Increase protection of the device from

Solve china dataset issues with shared expertise and innovation.
Post Reply
rakhirhif8963
Posts: 542
Joined: Mon Dec 23, 2024 3:13 am

Increase protection of the device from

Post by rakhirhif8963 »

review/update the password policy, since, according to Rostelecom-Solar, 80% of Russian companies do not comply with basic password requirements;
Conduct unscheduled training on information security literacy and threats in remote work conditions. General user awareness significantly reduces the number of malware incidents. Companies that use information systems to check users and identify gaps in their security knowledge are almost 30% less likely to encounter incidents such as malware infections and malware delivery via e-mail, according to our Cyber ​​Resilience Center (ACRC).
"Remote work" on a permanent basis: how to ensure information security?
The weakest points in information security when organizing remote work are the devices that employees use when connecting to the company's services or when connecting to the company's network:

to intruders, it is not enough to simply install an antivirus. It is necessary to install more modern security tools, such as EDR solutions. They check all processes running on the PC for their legitimacy and allow you to stop attacks that do not use malware. Thus, according to Positive Technologies statistics, almost 50% of all actions of belarus mobile database may not differ in any way from the usual activities of users and administrators. In addition, it is necessary to identify and block complex and unknown attacks that can allow intruders to get into the corporate network through an employee's PC. You can install an EDR solution only for employees who work from home on a permanent or periodic basis. If you do not have specialists who are ready to work with modern security tools, you can always use the services of a service provider;
connection to the corporate network of an employee's computer should always be carried out through legitimate remote connections via VPN and secure (corporate) remote administration tools;
using two-factor authentication (MFA) to connect to company services. This allows you to more effectively protect access to the company's corporate information systems, connection via VPN, access to cloud applications if they are used to access employee data;
Post Reply