Cybersecurity Layers – Part 2

In the first article of this three-part series, we talked about taking a layered approach to developing and implementing a solid cybersecurity strategy. We talked about the two outer layers: people and perimeter.

In this article our focus will be on securing the network and the endpoints.

Network

A network is comprised of interconnected devices, such as computers, servers and wireless networks. Securing a network means taking the steps necessary to protect the integrity of the network and the data housed within it (more on data in our next article). There are multiple security policies, solutions and services required to adequately protect the network. Let’s look at a few of these solutions and services.

Network Segmentation

This refers to the separation of different parts of a computer network, or network zones with devices such as bridges, switches and routers. The key benefits of segmenting the network are:

  • Limiting access privileges to only those who require access to the specified resources
  • Protecting the network from widespread cyberattacks
  • Increasing network performance by reducing the number of users in specific zones

Wireless Authentication

Enables networks to be secure by ensuring that only users with proper credentials can access the network resources they require.

Security Information and Event Management (SIEM)

These are software products and services that combine security information management and security event management. They provide real-time analysis of security alerts generated by applications and network hardware.

Security Operations Centre (SOC) Services

These types of services continuously monitor and improve an organization’s security posture while detecting, analyzing, responding, and preventing cybersecurity incidents.

Endpoints

Endpoint security involves securing endpoints or entry points of user devices such as desktops, laptops, and mobile devices. Securing endpoints involves:

Endpoint Detection and Response (EDR)

These are integrated endpoint security solutions that combine real-time continuous monitoring and collection of endpoint data with rules-based automated response and analysis capabilities. These solutions are often referred to as next-generation antivirus although the resemblance to the antivirus software of old is very limited. Note that most cyber insurers will require EDR and will not underwrite a cyber insurance policy for an organization that does not have an EDR strategy in place.

Patch Management

This is a basic but critical process of distributing and applying updates to software. It is an often neglected task by organizations but it is a critical part of cybersecurity hygiene as the patches are often necessary to correct security vulnerabilities and bugs in applications. Patch management cadences is also one of the controls cyber insurers will look at.

Monitoring and Alerting Services

The purpose of these services is to look for unusual or suspicious activities at the endpoint level.

Drive Encryption

This type of technology protects information by converting it into unreadable code that cannot be deciphered easily by unauthorized people.

Vulnerability Scan

This is a service that enables organizations to monitor their networks, systems, and applications for security vulnerabilities.

Once again, the above listed items are part of developing and implementing solid cybersecurity strategies to mitigate and manage risks.

In the last part of this series, we will focus on the data and the resilience of an organization.

MicroAge would be happy to have a conversation with you about your cybersecurity strategy. Contact us today.

Get the most from your IT

As service providers to more than 300 companies, the dedicated professionals at MicroAge are second to none when it comes to managed services. By improving efficiency, cutting costs and reducing downtime, we can help you achieve your business goals!

Most commented posts

different kind of backups

The Pros and Cons of Different Kinds of Backups

If you’ve read our last blog on the importance of data backups, you are likely considering which kind of backup you should perform to keep…

Read More
IT staffing services

How to Avoid Staffing Outages with IT Staffing Services

Your staff and the abilities they possess are what can make or break your business. Having a fully staffed team can make any challenge easy…

Read More

Leaving the back door wide open?

When having to work from home, it's important to secure your employees' wifi access to avoid leaving the back door wide open. Want to know how to protect yourself from drive by hacking? Read more here!

Read More
maximize-it-assets-server-room

How to Maximize Your IT Assets

Productivity gains, competitive advantage, and better customer service are just a few reasons why companies should invest in technology. However, not all software and hardware…

Read More

How to Prepare for a Cybersecurity Incident

A recent report by research firm, CyberEdge Group, found that 85.7% of Canadian organizations experienced at least one cyberattack within a 12-month period in 2021….

Read More