A major public consulting firm has been tasked with implementing an online patient care system that will enable a military medical facility to electronically provide military patients access to their medical records. The patients include both active and retired military personnel located throughout the world. Included in the system is a social network so patients could share information with each other and provide feedback to the medical facility.
a. Discuss and explain the potential security threats.
b. Identify the potential vulnerabilities of such a system and provide your rationale.
c. Describe relevant security approaches necessary to protect both the patients and the military organization responsible for maintaining the new system.
d. Explain the security issues related to outsourcing this work to a consulting firm over having it done in house within a military environment. How would one overcome these issues?