Security
The cold shower that is a system security breach is being felt by more and more victim companies every day.
If anyone using your systems can:
• access a CD drive, a disk drive , or a backup tape drive
• plug in a USB stick
• leave a workstation ‘live’ so that someone else can use it
• pick up a backup tape
• access the internet or external e-mail
• access any computer or workstation without username/password control
then your company is at risk, you need protection, and we can help you immediately.
Our team of network and internet security specialists can lock down your systems with a protective layer of
user monitors and controls.
We can continuously prove your systems security level through a range of techniques which ensure that
anti-virus and anti spy software; access restrictions, backup and recovery systems are adequate,
correctly configured, and fully operational.
• It is really important that businesses have in place an acceptable use policy relating
to all digital technologies. The policy must be reviewed and updated from time to time.
All staff members and starters must read and signal they understand it, and must sign up to it.
• An exit interview is now commonplace, but businesses should ensure that leavers are under no
illusion about their right to access company assets from that point on, and must sign
documentation to that effect.
• Before calling candidates for interview, they must be informed that they may not mention the
company’s name on any social websites.
• Hotmail and other email services are easily compromised. If an intruder can guess your email
address, he does not need even need to guess your password to be able to read your emails.
So – don’t use addresses John.Doe or JohnDoe 27, use as address like Mxy12$Spklytz.
• Someone who wants to use the Internet for any illegal purpose can use a sniffer to locate any
unprotected Wifi internet connection to perpetrate their crime. The trouble is that when
the SOCA crime squad knock, it will be on the innocent user’s front door, it is his equipment
that will be seized, and his life that might be ruined.
• There are Internet Banksys out there who climb league tables and trade credits based on the number
and nature of web sites they have hacked. These details are registered and updated on their
own internet score board. Using your company’s website as your home page means that at least
you know fairly soon after you have been hit, and you can minimise the damage.
• It is not illegal to check a candidates social network presence. BUT you may not of course use any
information that you find related to race, religion, etc in your selection process. On the other
hand, if your future systems administrator can be seen drunk in a casino every Friday night,
you should probably not call him to interview, and he need never know why.
• You should not give candidates the opportunity to use social engineering skills or to gain insider
information from the net by telling them who might be conducting their interview.
For further information please follow the links below;
• www.EcrimeWales.com
• www.getsafeonline.com
The protection afforded by proper security is inexpensive, but is becoming increasingly important as employee
related high-tech crime is becoming ever more frequent.