1 Project Two BUS-206 James Rhoton Southern New Hampshire University
2 Ethics and Law It is the purpose of this report to provide a summary of the issue of hacking or data theft that affected Mountain Top View, Inc. Mountain Top View, Inc. is owned and operated by Clare Applewood, who oversees all financial aspects of the business. In order to determine the extent of Mountain Top View, Inc.'s moral and legal obligations towards its customers, we will investigate the situation. An ethical decision is one that is based on moral principles that are guiding a person's actions and behavior, in which particular values derived from cultures, traditions, religions, or laws can play a critical role in making that decision. Ethics act as a moral compass that directs judgment, unlike legislation, which protects individual liberties and serves as a moral standard for behavior. As a responsible business, we must consider the impact of incidents on our customers and the community. Our customers trust us to maintain their privacy while doing business with us, and it is our social responsibility to honor that trust. Unfortunately, Steve, our technology lead, discovered a breach but failed to report it, which raises ethical concerns. It is important to conduct business ethically, taking into account the interests of both the company and its customers, and comply with all relevant regulations, such as the Foreign Corrupt Practices Act. In this case, however, Steve's actions were not aligned with the best interests of Mountain Top View or its customers. Analysis The case study of Mountain Top View, Inc., Clare, and Carlos has brought to light several legal and ethical concerns. To ensure transparency, it's necessary to inform all customers whose
3 information was stolen and provide credit monitoring services if the attack compromised more data than we initially thought. Steve's negligence in informing company executives of the issue and handling it discreetly was also unethical. All parties involved, including employees, clients, investors, business partners, and other stakeholders, must collaborate on a comprehensive plan. It's vital to present the violation accurately and not withhold any information that could assist customers in safeguarding their privacy. At the same time, it's essential not to divulge any details that could expose customers to further harm. Recommendation Our recommendation is to prioritize rectifying the security issue and then seeking legal counsel to inform them of the situation and seek their advice. In addition, we need to conduct an interview with Steve, the employee who discovered the security breach. Since this is a computer crime, it is required by law to inform guests that they were victims of a crime, and notify law enforcement. After reporting to law enforcement, we should collaborate with them to create a strategy for disclosing the breach while safeguarding their investigation. To avoid any confusion or misinformation, we must assign one person as the company's point of contact to manage inquiries or complaints on our behalf for customers. Conclusion The modern business world is faced with legal and