A back to basics layered approach

SMART Cybersecurity Handbook 2022 Information Security

Since the start of the Covid-19 pandemic, cyber-attacks have been on the increase on a global scale, inflicting financial losses across all sectors including manufacturing, banking and energy, to name a few. In South Africa, cyber-crime has become one of the biggest threats faced by companies, governments and individuals, as the spread of digital technology and connectivity makes every form of human activity vulnerable to attack.

We are certainly seeing phishing, whaling and hacking attempts happening with increasing frequency. Identity theft has become another big issue, with stolen IDs leveraged for financial gain. The real challenge facing security specialists is that a number of these cyber criminals appear to be state sponsored, which means they have enormous resources behind them.

This is important to note, as although there remain many amateurs out there, companies would do well to remember that there are also many professional criminals who are well-versed in hiding their attacks - and it tends to be that the more prominent the organisation, the more sophisticated such an attack will be.

One only has to look at the recent Transnet compromise to note the kind of impact a severe attack can have on vital institutions like our ports, through which so much commerce and capital flows.

The pandemic is certainly a driver behind the increase in cybercrime, due to a variety of factors. For one thing, there are more people working remotely, which inevitably makes it tougher for security tools. The anxiety created as a result also opens potential new vectors of attack, while the massive job losses caused by global lockdowns have led to more unemployed people seeking to earn an income via criminal activity.

Prevention is better than cure

When it comes to stopping cyber threats, I recommend a prevention-first approach. This means using an endpoint prevention tool, rather than one focused on endpoint detection and response (or augmenting the EDR tool with an EPP one). Ideally, you want a solution that applies advanced artificial intelligence (AI) to the task of preventing and detecting malware - something like Deep Instinct, a purpose-built, deep learning cybersecurity framework.

These types of solutions are extremely smart in the way they are designed, in that they use AI to understand exactly what constitutes a security issue. With advanced solutions like this, companies can move beyond the basics, such as ensuring that a user doesn’t have the same password for every service and apply greater levels of security through implementations like multi-factor authentication (MFA), or go passwordless where possible, which can be used to create additional layers of security.

Remember that in a digital world, a criminal infiltration of your business may begin somewhere far beyond the company’s own security perimeter. Think, for example, of a customer purchasing from a retailer, who uses the same password for their club card as they do for their work login. If the retailer is hacked, it becomes possible for the bad guys to use information gained there to break into your corporate network as well. This illustrates why proper password management is vital.

Another big issue is e-mail, which is one of the key infiltration methods used by criminals, as it is seen as one of the easiest methods to use to break into a network. While a user may not always be able to tell if a link is dangerous, AI-based security solutions are able to rapidly scrutinise the URLs of anything a user may wish to click on, making it far more difficult for criminals to gain access through malicious links.

Remember too that while there is no silver bullet for cybersecurity, eliminating the challenges around passwords is a great first step. Essentially you need a multi-pronged approach to security, since good security is all about layers and making it as complex as possible for criminals to break in.

Get the basics right

Much like good home security starts with a wall and electric fence, but also likely includes a watch dog, an alarm and a security gate, so you need to build multiple layers of security to protect your core. This way, even if one is cracked, the criminal finds they are faced with yet another obstacle.

It is also worth noting that security - even AI-based, multi-layer security - is only half the battle. It is just as imperative to train your employees properly, so that they know the basics, such as never to click on unknown links or open strange mails.

Security today is complex and most people really don’t know where to begin, which is why it is worthwhile talking to genuine security experts beforehand. And the advice they will give is the same as above: that security starts with a good endpoint cybersecurity solution; it should include an effective password management solution; MFA should be enabled; and you should implement a system like Tessian that checks and analyses inbound and outbound emails in real-time and uses machine intelligence to automatically detect if emails contain security threats.

Once you have these key security basics in place, you can continue to improve by crafting a security posture with multiple layers. Don’t forget that cyber criminals are constantly evolving and you should too.




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

Making a mesh for security
Information Security Security Services & Risk Management
Credential-based attacks have reached epidemic levels. For African CISOs in particular, the message is clear: identity is now the perimeter, and defences must reflect that reality with coherence and context.

Read more...
What’s in store for PAM and IAM?
Access Control & Identity Management Information Security
Leostream predicts changes in Identity and Access Management (IAM) and Privileged Access Management (PAM) in the coming year, driven by evolving cybersecurity realities, hybridisation, AI, and more.

Read more...
The challenges of cybersecurity in access control
Technews Publishing SMART Security Solutions Access Control & Identity Management Information Security
SMART Security Solutions summarises the key points dealing with modern cyber risks facing access control systems, from Mercury Security’s white paper “Meeting the Challenges of Cybersecurity in Access Control: A Future-Ready Approach.”

Read more...
Securing your access hardware and software
SMART Security Solutions Technews Publishing RBH Access Technologies Access Control & Identity Management Information Security
Securing access control technology is critical for physical and digital security. Every interaction between readers, controllers, and host systems creates a potential attack point for those with nefarious intent.

Read more...
From friction to trust
Information Security Security Services & Risk Management Financial (Industry)
Historically, fraud prevention has been viewed as a trade-off between robust security and a seamless customer journey, with security often prevailing. However, this can impair business functionality or complicate the customer journey with multiple logins and authentication steps.

Read more...
Phishing and social engineering are the most significant risks
News & Events Information Security
ESET Research found that phishing accounted for 45,7% of all detected cyberthreats in South Africa, with higher-quality deepfakes, signs of AI-generated phishing websites, and short-lived advertising campaigns designed to evade detection.

Read more...
Zero Trust access control
Technews Publishing SMART Security Solutions CASA Software NEC XON Editor's Choice Access Control & Identity Management Information Security
Zero Trust Architecture enforces the rule of ‘never trust, always verify’. It changes an organisation’s security posture by assuming that threats exist both inside and outside the perimeter, and it applies to information and physical security.

Read more...
OT calculator to align cyber investments with business goals
Industrial (Industry) Information Security Security Services & Risk Management
The OT Calculator has been developed specifically for industrial organisations to assess the potential costs of insufficient operational technology (OT) security. By offering detailed financial forecasts, the calculator empowers senior management to make well-informed decisions.

Read more...
Protecting high-value data from AI
CASA Software Infrastructure Information Security Products & Solutions
As artificial intelligence accelerates the speed and sophistication of cyberattacks, protecting high-value data, such as financial records, legal files, patient data, intellectual property, and compliance records, has never been more urgent.

Read more...
Integrated security key to protecting cloud applications
Infrastructure Information Security
Cloud-native applications have transformed the way businesses operate, enabling faster innovation, greater agility, and enhanced scalability. Yet this evolution brings an equally complex security landscape.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.