classic | mobile
Follow us on:
Follow us on Facebook  Share via Twitter  Share via LinkedIn
 

Search...
Hi-Tech Security Solutions Business Directory
Residential Estate Security Handbook 2017


Compliance is knowing
October 2017, Cyber Security, IT infrastructure

You cannot swing a laptop without hitting a major data breach these days. Internationally there are lawsuits launched every day. Security officers are being raked over the coals and their integrity and qualifications are being scrutinised and questioned. People are infuriated by the losses, financial and reputational (even worse) to their businesses and themselves.

John Mc Loughlin MD, J2 Software.
John Mc Loughlin MD, J2 Software.

Does anyone really think there is anything different in South Africa?

The latest string of major breaches are aimed at businesses with security budgets that are larger than the annual turnover of most South African businesses. It is nothing short of naïve to think this can’t happen or is not actually happening, to you.

I live by the mantra that there are two types of businesses – those who have been breached and those that don’t know that they have been breached. Do you know where your business fits in? We live in a South Africa driven by digital migrations and evolving data security and compliance laws and regulations, the life of the chief information officer (CIO) is complex. Where should they start?

The CIO must work with the business to work out how to provide data to internal staff for them to do their jobs while keeping it secure, preventing external leaks and stopping data theft. This individual is also the one who is responsible to ensure that the business or public entity complies with PAIA and PoPI.

Is there any way this can be achieved without real visibility? Policies will always be the starting point, but without effective visibility on real usage there is no way to know that there is compliance.

Let me give you an example: your policy states that any data stored or used on a corporate asset that contains personal information must be encrypted and should not be moved or copied outside of the organisation’s secured environment. This makes sense, right? So now think about your environment, do you know:

1. How many external storage devices were inserted into any corporate asset in the last 24 hours, 7 days, etc.?

2. How many users are accessing free cloud storage platforms like Google Drive, OneDrive, Dropbox, etc.?

3. What data was copied or moved or uploaded to any of these?

4. What about a user who has copied data onto their PC desktop and renamed a file? Can you tell what they did next?

5. Has data been copied out of the ERP, HR or other system and then placed into a Word document or Excel spreadsheet?

6. Do you still think your data is secure and you are compliant with laws and your own internal policies?

The other method to help with these issues often means a business will buy a string of solutions or tools to protect data. A bit of encryption here, a firewall analysis platform there, desktop DLP over there. We then end up having a large group of tools and nobody to check them. The silky tongued sales person showed them this amazing solution and yet it sits unmanaged, reporting to nobody or simply not deployed.

You do not need to look at new tools, you need to get visibility and a partner. Please ensure that you do not simply find a product provider; make sure the information security company is a strategic business partner. The right partner will identify holes, develop a plan to cover them and also guarantee ongoing support and guidance to continually improve your data security compliance and become an integral part of your continued business success.

When you choose the right partner you will be able to rest easy and focus on your business, knowing that your data security is in good hands. The right partner can provide you with the necessary action, remediation, monitoring, alerting and should then also provide the management and risk committee reports to ensure ongoing compliance.

For more information contact J2 Software, +27 (0)87 238 1870, john@j2.co.za, www.j2.co.za


Credit(s)
Supplied By: J2 Software
Tel: 087 238 1870
Fax: 086 619 3563
Email: info@j2.co.za
www: www.j2.co.za
  Share via Twitter   Share via LinkedIn      

Further reading:

  • Making cents out of the security mix
    May 2018, Cathexis Technologies, Panasonic South Africa, Xone Integrated Security, This Week's Editor's Pick, CCTV, Surveillance & Remote Monitoring, Cyber Security, Integrated Solutions, Financial (Industry)
    Hi-Tech Security Solutions chats to industry specialists about the security mix, cybercrime and the onslaught of artificial intelligence in the financial sector.
  • More of the same, but more sophisticated
    May 2018, Duxbury Networking, This Week's Editor's Pick, Cyber Security, Integrated Solutions, IT infrastructure
    We’ve been protecting networks from criminals for many years, but as soon as the defences improve, the attacks get more sophisticated.
  • Make sure the channels are safe
    May 2018, This Week's Editor's Pick, Cyber Security, IT infrastructure
    Companies should be aware of how many possible data leakage sources they have: e-mail, phone calls, instant messengers and social networks, cloud storage, external storage devices – to name a few.
  • Hikvision shapes intelligence
    May 2018, Hikvision South Africa, This Week's Editor's Pick, CCTV, Surveillance & Remote Monitoring, News, Integrated Solutions, IT infrastructure
    Hikvision holds ‘Shaping Intelligence’ AI Cloud World Summit to discuss building an Artificial Intelligence (AI) ecosystem through open collaboration.
  • Visibility is critical
    May 2018, J2 Software, Cyber Security, IT infrastructure
    John Mc Loughlin, MD, J2 Software, expands on the predicted increase in ransomware and cyber-extortion tools and what we can do about it.
  • Transform your security
    May 2018, This Week's Editor's Pick, Cyber Security, IT infrastructure
    In this digital era, data is the currency of choice, unfortunately, opportunities are presented for both organisations and their adversaries.
  • Surviving cybersecurity challenges
    May 2018, Axis Communications SA, This Week's Editor's Pick, Cyber Security
    South Africa has the third highest number of cybercrime victims worldwide, with the country losing billions of rand annually.
  • Real-time network visibility
    May 2018, Networks Unlimited, IT infrastructure, Cyber Security
    When it comes to network downtime in any industry, the underlying statistics tell us one thing: it costs money and lots of it.
  • IT invests in training
    May 2018, Training & Education, IT infrastructure
    IT employers are increasingly investing in training and assessment for staff, according to a new survey by computer-based testing company, Pearson VUE.
  • Insecure security
    May 2018, Cyber Security
    ESET researchers have analysed a newly discovered set of apps on Google Play, Google’s official Android app store, that pose as security applications.
  • A turbulent region
    May 2018, Cyber Security
    Kaspersky Lab reveals cybersecurity trends in the Middle East, Turkey and Africa, with South Africa putting in a good showing in the cyber landscape.
  • To cloud or not to cloud
    May 2018, Graphic Image Technologies, This Week's Editor's Pick, CCTV, Surveillance & Remote Monitoring, IT infrastructure
    Be smart about moving video surveillance footage to the cloud for storage. In certain instances it’s a workable idea, but not always.

 
 
         
Contact:
Technews Publishing (Pty) Ltd
1st Floor, Stabilitas House
265 Kent Ave, Randburg, 2194
South Africa
Publications by Technews
Dataweek Electronics & Communications Technology
Electronic Buyers Guide (EBG)

Hi-Tech Security Solutions
Hi-Tech Security Business Directory (HSBD)

Motion Control in Southern Africa
Motion Control Buyers’ Guide (MCBG)

South African Instrumentation & Control
South African Instrumentation & Control Buyers’ Guide (IBG)
Other
Terms & conditions of use, including privacy policy
PAIA Manual
         
    Mobile | Classic

Copyright © Technews Publishing (Pty) Ltd. All rights reserved.