A back to basics layered approach

SMART Cybersecurity Handbook 2022 Information Security

Since the start of the Covid-19 pandemic, cyber-attacks have been on the increase on a global scale, inflicting financial losses across all sectors including manufacturing, banking and energy, to name a few. In South Africa, cyber-crime has become one of the biggest threats faced by companies, governments and individuals, as the spread of digital technology and connectivity makes every form of human activity vulnerable to attack.

We are certainly seeing phishing, whaling and hacking attempts happening with increasing frequency. Identity theft has become another big issue, with stolen IDs leveraged for financial gain. The real challenge facing security specialists is that a number of these cyber criminals appear to be state sponsored, which means they have enormous resources behind them.

This is important to note, as although there remain many amateurs out there, companies would do well to remember that there are also many professional criminals who are well-versed in hiding their attacks - and it tends to be that the more prominent the organisation, the more sophisticated such an attack will be.

One only has to look at the recent Transnet compromise to note the kind of impact a severe attack can have on vital institutions like our ports, through which so much commerce and capital flows.

The pandemic is certainly a driver behind the increase in cybercrime, due to a variety of factors. For one thing, there are more people working remotely, which inevitably makes it tougher for security tools. The anxiety created as a result also opens potential new vectors of attack, while the massive job losses caused by global lockdowns have led to more unemployed people seeking to earn an income via criminal activity.

Prevention is better than cure

When it comes to stopping cyber threats, I recommend a prevention-first approach. This means using an endpoint prevention tool, rather than one focused on endpoint detection and response (or augmenting the EDR tool with an EPP one). Ideally, you want a solution that applies advanced artificial intelligence (AI) to the task of preventing and detecting malware - something like Deep Instinct, a purpose-built, deep learning cybersecurity framework.

These types of solutions are extremely smart in the way they are designed, in that they use AI to understand exactly what constitutes a security issue. With advanced solutions like this, companies can move beyond the basics, such as ensuring that a user doesn’t have the same password for every service and apply greater levels of security through implementations like multi-factor authentication (MFA), or go passwordless where possible, which can be used to create additional layers of security.

Remember that in a digital world, a criminal infiltration of your business may begin somewhere far beyond the company’s own security perimeter. Think, for example, of a customer purchasing from a retailer, who uses the same password for their club card as they do for their work login. If the retailer is hacked, it becomes possible for the bad guys to use information gained there to break into your corporate network as well. This illustrates why proper password management is vital.

Another big issue is e-mail, which is one of the key infiltration methods used by criminals, as it is seen as one of the easiest methods to use to break into a network. While a user may not always be able to tell if a link is dangerous, AI-based security solutions are able to rapidly scrutinise the URLs of anything a user may wish to click on, making it far more difficult for criminals to gain access through malicious links.

Remember too that while there is no silver bullet for cybersecurity, eliminating the challenges around passwords is a great first step. Essentially you need a multi-pronged approach to security, since good security is all about layers and making it as complex as possible for criminals to break in.

Get the basics right

Much like good home security starts with a wall and electric fence, but also likely includes a watch dog, an alarm and a security gate, so you need to build multiple layers of security to protect your core. This way, even if one is cracked, the criminal finds they are faced with yet another obstacle.

It is also worth noting that security - even AI-based, multi-layer security - is only half the battle. It is just as imperative to train your employees properly, so that they know the basics, such as never to click on unknown links or open strange mails.

Security today is complex and most people really don’t know where to begin, which is why it is worthwhile talking to genuine security experts beforehand. And the advice they will give is the same as above: that security starts with a good endpoint cybersecurity solution; it should include an effective password management solution; MFA should be enabled; and you should implement a system like Tessian that checks and analyses inbound and outbound emails in real-time and uses machine intelligence to automatically detect if emails contain security threats.

Once you have these key security basics in place, you can continue to improve by crafting a security posture with multiple layers. Don’t forget that cyber criminals are constantly evolving and you should too.




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

Want effective Attack Surface Management? Think like an attacker.
Information Security
Effective ASM requires companies to think like attackers, anticipate risks, and act decisively to reduce exposure by knowing their environment, deploying a structured approach, leveraging capable tools, and addressing both internal and external risks.

Read more...
The growing role of hybrid backup
Infrastructure Information Security
As Africa’s digital economy rapidly grows, businesses across the continent are facing the challenge of securing data in an environment characterised by evolving cyberthreats, unreliable connectivity and diverse regulatory frameworks.

Read more...
POPIA non-compliance puts municipalities at risk
Information Security Government and Parastatal (Industry)
Digital responsibility must go beyond POPIA compliance to recognising that privacy and service delivery are fundamentally linked. Despite this, only 51 out of 257 municipalities submitted their mandatory data protection and access to information reports in 2024.

Read more...
Choicejacking bypasses smartphone charging security
News & Events Information Security
Choicejacking is a new cyberthreat that bypasses smartphone charging security defences to confirm, without the victim’s input or consent, that the victim wishes to connect in data-transfer mode.

Read more...
Most wanted malware
News & Events Information Security
Check Point Software Technologies unveiled its Global Threat Index for June 2025, highlighting a surge in new and evolving threats. Eight African countries are among the most targeted as malware leaders AsyncRAT and FakeUpdates expand.

Read more...
Welcome to the new cyber battleground
Information Security
The Iran-Israel conflict is rapidly redefining modern warfare, pushing the boundaries of cyber capabilities and creating a new, borderless digital battlefield. Fortinet’s CISO, Dr Carl Windsor, offers a critical, in-depth analysis of the escalating tactics and global implications in his latest report.

Read more...
African industries may overestimate cyber defences
Information Security
] A significant perception gap exists in security awareness training: 68% of leaders believe training is tailored to roles, yet only a third of employees feel adequately trained. Many organisations only conduct annual or biannual generic training that may not effectively change behaviour.

Read more...
SMARTpod talks to Sophos and Phishield
SMART Security Solutions Technews Publishing Sophos Videos Information Security News & Events
SMARTpod recently spoke with Pieter Nel, Sales Director for SADC at Sophos, and Sarel Lamprecht, MD at Phishield, about ransomware and their new cyber insurance partnership.

Read more...
Cybersecurity and insurance partnership for sub-Saharan Africa
Sophos News & Events Information Security Security Services & Risk Management
Sophos and Phishield Announce first-of-its-kind cybersecurity and insurance partnership for sub-Saharan Africa. The SMARTpod podcast, discussing the deal and the state of ransomware in South Africa and globally, is now also available.

Read more...
Highest increase in global cyberattacks in two years
Information Security News & Events
Check Point Global Research released new data on Q2 2024 cyber-attack trends, noting a 30% global increase in Q2 2024, with Africa experiencing the highest average weekly per organisation.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.