This project analyzes the enterprise information and security for the growing small business, Fix My Sink. The assignment begins with an introduction to the business, followed by the development of an Enhanced Entity Relationship (EER) model for the proposed system. The core of the project is a comprehensive security research report that identifies six key security threats: malware, insider threats, Distributed Denial of Service (DDoS) attacks, SQL injection, social engineering, and Trojans. For each threat, the report includes a probability impact matrix and recommends specific risk controls to mitigate the vulnerabilities. The risk controls cover a range of measures, from installing anti-malware software and educating employees to implementing database firewalls and DDoS mitigation techniques. The report concludes by emphasizing the importance of proactive security measures to protect the business's critical data and ensure the system's reliability.