Abstract

Cybersecurity Awareness Month officially started yesterday. This makes now the perfect time to remember how completely your business’ technology infrastructure relies on your team’s daily habits. Even expensive security software fails when teams ignore basic precautions. Small oversights create massive vulnerabilities, making consistent standards essential for protecting your business.

The Threat of Automated Attacks

Attackers do not target businesses manually. They build automated scripts to scan thousands of networks at once. These tools test millions of stolen credentials every second.

If your team reuses passwords or uses unmanaged devices, these scripts will find the opening. Securing your business requires locking down every access point.

Identity and Access Controls

A stolen password gives attackers free rein across your entire system. Strict access controls limit the damage a single breached credential can cause.

  • Eliminate password reuse – Mixing personal and work passwords creates a dangerous chain reaction. Require complex passphrases stored in a dedicated password manager.
  • Enforce multi-factor authentication (MFA) – MFA requires a second proof of identity, such as an authenticator app prompt. A stolen password will not grant access without that second factor.
  • Apply least privilege – Limit file access strictly to what each employee needs for their job. Administrative rights should be rare and monitored continuously.

Browser Security

Saving passwords in web browsers is unsafe. Localized malware can easily extract stored browser credentials. Turn off native password saving on every machine:

  • Google Chrome – Go to Menu (three dots) > Passwords and Autofill > Google Password Manager > Settings. Toggle off “Offer to save passwords.”
  • Microsoft Edge – Go to Menu (three dots) > Settings > Profiles > Passwords. Toggle off “Offer to save passwords.”

Securing Endpoints and Networks

Every device connected to your network is a target. Automate operating system updates so patches install as soon as they are released. Replace basic antivirus software with Managed Endpoint Detection and Response (EDR) for real-time protection.

Network pathways also require strict controls:

  • Segment your network – Divide your network into isolated virtual LANs (VLANs). Keep guest Wi-Fi, internal servers, and IoT devices on separate tracks to stop infections from spreading.
  • Lock down remote access – Never expose Remote Desktop Protocol (RDP) directly to the internet. Route all remote access through an MFA-protected Virtual Private Network (VPN).
  • Verify unexpected requests – Train your team to double-check unusual wire transfers or login requests using a separate, direct phone call.

Immutable Backups

Traditional backups are no longer enough. Follow the 3-2-1-1 strategy:

  • Keep 3 copies of your data.
  • Store them on 2 different media types.
  • Keep 1 copy offsite, ideally in the cloud.
  • Ensure 1 copy is immutable.

Immutable backups cannot be encrypted, modified, or deleted by ransomware. Test your restoration process regularly to ensure it works when you need it.

Protect Your Business

Strong habits prevent costly mistakes, but effective protection requires expert management and continuous monitoring.

If you need help auditing your security posture or setting up these defenses, contact NetMGM today at 888-748-2525.

ABOUT THE AUTHOR

Empowering Employees to Safeguard Your Business in Cybersecurity Awareness Month

Rafiq Masri

With over 25 years of experience in Information Technology, Rafiq is one of the most accomplished, versatile and certified engineer in the field. He has spent the past 2 ½ decades administering and supporting a wide range of clients and has helped position Network Management, Inc. as a leader in the IT Managed Services space.

Rafiq has built a reputation for designing, building and supporting top notch IT infrastructures to match the business objectives and goals of his clients.

Embracing the core values of integrity, innovation, and reliability, Rafiq has a very loyal client base with some customer relationships dating back 20+ years.

Rafiq holds a bachelor’s degree in Mechanical Engineering from the University of Michigan and has completed graduate programs in Software Engineering and Business at Harvard and George Mason University. Rafiq is a former founder and CEO of Automation, Inc. in Ann Arbor, Michigan as well as a valued speaker on entrepreneurship and technology at industry events such as ExpoTech and others.