Cyber Defense Magazine – July 2019

(Sean Pound) #1
◦ There are several effective frameworks to ensure the steady categorization and
classification of cyber threat activities. Also, there are several such standards that help
to determine the trends of the cyber-attacks. Some standards even offer actionable
steps to build a very strong custom threat model.


  • Assessment


◦ The most important part of your cyber security strategy is to assess the most common
risks and threats for your business. This has to be very personalized, and mostly
specifically about your own business only. Here, you might also want to consider a few
things like whether you are using an obsolete software which is prone to an attack or
are your staff is using extremely weak passwords.

◦ After you have assessed the key areas of function, the second step would be to
understand the type of tools that you would need to avoid risks. You may even want
some real-time interactions with certain people in your company to understand the
risks better. You will have to basically identify your business’ potential vulnerabilities.
As, based on this information only you can mention the key focus areas.

Training your staff is the key to attaining ‘cyber security successes


Ideally, if you really want your business to be completely secured, then each and every employee of your
company should know the importance of cyber security. At the same time, they should also be aware of
the steps they need to take in order to maintain the cyber security of a company. The right set of teams
should be trained to know the procedure for assessing a cybersecurity attack. Along with this, a
comprehensive strategy is needed to offer lessons on various things like, how to keep your passwords
strong, using multi factor authorization, BYOD rules, how to identify a potential phishing scam etc.


Though, it is not that if you have trained your staff once, that’s enough. As, the cyber criminals are
evolving and their strategies are also becoming advanced, thus, the employees should also be aware of
the latest cyber security tools and techniques.


How can a business ensure complete cyber security?


First of all, one needs to understand that cyber security is not just complex, but it is also evolving. It
requires collaborative efforts all the way through the information system. A few of the common elements
of cyber security may include things like, network security, application security, information security,
operational security and most importantly the educating the workers and users. At the same time, a
company has to have experienced cyber security resources as well as highly advanced cyber security

Free download pdf