1- ROC Database:
The ROC database is vulnerable to several risks, namely, unauthorised access, misconfiguration, loss of data, corruption, and inconsistent data. These risks can have several impacts in terms of having incorrect data that leads to inappropriate actions. Loosing data might result in difficulties in delivery services affecting patients' lives.
2- Patient Data / Records:
Patients' information is threatened by three different types of risks, namely, unauthorised access, loss of data and deletion of data (intentionally or accidentally). These risks, if realised, may result in delays of delivering oxygen cylinders to patients, …show more content…
These risks may result in severe impacts. For example, in case of losing subcontractors' contact details or their address, ROC will not be able to communicate with them.
5- Payment Information:
This sensitive information can be lost, modified or stolen resulting in severe impacts on the ROC reputation and trust. Many customers will definitely start looking for other gas companies if their payment information such as their credit cards information is stolen.
6- Manual & Documentation:
ROC manual can be lost, modified or misunderstood. As a result, this can have a negative impact on both patients and employees in terms of performing incorrect behaviour. For example, if ROC materials are lost, workers may not be able to perform certain tasks as they need some guides.
7- Contract Information between Subcontractors and ROC:
If this information is disclosed publicly or the contract is being repealed, ROC will loss a competitive advantage of selling gas cylinders. Therefore, this information must be kept secret.
8- Staff …show more content…
These risks can have severe impacts such as loosing many gas cylinders that have been planned to be delivered to patients. Fire, for instance, could affect houses and people nearby.
10- Fax machines/printers:
These devices can be vandalised. Therefore, ROC will lose some money repairing or replacing them.
11- Workstation / Laptop / Tablet:
These electronic devices are facing the risk of unauthorised access and malware applications (viruses). These risks can negatively affect the ROC system in terms of working properly. In addition, ROC would need then to buy several security tools in order to destroy these viruses which cost ROC some amounts of money.
12- Servers:
Servers can be threatened by hardware or software failures, unauthorised access and power breakdown. These risks can lead to the inability of accessing database files such as patients' records that are stored in the server. Another impact is regarding sensitive data being stolen.
13- Tracking devices:
These devices are vulnerable to unavailable signals, loss of power and hardware or software failures. The impacts of these potential risks are drivers would be unable to receive new instructions (orders) from ROC. Then, cylinders are not delivered to patients on time which could affect their