Managed.IT - issue 61

CYBERSECURITY 19 www.managedITmag.co.uk Another upside of data tiering is lower energy costs. You’ll use less compute power if you’re not storing every last byte of your data at the highest security level. 5 Put a disaster-recovery plan in place Despite all the preventive measures you take, you need to prepare for the possibility that you will get hit. So, it would be best if you had a disaster-recovery plan. You need to be able to back up data as often as is appropriate – ideally every 15 minutes for critical data. You also need to easily verify that your whole environment is backed up, including your remote workers and any SaaS applications you use, such as Microsoft 365. A good disaster-recovery solution will back up your data to a location of your choice and on a schedule that suits you. It will also be easy to test, which is crucial because testing is the only way you can validate that your recovery-time goals can be met. It may seem obvious, but this is where a lot of solutions fall short. Your disaster-recovery solution must be able to recover your data every time and on time. Final takeaway There is no perfect defense against ransomware. The best approach is a multilayered one that includes educating your staff, investing in reliable data backup & recovery and immutable storage solutions, and having a robust disaster recovery plan. That’s how organisations can stay ahead of this growing threat and protect their data and bottom line. them to quickly restore their data and avoid paying the ransom when attackers break in. Regular data backups and encryption play a key role in protecting an organization’s data. A consistent backup schedule will enable you to seamlessly restore any compromised systems or data. Encrypting your sensitive data is also highly recommended. After all, if ransomware attackers gain access to your critical assets, encryption has the benefit of keeping data from being read and further exploited by the bad guys. 3 Place a premium on data resilience Your data resilience is only as strong as your weakest link. Monitor your weaknesses, fix them when you find them, and you can bounce back quickly from disruption and return to normal operation. To do this, you must have the technologies required to back up your data and recover it if necessary, along with the proper mindset. That means a defensive posture is regularly sustained with drills that simulate an intrusion to measure your resiliency and bolster it where necessary. Many companies develop a strategy and then neglect to test it. All companies should regularly test their data backup and recovery plans to ensure they can effectively restore their data and systems if an attack or natural disaster occurs. 4 Know what data is most critical Data varies in value. If you’re concerned about costs, as most organizations are these days, you don’t have to store or back up all your data in the same place. Look into storage solutions that provide options like data tiering. These enable you to place less-important data in less-expensive levels of storage or “tiers.” Ransomware attacks continue to impact organisations worldwide— and the costs are staggering. A new global survey of over 1,100 IT decision-makers at small and midsize companies found that 50% had been targeted by a ransomware attack, with 35% asked to pay over $100,000 in ransom, and 20% asked to pay between $1 million and $10 million. In the UK, 50% of respondents said they had no choice but to pay the ransom. Here are five steps businesses can take now to reduce their exposure to ransomware and avoid staggering losses. 1 Educate employees It’s essential to invest in training for staff so that they’re aware of how ransomware works. From there, employees will be better prepared to recognise and prevent it. They should know that ransomware can sneak in from anywhere. The training should remind them to scrutinize every link in emails and not open attachments in unsolicited emails. Employees should be reminded to download only software – especially free – from websites they know and trust. When possible, employees should verify the integrity of downloaded software through a digital signature before execution. 2 Focus on cures as well as prevention Companies continue to invest loads of money in cybersecurity solutions like next-generation firewalls and extended detection and response (XDR) systems designed to prevent attacks. Yet these same companies are still falling prey to ransomware and being forced to pay a hefty price. It’s time for companies to stop focusing entirely on prevention. They should also invest in curative measures like backup & recovery and immutable storage that allow Ransomware attacks are growing in cost and frequency Companies should take these 5 steps to protect themselves by Florian Malecki, EVP Marketing, Arcserve

RkJQdWJsaXNoZXIy NDUxNDM=