{"id":1153,"date":"2018-06-22T08:27:02","date_gmt":"2018-06-22T13:27:02","guid":{"rendered":"https:\/\/media-moon.com\/blog\/?p=1153"},"modified":"2018-08-14T15:28:25","modified_gmt":"2018-08-14T20:28:25","slug":"what-you-need-to-do-if-your-business-is-impacted-by-a-cyber-attack-part-1","status":"publish","type":"post","link":"https:\/\/media-moon.com\/blog\/what-you-need-to-do-if-your-business-is-impacted-by-a-cyber-attack-part-1\/","title":{"rendered":"What You Need to Do If Your Business Is Impacted by a Cyber Attack &#8211; Part 1"},"content":{"rendered":"<p>In <a href=\"https:\/\/media-moon.com\/blog\/5-tips-on-how-to-avoid-a-data-breach\/\" target=\"_blank\" rel=\"noopener\">one of our previous posts<\/a> we reviewed five tips on how to avoid a data breach. In summary, these include the following:<\/p>\n<ol>\n<li>Collect only the needed information and data.<\/li>\n<li>Make sure the passwords that you establish are difficult to be broken by a cyber attacker.<\/li>\n<li>Make sure you use the proper levels of encryption.<\/li>\n<li>Limit network access.<\/li>\n<li>Not all cyber-attacks target electronic data.<\/li>\n<\/ol>\n<p>In this post, we&#8217;ll go through some of the important things that you&#8217;ll want to do in the unfortunate case of\u00a0<strong>your business getting hit with a cyber-attack<\/strong>.<\/p>\n<h3>What You Need to Do<\/h3>\n<p>Secure the lines of defense at your business.\u00a0After you have been impacted by cyber based attack, this is absolutely <strong>the first step that you need to do<\/strong>.<\/p>\n<p>It involves the following components:<\/p>\n<ul>\n<li><strong>Secure all of the physical devices and relevant software applications:<\/strong><\/li>\n<\/ul>\n<p style=\"padding-left: 30px;\">More than likely, this will involve the servers, the impacted workstations \/ computers, and any other associated wireless devices.<\/p>\n<p style=\"padding-left: 30px;\">It is important to change all of the all of the relevant passwords of these impacted devices. Obviously there will not be a lot of time to do this, so&#8230;<\/p>\n<blockquote>\n<p style=\"padding-left: 30px;\">There should be a plan in place before a CYBER attack occurs that describes exactly what needs to be done.<\/p>\n<\/blockquote>\n<p style=\"padding-left: 30px;\">In some instances the best option may be to shut down affected devices until an assessment can be made to see what exactly happened.<\/p>\n<ul>\n<li><strong>Stop additional data loss:<\/strong><\/li>\n<\/ul>\n<p style=\"padding-left: 30px;\">If the impacted devices have been shut down, you then need to determine what software applications and hardware depended on them.<\/p>\n<p style=\"padding-left: 30px;\">For example, if the workstations and wireless devices were accessing a shared database, they should be closely monitored for at least a few days after the cyber-attack has occurred. This is to make sure that no further information and data is being covertly stolen or hijacked.<\/p>\n<p style=\"padding-left: 30px;\">In this case, it would be very prudent to make sure that this database is backed up immediately, and that you continue to back it up every couple of hours &#8211; depending on how crucial it is to your operations.<\/p>\n<p><img fetchpriority=\"high\" decoding=\"async\" class=\"aligncenter size-full wp-image-1156\" src=\"https:\/\/media-moon.com\/blog\/wp-content\/uploads\/2018\/06\/cybersecurity-3-e1529148810135.jpg\" alt=\"\" width=\"600\" height=\"400\" \/><\/p>\n<ul>\n<li><strong>Assemble a team of experts:<\/strong><\/li>\n<\/ul>\n<p style=\"padding-left: 30px;\">This team should consist of the following individuals of your company:<\/p>\n<p style=\"padding-left: 30px;\"><strong>&gt; Team Leader:<\/strong><\/p>\n<p style=\"padding-left: 60px;\">Responsible for the overall incident response; will coordinate the necessary actions that need to take place.<\/p>\n<p style=\"padding-left: 30px;\"><strong>&gt; Incident Lead:<\/strong><\/p>\n<p style=\"padding-left: 60px;\">Responsible for coordinating the actual response.<\/p>\n<p style=\"padding-left: 30px;\"><strong>&gt; IT Contact:<\/strong><\/p>\n<p style=\"padding-left: 60px;\">Responsible for communications between the Incident Lead and other members of the IT staff.<\/p>\n<p style=\"padding-left: 30px;\"><strong>&gt; Legal Representative:<\/strong><\/p>\n<p style=\"padding-left: 60px;\">Responsible for leading the legal aspects of the incident response.<\/p>\n<p style=\"padding-left: 30px;\"><strong>&gt; Public Relations Officer:<\/strong><\/p>\n<p style=\"padding-left: 60px;\">Responsible for protecting and promoting the image of the business entity during an incident response.<\/p>\n<p style=\"padding-left: 30px;\"><strong>&gt; Management Team:<\/strong><\/p>\n<p style=\"padding-left: 60px;\">Responsible for approving and directing Security Policy during an incident response.<\/p>\n<p style=\"padding-left: 30px;\">If your business is small, with only a few workers, obviously you will not be able to have all of the above titles on your team.<\/p>\n<p style=\"padding-left: 30px;\">If this is the case, then the minimum titles that you&#8217;ll probably need to have on your team are yourself (the business owner), your IT lead, and a legal representative, which in this case, may be your business attorney.<\/p>\n<p style=\"padding-left: 30px;\">Also, if possible (and if affordable), you may also want to hire a forensics expert to work with you, and your IT lead to determine the root cause of the cyber-attack.<\/p>\n<p style=\"padding-left: 30px;\">In this regard, you won&#8217;t want to destroy any evidence, as this will be imperative to the work of the forensics investigator.<\/p>\n<p style=\"padding-left: 30px;\">It is also important that this team be assembled early on when you first start your business. This is so your designated people can respond quickly to the cyber-attack &#8211; rather than scrambling around at the last minute after the fact.<\/p>\n<h3><em>A Lot of Information<\/em><\/h3>\n<p>In summary, the above steps can be diagrammed as follows:<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-full wp-image-1161\" src=\"https:\/\/media-moon.com\/blog\/wp-content\/uploads\/2018\/06\/1234.png\" alt=\"\" width=\"171\" height=\"447\" srcset=\"https:\/\/media-moon.com\/blog\/wp-content\/uploads\/2018\/06\/1234.png 171w, https:\/\/media-moon.com\/blog\/wp-content\/uploads\/2018\/06\/1234-57x150.png 57w, https:\/\/media-moon.com\/blog\/wp-content\/uploads\/2018\/06\/1234-115x300.png 115w\" sizes=\"(max-width: 171px) 100vw, 171px\" \/><\/p>\n<p>Some of our upcoming posts will continue to examine what you need to do, as the business owner, if you are impacted by a cyber-attack. Although one of the keys is prevention &#8211; as much as possible.<\/p>\n<p>Some of the remaining themes to be discussed in our future posts will be:<\/p>\n<ul>\n<li>How to fix the security vulnerabilities;<\/li>\n<li>Notifying the relevant parties that have been impacted by the cyber-attack.<\/li>\n<\/ul>\n<hr \/>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>In one of our previous posts we reviewed five tips on how to avoid a data breach. In summary, these include the following: Collect only the needed information and data. Make sure the passwords that you establish are difficult to be broken by a cyber attacker. Make sure you use the proper levels of encryption. [&hellip;]<\/p>\n","protected":false},"author":7,"featured_media":1155,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"site-sidebar-layout":"default","site-content-layout":"","ast-site-content-layout":"default","site-content-style":"default","site-sidebar-style":"default","ast-global-header-display":"","ast-banner-title-visibility":"","ast-main-header-display":"","ast-hfb-above-header-display":"","ast-hfb-below-header-display":"","ast-hfb-mobile-header-display":"","site-post-title":"","ast-breadcrumbs-content":"","ast-featured-img":"","footer-sml-layout":"","ast-disable-related-posts":"","theme-transparent-header-meta":"","adv-header-id-meta":"","stick-header-meta":"","header-above-stick-meta":"","header-main-stick-meta":"","header-below-stick-meta":"","astra-migrate-meta-layouts":"default","ast-page-background-enabled":"default","ast-page-background-meta":{"desktop":{"background-color":"var(--ast-global-color-4)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"ast-content-background-meta":{"desktop":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"footnotes":""},"categories":[146,156],"tags":[228,120,229,204,206,219,220],"class_list":["post-1153","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-business-continuity","category-cyber-security","tag-back-up-plan","tag-bdr","tag-contingency-plan","tag-cyber-attack","tag-smb","tag-smb-security","tag-what-to-do"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/media-moon.com\/blog\/wp-json\/wp\/v2\/posts\/1153","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/media-moon.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/media-moon.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/media-moon.com\/blog\/wp-json\/wp\/v2\/users\/7"}],"replies":[{"embeddable":true,"href":"https:\/\/media-moon.com\/blog\/wp-json\/wp\/v2\/comments?post=1153"}],"version-history":[{"count":0,"href":"https:\/\/media-moon.com\/blog\/wp-json\/wp\/v2\/posts\/1153\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/media-moon.com\/blog\/wp-json\/wp\/v2\/media\/1155"}],"wp:attachment":[{"href":"https:\/\/media-moon.com\/blog\/wp-json\/wp\/v2\/media?parent=1153"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/media-moon.com\/blog\/wp-json\/wp\/v2\/categories?post=1153"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/media-moon.com\/blog\/wp-json\/wp\/v2\/tags?post=1153"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}