SHARE:  
Databranch Color Logo
Databranch Monthly Tech Talk
IT Solutions for the Workplace
October | 2021
Explaining Cybersecurity Audits (And Three Tips for Running One)
You need more than the latest antivirus software to ensure your company's network is secure. A cybersecurity audit helps you create a complete picture of your security strategy.

Cybercrime has grown into one of the epidemics of modern times. 

In 2018 alone, we saw 812.67 million instances of malware infection. Meanwhile, 2020 brought with it a 600% increase in cybercrime. And estimates state that ransomware attacks will cost companies over $6 trillion per year by 2021.

If you don’t prioritize cybersecurity, you place yourself and your company at risk of attack.

Now, it’s likely that you already have some strategies in place to combat hackers and other malicious cyber forces. However, you also need to feel sure that the measures you have in place are sufficient.

That’s where cybersecurity audits become important.

In this article, we examine what cybersecurity audits are and share some crucial tips for running one in your company.

WHAT IS A CYBERSECURITY AUDIT?

Think of an audit as a comprehensive examination of every cybersecurity strategy you’ve put in place. You have two goals with the audit:

  • Identify any gaps in your system so you can fill them.
  • Create an in-depth report that you can use to demonstrate your readiness to defend against cyber threats.

A typical audit contains three phases:

  1. Assessment
  2. Assignment
  3. Audit

In the assessment phase, you examine the existing system. 

This involves checking your company’s computers, servers, software, and databases. You’ll also review how you assign access rights and examine any hardware or software you currently have in place to defend against attacks.

The assessment phase will likely highlight some security gaps that you need to act upon. And once that’s done, you move into the assignment. 

Here, you assign appropriate solutions to the issues identified. This may also involve assigning internal professionals to the task of implementing those solutions. However, you may also find that you need to bring external contractors on board to help with implementation.

Finally, you conclude with an audit. 

This takes place after you’ve implemented your proposed solution and is intended as a final check of your new system before you release it back into the company. This audit will primarily focus on ensuring that all installations, upgrades, and patches operate as expected.

THE THREE TIPS FOR A SUCCESSFUL CYBERSECURITY AUDIT

Now that you understand the phases of a cybersecurity audit, you need to know how to run an audit effectively such that it provides the information you need. After all, a poorly conducted audit may miss crucial security gaps, leaving your systems vulnerable to attack.

These three tips will help you conduct a baseline cybersecurity audit in your company.

TIP #1 - ALWAYS CHECK FOR THE AGE OF EXISTING SECURITY SYSTEMS

There is no such thing as an evergreen security solution.

Cyber threats evolve constantly, with hackers and the like continually coming up with new ways to breach existing security protocols. Any system you’ve already implemented has an expiration date. Eventually, it will become ineffective against the new wave of cyber threats.

This means you always need to check the age of your company’s existing cybersecurity solutions.

Make sure to update your company’s systems whenever the manufacturer releases an update. But if the manufacturer no longer supports the software you’re using, this is a sign that you need to make a change.

TIP #2 - IDENTIFY YOUR THREATS

As you conduct your company’s cybersecurity audit, continuously ask yourself where you’re likely to experience the most significant threat.

For example, when auditing a system that contains a lot of customer information, data privacy is a crucial concern. In this situation, threats arise from weak passwords, phishing attacks, and malware. 

More threats can come internally, be they from malicious employees or through the mistaken provision of access rights to employees who shouldn’t be able to see specific data.

And sometimes, employees can leak data unknowingly.

For example, allowing employees to connect their own devices to your company network creates risk because you have no control over the security of those external devices.

The point is that you need to understand the potential threats you face before you can focus on implementing solutions.

TIP #3 - CONSIDER HOW YOU WILL EDUCATE EMPLOYEES
You’ve identified the threats and have created plans to respond.

However, those plans mean little if employees do not know how to implement them. 

If you face an emergency, such as a data breach, and your employees don’t know how to respond, the cybersecurity audit is essentially useless.

To avoid this situation, you need to educate your employees on what to look out for and how to respond to cybersecurity threats. This often involves the creation of a plan that incorporates the following details:

  • The various threat types you’ve identified and how to look out for them
  • Where the employee can go to access additional information about a threat
  • Who the employee should contact if they identify a threat
  • How long it should take to rectify the threat
  • Any rules you have in place about using external devices or accessing data stored on secure servers.

Remember, cybersecurity is not the IT department’s domain alone. It’s an ongoing concern that everybody within an organization must remain vigilant of. 

By educating employees about the threats present, and how to respond to them, you create a more robust defense against future attacks.

AUDITS IMPROVE SECURITY

Cybersecurity audits offer you a chance to evaluate your security protocols.

They help you to identify issues and ensure that you’re up-to-date in regards to the latest cybersecurity threats. And without them, a business runs the risk of using outdated software to protect itself against ever-evolving attacks.

The need to stay up-to-date highlights the importance of cybersecurity audits.

However, your security solutions are not one-and-done. They require regular updating and re-examination to ensure they’re still fit for the purposes you’re using them for. As soon as they’re not, there will be vulnerabilities to your business that others can exploit.

Audits improve cybersecurity.

And improved cybersecurity means you and your customers can feel more confident.

If you’d like to conduct a cybersecurity audit but you’re unsure about whether you have the skills required to do so correctly, we can help. We’d love to have a quick 15-minute chat to discuss your existing systems and how we may be able to help you to improve them. Give us a call at 716-373-4467 x 15 or click here to request more information.

Article used with permission from The Technology Press.
5 Biggest Questions About Windows 11 Answered

Microsoft's latest operating system is starting to take the world by storm. But before jumping ship and upgrading to the new OS, better read this first.
It’s finally here. 

After six years, Microsoft has just released the latest version of its operating system — Windows 11.

At a time when computers and technology play a more central role in human lives, tech companies are scrambling to deliver the best user experience possible to capture the ever-expanding market.

Microsoft’s answer to the growing demand for better technology for home and business use is Windows 11.

Microsoft dubs their latest operating system as the “Windows that brings you closer to what you love.” But are they actually able to achieve that?

I know you have many burning questions about this latest OS from Microsoft. So without further ado, let’s jump right into answering the five biggest questions you may have about Windows 11.

THE FIVE QUESTIONS ABOUT WINDOWS 11

QUESTION #1 - WHAT'S THE DIFFERENCE BETWEEN WINDOWS 10 AND 11?

Windows 11 gets a significant boost in performance, functionality, and style compared to Windows 10. Here’s a small rundown of the critical upgrades Microsoft made for its latest OS:

  • Windows gets a makeover: If you’ve used Apple before, you might see the similarities between the design of the macOS and the latest Windows model. Windows now also sports tightly rounded corners and the taskbar icons are permanently centered. But at least the ever-handy Start button is here to stay.

  • Streamlined Productivity Functions: There are many small but significant upgrades that Microsoft did for Windows 11. For one, your PC will now remember the last layout of your choice when docking. Each of your virtual desktops can also have a different background. Also, widgets are back like never before. And Windows 11 features a Snap Layout function that lets users choose from a variety of layout options at the click of a button.

  • New and Improved Teams: With hybrid work becoming the new normal around the world. Teams entered the spotlight. Because of this, Microsoft made sure to include reasonable upgrades to the application. For example, Teams is now integrated into the operating system, making it easier to communicate with family, friends, and colleagues. 

  • Better Gaming Experience: Microsoft made sure to think about not just business people and workers when designing the new Windows 11. Gamers will love the fact that playing games on Windows is made even better, with Xbox Game pass and Cloud gaming supported on the Xbox app in Windows 11.

  • Android Apps on Your PC: Aside from offering better compatibility with the Xbox, Microsoft has successfully integrated Android apps on your PC using Windows 11. But here’s the catch: We’re not yet sure if these Android apps would work optimally on PC.

QUESTION #2 - DO I NEED TO MAKE HARDWARE CHANGES TO SWITCH TO WINDOWS 11?

It depends. Here’s an essential checklist of what you need to have to run Windows 11 smoothly:

  • At least a 1GHZ dual-core processor
  • 4 GB of RAM
  • At least 64 GB of storage
  • A graphics card compatible with DirectX 12 or later, with a WDDM 2.0 driver
  • 720p display, at least 9” diagonal size, with 8 bits per color channel
  • TPM version 2.0
  • UEFI, Secure Boot capable firmware

If your PC or laptop covers or does more than what’s listed above, then you can safely upgrade to Windows 11, worry-free.

On the other hand, you might have to make some hardware upgrades or buy a new device altogether if your current one does not meet the minimum requirements.

QUESTION #3 - IS THE MICROSOFT OFFICE SUITE AVAILABLE ON WINDOWS 11?
No. You have to pay for a Microsoft Office subscription first. 

But if you have an existing subscription to Microsoft 365, then you’re all set. You just need to install the Office suite after upgrading to Windows 11.

Note that support for older versions of Office (2010 and below) has been discontinued since last year. So if you’re still using that, we suggest you make necessary changes to avoid making yourself vulnerable to security risks.

QUESTION #4 - HOW CAN I SWITCH FROM WINDOWS 10 TO 11?

If you’re looking to upgrade from Windows 10 to 11, you have nothing to worry about. 

You just need to go to the Windows Update section of your Settings and click “Check for Updates.” Windows 11 will just be there available in the upgrade section. 

Click the “Download and Install” button, and that’s it.

Databranch can assist with this process to facilitate a smooth transition and ensure your system is compatible.

QUESTION #5 - DO I REALLY NEED TO SWITCH TO WINDOWS 11?

No. If your computer is not compatible or can’t run Windows 11, you don’t have to upgrade.

On the other hand, if your PC is compatible with Windows 11 but you find the upgrades unnecessary for your current workflow, there’s nothing wrong with staying with Windows 10.

Even Microsoft said that Windows 10 is still the right choice for those who aren’t ready to transition to a new operating system. In fact, they made sure of this by scheduling an update for Windows 10 later this year. At the same time, the company will continue supporting Windows 10 until October 14, 2025.

This gives you about four years to think about upgrading to Windows 11 or switching operating systems altogether.

TECHNOLOGY THAT WORKS FOR YOU

The new era of Windows has finally arrived. 

Microsoft made it a point to make their latest OS worth it for old and new Windows users. And with these new updates, it is clear that the company has made an effort to find out its users’ pain points and address them.

But despite these new features, you have to understand one thing:

Technology is just a tool used to increase our everyday productivity and efficiency. 

That means you don’t need to jump ship to Windows 11 if you’re not ready to do so outright. Technology is only as effective as how much you use it. So if you’re already a master of Windows 10 and it makes you 100% productive, then change is unnecessary.

Now, suppose you’re seriously thinking about making the switch to Windows 11. But you want to know more about its hardware compatibility and security updates. In that case, you need an IT service provider that’s willing to talk you through it. 

If you need any help in fully understanding the pros and cons of switching (or not changing) to Windows 11, please give us a call at 716-373-4467 x 15 or click here to request more information.

Article used with permission from The Technology Press.

Important Update: 10 Digit Dialing Requirement Effective on October 24, 2021

The Federal Communications Commission (FCC) has adopted “988” as a new 3-digit number to be used nationwide to reach the National Suicide Prevention and Mental Health Crisis Lifeline, starting July 16, 2022.

  • Wireless customers may dial either 988 or 1-800-273-TALK (8255) to reach the Lifeline now.
  • Landline customers must continue to dial 1-800-273-TALK (8255) to reach the Lifeline until July 16, 2022.

For “988” to work for everyone with a telephone number ,10-digit local dialing must be implemented for specificed area codes including: 516, 607, 716, 845, & 914 in New York.


Technology Trivia

Do you know what obscure tech-related holiday is celebrated on November 30th?
 
The first person to email us at info@databranch.com and give a correct answer gets a $25 Amazon Gift Card!


NEED A LAUGH?


What do you call a computer that sings?


A-DELL


If you were forwarded this email from one of our great Databranch clients and would like to receive future updates, click here to sign up for our newsletter/weekly tech news!