You explained denial of service and SQL injection pretty well. I find your argument on packet filtering for DoS attacks to be particularly salient, since early detection can indeed minimize mass disruption. Equally, I agree that periodic system checks and input validation are key in minimizing the occurrence of SQL injections. Your explanation of malicious software justifies well why routine scanning is an important duty of any security officer.