybersecurity Risk Assessment Framework Analysis - Colonial Pipeline

Overview

This repository contains a comprehensive cybersecurity risk assessment of the 2021 Colonial Pipeline ransomware attack. The analysis applies industry-standard frameworks including NIST, PCI DSS, and CISA directives to evaluate threats, vulnerabilities, and mitigation strategies for critical infrastructure.

Objectives

  • Analyze the Colonial Pipeline ransomware breach using structured risk assessment methodologies
  • Apply NIST Cybersecurity Framework and other compliance standards to real-world incidents
  • Develop actionable prevention measures and incident response plans
  • Create asset-based risk matrices for prioritization and remediation

Key Components

Risk Assessment Framework

  • NIST Cybersecurity Framework: Guides the overall risk assessment structure
  • PCI DSS Compliance: Ensures secure handling of payment data
  • CISA Directives: Follows government guidelines for critical infrastructure protection

Primary Findings

  • Weak authentication mechanisms enabled credential theft and ransomware execution
  • Insufficient network segmentation allowed attack propagation across systems
  • Inadequate incident response planning delayed recovery efforts
  • Lack of multi-factor authentication (MFA) and security awareness training

Critical Assets Identified

  • Customer Database
  • Network Infrastructure
  • Billing System
  • Operational Technology (OT)
  • Employee Workstations

Risk Assessment Results

Highest-Risk Assets (Severe Risk Level)

  • Billing System - Ransomware: Risk Score 25 (Likelihood 5, Impact 5)
  • Operational Technology - SCADA Exploit: Risk Score 20 (Likelihood 4, Impact 5)

Recommended Mitigation Strategies

  1. Implement Multi-Factor Authentication (MFA) across all systems
  2. Conduct regular security awareness training for employees
  3. Deploy network segmentation between OT and IT environments
  4. Establish comprehensive incident response plans with defined roles
  5. Maintain secure offline data backups for rapid recovery

Educational Value

This assessment demonstrates practical application of:

  • Risk matrix development and scoring methodologies
  • Compliance framework implementation (NIST, PCI DSS, CISA)
  • Critical asset identification and prioritization
  • Incident response planning and team role definition
  • Prevention strategy development for critical infrastructure

Document Structure

  • Introduction: Assessment purpose and breach background
  • Risk Assessment Team: Team composition and consultation details
  • Scope and Context: Internal/external factors and compliance alignment
  • Asset-Based Assessment: Detailed analysis of five critical assets
  • Prevention and Response: 10-point prevention plan and incident response structure
  • Risk Matrices: Visual risk scoring and prioritization tables
  • Conclusion and References: Key takeaways and regulatory framework citations

License

This project is for academic and educational purposes only. The analysis is not affiliated with Colonial Pipeline or any real-world organization. All risk assessments and recommendations are theoretical applications created for cybersecurity education.

© 2025 Ahndre Walters · Created as part of the Cyber Nation x Protexxa Cybersecurity Bootcamp (Cohort 1 - Grenada) · Risk Assessment Framework Assignment · Colonial Pipeline Ransomware Case Study

About

Cybersecurity risk assessment of a real-world data breach using NIST and other industry frameworks to identify threats, vulnerabilities, and mitigation strategies.

Topics

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Contributors