Yesterday I wrote the opening chapter of this defence-in-depth article – I looked at how anti-virus protection can be side-stepped by threat actors and that staff cyber awareness training is needed to provide another layer to your defences. That was a human addition to your defence-in-depth and today we are …
How does the malware get in?
I am often asked this question by clients and particularly prospective clients, who think they do not need our cyber security awareness training or any of the tools in our security stack. The answer to the question is not easy, in a Word or OneNote file, through a link to …
NHS Trusts hit by a cyber attack on a software vendor
Ortivus is a Swedish based provider of cloud based software for the health industry. Since 18 July it has been investigating a cyber security incident which has impacted a number of its services. These include the patient and transport information solution used by South Western Ambulance Service Trust and South …
Continue reading “NHS Trusts hit by a cyber attack on a software vendor”
This is why a IT and Cyber Security audit makes sense
I am in the middle of an IT and Cyber Security audit for a company – which is why Diana is covering the CyberAwake articles at the moment. During the interviews I conduct, as part of my process, I was told no one used a global administrator account as their …
Continue reading “This is why a IT and Cyber Security audit makes sense”
More on Risk
Diana has continued our series looking at how to assess organisational risk when it applies to cyber security. This series is running on our sister site CyberAwake. Today’s article looks at some practical ways to understand your risks: Assess The Cyber Security Risk – CyberAwake …and the earlier risk articles… …