5 EASY WAYS TO ELEVATE YOUR
STATE OF PROTECTION
Otherwise known as A Simple Guide to Vulnerability Protection
- Implement Two-Factor Authentication
Two-Factor Authentication
Two-Factor Authentication (2FA), also known as Multi-Factor Authentication (MFA), is a method to increase the protection of an individual’s access to a resource by requiring two or more pieces of evidence:
- Something you have
- Something you know
- Something you are
Why use 2FA?
- Passwords alone are weak and prone to duplication and misuse. They are the weakest point guarding access to your data. Humans are predictable and will use easy to guess passwords whenever possible. Protect against human error.
- Save resource time. Password resets take up valuable IT resources. Let your staff work on more important projects.
- Thwart cyber criminals. Without BOTH pieces of authentication information, an attacker using a person’s credentials cannot move around in your environment.
- Patch Management
Patch Management
Patch Management ensures your environment is protected from vulnerabilities and Day One attacks. A patch management plan should include scheduled updates of the entire data ecosystem: Hardware, Software, and the Internet of Things (all connected devices) and the implementation and testing of zero-day vulnerabilities.
Why use Patch Management?
Most of attacks are executed upon the newest vulnerabilities.
- SIEM / Log Aggregation Review
SIEM / Log Aggregation Review
A SIEM is a log aggregation system. It aggregates logs from multiple types of systems (OS, SQL, Hardware, Endpoint, and more) and analyzes those logs for anomalies, intrusions, and suspicious behavior. Newer versions of SIEM will actively mitigate and connect to other security devices to help block active attacks.
Why use a SIEM / Log Aggregation Review?
If you don’t know what’s going on in your environment, you can’t protect it.
- Back-Up & Disaster Planning
Back-Up / Disaster Planning
Create separate backups that are off-site and disconnected to protect from and recover from a cyber attack. The Disaster Recovery Plan (DR) is the key to getting the systems back up and running. Both these combined make for a solid defense in case of an attack.
Why use a Back-Up & Disaster Planning?
Ransomware attacks are getting better at finding and deleting archived data. Having multiple, separate backups is the key to protecting and recovering from an attack…and possibly avoid paying out any ransom money.
- Endpoint Protection
Endpoint Protection
Endpoint Protection is how corporations protect their data while employees work remotely. It’s more than just using an anti-virus. It also includes:
- Network Access Control
- Application Control
- URL Filtering
- Encryption
- Logging
Why use Endpoint Protection?
- Companies have more people working remotely.
- Endpoints are easy targets for ransomware attacks since endpoints are often used on uncontrolled and unsecured networks.
- Endpoint protection adds the ability to lock down infected machines to prevent the spread of ransomware.
Foiling cybercriminals starts with the basics, but that’s not enough.
Not feeling secure about your ongoing cybersecurity? Ask about Gigit’s Cyberthreat Vulnerability Protection services. ELEVATE YOUR STATE OF PROTECTION.