Where does SA logistics stand as far as cybersecurity is concerned?

Issue 8 2022 Logistics (Industry), Security Services & Risk Management

South Africa’s logistics industry is battling a war on many fronts. Bad weather, equipment breakdowns and shortages and congestion continue to hamper the country’s ports, adding days to the supply chain and creating havoc downstream.

The conflict in Ukraine and the weakness of the rand are exacerbating the situation, with inflation skyrocketing to the detriment of consumers.

In addition, South Africa is now firmly in the cross hairs of cyber criminals. Antivirus provider Kaspersky’s research shows that ransomware attacks in South Africa doubled between January and April 2022 compared to the same period last year.

The 2021 cyberattack on Transnet was especially damaging, impacting ports, harbours and pipelines to the point that the state enterprise was forced to declare force majeure at several container terminals.

Lesiba Sebola, director of information technology at Bidvest International Logistics (BIL), says it is paramount to safeguard IT infrastructure given how central it has become to operations.

“The bottom line is the financial losses incurred. Transnet, not being able to operate their ports affects us, and obviously, if there are attacks in our own environment that necessitates downtime of the infrastructure, it would be difficult to conduct business.”

Sebola says the most prevalent form of attack is phishing, which seeks to get information from users. “You need a multifaceted approach to protecting your information. We have perimeter security, which involves firewalls, and with operating systems there is always updates you need to do, whether it is an operating system update or security update, to eliminate vulnerabilities the providers have identified.”

However, Sebola stresses that the most important aspect of cyber security is user awareness. “The majority of successful attacks happen here. If your users are not aware, it is like taking a key to your house and throwing it over the security fence for attackers to use.”

“At BIL, we have an online program where staff can learn about security and the different types of attacks: e-mail impersonations, for example. If they spot an e-mail that looks a bit suspicious, we have a special process they follow to alert us so that we can investigate. This forms part of our induction process and occurs on a quarterly basis.”

Like Sebola, Craig Rosewarne, MD of cyber security company Wolfpack Information Risk, believes everyone is at risk of cyberattacks. “You could be an individual, a non-profit, a small charity, it does not matter. The hacker does not care where the money comes from.”

“The harsh reality is that attacks cannot be prevented, but organisations can defend against them, provided they recognise the complexity of digital crimes and tackle them accordingly.”

For Sebola, this means continuously monitoring networks to establish any irregular patterns. “You have to have an incident response plan in place, but you also cannot have a prescriptive one that is generic. This plan will tell you who needs to be involved, who the contact people are, and not just from IT. You need to establish who is involved from legal, operations and the communications side, because there are various aspects that you want to consider.”

“When you have cyber insurance, part of the requirement is that you inform them of any breaches. It is important to keep logs from the IT side. Make sure you contain the attack so that you can preserve the evidence. This is important in terms of the analysis later on to prevent such a breach from happening again.”




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

Using KPIs to measure smart city progress
Axis Communications SA Residential Estate (Industry) Integrated Solutions Security Services & Risk Management
United 4 Smart Sustainable Cities is a United Nations Initiative that encourages the use of information and communication technology (including security technology) to support a smooth transition to smart cities.

Read more...
Enhancing estate security, the five-layer approach
Fang Fences & Guards Residential Estate (Industry) Integrated Solutions Security Services & Risk Management
Residential estates are designed to provide a serene and secure living environment enclosed within gated communities, offering residents peace of mind and an elevated standard of living.

Read more...
Local manufacturing is still on the rise
Hissco Editor's Choice News & Events Security Services & Risk Management
HISSCO International, Africa's largest manufacturer of security X-ray products, has recently secured a multi-continental contract to supply over 55 baggage X-ray screening systems in 10 countries.

Read more...
Detecting humans within vehicles without opening the doors
Flow Systems News & Events Security Services & Risk Management
Flow Systems has introduced its new product, which detects humans trying to hide within a vehicle, truck, or container. Vehicles will be searched once they have stopped before one of Flow Systems' access control boom barriers.

Read more...
Cybercriminals embracing AI
Information Security Security Services & Risk Management
Organisations of all sizes are exploring how artificial intelligence (AI) and generative AI, in particular, can benefit their businesses. While they are still figuring out how best to use AI, cybercriminals have fully embraced it.

Read more...
Integrate digital solutions to reduce carbon footprint
Facilities & Building Management Security Services & Risk Management
As increasing emphasis is placed on the global drive towards net zero carbon emissions, virtually every industry is being challenged to lower its carbon footprint and adopt sustainable practices.

Read more...
Deception technology crucial to unmasking data theft
Information Security Security Services & Risk Management
The ‘silent theft’ of data is an increasingly prevalent cyber threat to businesses, driving the ongoing leakage of personal information in the public domain through undetected attacks that cannot even be policed by data privacy legislation.

Read more...
Proactive strategies against payment fraud
Financial (Industry) Security Services & Risk Management
Amid a spate of high-profile payment fraud cases in South Africa, the need for robust fraud payment prevention measures has never been more apparent, says Ryan Mer, CEO of eftsure Africa.

Read more...
How to prevent and survive fires
Fire & Safety Security Services & Risk Management
Since its launch in August 2023, Fidelity SecureFire, a division of the Fidelity Services Group, has been making significant strides in revolutionising fire response services in South Africa.

Read more...
A long career in mining security
Technews Publishing Editor's Choice Security Services & Risk Management Mining (Industry)
Nash Lutchman recently retired from a security and law enforcement career, initially as a police officer, and for the past 16 years as a leader of risk and security operations in the mining industry.

Read more...