Computer and Network Security
Computers and networks access can be the Holy Grail for identity thieves. If access can go undetected, the breaches can force a company into bankruptcy. Security must authenticate, authorize and protect. Here are 15 time proven tips.
Time-Proven Security Tips to Protect against a Data Breach
| TACTIC |
DESCRIPTION |
|
Firewall
|
- Have IT install hardware firewalls
- Don’t use just software firewalls
- Small offices can use a router
|
|
Data Storage Encryption
|
-
Military grade encryption (AES, Triple-DES, Blowfish, Twofish)
-
Always use on laptops, memory sticks, CD-ROMs, etc.
|
| Password Manager |
-
Uses two factor authentication
-
Limit the number of false authorizations before lock-out
-
Interfaces with existing databases
|
| Updates to Operating System |
- Always keep your computer’s operating system current with the latest security patches
|
| Anti-virus, Anti-spyware, Pop-up blockers |
-
Every computer must have these installed
-
Run scheduled scans at least weekly
-
Keep their library data up to date
|
| Disposal of electronics |
|
| Web site updates |
- Don’t store personal information on the same server as the website
|
| Disable USB ports |
- On some computers you want to disable the functionality of the USB port so someone cannot use a memory stick
|
| Disable IM |
- Employees don’t need to be instant messaging with the computers since they could be sending sensitive information
|
| Password protect documents |
|
| Use secure, strong passwords |
-
Follow the 6-laws of password security: Length, Randomness, Complexity, Uniqueness, Rotation and Management
-
Use a token-based (i.e. smartcard) password manager so the above laws can be managed easily by employees
|
| Password logon |
|
| Web site blocking |
|
| Unknown emails |
- Inform employees of the dangers of opening up email links or attachments from unknown people
|
| Secure Wireless Networks |
|
To learn more check out the blog page on Computer and Network Security