Organizations that adopt Zero Trust Architecture will see an improvement to security, and are also more attractive to insurers and can more easily meet regulatory compliance requirements. But getting started with adoption is often the biggest challenge.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Here’s what needs to be done at the enterprise level to ensure bulletproof cybersecurity against state-sponsored cyber attacks in the most uncertain times of COVID-19 and beyond.
Security automation is increasingly becoming a necessity in order to keep up with the cyber threats, but security analysts report significant increased stress on the job driven by fear of missing alerts.
Despite massive data, risk and compliance challenges, today’s work-from-home environment has accelerated our reliance on electronic communication apps like WhatsApp, Zoom, Microsoft Teams and more, ushering in a monumental shift in the way we communicate and conduct business.
A hacker on a Russian-speaking forum is selling hundreds of business executives' email and password combinations for Office 365 and Microsoft accounts for use in BEC scams.
Majority of business travelers have grave reservations about public WiFi security and the safety of their data. Of the 2,000 global business travelers surveyed by Carlson Wagonlit Travel, 65% were less than confident about using public WiFi networks.
Given the growing prevalence of data breaches, evidence is building that many cyber insurance policies might be close to worthless, as insurance companies look for any excuse possible to avoid paying out the full amount of a claim.
As more business is transacted online, identity theft is increasingly a threat. From email spoofing to fake domains, cybercriminals are deploying sophisticated schemes around the world.
Caesars Entertainment quietly disclosed its own recent cyber attack in a SEC filing. Unlike MGM, Caesars appears to have skated through their own incident by making a $15 million ransom payment to the hackers.
CCPA pioneered a strong mandate for data privacy and security in the US, and now SB-327 is focusing on securing IoT devices. However, an opportunity was missed to ditch passwords altogether and advocate for a stronger method of authentication.










