A single-pane-of-glass view

Issue 5 2022 Information Security, Security Services & Risk Management


Gerhard Fourie.

Ransomware is a pressing threat to business. It is everywhere, and the likelihood of being attacked continues to increase almost by the day, which makes it more important than ever for organisations to ensure their systems and data remain secure and resilient.

The challenge is that environments have become increasingly distributed, with work-from-home, hybrid systems and cloud integrations becoming the norm. This means that the attack surface is bigger than ever and visibility can be difficult. A holistic view over the entire environment, with a systematic approach and a single framework, helps to reduce complexity and improve the management of cybersecurity risks.

A single pane of glass

When data is located, generated and stored across multiple environments, both in the cloud and on premises, management becomes increasingly complex. This is why it has become essential to have a management solution that delivers a single-pane-of-glass view, to help businesses identify and mitigate risks across the entire data environment. With this view, and an effective risk management framework, organisations are empowered to gain greater control.

Not only does a consolidated view help to reduce the attack surface, it also strengthens the security posture and, importantly, helps organisations identify any gaps in strategy and solutions. In addition, it provides continuous monitoring and ongoing insight into the health of the environment, so that issues can be proactively addressed and corrected before they can become vulnerabilities for cybercriminals to exploit.

Four pillars of risk management

There is no one-size-fits-all approach to security, as every environment and organisation is different, risk appetite differs, and tools that may be appropriate for one business may be less than ideal for others. However, there is a common approach that can be followed that helps to outline the steps necessary.

Effective risk management requires threats to be identified, assessed, mitigated and monitored for continuous monitoring and updating of security controls. A single view of the environment will simplify this process and streamline the steps so that organisations can more easily maintain and enhance their security posture.

Having a framework that is built on zero trust is another important component of effective risk management and control. Including authentication, authorisation and audit into zero trust controls is vital to protecting access as well as various levels of access, ensuring that trust is continuously validated.

Levels of control

Different levels of control with multi-factor authentication need to be applied for various access types, ensuring that data can be kept private, segmented and compartmentalised, and that only those who need access to specific data will be able to access it. For example, backup administrators need to be able to manage backup operations, but they do not need to be able to access sensitive corporate data. It is also imperative to ensure that multiple layers of authentication controls are in place, not only to prevent malicious attacks but also insider threats and even accidental deletion of files.

The threat landscape is constantly changing and evolving, and security is only as good as the weakest link. A single-pane-of-glass view with continuous monitoring and alerting ensures that businesses can address security across the entire data environment and can understand vulnerabilities, as well as when controls are applied or disabled. Without visibility across the environment, security becomes a complex and cumbersome task, making businesses prime targets for ransomware as well as compliance breaches. Implementing best-practice frameworks with visibility across the environment simplifies risk management and enhances security posture to address this growing threat.




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

Want effective Attack Surface Management? Think like an attacker.
Information Security
Effective ASM requires companies to think like attackers, anticipate risks, and act decisively to reduce exposure by knowing their environment, deploying a structured approach, leveraging capable tools, and addressing both internal and external risks.

Read more...
Your Wi-Fi router is about to start watching you
News & Events Surveillance Security Services & Risk Management
Advanced algorithms are able to analyse your Wi-Fi signals and create a representation of your movements, turning your home's Wi-Fi into a motion detection and personal identification system.

Read more...
The growing role of hybrid backup
Infrastructure Information Security
As Africa’s digital economy rapidly grows, businesses across the continent are facing the challenge of securing data in an environment characterised by evolving cyberthreats, unreliable connectivity and diverse regulatory frameworks.

Read more...
POPIA non-compliance puts municipalities at risk
Information Security Government and Parastatal (Industry)
Digital responsibility must go beyond POPIA compliance to recognising that privacy and service delivery are fundamentally linked. Despite this, only 51 out of 257 municipalities submitted their mandatory data protection and access to information reports in 2024.

Read more...
Choicejacking bypasses smartphone charging security
News & Events Information Security
Choicejacking is a new cyberthreat that bypasses smartphone charging security defences to confirm, without the victim’s input or consent, that the victim wishes to connect in data-transfer mode.

Read more...
Most wanted malware
News & Events Information Security
Check Point Software Technologies unveiled its Global Threat Index for June 2025, highlighting a surge in new and evolving threats. Eight African countries are among the most targeted as malware leaders AsyncRAT and FakeUpdates expand.

Read more...
Welcome to the new cyber battleground
Information Security
The Iran-Israel conflict is rapidly redefining modern warfare, pushing the boundaries of cyber capabilities and creating a new, borderless digital battlefield. Fortinet’s CISO, Dr Carl Windsor, offers a critical, in-depth analysis of the escalating tactics and global implications in his latest report.

Read more...
African industries may overestimate cyber defences
Information Security
] A significant perception gap exists in security awareness training: 68% of leaders believe training is tailored to roles, yet only a third of employees feel adequately trained. Many organisations only conduct annual or biannual generic training that may not effectively change behaviour.

Read more...
SMARTpod talks to Sophos and Phishield
SMART Security Solutions Technews Publishing Sophos Videos Information Security News & Events
SMARTpod recently spoke with Pieter Nel, Sales Director for SADC at Sophos, and Sarel Lamprecht, MD at Phishield, about ransomware and their new cyber insurance partnership.

Read more...
Cybersecurity and insurance partnership for sub-Saharan Africa
Sophos News & Events Information Security Security Services & Risk Management
Sophos and Phishield Announce first-of-its-kind cybersecurity and insurance partnership for sub-Saharan Africa. The SMARTpod podcast, discussing the deal and the state of ransomware in South Africa and globally, is now also available.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.