<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Get Safe Online (The Blog) &#187; Business</title>
	<atom:link href="http://www.getsafeonlineblog.org/category/business/feed" rel="self" type="application/rss+xml" />
	<link>http://www.getsafeonlineblog.org</link>
	<description>News, tips and updates from the GetSafeOnline.org team</description>
	<lastBuildDate>Wed, 01 Feb 2012 10:33:24 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Small businesses at risk online</title>
		<link>http://www.getsafeonlineblog.org/small-businesses-at-risk-online</link>
		<comments>http://www.getsafeonlineblog.org/small-businesses-at-risk-online#comments</comments>
		<pubDate>Sat, 23 Jun 2007 09:07:46 +0000</pubDate>
		<dc:creator>John Evelyn</dc:creator>
				<category><![CDATA[Business]]></category>

		<guid isPermaLink="false">http://www.getsafeonlineblog.org/?p=132</guid>
		<description><![CDATA[This week, Get Safe Online.org announced the key findings of a new piece of research relating to the security readiness of micro businesses (small businesses with fewer than 10 employees). With 95% of small businesses having no dedicated IT manager, nor access to an external security consultancy company, how do these businesses remain fully up-to-date [...]]]></description>
			<content:encoded><![CDATA[<p></p><p><img height="240" alt="Tony Neate, Managing Director, Get Safe Online" src="http://www.getsafeonlineblog.org/wp-content/uploads/2007/06/tony-neate.jpg" width="159" align="right" border="0"> This week, Get Safe Online.org announced the key findings of a new piece of research relating to the security readiness of micro businesses (small businesses with fewer than 10 employees). With 95% of small businesses having no dedicated IT manager, nor access to an external security consultancy company, how do these businesses remain fully up-to-date with all the latest online security issues?
<p>Small businesses, from local tradesmen through to small retailers, are becoming increasingly reliant on their computers and the internet, but what happens when the local window cleaner’s schedule of work, including names and addresses of all his clients, are hacked from his home computer? Or all his financial information is erased due to a virus or trojan – details regarding his PAYE, VAT and all his expenses gone! With no thought having ever been given to backing up his system.
<p>More concerning is the thought of a local retailer that stores all its customer financial details on their business computer, holding details of the clients’ direct debit details, names, addresses, bank sort codes and account numbers, and to go with them, personal telephone numbers to add authenticity, losing all the information to a targeted hack as a result of being linked to the internet without adequate protection.
<p>But do these small businesses even know these risks exist?&nbsp; How do we let them know, without seeming to burden them with even more work on top of the demands all businesses have to deal with? What happens when details of customers do become public as a direct result of a cyber attack and the local community loses confidence in providing any form of information to a business weather online or off?
<p>Get Safe Online.org recently sat around the table with a number of small business organisations to discuss these issues and problems, share ideas and common goals, and work on plans to reach out to this very important section of UK business to build awareness and provide advice.
<p>Doing nothing because it’s too hard to deal with is not an option.
<p><strong>- Tony Neate, Managing Director, Get Safe Online </strong></p>
]]></content:encoded>
			<wfw:commentRss>http://www.getsafeonlineblog.org/small-businesses-at-risk-online/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Businesses at risk from their staff</title>
		<link>http://www.getsafeonlineblog.org/businesses-at-risk-from-their-staff</link>
		<comments>http://www.getsafeonlineblog.org/businesses-at-risk-from-their-staff#comments</comments>
		<pubDate>Mon, 12 Feb 2007 10:58:29 +0000</pubDate>
		<dc:creator>John Evelyn</dc:creator>
				<category><![CDATA[Business]]></category>

		<guid isPermaLink="false">http://www.getsafeonlineblog.org/?p=82</guid>
		<description><![CDATA[New research from McAfee, the security software company, suggests that employees are putting their companies at risk by cavalier attitudes to confidential information.&#160; The survey of 600 office workers across Europe reveals: 132 million sensitive documents are being taken out of UK offices each week on portable devices. 52% of European employees would take company [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>New research from <a title="McAfee" href="http://www.mcafee.com/uk/">McAfee</a>, the security software company, suggests that employees are putting their companies at risk by cavalier attitudes to confidential information.&nbsp; The survey of 600 office workers across Europe reveals:</p>
<ul>
<li>132 million sensitive documents are being taken out of UK offices each week on portable devices.
<li>52% of European employees would take company data with them when they leave.
<li>Employees are increasingly using portable devices, including memory sticks and mobile phones to remove confidential data from their businesses.
<li>Employees frequently print out company financial information (83%), customer records (83%) and legal contracts (87%) but over half fail to shred them.</li>
</ul>
<p>&nbsp;Read Get Safe Online&#8217;s <a title="Get Safe Online small business centre" href="http://www.getsafeonline.org/nqcontent.cfm?a_id=1046">advice for small businesses</a>, which covers staff policies, encryption and preventing theft with portable devices.</p>
<p>Technorati Tags: <a href="http://technorati.com/tag/Business" rel="tag">Business</a>, <a href="http://technorati.com/tag/security" rel="tag"> security</a>, <a href="http://technorati.com/tag/data+theft" rel="tag"> data theft</a>, <a href="http://technorati.com/tag/McAfee" rel="tag"> McAfee</a>, <a href="http://technorati.com/tag/employees" rel="tag"> employees</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.getsafeonlineblog.org/businesses-at-risk-from-their-staff/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Preventing insider attacks</title>
		<link>http://www.getsafeonlineblog.org/preventing-insider-attacks</link>
		<comments>http://www.getsafeonlineblog.org/preventing-insider-attacks#comments</comments>
		<pubDate>Wed, 07 Feb 2007 08:17:26 +0000</pubDate>
		<dc:creator>John Evelyn</dc:creator>
				<category><![CDATA[Business]]></category>

		<guid isPermaLink="false">http://www.getsafeonlineblog.org/?p=80</guid>
		<description><![CDATA[Carnegie Mellon CyLab has just published the second edition of its Common Sense Guide to Prevention and Detection of Insider Threats.&#160; (Hat tip to The Register.) Insider threats such as fraud or sabotage are, in many ways, the most insidious and most dangerous.&#160; This report analyses 150 actual cases.&#160; It recommends that companies: Institute periodic [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>Carnegie Mellon CyLab has just published the second edition of its <a title="Preventing insider threats" href="http://www.cert.org/archive/pdf/CommonSenseInsiderThreatsV2.1-1-070118.pdf">Common Sense Guide to Prevention and Detection of Insider Threats</a>.&nbsp; (Hat tip to <a title="The Register" href="http://www.theregister.co.uk/2007/02/06/insider_threat/">The Register</a>.)</p>
<p>Insider threats such as fraud or sabotage are, in many ways, the most insidious and most dangerous.&nbsp; This report analyses 150 actual cases.&nbsp; It recommends that companies:</p>
<ol>
<li>Institute periodic enterprise-wide risk assessments.</li>
<li>Institute periodic security awareness training for all employees.</li>
<li>Enforce separation of duties and least privilege (i.e. people only get the computer access and rights they need to do their job and not more).</li>
<li>Implement strict password and account management policies.</li>
<li>Log, monitor and audit employee online activities.</li>
<li>Use extra caution with system administrator and privileged users.</li>
<li>Actively defend against malicious code.</li>
<li>Use layered defence against remote attacks.</li>
<li>Monitor and respond to suspicious or disruptive behaviour (often the precursor to more serious problems).</li>
<li>Deactivate computer access when someone leaves the company.</li>
<li>Collect and safe data for use in investigations.</li>
<li>Implement secure backup and recovery processes.</li>
<li>Clearly document insider threat controls.</li>
</ol>
<p>Technorati Tags: <a href="http://technorati.com/tag/Insider" rel="tag">Insider</a>, <a href="http://technorati.com/tag/attacks" rel="tag"> attacks</a>, <a href="http://technorati.com/tag/security" rel="tag"> security</a>, <a href="http://technorati.com/tag/CyLab" rel="tag"> CyLab</a>, <a href="http://technorati.com/tag/Carnegie+Mellon" rel="tag"> Carnegie Mellon</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.getsafeonlineblog.org/preventing-insider-attacks/feed</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>75% of businesses at risk</title>
		<link>http://www.getsafeonlineblog.org/75-of-businesses-at-risk</link>
		<comments>http://www.getsafeonlineblog.org/75-of-businesses-at-risk#comments</comments>
		<pubDate>Thu, 14 Dec 2006 10:22:31 +0000</pubDate>
		<dc:creator>John Evelyn</dc:creator>
				<category><![CDATA[Business]]></category>

		<guid isPermaLink="false">http://www.getsafeonlineblog.org/?p=63</guid>
		<description><![CDATA[Gartner, the IT analysts, predict that by the end of 2007, &#8220;75% of enterprises will be infected with undetected, financially motivated, targeted malware that evaded their traditional perimeter and host defences.&#8221; (Source: BBC News.) Visit Get Safe Online&#8217;s business advice centre to learn how to protect yourself.]]></description>
			<content:encoded><![CDATA[<p></p><p>Gartner, the IT analysts, predict that by the end of 2007, &#8220;75% of enterprises will be infected with undetected, financially motivated, targeted malware that evaded their traditional perimeter and host defences.&#8221;  (Source: <a title="75% of businesses will be infected" href="http://news.bbc.co.uk/1/hi/technology/6178611.stm">BBC News</a>.)</p>
<p>Visit Get Safe Online&#8217;s <a title="Business advice centre" href="http://www.getsafeonline.org/nqcontent.cfm?a_id=1046">business advice centre</a> to learn how to protect yourself.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.getsafeonlineblog.org/75-of-businesses-at-risk/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Super-passwords are a dead giveaway</title>
		<link>http://www.getsafeonlineblog.org/super-passwords-are-a-dead-giveaway</link>
		<comments>http://www.getsafeonlineblog.org/super-passwords-are-a-dead-giveaway#comments</comments>
		<pubDate>Tue, 17 Oct 2006 07:17:55 +0000</pubDate>
		<dc:creator>John Evelyn</dc:creator>
				<category><![CDATA[Business]]></category>

		<guid isPermaLink="false">http://www.getsafeonlineblog.org/?p=29</guid>
		<description><![CDATA[Many businesses have servers, email systems, backup systems, network routers, administrator accounts and so on. All of these require passwords. In some cases, companies have more of these &#8216;super-passwords&#8217; than they do employees. Because they are the keys to the kingdom &#8211; imagine what would happen if a criminal had direct access to your email [...]]]></description>
			<content:encoded><![CDATA[<p></p><p><img width="200" height="56" align="right" src="http://www.getsafeonlineblog.org/wp-content/uploads/2006/10/WindowsLiveWriter/Superpasswordsareadeadgiveaway_74B1/password.jpg" /> Many businesses have servers, email systems, backup systems, network routers, administrator accounts and so on.  All of these require passwords.  In some cases, companies have more of these &#8216;super-passwords&#8217; than they do employees.</p>
<p>Because they are the keys to the kingdom &#8211; imagine what would happen if a criminal had direct access to your email server or a competitor could access your file server &#8211; these passwords are especially important.</p>
<p>A recent <a title="Cyber-Ark Survey" href="http://www.cyber-ark.com/survey.asp">survey</a> by Cyber-Ark Software, an IT security company, found that while most individual passwords are updated:</p>
<ul>
<li>13 percent of router passwords are never changed</li>
<li>21 percent of local workstation administrator passwords are never changed</li>
<li>13 percent of server passwords are never changed</li>
</ul>
<p>Get Safe Online has detailed advice about <a title="Strong passwords" href="http://www.getsafeonline.org/nqcontent.cfm?a_id=1127">choosing strong passwords</a> and we recommend choosing new, strong passwords for any internet-connected device or piece of software.  Never use the default, out-of-the-box setting.  In addition, we have detailed advice for small businesses, including this article on <a title="Access control" href="http://www.getsafeonline.org/nqcontent.cfm?a_id=1105">controlling access to sensitive data</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.getsafeonlineblog.org/super-passwords-are-a-dead-giveaway/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

