These days, we often hear the word “quarantine” in everyday conversations--but quarantining takes on a different meaning when it comes to protecting your network.
Often, when we discuss quarantining from a cyber security perspective we’re referring to network segmentation cyber security. But what is network segmentation, and is it the right approach for your organization? The answer to the first part is easy. The second is a bit more complicated.
What is network segmentation cyber security?
Network segmentation is the act of dividing your larger network into smaller, more manageable segments that are isolated from each other and invisible to the outside world. Network segmentation breaks up your network into chunks and hides them away from easy access points. That way, if your network is infiltrated, it’s less likely the hacker will be able to do widespread damage or gain access to the entirety of your network. They won’t be able to hop from one isolated, segmented portion to another.
Network segmentation can be extraordinarily beneficial, as evidenced by the infamous Colonial Pipeline attack. Segmentation kept the attack from traversing from the IT network to the operational network, which would have undoubtedly disrupted the utility’s ability to transport fuel. The attack did damage--but not as much as there would have been without network segmentation in place.