Bill Schmarzo

How DevOps Drives Analytics Operationalization and Monetization

I recently wrote a blog "Interweaving Design Thinking and Data Science to Unleash Economic Value of Data"  that discussed the power of interweaving Design Thinking and Data Science to make our analytic efforts more effective.  Our approach was validated by a recent McKinsey article titled “Fusing data and
/
Practically Speaking About IT Infrastructure

Choosing a New Cloud Provider? Let the Workload Be Your Guide

Improving IT efficiency, delivery, and cost structure There’s no question that customers are embracing cloud for all types of workloads. Whether the workloads are mission-critical, third-tier applications, or somewhere in between, the cloud has become the destination of choice for customers looking to improve their
/
Protect Your Small Business

Protect Your Small Business from Future Threats

Protect Your Small Business

The well-known ransomware called Wannacry hit hundreds of computers in May 2017. As a business leader, it is important to understand what happened, to ensure that proper security measures are being taken to protect my business from future threats.

Computer systems will always be prone to attacks; from the largest enterprise to the smallest home business, many of these attacks start with email. The most recent example being the highly publicized WannaCry ransomware attack. E-mail attacks typically start with an innocent-looking phishing e-mail in your inbox, and end with losing access to all your data. One of the main problems with these types of attacks is that they are always evolving, sometimes within hours or days of each other, and they’re becoming harder to detect.

For example, in the recent Google Docs and DocuSign phishing e-mail attacks, attackers changed servers within hours after spam filters started to pick up on the breach; and then bypassed them. This allowed even more e-mails to go through, and more data was compromised. Once a user clicked on a link and entered information, or downloaded an attachment, data was compromised. In some cases, beyond recovery.

Myth: Many people feel that having a spam filter in place protects them from these threats.

It’s not always true that spam filters protect users from threats. In fact, with many of the recent attacks, the e-mails that were received were not recognized, or flagged as spam. In most cases, they are e-mails being sent from the account of a compromised party (who entered their credentials in a phishing e-mail), or through a legitimate third party.

So, what can you do to protect your business and employees from future attacks, when even a good spam filter might not catch a possible threat?

The key is having as many layers of protection between the outside world and the end user, as possible. The first layer of protection would be your spam filter, and the second would be your Anti-Virus / Anti-Malware software. The Anti-Virus / Anti-Malware software on your PC should be the last line of defense, and ideally never used.

What are some other layers of protection?

The most critical layer of protection has nothing to do with technology at all, but everything to do with the end user. Ensuring that you and your end users are diligent and attentive when reviewing e-mails, is important. It’s essential to always be on the lookout for suspicious emails with links or attachments. For example, if you receive a random e-mail from someone you may or may not know, it could be that their account has been compromised.

Were you expecting to receive a signed DocuSign document? Were you waiting for someone to share a document with you?

If the answer is no, don’t assume that because you know the name on the e-mail, that it’s safe. This is true even if it’s from someone within your own company. It doesn’t take much time to pick up the phone and call/text that person and ask. In this modern world, attackers prey on the fact that we have become so dependent on e-mail, and will not find other means to provide checks and balances. Do not e-mail back and ask if this is real, as the attacker could be sitting and monitoring that person’s e-mail account, waiting to reply, just to get you to enter in your information.

Another layer of protection is using Office 365 Exchange Online for your e-mail. Microsoft also offers Office 265 Advanced Threat Protection, which helps monitor your e-mail in real-time, against new, more sophisticated attacks, by screening malicious attachments and links. This is done by working with the security features already included in Microsoft 365’s Exchange Online Protection spam filter. Overall, this provides better defenses against zero-day attacks. Since zero-day attacks are generally unknown to the public, it is more difficult to defend against them (as patches have not yet been released), which is why they’re often effective against “secure” networks.

Office 365 Advanced Threat Protection can be added to most Office 365 Business or Enterprise plans, and is included in the Office 365 Enterprise E5 plan. Basic configuration of Office 365 Advanced Threat Protection is relatively quick, and licensing is easily acquired.

By Matthew Cleaver

Matthew Cleaver Contributor
Matthew Cleaver is the CEO and Managing Partner of The SMB Help Desk. Matthew has worked with multiple Fortune 500 companies and countless small businesses, supporting business process changes for sales and marketing systems as well as ERP systems. As a small business owner, certified Salesforce developer, certified Sales Cloud Consultant, and cloud evangelist Matt understands the challenges that small business owners face, and how implementing cloud solutions can improve operational efficiency, customer service, and the overall performance of the business.
Cloud Services Are Vulnerable Without End-To-End Encryption

Cloud Services Are Vulnerable Without End-To-End Encryption

End-To-End Encryption The growth of cloud services has been one of the most disruptive phenomena of the Internet era.  However, even the most popular cloud ...
Imminent IoT Eye-Tracking Technologies To Transform The Connected World

Imminent IoT Eye-Tracking Technologies To Transform The Connected World

IoT Eye Tracking Smelling may be the first of the perceptible senses, but the eye is the fastest moving organ in the human body. While ...
BI Data

The Rise Of BI Data And How To Use It Effectively

The Rise of BI Data Every few years, a new concept or technological development is introduced that drastically improves the business world as a whole ...
BBC Tech

New Twitter algorithms aim to stamp out trolling

/
A new tool can identify Twitter accounts engaging in bullying with over 90% accuracy, according to researchers. Its algorithms classify two specific types of offensive online behaviour - cyber-bullying and ...
Nvidia News

Seasons of Learning: 700+ Interns Take NVIDIA by Storm

/
There are no coffee runs in sight for NVIDIA interns. Unless it involves building vehicles to make those runs autonomously. This year, more than 700 interns have joined NVIDIA across 30 ...
Gartner

Top Trends in Blockchain Technology; inching towards Web 3.0

/
There’s no shortage of news about mega digital commerce players controlling the algorithms that guide our daily actions and thoughts.  See Amazon Changed Search Algorithms in Ways to Boost its Own ...

TRENDING | TECH NEWS