Your people are your organization’s greatest asset, but their digital identities are also your most significant risk areas. No other facet of your IT environment is more frequently attacked. A compromised identity is the easiest way into your digital infrastructure and a gold mine for hackers.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Are you continually evaluating high-risk employee behavior for insider threats, and does you include a seemingly simple, but nevertheless high-impact capability: anonymous self- and peer-reporting?
Apple argued that Corellium's use of its software constituted a copyright violation; a federal judge has disagreed, throwing the case out on the basis of the company's software being a tool for security researchers.
An open source project maintainer decided to protest the war in Ukraine by targeting computers with an IP address in Russia or Belarus with a malicious update in a controversial act of hacktivism.
The pandemic shone a bright and unflattering spotlight on where companies need to update their IT infrastructure. Here are a few trends that are bound to define this year’s plans and investments.
The March 2020 SolarWinds hack, which was not discovered for months, has formally been blamed on Russian hackers by a coalition of US intelligence agencies.
The list of the biggest data breaches of the past five years is populated with representatives from the travel industry. Now a Which? study found that it is still rife with security holes.
According to a WEF report, cyber attacks remain the greatest business risk in the US, something that bucks a general global trend among the world's major economies.
There is still an elevated threat of serious Iranian cyber attacks on US targets even as the potential for an all-out war seems to have simmered down for the moment as Iran is known to act through asymmetric warfare.
Enterprise security will always face complex challenges. But by taking a holistic approach to incident resolution, SOC leaders can leverage the right personnel and speed major incident resolution. Collaboration across teams can increase efficiencies and optimize their collective incident response today and tomorrow.










