Intelligent CIO LATAM Issue 05 | Page 43

FEATURE : MODERN WORKPLACE downloads from the Internet , malicious email attachments with nefarious links , vulnerable software , or because their victims ’ security policies and solutions are inadequate ( or absent ). It ’ s important to understand that ransomware only affects data the user in question can access . So , limiting data access strategically can mitigate the consequences of a successful ransomware attack .
2 . Use a mix of security controls that address common attack vectors , including anti-malware and anti-phishing solutions , penetration testing and vulnerability scanning , URL filtering to prevent users from accessing malicious sites and security awareness training ( that incorporates remote work security modules ), among others .
3 . Monitor cloud and SaaS environments 24 / 7 to identify and proactively remediate ransomware attacks in real time .
4 . Monitor any and every third-party app your employees use , including extensions , addons , mobile solutions and more ; anything with access to corporate data cybercriminals can hold hostage . This will require ML and AI capabilities to reduce the costly realities of human error and false positives – two things you can ’ t afford in cloud ransomware prevention .
5 . Finally , back up your sensitive SaaS data to trusted , secure cloud storage services like AWS and Azure daily to ensure you can recover in the event of a successful ransomware infection .
Keep in mind that downtime is an inevitable risk of any ransomware attack that you can ’ t avoid . Today , an average downtime incident lasts about 16 days and can be tremendously costly . Here are some top reasons why downtime is created :
• Data is growing exponentially
• There are still a lot of manual processes when it comes to Disaster Recovery
• API limitations of SaaS providers
When you design a Disaster Recovery strategy for your organization , you have to take downtime into account to reduce the downtime and recovery timeline because when it comes to ransomware attacks today it is no longer if , it ’ s already when . p
www . intelligentcio . com INTELLIGENTCIO LATAM 43