Gourmet Cyber Security
- n a Fast Food Budget
DAVID ROSSELL, PH.D., CISSP NTIVA, INC.
Gourmet Cyber Security on a Fast Food Budget DAVID ROSSELL, PH.D., - - PowerPoint PPT Presentation
Gourmet Cyber Security on a Fast Food Budget DAVID ROSSELL, PH.D., CISSP NTIVA, INC. Maximizing Your Cybersecurity Investment o Know What You Value o Understand Your Risks o Invest appropriately Know What You Value Understand your data o What
DAVID ROSSELL, PH.D., CISSP NTIVA, INC.
Maximizing Your Cybersecurity Investment
Know What You Value
Understand your data
Understand your members
security program?
Know What You Value
First, some vocabulary ry
Understand your risks
Understand Your Risks, cont’d.
Learn your threat environment
Conduct a risk assessment Understand the legal environment
Understand your risks
members?
Risk Assessment Cheat Sheet
1. Document where your data lives 2. Think about who could mean you harm, external and internal 3. Think about what can disrupt your business (e.g., hurricane or fire) 4. Determine how likely attacks and disruptions are 5. Determine how bad these things are for your business 6. Use a matrix to rank the severity of the risk 7. Identify what controls you have in place to head off risks 8. Invest where your risk is high and you don’t have controls to help reduce that risk
Impact
Likelihood
Low Medium High
Low
Low Risk Low Risk Medium Risk
Medium
Low Risk Medium Risk High Risk
High
Low Risk High Risk High Risk
Invest Appropriately
Due Diligence
1. Throw stuff out! 2. Standard antivirus 3. Create clear security policies 4. Plan for disasters and security incidents 5. Implement multifactor authentication (MFA) for remote access 6. Educate your employees in how to recognize phishing attacks
your organization?
How do I decide if I need additional security measures?
Advanced Systems
In Intrusion Detection and Response (I (IDR or SIE IEM)
network and with user accounts
stages
Advanced Systems
Advanced Endpoint Detection and Response (E (EDR)
computers and servers and automatically blocks it
from getting a toehold
Advanced Systems
Vuln lnerability Sc Scanning and Remediation
attackers can exploit
harder for attackers to move within your network
Summary
Three things you can do to dramatically im improve your cybersecurity posture!
ssess your r ris risks
Secure remote access with ith mult ltif ifactor authentic icatio ion (M (MFA)
in your r use sers routin inely ly to recogniz ize phis ishin ing attacks
Where to get help?
Managed Security Service Providers (MSSPs) recommend, implement, and monitor security solutions for
david.rossell@ntiva.com
Ntiva, Inc. 7900 Westpark Drive, Suite A100 McLean, VA. www.ntiva.com 703 891 0131
Contact Us