When it comes to data breach prevention, there are plenty of guides for reducing risk in the long term. While it’s definitely valuable to be working on a data breach prevention strategy with 6-month, 1-year, or 5-year goals, not every cybersecurity initiative takes so much time.
In fact, there are steps that you can take right now to lower your organization’s risk of experiencing a data breach. Each of these steps takes less than 24 hours to complete, and each will have a positive impact on your overall cybersecurity posture.
Are you ready to reduce your risk of experiencing a data breach? Here’s what you need to do:
Close open ports.
According to research from Bitsight and Advisen, 60% of breached organizations have 10 or more ports susceptible to unauthorized use. We’ve also found that organizations with an F open port grade on our Security Ratings Platform are more than twice as likely to experience a breach than organizations with an A grade.
Closing open ports requires help from IT, but it isn’t that time-consuming. First, you have to compile a list of ports that should be open. These are determined by the systems and software on your network. Next, you need to use a tool to scan the entire network for open ports, and use administrative controls to close any ports that don’t need to be open. This article runs through the entire process in detail.
Run necessary updates.
We’re all guilty of ignoring the notifications on our workstations and mobile devices telling us it's time to update. However, when this becomes an organization-wide issue, it can lead to increased vulnerability for your systems and data.
Updates are important because hardware manufacturers and software developers will often roll out security patches alongside other performance and UX changes. These security patches might protect against new malware types or fix newly discovered vulnerabilities, helping to keep your systems safe. However, if the updates aren’t installed, your organization could fall victim to entirely preventable cyber attacks.
Every internet-connected device and software system on your network should be updated regularly. In the future, you can implement a regular patching cadence to ensure all devices and programs are up-to-date. For now, start with the devices and software that are most likely to be targeted in an attack. These include:
-
Router firmware
-
Web browsers
-
Operating systems
Implement multi-factor authentication.
Multi-factor authentication (also called two-factor authentication or 2FA) is perhaps the least-loved cybersecurity best practice. Yes, it’s a hassle to have to enter a code to log into systems and software platforms, however, it makes your accounts exponentially more secure.
The use of stolen credentials was the number one action variety in data breaches in 2017. Adding a second layer of security beyond username/password is a no-brainer for organizations with any amount of sensitive data. It makes it twice as hard to break in.
Best of all, it’s pretty much free. Most online platforms and cloud-based tools (Dropbox, Slack, Google, Microsoft, etc.) allow you to enable multi-factor authentication right from the settings. For proprietary systems, you have the option of either using SMS or app-based 2FA, or a physical authenticator keychain. The latter is more expensive and will take more time to implement, but adds an extra dose of security.
Check your security rating.
Cybersecurity performance audits are integral to the development of solid data breach prevention plans. However, audits take time, and depending on the resources you have available, might require you to hire a costly third party.
In the meantime, you can gain an up-to-date, objective perspective on your cybersecurity performance by requesting your Security Rating Snapshot report. Bitsight Security Ratings compile externally observable data from a range of trustworthy sources to show you how vulnerable your organization is. These ratings have been proven to correlate with risk of data breach. Read everything you need to know about security ratings here.
In addition to an overall rating, the Bitsight Security Ratings Platform will show you your performance in a number of specific risk areas, like malware servers, peer-to-peer file sharing activity, TLS/SSL configuration, etc. You can use your ratings in these areas to quickly identify the steps you should take next.
[Want to know what your security rating is? Request a Security Rating Snapshot report now.]