Cyber Security Awareness
NewsAs you are aware we live in a world with increasing technological risk as “Cyber Crimes” have dramatically increased in past several years to include many significant FORTUNE 500 organizations. While these crimes have a significant technological component, it is surprisingly evident that there is usually a personal human element as well. In fact, research has indicated the most significant and damaging “hacks” or “Cyber Crimes” start with a simple but deceiving human interaction commonly referred to as SOCIAL ENGINEERING. While we invest to protect both corporate and customer data, there are additional steps we should be taking to address this human element. These are generally simple, low cost steps we can take as employees and managers to reduce our overall risk in this area. I have listed a few below and attached a short information sheet on one of the most effective forms of deception these cyber criminals attempt, phishing schemes.
As users of technology we should be taking the following steps to further reduce our risk in this area.
- All company issued phones which contain access to company data, contacts and/or emails should have “passcode enabled” with a maximum of 1 minute delay. (settings/passcode)
- All desktop and laptop computers should also have password protection enabled with 15 minute delay and “locked” when not in use.
- Passwords to corporate systems (EZPlan it, Lawson, Spark, etc) should not be shared among users.
- Passwords should be created strong and updated as required. (Do not use default password)
- Beware of PHISHING schemes and do not click on emails asking to reset passwords, verify login credentials or account numbers. These PHISHING schemes can be very deceiving and any such request should be verified with sender prior to completing task. (See attachment for clarification)
- Remember Public Wi-Fi is “PUBLIC Wi-Fi” and the use of these connections should be minimized. Do not use “PUBLIC Wi-Fi” in public places such as coffee shops, airports, etc. When connecting to hotel Wi-Fi verify name of network as criminals frequently set up “evil twin” networks. Example …Official Hotel Wi-Fi instead of Hotel Wi-Fi.
- Do not use public computers for accessing Company network or email.
- Do not use portable drives (USB, etc) unless verified and trusted.
- Minimize access to your technology. Use hotel safe for laptop, tablet or phone storage, do not leave laptop in plain sight at conventions, hotel rooms, etc)
Failure to follow common sense security practices may result in restricted access to company technology and systems.
Any questions regarding password resets, login credentials can be verified by calling HELPDESK at 864-248-2026
In summary, common sense and good operational procedures are our best defense against this criminal element. If needed, we have additional internal and external resources to assist.
Please feel free to contact myself at 864.248.2064 or brian.walters@centerplate.com for further clarification and/or any questions.