Topic - Weekly World View - Cybersecurity for SMB

.pdf

School

Phoenix College *

*We aren’t endorsed by this school

Course

270

Subject

Information Systems

Date

Jan 9, 2024

Type

pdf

Pages

11

Uploaded by MinisterOstrich3448

Report
1/4/24, 10:04 AM Topic: Weekly World View : Cybersecurity for SMB https://learn.maricopa.edu/courses/1298288/discussion_topics/7194812 1/11 This is a graded discussion: 10 points possible due Sep 24, 2023 Weekly World View : Cybersecurity for SMB 27 Read and review the following article : https://www.information-age.com/five-tech-capabilities- shape-your-smb-website-security-strategy-123494561/ (https://www.information- age.com/five-tech-capabilities-shape-your-smb-website-security-strategy-123494561/) After reading the article above provide your discussion feedback to the below question. As the cybersecurity consultant, what are two recommendations you would make to a Small Business Owner about Cyber Threats and how to protect themselves? Be specific and justify your recommendations. Search entries or author Unread Subscribed (https:// Maria Pina (https://learn.maricopa.edu/courses/1298288/users/4291833) Sep 18, 2023 1 - I would begin by informing the business owner that web security is essential for all cloud- based systems, and that no business is too small or "unimportant", and explain threats are always looming - it's a matter of "when", not "if". I would explain the possibility of not only losing revenue, but also data, proprietary information, and even company reputation. Additionally, I'd point out that feedback and registration forms are popular targets for attacks. The most important thing would be to confirm that their technology is updated, protected by firewall and with the latest patches for known vulnerabilities. If information is collected, I would automate TLS/SSL certificates on their website so it's authenticated and verified. 2 - I would back their system and ensure that their system has the latest antivirus and malware detection system.
1/4/24, 10:04 AM Topic: Weekly World View : Cybersecurity for SMB https://learn.maricopa.edu/courses/1298288/discussion_topics/7194812 2/11 (https:// Micah Galvan (https://learn.maricopa.edu/courses/1298288/users/3941514) Sep 19, 2023 The two recommendations I would make to a Small Business Owner about Cyber Threats are keeping your technology updated and performing backups. For keeping technology updated, it is crucial that the technological infrastructure you choose for your website is routinely patched and updated to identify vulnerabilities and stop hackers from exploiting them. The core site version and any extensions must be continuously updated with the most recent revision. Pay close attention to online components that require user input, like forms for registration, as these are frequent targets for cyberattacks. For backups, backups are your insurance coverage and the foundation of your recovery strategy if your website is the target of a cyber assault. Gain the assurance that, in the event that your website becomes unexpectedly offline, you will be able to swiftly return it to the proper state with all of its data intact. Any connected organization needs efficient backup and restore technologies in order to swiftly recover lost information. (http Maria Pina (https://learn.maricopa.edu/courses/1298288/users/4291833) Sep 28, 2023 It was so hard to just choose two recommendations! (https:// Swar Bay (https://learn.maricopa.edu/courses/1298288/users/4267653) Sep 19, 2023 The two recommendations I would make to SMBs are keep malware detection software up to date and perform regular back ups. Even small businesses can become a target of cyber attacks. Having an up-to-date malware detection software can help deter most of the threats. Large scale cyber attacks begins with these small threats and malware detection/removal software can quickly patch those vulnerabilities. However, SMBs will inevitably be subject to a more advanced attack that isn't detectable by the malware software. To prepare for this case, SMBs should perform regular backups. Although SMBs might lose some assets, they will be able to recover from a restored backup data. It is much better to minimize the loss and have a point to restore from than to lose everything and start again from scratch. (https:// Noah Gavina (https://learn.maricopa.edu/courses/1298288/users/3991326) Sep 20, 2023
1/4/24, 10:04 AM Topic: Weekly World View : Cybersecurity for SMB https://learn.maricopa.edu/courses/1298288/discussion_topics/7194812 3/11 I would say the two recommendations I would give are perform backups to insure that there is something to fall back onto if data is lost and keep up to date with tech. To me backups are the most important thing as with them one can be sure no and/or little data is lost whether it be from an attack or even from something like tech issues. Backups are important to me personally even in personal things to be sure I do not lose anything that I would like to keep, which is why I would recommend to make backups the most. As for updates, they are also just as important as older technology can be more vulnerable than up to date technology. Often with something like Microsoft Windows, the most common reason I notice Windows devices update for seems to be to address potential security issues that may have been noticed or could possibly be exploited. (https:// Jonathan Rose (https://learn.maricopa.edu/courses/1298288/users/4173894) Sep 21, 2023 I would say that the first recommendation I would make is to stay up to date with all your tech. This is probably one of the most simple and logical recommendations but also one of the most vital and probably overlooked. It is easy to procrastinate or let other tasks triumph over this but some attacks such as script kiddies can simply be prevented by doing simple things. My second recommendation would be to do regular backups of all you're data. This is especially important because if all you're security features in place fail and you're entire system is compromised you can have some sort of insurance that all you're information isn't lost and whenever you do get back up and running you can restore it to it's proper state. (https:// Luis Iglesias (https://learn.maricopa.edu/courses/1298288/users/638135) Sep 21, 2023 There are many ways to strengthen your Security. Based on my understanding, the first action I would take is to update software & hardware. Ensure all are updated to the latest version and never use any pirated software, apps downloaded from unknown sources, or software that doesn’t receive updates. Updates enhance features and patch security flaws that fix bug issues and enhance performance for devices. Next, I would enable two or multi-factor authentication to prevent cyber-attacks. Software & user accounts are sometimes unsafe password login and can be easily compromised. Multi-factor authentication helps ensure that unauthorized people don’t get access to your system.
1/4/24, 10:04 AM Topic: Weekly World View : Cybersecurity for SMB https://learn.maricopa.edu/courses/1298288/discussion_topics/7194812 4/11 (https:// Nick Carrieri (https://learn.maricopa.edu/courses/1298288/users/4420208) Sep 22, 2023 Small business owners would probably benefit from making sure to keep their hardware up to date. Programs, drivers, BIOS and firmware all need to be updated regularly. Zero-day exploits are insanely common. This also has a benefit of keeping everything running smoothly. Education would be my other recommendation. Showing your workers what to look for in scam emails or social engineering is a smart move as it can prevent a headache down the line. (http Maria Pina (https://learn.maricopa.edu/courses/1298288/users/4291833) Sep 28, 2023 Education is a great recommendation. I think many SMB think IT/Cybersecurity just too difficult to understand. :( (https:// Katherine Moore (https://learn.maricopa.edu/courses/1298288/users/4424216) Sep 22, 2023 I think the initial step is to establish the importance of cybersecurity to the small business owner (create buy-in) prior to offering any sort of recommendations. I would probably do this by establishing what is important to their business (whether this be their online presence or the data the business generates) and use that as a starting point to incorporate the importance of cybersecurity. Without knowing specifically what the business needs are, it’s near impossible to provide detailed recommendations, but universally, I would say the most important cybersecurity goal is protecting sensitive data, mainly personal information about customers and/or employees. Failure to protect this data could result in legal action against the business. My first recommendation would be about internal threats and employee education. It’s important to remember that internal threats can be the biggest threat to an organization’s data, and small businesses are less likely to have detailed security policies to protect against internal threats. It’s important to have physical security in place to protect from tampering as well as utilizing a principle of least privilege for data access. My second recommendation would be to look at specialized software to handle business needs. For a company that requires web hosting and data storage, I would look at cloud technologies (AWS, Microsoft Azure, and Google Cloud Platform being the big 3). Using these technologies makes use of the security technologies that these companies implement and
Your preview ends here
Eager to read complete document? Join bartleby learn and gain access to the full version
  • Access to all documents
  • Unlimited textbook solutions
  • 24/7 expert homework help