
What Drives TCO? • Networks Grow in Size and Complexity • Scope of Operations Increases • Skilled IT labor grows scarce • New applications require new solutions
What Drives TCO in Security? • Vendors produce in-secure applications • Vulnerabilities proliferate • Business processes depend on applications • System availability drives profit
Components to Consider • Initial Cost of Product (25% of life cycle) • Vendor Support Services • Deployment Services • Time for Staff to Install and Configure • Training Cost • Post Deployment Support
How to Reduce TCO? • Simplify Infrastructure (KISS) • Upgrade Infrastructure When Timing is Right • Minimize Labor Intensive Activities • Consider Remote Management • Know Your Assessment Parameters
Option 3 Option 2 Option 1 HIGH Budget Line T C O Acceptable Risk Ideal Soln LOW HIGH LOW Security Risk
Evaluating the Options • Option 1 • FIREWALL At Gateway Only • Option 2 • DMZ • Anti Virus Software on all DMZ machines • Option 3 • DMZ, AV S/W on DMZ Machines • VPN Access to all DMZ Machines • AV S/W and Firewalls on all Clients
Things to Consider • Which Option Would You Choose? • Could You Determine TCO for Your Project? • Given a Set of Devices Could You Compute TCO?