{"id":6906,"date":"2021-05-24T19:04:29","date_gmt":"2021-05-24T17:04:29","guid":{"rendered":"https:\/\/tekmart.co.za\/t-blog\/?p=6906"},"modified":"2021-05-24T19:04:31","modified_gmt":"2021-05-24T17:04:31","slug":"7-steps-for-a-strong-network-and-it-security-foundation","status":"publish","type":"post","link":"https:\/\/tekmart.co.za\/t-blog\/7-steps-for-a-strong-network-and-it-security-foundation\/","title":{"rendered":"7 steps for a strong network and IT security foundation"},"content":{"rendered":"<span class=\"span-reading-time rt-reading-time\" style=\"display: block;\"><span class=\"rt-label rt-prefix\">Reading Time-approximately:<\/span> <span class=\"rt-time\"> 3<\/span> <span class=\"rt-label rt-postfix\">minutes<\/span><\/span>\n<h2 class=\"wp-block-heading\"><strong>Enterprises should make it a habit to review their IT security systems, following steps that include network segmentation, multifactor authentication and security education.<\/strong><\/h2>\n\n\n\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/cdn.ttgtmedia.com\/rms\/onlineImages\/slattery_terry.jpg\" alt=\"Terry Slattery\"\/><\/figure>\n\n\n\n<p>By <a href=\"https:\/\/www.techtarget.com\/contributor\/Terry-Slattery\">Terry Slattery<\/a><\/p>\n\n\n\n<figure class=\"wp-block-pullquote\"><blockquote><p>Without a strong network security strategy, IT security will fall short &#8212; and vice versa.<\/p><\/blockquote><\/figure>\n\n\n\n<p>The National Security Agency (NSA) has identified three basic functions to form the foundation of a good IT security system. These functions are critical to preventing 93% of cyber incidents, according to an\u00a0NSA presentation. We at NetCraftsmen have identified four additional steps that, when combined with NSA&#8217;s three steps, create a solid foundation upon which to build a comprehensive security system.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>NSA&#8217;s security steps<\/strong><\/h3>\n\n\n\n<h4 class=\"wp-block-heading\"><strong>Step 1. Multifactor authentication<\/strong><\/h4>\n\n\n\n<p>Instead of using basic passwords, enterprises should\u00a0implement multifactor authentication, such as two-factor authentication (2FA). 2FA relies on something users know (a password) and something they own (a physical device, like a security token generator or a phone). Other mechanisms rely on factors like biometrics.<\/p>\n\n\n\n<p>Text message challenges have become a popular mechanism for 2FA. During login, a security code is sent via text or phone call to a cellphone. Users input the security code in response to a login challenge. This type of challenge can be attacked by a bad actor taking over the cellphone account or number and is not suitable for highly secure accounts.<\/p>\n\n\n\n<h4 class=\"wp-block-heading\"><strong>Step 2. Role-based access control<\/strong><\/h4>\n\n\n\n<p>Implementing role-based access control restricts access to only those resources that are necessary for a person&#8217;s function, or role, within an organization. For example, an HR employee won&#8217;t need access to accounting functions. By limiting access, a compromised employee account will be restricted from functions and data that are outside the needs of that role.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img fetchpriority=\"high\" decoding=\"async\" width=\"575\" height=\"786\" src=\"https:\/\/tekmart.co.za\/t-blog\/wp-content\/uploads\/2021\/05\/Seven-steps-that-help-enterprises-build-the-foundation-of-a-strong-IT-security-system.png\" alt=\"Seven steps that help enterprises build the foundation of a strong IT security system\" class=\"wp-image-6907\" srcset=\"https:\/\/tekmart.co.za\/t-blog\/wp-content\/uploads\/2021\/05\/Seven-steps-that-help-enterprises-build-the-foundation-of-a-strong-IT-security-system.png 575w, https:\/\/tekmart.co.za\/t-blog\/wp-content\/uploads\/2021\/05\/Seven-steps-that-help-enterprises-build-the-foundation-of-a-strong-IT-security-system-219x300.png 219w\" sizes=\"(max-width: 575px) 100vw, 575px\" \/><figcaption><strong>These seven steps can help enterprises build the foundation of a strong IT security system.<\/strong><\/figcaption><\/figure>\n\n\n\n<p>Nearly all products have role-based access security controls, as IT security has become more important. It should be a critical criterion for product selection. There is an American National Standards Institute standard for it, as detailed in\u00a0ANSI InterNational Committee for Information Technology Standards 359-2004\u00a0and\u00a0INCITS 359-2012.<\/p>\n\n\n\n<h4 class=\"wp-block-heading\"><strong>Step 3. Allowlist applications<\/strong><\/h4>\n\n\n\n<p>Networks used to be open, and the only filtering performed was to deny certain connections. Allowlisting inverts that paradigm. Only those connections and data flows that are required for application functionality are allowed; all other connectivity is blocked. The objective is to reduce the opportunities for a security breach to spread laterally across an organization.<\/p>\n\n\n\n<p>Teams should configure the filtering systems to record, or log, failed attempts to establish connections. Think of these alerts as trip lines that tip teams off to compromised accounts or systems.\u00a0Security information and event management\u00a0can help manage the deluge of events from the filtering systems.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>NetCraftsmen&#8217;s security steps<\/strong><\/h3>\n\n\n\n<h4 class=\"wp-block-heading\"><strong>Step 4. Patching and workarounds<\/strong><\/h4>\n\n\n\n<p>Teams must be diligent in patching and installing workarounds against known vulnerabilities. As noted in NSA&#8217;s presentation, zero-day attacks rarely occur, and the majority of cybersecurity breaches are due to unpatched systems. Regular updates must be applied to applications, server OSes and network infrastructure. <\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\"><p>Teams will need processes and people to track updates and configuration management systems to facilitate the updates.Good IT systems rely on the proper balance of people, process, and technology and tools.<\/p><\/blockquote>\n\n\n\n<h4 class=\"wp-block-heading\"><strong>Step 5. Network segmentation<\/strong><\/h4>\n\n\n\n<p>The goal of network segmentation is to prevent the horizontal spread of automated malware between business functions. Subdivide the network into functional segments with limited access between segments. For example, facilities infrastructure networks have no reason to access business functions, like HR or accounting. Teams should use application allowlists (see step 3 above) for any access between business segments.<\/p>\n\n\n\n<h4 class=\"wp-block-heading\"><strong>Step 6. System backups<\/strong><\/h4>\n\n\n\n<p>The most common intrusion has become\u00a0ransomware, and a successful widespread attack can severely strain a business. System backups can eliminate much of the risk from a successful attack but only if the backups themselves cannot also be compromised. Teams must carefully design their backup systems to stay safe because attackers will monitor IT systems for weeks before triggering the encryption of an organization&#8217;s data.<\/p>\n\n\n\n<p>Natural disasters can be just as disruptive as a ransomware attack, and backups should be stored where they won&#8217;t be subject to the same event that affected the OSes. It is instructive to research\u00a0how businesses handled and recovered from natural disasters\u00a0to learn what worked and what didn&#8217;t.<\/p>\n\n\n\n<h4 class=\"wp-block-heading\"><strong>Step 7. Employee security education<\/strong><\/h4>\n\n\n\n<p>The final security step is to educate employees. Use\u00a0anti-phishing campaigns to train employees\u00a0on the types of emails that facilitate intrusions or fraud. A common attack is to entice employees to click on malware-infected jokes, pictures or videos within emails. Fraud emails convince employees, typically in accounting functions, to make fraudulent financial transfers. Certain employee roles may need additional job-specific training.<\/p>\n\n\n\n<p>Training has been demonstrated to work. It should emphasize past learning and include new attack mechanisms. An added benefit of this training is that employees become better prepared to avoid such attacks in their personal lives.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>Making it all work<\/strong><\/h3>\n\n\n\n<p>Good IT systems rely on the proper balance of people, process, and technology and tools. The above seven steps focus on people and processes. For a balanced security foundation, enterprises can\u00a0use the\u00a0Cyber Defense Matrix to evaluate security tools.<\/p>\n\n\n\n<figure class=\"wp-block-embed is-type-video is-provider-youtube wp-block-embed-youtube wp-embed-aspect-16-9 wp-has-aspect-ratio\"><div class=\"wp-block-embed__wrapper\">\n<iframe title=\"What is Multifactor Authentication (MFA)?\" width=\"500\" height=\"281\" src=\"https:\/\/www.youtube.com\/embed\/_3rlQVXGKZc?feature=oembed\" frameborder=\"0\" allow=\"accelerometer; autoplay; clipboard-write; encrypted-media; gyroscope; picture-in-picture; web-share\" referrerpolicy=\"strict-origin-when-cross-origin\" allowfullscreen><\/iframe>\n<\/div><\/figure>\n","protected":false},"excerpt":{"rendered":"<p><span class=\"span-reading-time rt-reading-time\" style=\"display: block;\"><span class=\"rt-label rt-prefix\">Reading Time-approximately:<\/span> <span class=\"rt-time\"> 3<\/span> <span class=\"rt-label rt-postfix\">minutes<\/span><\/span>Enterprises should make it a habit to review their IT security systems, following steps that include network segmentation, multifactor authentication and security education. By Terry Slattery Without a strong network security strategy, IT security will fall short &#8212; and vice versa. The National Security Agency (NSA) has identified three basic functions to form the foundation of a good IT security<\/p>\n<p><a class=\"more-link\" href=\"https:\/\/tekmart.co.za\/t-blog\/7-steps-for-a-strong-network-and-it-security-foundation\/\">Read More<\/a><\/p>\n","protected":false},"author":113,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[38,165,35,8,4,30,3,116,201],"tags":[],"class_list":["post-6906","post","type-post","status-publish","format-standard","hentry","category-best-practices-for-data-center-operations","category-cloud-security","category-data-center-facilities","category-data-center-hardware","category-datacenter-news","category-expert-advise-and-opinion","category-industry-news-and-expert-advise","category-network-security","category-wireless-network-security"],"_links":{"self":[{"href":"https:\/\/tekmart.co.za\/t-blog\/wp-json\/wp\/v2\/posts\/6906","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/tekmart.co.za\/t-blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/tekmart.co.za\/t-blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/tekmart.co.za\/t-blog\/wp-json\/wp\/v2\/users\/113"}],"replies":[{"embeddable":true,"href":"https:\/\/tekmart.co.za\/t-blog\/wp-json\/wp\/v2\/comments?post=6906"}],"version-history":[{"count":1,"href":"https:\/\/tekmart.co.za\/t-blog\/wp-json\/wp\/v2\/posts\/6906\/revisions"}],"predecessor-version":[{"id":6908,"href":"https:\/\/tekmart.co.za\/t-blog\/wp-json\/wp\/v2\/posts\/6906\/revisions\/6908"}],"wp:attachment":[{"href":"https:\/\/tekmart.co.za\/t-blog\/wp-json\/wp\/v2\/media?parent=6906"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/tekmart.co.za\/t-blog\/wp-json\/wp\/v2\/categories?post=6906"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/tekmart.co.za\/t-blog\/wp-json\/wp\/v2\/tags?post=6906"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}