Cyber Security and the risk function
What do experts say?
Most CEOs of large organizations are convinced
of the existential dimensions of cyber risk.
Threat intelligence most astute has begun to approach
cybersecurity from an enterprise-wide
perspective, involving the teams of the chief information
security officer (CISO), chief information
officer, and chief risk officer, as well as the business
unit. A true partnership between these teams is
the best approach, having emerged from the realization
that no single leader or team can gain the
complete perspective required to be effective in the
cyber
domain. No one group within a company
could manage the number and types of internal
and
external threats, the complex technological
landscape, and the numerous actions required to
address vulnerabilities associated with people and
technology. They should instead collaborate.
The practice of defending computers, servers, mobile
devices, electronic systems, networks, and
data from malicious attacks is known as cyber security.
It is also referred to as information technology
security or electronic data security. The term is used
in various contexts, from business to mobile
computing, and can be classified into a few general
categories.
Threat intelligence network security is known as the practice of securing a computer network from intruders, whether targeted attackers or opportunistic malware.
Network security is the practice of protecting a computer network from intruders, whether they are targeted or not. Application security is concerned with keeping software and devices safe from threats. A compromised application may allow access to the data it is supposed to protect. Safety starts in the design stage, long before a program or device is deployed.
as well as opportunistic malware.
Information security safeguards the integrity and privacy of data while it is in storage and transit.
Cyber security The processes and decisions for handling and protecting data assets are included in operational security. This includes the permissions that users have when connecting to a network as well as the procedures that govern how and where data can be stored or shared.
Disaster recovery and business continuity are terms that describe how an organization responds to a cyber-security incident or any other event that results in the loss of operations or data. Disaster recovery policies govern how an organization restores its operations and information in order to resume normal operations following a disaster. Business continuity is the plan that an organization uses when it is unable to operate due to a lack of resources.
Cyber security End-user education addresses the most unpredictable factor in cyber security: people. By failing to follow good security practices, anyone can introduce a virus into an otherwise secure system. Teaching users to delete suspicious email attachments, not to plug in unidentified USB drives, and a variety.
![]() |
| Cyber Security |
THE CYBER THREAT'S SCALE
Digital security The global cyber threat is evolving at a rapid pace, with an increasing number of data breaches occurring each year. According to a RiskBased Security report, data breaches exposed a startling 7.9 billion records in the first nine months of 2019. This figure is more than double (112% higher) the number of records exposed during the same time period in 2018. Medical services, retailers, and government entities were the most vulnerable, with malicious criminals responsible for the majority of incidents. Some of these industries are more appealing to cybercriminals because they collect financial and medical data, but all businesses that use networks are vulnerable to customer data theft, corporate espionage, and customer attacks. Digital security The International Data Corporation predicts that global spending on cyber-security solutions will reach a massive $133.7 billion by 2022, as the scale of the cyber threat continues to grow. Governments around the world have issued guidance to help organizations implement effective cyber-security practices in response to the rising cyber threat. The National Institute of Standards and Technology (NIST) in the United States has developed a cyber-security framework. The framework recommends continuous, real-time monitoring of all electronic resources to combat the spread of malicious code and aid in early detection. Cyber threats The importance of system monitoring is echoed in the UK government's National Cyber Security Centre's "10 steps to cyber security." In Australia, The Australian Cyber Security Centre (ACSC) publishes guidance on how organizations can combat the most recent cyber-security threats on a regular basis. THREE TYPES OF CYBER THREA Cyber-security counters three types of threats: 1. Cybercrime refers to individuals or groups who target systems for financial gain or to cause disruption. 2. Politically motivated information gathering is frequently used in cyber-attacks. 3. Cyberterrorism aims to disrupt electronic systems in order to cause panic or fear. So, how do bad actors gain access to computer systems? The following are some common methods for threatening cyber-security: MALWARE Cyber threats Malware is short for malicious software. Malware is software created by a cybercriminal or hacker to disrupt or damage a legitimate user's computer. It is one of the most common cyber threats. Malware, which is frequently distributed via unsolicited email attachments or legitimate-looking downloads, may be used by cybercriminals to make money or in politically motivated cyber-attacks. Malware comes in a variety of flavors, including: A virus is a self-replicating program that attaches to clean files and spreads throughout a computer system, infecting files with malicious code. Trojans: Malware that masquerades as legitimate software. Cybercriminals trick users into downloading Trojans that cause damage or collect data on their computers. Spyware: A program that secretly records what a user does in order for cybercriminals to use this information. For example, spyware could record credit card information. Ransomware: Malware that encrypts a user's files and data and threatens to delete it unless a ransom is paid. Adware: Advertising software that has the potential to spread malware. Botnets: Networks of malware-infected computers used by cybercriminals to perform online tasks without the user's permission. Injection of SQL data: SQL (structured language query) injection is a type of cyber-attack that is used to gain access to and steal data from a database. Cybercriminals take advantage of flaws in data-driven applications to insert malicious code into a database via a malicious SQL statement. This gives them access to the database's sensitive information. Phishing: Phishing occurs when cybercriminals send emails that appear to be from a legitimate company and request sensitive information from victims. Phishing attacks are frequently used to trick people into providing credit card information and other personal information. A man-in-the-middle cyber threat occurs when a cybercriminal intercepts communication between two people in order to steal data. On an insecure WiFi network, for example, an attacker could intercept data passing between the victim's device and the network. A distributed denial-of-service attack A denial-of-service attack occurs when cybercriminals overload networks and servers with traffic, preventing legitimate requests from being fulfilled. This renders the system inoperable and prevents an organization from performing critical functions. A denial-of-service attack A denial-of-service attack occurs when cybercriminals prevent a computer system from fulfilling legitimate requests by flooding networks and servers with traffic. This renders the system inoperable, preventing an organization from carrying out critical functions. Dridex ransomware In December 2019, the United States The Department of Justice (DoJ) has charged the leader of an organized cyber-criminal group for his involvement in a global Dridex malware attack. This malicious campaign had a global impact on the public, government, infrastructure, and business. Dridex is a financial trojan with numerous capabilities. It has been infecting computers through phishing emails or existing malware since 2014. It has caused massive financial losses amounting to hundreds of millions of dollars by stealing passwords, banking details, and personal data that can be used in fraudulent transactions. Cyber threats In response to the Dridex attacks, the National Cyber Security Centre of the United Kingdom advises the public to "ensure devices are patched, anti-virus is turned on and up to date, and files are backed up." In February 2020, the FBI issued a warning to U.S. citizens about confidence fraud perpetrated by cybercriminals using dating sites, chat rooms, and apps. Perpetrators prey on people looking for new partners, duping victims into disclosing personal information. According to the FBI, romance cyber threats affected 114 victims in New Mexico in 2019, resulting in $1.6 million in financial losses. Malware called Emotet The Australian Cyber Security Centre issued a warning to national organizations in late 2019 about a widespread global cyber threat posed by Emotet malware. Emotet is a sophisticated trojan that has the ability to steal data as well as load other malware. Emotet thrives on simple passwords, serving as a reminder of the importance of creating a secure password to protect against cyber threats. End-user protection, also known as endpoint security, is a critical component of cyber security. After all, it is frequently an individual (the end-user) who inadvertently downloads malware or another type of cyber threat to their desktop, laptop, or mobile device. So, how do cyber-security safeguards safeguard end users and systems? To begin, cryptographic protocols are used to encrypt emails, files, and other critical data in cyber security. This not only safeguards data in transit but also protects against loss or theft. End-user security software also scans computers for malicious code, quarantines it, and then removes it from the machine. Security software can even detect and remove malicious code hidden in the primary boot record, as well as encrypt or wipe data from the computer's hard drive. Real-time malware detection is also a focus of electronic security protocols. Many people use heuristic and behavioral analysis to monitor a program's and its code's behavior in order to defend against viruses or Trojans that change shape with each execution (polymorphic and metamorphic malware). Security programs can isolate potentially malicious programs in a virtual bubble separate from the user's network in order to analyze their behavior and learn how to detect new infections more effectively. Cybersecurity attacks handled by cyber-security professionals identify new threats and ways to combat them, and security programs continue to evolve new defenses. Employees must be educated on how to use end-user security software in order to get the most out of it. Importantly, keeping it running and frequently updating it ensures that it can protect users from the most recent cyber threats. Cyber security tips - how to protect yourself from cyberattacks. |
How can businesses and individuals protect themselves from cyber threats? Here are our top cyber security recommendations:
update your software and operating system: This ensures that you have the most recent security patches.
2. Use anti-virus software: Anti-virus software, such as Kaspersky Total Security, detects and removes threats. Keep your software up to date for the best protection.
3. Use strong passwords: Make sure your passwords are difficult to guess.
4. Do not open email attachments from unknown senders: they may contain malware.
5. Do not click on links in emails from unknown senders or unfamiliar websites: This is a common method for malware distribution.
6. Avoid using public WiFi networks that are not secure: Unsecure networks expose you to man-in-the-middle attacks.
Cyber security attacks With the number and sophistication of cyber threats increasing, large institutions can no longer protect against all risks equally. The threats that pose the greatest risk to the business must be identified and eliminated first. To achieve this, the risk function must be deeply integrated into cybersecurity planning and operations. That is the essence of the strategic-security-partnership model.
Writer: Rishi Sen
Rishi Sen - Teacher & Expert in Cyber Security. Having a total experience of more than 5 years in this field.



Comments
Post a Comment
Please do not enter any spammy comment or link.