The Cost of Inadequate Controls


Because you performed so well in the scenario for the Access Control Strategy Report assignment, upper management at LOTR Experience has consulted with you again as their IT Security Specialist. This time, they are concerned about a pressing new issue. They inform you about the high costs associated with creating a secure network environment. Unfortunately, they also explain that the IT budget is being cut by 30 percent. A recent request for permission to hire an additional IT member was denied. The proposed additional employee would have been dedicated to the database security controls. Finally, based on the budget constraints, a request for a new NAC router was also denied.


Your task for this assignment is to write an effective counter-argument to convince upper management that inadequate controls would cost the company more if security vulnerabilities are exploited.
Write a counter-argument in which you address the following:

  1. Analyze the annual loss of revenue by the professional sector as it relates to access control. (Summarize and provide this information in a graph.)
  2. After reviewing the LOTR Network Design artifacts, outline three critical areas of concern related to access control.
  3. Outline the potential risks, vulnerabilities, and threats that could be incurred through the lack of a dedicated database security specialist.
  4. Outline the potential risks, vulnerabilities, and threats that could be incurred through the lack of an NAC router.
  5. Using the Internet, find three qualified vendors that support the need for an NAC router. Provide the companies’ information and the industry knowledge that will support your argument.
  6. Use at least three quality references in this assignment. Note: Wikipedia and similar websites do not qualify as quality resources.

