Does your data hygiene pass the cleanliness test?

Issue 6 2023 Information Security, Infrastructure


Ian Engelbrecht.

From smartphones that allow us to stay connected while on the go, to the Internet of Things (IoT) seamlessly merging with our homes, technology has become an inseparable part of our daily existence, intertwining our every action and choice. However, as it has become more pervasive, it has presented an equally great challenge – mitigating the surge of cyberattacks.

In recent years, cyberattacks have become more than just an occasional threat to the security of our data. They have become the norm and represent a constant shadow lurking in the depths of the digital underworld.

As we become increasingly dependent on digital technology for communication, commerce, critical infrastructure and data security, the risks posed by cyberattacks have grown exponentially. In the business world, cyberattacks have taken centre stage and are a reminder of our inherent vulnerability.

This conundrum raises an important question: how do we adapt to a world where cyberattacks have become not just an exception, but an expectation? The answer to this lies in understanding that cyber resilience is not just a nice to have, but an essential criterion for business continuity.

Just as personal hygiene shields us from diseases and illnesses, digital or data hygiene plays a vital role in preserving the integrity of sensitive data and shields organisations against cybercriminals and ransomware attacks.

The relentless rise in ransomware attacks has put the industry in a defensive position in the constant war against these threats. This is, as the Veeam Data Protection Trends Report 2023 unveils, a 9% surge in cyberattacks, with 85% of organisations experiencing at least one attack over the past year, compared to 76% the previous year.

Unfortunately, no organisation, regardless of its security precautions, is entirely immune to attacks. To increase resilience against attackers and ensure minimal damage and disruptions to business operations, it is critical to promote data resiliency throughout an organisation. For organisations to maintain resilience in the face of impending attacks, they must put thorough measures into place that can be implemented both before and after an attack, including swift and reliable recovery procedures.

While many rely on cyber insurance, insights gathered in the Veeam Ransomware Trends Report 2023 indicate that it is becoming increasingly expensive and difficult to acquire, with 21% of organisations noting that ransomware insurance is now excluded from their policies; and does not guarantee that crucial data can be recovered in the event of a successful ransomware attack, with a quarter of those who paid, unable to recover their data.

To mitigate this risk, an incident response playbook is an essential component in safeguarding business resilience and continuity. It aids in more effective preparation for the inevitable, regardless of the attack’s outcome. It should encompass various scenarios and protocols to be followed, include regular updates, and must not be treated as a one-time effort.

The most important element of an incident response playbook is an immutable backup, and while the Veeam Ransomware Trends Report 2023 adds that 87% of organisations have a risk management programme in place that drives their security strategy, only 35% believe that their programme is working effectively.

Alarmingly, only 30% of organisations test their backups, with some going almost two years without testing these backups. This lack of diligence leaves them ill-prepared to successfully recover and get on their feet post-attack.

Clean backup copies that include clean data that is immutable against attacks and does not contain any malicious code, and recurring verification to ensure that backups are recoverable, are the two most common playbook elements in preparation of a ransomware protection plan.

Robust backup and recovery strategies play a crucial role in mitigating data loss after a successful attack. Consequently, it is essential for organisations to regularly test the efficacy of their backups and processes at least once a week to ensure the recoverability of business-critical data. Additionally, implementing multi-person authentication measures internally is vital to prevent the unauthorised deletion of backups by a lone individual.

The year-on-year increase in cyberattacks is worrying, to say the least, and today, it is no longer a case of ‘if’ or ‘when’ a ransomware attack will happen, but how often. Simply put, an immutable and, therefore secure backup, is the only alternative way to mitigate the consequences of an attack, like having to pay a ransom. Having all measures in place to strengthen resiliency and reliable recovery is the first and most important step in warding off a successful attack.




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

Compressing cyberattack timelines and targeting ungoverned AI identities
Information Security News & Events
Sophos AI Security 2026 report finds attackers are moving beyond experimentation and operationalising AI for attacks using identity as the primary initial access vector, rather than inventing new attack types.

Read more...
Zero-touch automation certificate life cycle management loop
Products & Solutions Information Security Security Services & Risk Management
ManageEngine completes the certificate life cycle management loop with CA-agnostic, zero-touch automation. New post-deployment automation in Key Manager Plus removes the last manual step in certificate renewal as lifespans gradually shrink to 47 days

Read more...
Sophos launches AI-native cybersecurity defence system
News & Events Information Security Security Services & Risk Management
Built for a threat landscape reshaped by AI, Sophos Fusion unites security operations, endpoint, network security, identity, email, and cloud into one defence system that prevents, detects, investigates, and responds at AI speed.

Read more...
Ungoverned AI agents and deepfakes pose critical threats
Information Security Security Services & Risk Management
Global study reveals 64% of South African organisations already deploy autonomous AI agents with little to no governance, while 63% of employees admit they are unlikely to be able to spot attacks such as deepfakes

Read more...
How ‘TikTok Brain’ is breaking legacy security training
Training & Education Information Security
Between doomscrolling, rapid-fire Slack notifications, and algorithmic video feeds, the average employee is trapped in an aggressive, highly engineered dopamine loop that automatically shuts down in traditional training situations.

Read more...
Quantum is coming
Infrastructure Information Security
The global cybersecurity landscape is approaching a turning point as quantum computing accelerates faster than most organisations realise; the shift is not a distant, theoretical concern, but a present-day business risk that demands immediate action.

Read more...
Outpacing cyberthreats in the age of AI
SMART Security Solutions Technews Publishing News & Events Information Security
SMARTpod talks to Fred Streefland, Global Field CISO for EMEA at Check Point Software Technologies, about framing modern cyber defence around adaptability, rapid decision-making, and the OODA loop adapted for cybersecurity.

Read more...
Prompt injection is the new phishing
Information Security Security Services & Risk Management
AI security is heading in an uncomfortable direction following Microsoft’s research showing how prompt injection can be chained to remote code execution vulnerabilities in AI agent frameworks, including work involving Semantic Kernel

Read more...
Cloud-ready BMS is reshaping building operations
Facilities & Building Management Infrastructure
Buildings may be getting smarter, but too many control rooms are still anchored to yesterday’s technology, such as on-site servers, rigid architectures and a patchwork of interfaces that are expensive to run and slow to evolve.

Read more...
Cybersecurity needs actual intelligence before artificial intelligence
Information Security AI & Data Analytics
Cybersecurity depends on interpretation. A tool can tell you that something unusual has happened, but people need to determine whether it is a genuine risk, the business impact, and how to respond without causing unnecessary disruption.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.