Free Essay

Riordan Manufacturing Web Security

In:

Submitted By dewey1589
Words 644
Pages 3
Riordan Manufacturing Web Security
CMGT441
May 28, 2012 Riordan Manufacturing is a “Fortune 1000 enterprise with revenues in excess of $1 billion” with “projected annual earnings of $46 million” (Apollo Group, Inc., 2012). Their mission statement focus is to be “industry leaders in using polymer materials to provide solutions to our customers challenges” and “identifying industry trends” (Apollo Group, Inc., 2012). Yet, they are severely lacking in their physical and technical web security.
Before any technical measures can be taken, physical measures should be considered. A big concern is where machines are located. The servers at San Jose and China are data centers and therefore need to be well protected. They should be in a locked fireproof room with authorized access only. Also, have a fire suppression and temperature controlled system. The servers at Albany and Pontiac should have the care, but at least be in a locked room away from the public to avoid accidents. All computers should be in an office or room that can be locked. Laptops should have cable locked or locked in a drawer when not in use. Printers should also be in a lockable room. Any research and design machines need to be in a separate part of San Jose building with special access and the servers need to have their own room. All the cyber security in the world could not stop someone from walking up to a machine and downloading the data.
Next, to have a digital system the proper hardware needs to be in place. Riordan already has hardware, but the majority of it is out-of-date. To start, all hubs will be replaced with switches, they are to say smarter. The existing switches will be replaced with newer ones. The routers need to be updated as well. The San Jose and China servers are not that old, but may need to be updated based how they handle the new cyber security measures. Albany and Pontiac may not need to be replaced since they are the manufacturing plants and not a datacenter. The software on all servers should be upgraded. All computers need to be updated. Not only are they not going to support new security measures, but their operating system is not even in support anymore.
Lastly, after all the physical protection and proper hardware are in place can the technical cyber security begin. To most employees hate, user names and passwords will still be in place. However, a stronger password is going to be need and employees connecting from outside the network will need a token for an additional password. Whether or not encryption is already used, it needs to be either added upgraded to a stronger version. Information should only be stored at the San Jose datacenter with the exception of China having the back-up datacenter. Albany and Pontiac Plants should only have current project plans and remove them when done. The network should have a more mesh design to avoid a single point of failure. R&D should be segregated from the network. Also, there should be no outside connection to R&D and additional security to access onsite. There should at least be a DMZ at San Jose and China.
Riordan Manufacturing is a Fortune 1000 enterprise, but their security does not reflect that. The physical security and location of machines will help protect along with avoid accidents. Proper hardware needs to be used to get the most out of Riordan’s security. Even those employees will complain and it makes their life harder, cyber security is more than just passwords. Without physically and technically security the data, everyone could have access to their secrets and Riordan cannot hope to remain an industry leader. Bibliography
Apollo Group, Inc. (2012). Intranet. Retrieved April 6, 2012, from Riordan Manufacturing: https://ecampus.phoenix.edu/secure/aapd/cist/vop/Business/Riordan/index.asp

Similar Documents

Premium Essay

Riordan Manufacturing Internet Security Issues and Web Concerns

...Riordan Manufacturing Internet security issues and web concerns The biggest, and probably the most insidious threat facing Riordan comes not from aging servers, poor physical security, or antiquated workstations, but from their own employees; many of which may become unwitting pawns of social engineering, phishing, and malware. In recent surveys conducted across the industry, “More than 50% of businesses consider their own employees to be the greatest IT security threat, with 54% of respondents believe that insiders are the biggest threat, compared to 27% who fear criminals the most, 12% state-sponsored cyber-attacks and 8% competitors (Swabey, 2013).” With a growing trend across the industry, to include even the Department of Defense, to allow employees access to social media sites like Facebook, Twitter and LinkedIn, this comes as no small wonder. “Don't be too proud of this technological terror you've constructed (Lucas, 1976).” On the surface, all four of Riordan’s plants have firewalls at the border of their network, and to many novice system administrators and misguided information technology specialists this should be more than enough to secure the network from internet based attacks. Chances are these firewalls are inadequately configured; explicit deny means nothing if your letting social media sites into your internal network. “Social networks are about connecting people, and a convincing-looking profile of a person followed by a friend or connection request can...

Words: 921 - Pages: 4

Premium Essay

Sr-Rm-013: Network, Data, and Web Security

...SR-rm-013: Network, Data, and Web Security CMGT/441 June 18, 2012 Abstract Riordan Manufacturing conducts an information systems security review over IT security issues that exist in different plants to prepare for an upcoming audit in accordance to the Sarbanes-Oxley Act. Several elements of the organization's information systems require revisions and updates to optimize physical and network security, data security, and Web security. SR-rm-013: Network, Data, and Web Security The Sarbanes-Oxley Act (SOX), passed in July 2002, requires publicly traded companies to submit accurate and reliable financial information. Securing private information is not included in its requirements; however, establishing security controls for confidentiality, availability, and integrity of the reporting are (Kim & Solomon, 2012). Riordan Manufacturing is preparing for an audit in compliance with SOX and is conducting an information systems security review over its physical and network security, data security, and Web security. Physical and Network Security Riordan Manufacturing performs an information systems security analysis over its physical and network security. Several elements of the IT system require revisions, such as restrictions to physical access to vital IT systems and upgrades to outdated systems within the network. Physical Security After analyzing the headquarters and Riordan’s other sites it was found that they were not designed nor equipped in the same fashion...

Words: 2582 - Pages: 11

Premium Essay

Riordan Security Plan

...Riordan Security Plan CMGT/441 October 14, 2013 University of Phoenix Executive Summary: Riordan Manufacturing is a global corporation and has been performing both research and development activities and manufacturing plastics products for a number of uses since 1992. Riordan’s R&D efforts supply the company with new products to break into new markets, most recently the health care market. Riordan has grown and now has three United States locations and one location in China. Each location has a recently upgraded its information technology infrastructure including their network hardware and software. Riordan has also kept up with quality standards for its management and manufacturing operations, including following Six Sigma and ISO 9000 quality standards. The Sarbanes-Oxley Act of 2002 requires Riordan to implement some changes to their security processes to ensure compliance with the new law. The Sarbanes-Oxley Act is focused on to the regulation of corporate governance and financial practice, maintaining the security of all financial data and ensuring the systems that access or store financial data and information must be secure to maintain compliance and pass an audit. Team B responded to the service request SR-rm-013 by performing an analysis of Riordan’s current network, data, and web security issues. Team B’s analysis focused on the security of information to ensure Riordan will be able to pass a security audit as a result of the Sarbanes-Oxley Act....

Words: 2934 - Pages: 12

Premium Essay

Web Security Issues

...Web Security Issues/Concerns Comparing to other online Apollo group organizations Riordan manufacturing has a few locations. No matter the size of the business but still the information and the database needs to be protected in any way. To overcome this the web up-time needs to be more effective and fast. In that case if a customer place an online order it can transmitted real fast to Riordan manufacturing to process the order. A weak point I found on Riordan manufacturing website is there is no option for customers for online entries. Also if they are willing to create a for customer information entry it should be protected by (DOS) Denial of Service to prevent online attacks and threats wise versa. Current Riordan Manufacturing website specifications As I went through the information each Riordan manufacturing facility has their own web server which runs internally, but with any firewall which is a huge risk. I found out that each web server is being installed and maintained by different vendors without any continuity plan or proper security measures. In case if a customer needs to contact Riordan manufacturing they has the option to send a text message describing their need. The email and phone numbers of Riordan are listed on the website as well. Recommendations to secure the web security I do suggest that if Riordan can setup one server on a location and connect all locations to it. It that case they can maintain and monitor their system easily and quickly before a...

Words: 356 - Pages: 2

Free Essay

Riordan

...Running head: RIORDAN MANUFACTURING PHYSICAL LAYOUT AND NETWORK Riordan Manufacturing Physical Layout and Network Security Nadja Marava, Russell Elder, Roman Silva, and Logan Pickels University Of Phoenix CMGT 441 Introduction to Information Security Management Jude Bowman September 3, 2012 Riordan Manufacturing Physical Layout and Network Security As can be seen on the Intranet Website, Riordan currently operates four manufacturing plants; three located in the United States (San Jose, California; Pontiac, Michigan; and Albany, Georgia) and one overseas (Hang Zhou, China). Each plant contains the same basic departments, to include Sales and Marketing, Operations, Finance and Accounting, Information Technology (IT), Legal, and Human Resources. The problem; however, lies in all four plants Sales and Marketing, Operations, Finance and Accounting, and Human Resources departments, which have outdated and unconsolidated systems. China Physical Layout One location is China. The Wide Area Network being used has three T1 connections in the United States and a Satellite connection in China. This paper is used for determining the architecture for the Riordan WAN and then research what possible security measures can be taken to reduce Vulnerabilities. The Layout is below: • Ethernet Backbone 1G • Windows Exchange server Email • Windows Network server Domain controller • Unix Server for ERP/MRP Customer and Vendor Relations • Linksys Wireless Router ...

Words: 3147 - Pages: 13

Premium Essay

Bsa 310 Team Paper

...Riordan Manufacturing Service Request Team B BSA/310 Steve Johnson February 21, 2012 Riordan Manufacturing Service Request Introduction The Riordan Manufacturing Company is an industry leader in plastics manufacturing and has earned international acclaim for its state-of-the-art plastic designs since 1991. Riordan Manufacturing is a company owned by Riordan Industries. “Riordan Manufacturing currently employs 550 people, and has manufacturing plants in Albany, Georgia, Pontiac, Michigan, and Hangzhou, China, and Corporate Headquarters in San Jose, California” (Apollo Group, Inc., 2006). They have taken the lead for the past 20 years in their design of products such as plastic bottles, fans, heart valves, and medical stents. As the company has expanded over the past few years, their business systems have expanded as well. This review analysis will identify existing system and subsystems for Riordan Manufacturing, Inc., and provide recommended system solution software, hardware and applications to improve current business processes and standards. Home Page Optimization In view of Riordin’s electronic information presence, the Web site Home page displays a meaningless banner that lends the company to twentieth-century technology. It provides no Web market presence. Optimization of the Riordin Web site Home page needs to be the focal point of their business system and sub-system upgrade. Now, companies have realized that database...

Words: 3654 - Pages: 15

Premium Essay

Riordan Manufacturing Company Inc. Wide Area Network

...The current architecture of the Riordan Manufacturing Company Inc. Wide Area Network and network security in place requires updated documentation. The purpose of this paper is to gather the existing information into a single format and evaluate the WAN and security documentation for an executive overview. Riordan Manufacturing, Inc. is an industry leader in the field of plastic injection molding. With state-of-the art design capabilities, they create innovative plastic designs that have earned international acclaim. Attention to detail, extreme precision and enthusiastic quality control are the hallmarks of Riordan Manufacturing. With facilities in San Jose, California, Albany, Georgia, Pontiac, Michigan and Hangzhou, China, the company is heavily dependent upon their communication networks. The documentation produced by this analysis will give the management at Riordan Manufacturing an understanding of their networks today, a plan for future upgrades and a baseline to evaluate security. The goal of this exercise is three fold. Our first will be to provide an inventory of the existing network components for Riordan Manufacturing designated by location, review the network security for each site, and our last goal is to document the current security plan for use in future planning. Because of the limited scope of the project, several assumptions must be made. The first assumption is that Riordan Manufacturing has accurate records of the current infrastructure and no changes will...

Words: 11081 - Pages: 45

Premium Essay

Riordan Sr-Rm-006

...Riordan SR-rm-006 University of Phoenix Windows Server Networking POS.421 Riordan SR-rm-006 Riordan Manufacturing is a “leader in the field of injection plastic molding with state of the art manufacturing capabilities” ("Sales Plan - Riordan Manufacturing," 2006), and they desire to remain a leader in this competative market. To help them stay on top of the market they have requested a comprehensive review of their business systems servers and operating systems. This review will benefit their managing of their information technology data resources. The primary systems this overview concentrates on are Windows Vista, Windows XP Professional, Windows Server 2003, and Windows Server 2008. Within each of these systems are sub-systems that will be addressed as needed. Features and Benefits of Windows XP Professional Windows XP Professional includes Active Directory integration along with the Microsoft Management Console (MMC) that is a server and domain management tools. “You manage Windows 2000 and Windows 2003 domains using tools loaded into a Microsoft Management Console (MMC) window. You can access these tools over the network directly or over the Internet via Internet Information Server.” ("Windows XP and desktop management," 2011).  Windows XP Professional is an excellent choice to serve as a client-based network administration workstation. Windows XP Professional contains two remote connectivity tools. First XP Professional contains the Remote Assistant and...

Words: 3579 - Pages: 15

Premium Essay

Riordan Manufacturing Human Resources Integration Project

...Riordan Manufacturing Human Resources Integration Project Brett Hall, Carl Rascoe, Juan (Danny) Castaneda, and Tina Schaffer CIS/207 November 6, 2012 Bill Fennell Riordan Manufacturing is a global plastics manufacturer that was founded by Dr. Riordan in 1991. Dr. Riordan obtained several patents that later turned into commercial applications that developed his company in to a Fortune 1000 enterprise, employing 550 people with projected earnings of $46 million dollars and over $1 billion in revenues. In 1993 the company expanded from high tensile strength plastics and fans into producing plastic beverage containers. The company’s latest expansion was in 2000 when it opened operations in China. Riordan Manufacturing is the industry leader in using polymer materials with future goals of achieving and maintaining reasonable profitability to ensure and sustain growth (Apollo, 2005). In response to Hugh McCauley’s, Riordan Manufacturing Chief Operations Officer‘s (COO) concern about the antiquated processes and his requirements the team analyzed the manual and redundant processes of the current Human Resources System Integration (HRIS). The team has determined with the use of state-of-the art information technology system the current manual intensive, multi-functional processes can be integrated into a single system. The team has kept in consideration that the integrated HRIS has to be accessible by all of Riordan’s plant locations. Based on the request...

Words: 3533 - Pages: 15

Free Essay

Architecture and Process Design

...Request University of Phoenix BSA/375 Riordan Manufacturing’s Application Architecture and Process Design:- Riordan has designed an application using the systems development life cycle. By using this cycle the process will follow several different stages that gather design requirements, testing, and other valuable information. I have created a design process diagram that will break down the roles and requirements for the operations of Riordan. The Process and design identifies the processes and the roles that are involved. Processes represent the operations performed by the system. Entities represent all the information sources of the system. We represent the entities and the processes in the data flow diagrams, DFD. While designing the DFD’s we increase the level of detail with each level. At each level the process divides into sub-processes until indivisible sub-processes are reached. Here is an example. Data Diagram Flow 1: The information system comprises for Riordan Manufacturing is comprised of: • Customers • Employees • Manager Customers Customers are the people that purchase items sold by Riordan and will give their orders to a Riordan employee or manager to fulfil. Employees The employees work for Riordan in many roles like servicing, manufacturing and selling products. The employees will play a large role in this design. Manager Manager positions have to deal with many more issues for Riordan. Some of the responsibilities of a manager...

Words: 618 - Pages: 3

Premium Essay

Windows Server and Linux Critique

... At the request of Riordan Manufacturing, Inc., the project team conducted a thorough review to compare the advantages and disadvantages of Windows Server and Linux. The recommendation of an operating system will ensure Riordan’s business operations continue with compatibility between all locations with the highest level of security, administration, networking, performance, and programmabilityimplemented. Security Although there are proponents everywhere for each type of operating system available on the market today, the focus of this project team, at the request of Riordan management, is to compare the security advantages and disadvantages of Windows Server and Linux. Windows Server Advantages. Windows Server has improved over the years in providing basic security provisions for administrators. Access to any system is extremely important to security professionals, such as domain name system (DNS), active directory domain services (AD), and access to web servers using Internet Information Services (IIS). DNS security extensions (DNSSEC) provide added security when a consumer is gaining access to a company’s website as well as how the company interacts with the consumer securely. In relation to AD, authentication for end users within a company to gain access to network resources is achieved based on whether the user logs on via certificate-based login and the type of certificate, but for web servers using IIS, “request...

Words: 1859 - Pages: 8

Free Essay

Riordan Operations

...Riordan Operations Christopher E Jenkins BSA 310 March 13, 2012 Ivon Young Riordan Operations Since the creation of Riordan Manufacturing, Inc. in 1992 the company has enjoyed success in the plastics manufacturing sector. The company has grown from a single manufacturing plant in Pontiac, Michigan to adding a Research and Development (R&D) facility in San Jose, California, a second manufacturing plant in Albany, Georgia and an overseas plant in Hangzhou, China. As the company has grown, it has consolidated its manufacturing processes so that each plant has a specific area of specialty, thereby reducing costs by eliminating a duplication of work between the facilities. The company, however, still endeavors to further trim manufacturing costs and increase efficiencies. One area that can be improved upon and streamlined is in the company’s operations. Current System To best illustrate where the company’s operations can best be improved, the current systems in place must first be explored. In the Human Relations (HR) department, Riordan currently uses the original system that was installed in 1992. This Human Resource Information System (HRIS) tracks employee information such as pay rate, personal information, tax information, and other organizational specific information. Any changes to an employee’s information must be submitted in writing on a HR form and are entered into the system by the payroll clerk. Other files, such as training records, development records...

Words: 1160 - Pages: 5

Premium Essay

Riordan Hr System

...Riordan HR system Philip Soluri BSA/375 February 24, 2014 Eric Secrist Riordan HR system Riordan Manufacturing is a Fortune 1000 plastics manufacturing company employing approximately 550 people in several locations. Riordan manufacturing was founded in 1991 by Dr. Michael Riordan in San Jose, California but since has acquired multiple other entities and continued to expand. Chief Operations Officer Hugh McCauley has requested unification of the human resources department with a single cutting edge integrated software system for the entire department company-wide. Riordan’s current HR system has been in place since 1992, and with both the expansion of the company and passage of time, the current system has become outdated and inefficient. Since the original system was put in place to integrate the San Jose office and the office in Pontiac, Michigan the company has added two more entities to the business. Riordan now has offices in Albany, Georgia and a manufacturing plant in China. As with most of their systems, the HR system is currently functioning as several different systems operating independently of one another. This creates issues with format and conversion of documents and information between offices, unnecessarily cutting down on employee productivity. The first step in the process of updating and integrating Riordan Manufacturing’s human resources department will begin with gathering of information. During this process there will be several techniques used...

Words: 3336 - Pages: 14

Premium Essay

New System Proposal

...system that can compute to any business. Riordan is going to need a system that allows different departments to work closely together, fulfill orders efficiently and on time. A central website that is connected to each business site around the globe, this will allow different sites to interact on the same project creating collaboration and efficient way to conduct business. Microsoft SharePoint will become the platform to create, develop, and bring new ideas. It will also increase customer loyalty and provide a more efficient process, from order submission to finished product. With SharePoint® we plan to take production, collaboration, and customer experience and bring them all together for a more interactive and engaged experience. Riordan is a global manufacturing organization with data flow going to and from different departments and different site locations. This data needs to be secure and accessible between departments, employees, and sites. Riordan is going to need a system that allows different departments to work closely together, fulfill orders, efficiently produce their products and deliver them on time. A common goal at Riordan is to seek out ways to safeguard and improve workflow amongst workers. It is clear Riordan needs an Enterprise Resource Planning (ERP) system to handle their business. The new system we would like to propose for their ERP endeavor is an application called Microsoft SharePoint®, with integration into web application and remote desktop...

Words: 2391 - Pages: 10

Premium Essay

Unix, Linux, and Windows Server Critique

...operating systems for Riordan Manufacturing Inc. that specializes in plastic molding and design. Team B concentrated on five main areas of UNIX, Linux, and Windows Server. The five areas include Security, Administration, Networking, Performance, and Programmability. The team explains the existing systems, followed by comparing advantages and disadvantages of each operating system. The comparisons provide insight for Riordan’s IT specialist and administration considering which system to implement. Interesting topics that relate to security weaknesses, and advantages that UNIX® and Linux® compare against the operating giant, Microsoft Windows Server®. Security At the present time, Riordan Manufacturing’s network configurations consist of a heterogeneous UNIX and Windows environment. UNIX has been around for more than 40 years and is known for its’ robust power and scalability. According to the Open Group, “Security, which is often seen as a weakness for UNIX-based systems, is ensured using dedicated communication lines and secure communications protocols, along with strict authentication procedures” (para. 42). This means UNIX, just like Windows, requires configurations to make it a more secure system. Setting up file permissions, user access controls, as well as shutting down network services not currently active are just a few of the ways that help close the gap to unauthorized entry. An advantage UNIX seems to have is its’ lack of popularity, a piece of security in itself, most...

Words: 2750 - Pages: 11