Look, as business owners and executives, I believe #1 responsibility is RISK MANAGEMENT.
In Cybersecurity we talk about data or risk ownership vs. stewardship or custodial responsibility. Your MSP, technology provider, IT Dept., i3 Business Solutions is the data custodian or steward of your – our clients’ information or technology. You, the executive, owner, client owns the risk for your business, information, data, and technology.
As custodians, we recommend controls and governance to mitigate the risk of a cybersecurity incident. There are various cybersecurity controls: administrative and technical are 2 of the primary. Essentially, policy and technology.
We generally trust the technical control category delivering layers of technical security: MFA, Antivirus - EDR, backup, firewall, M365 Defender ATP, and Password management. Many of you trust these layers & controls to protect your company.
But, for all the layers of technical cybersecurity, you – our clients are getting killed by Business Email Compromise (BEC), spoofing, spear phishing, and social engineering. According to the Verizon DBIR 2022 Report: “This year, 82% of breaches involved the human element. This puts the person square in the center of the security estate with the Social Engineering pattern capturing many of those human-centric events.” This looks like this:
I’m aware of two examples in the State of Michigan in just the last week where $100s thousands were transferred to the wrong accounts. We have a responsibility to you our clients and ourselves to mitigate this risk.
I cannot express enough my concern for this risk – both inside i3 Business Solutions and at your company or organization. Therefore, looks like cybersecurity phish testing, training, and education are a necessity.
It also looks like financial policy, and governance – controls must include:
Our offer:
Call – Email – Text or track us down on the website
Mike Ritsema, i3 Business Solutions wishes you a SAFE & Merry Christmas and a Happy New Year