By Quentyn Taylor, Director of Information Security at Canon Europe, Middle East and Africa (www.Canon-Europe.com)
With remote and hybrid working a new ‘normal’ and cybercrime escalating at a rapid rate, more businesses are at risk than ever before. Quentyn Taylor, Director of Information Security at Canon Europe, Middle East and Africa, says implementing cybersecurity basics is key to reducing risk and building cyber-resilience.
Recent rapid digital transformation and reliance on cloud-based solutions has made businesses – in Africa as in the rest of the world - more vulnerable to cybercrime. In today’s global village getting hacked or being the victim of cybercrime inevitable.
The shift to hybrid working (https://bit.ly/3uEoVwZ) has expanded network perimeters, which now include the core office location as well as employees’ homes. Mobile and remote work can be beneficial to productivity but does open up new threat vectors with device management. The enormous growth in the use of connected devices - such as laptops, printers and phones - results in more entry points for possible attacks.
At the same time, cybercrime is evolving and becoming increasingly sophisticated. It’s shifted from trying to infect as many devices as possible to looking for weak links which can enable criminals to steal data or hold corporate systems to ransom.
A mistake or omission by a single employee – or even a third-party provider - can potentially bring down a whole company.
When employees work remotely – at home or in public spaces – they operate outside of the company’s usual controls; existing security measures may no longer be applicable or effective.
The risk is universal; even large, well-resourced companies have failed at times, often against basic attacks.
Typical attacks vectors include malware, ransomware, identity theft and email phishing, possibly the most prevalent approach in Africa. Messaging apps like WhatsApp have also been used to compromise victims.
The financial impact of cybercrime can be enormous; the European-based Pathé cinema chain lost over $ 21 million to a Business Email Compromise (BEC) scam and in the US, CNA Financial paid out $40 million in ransom in 2020.
Such costs can be crippling, particularly for small and medium enterprises (SMEs) that may not have the financial resources to recover. The ‘infosec poverty line’ is a reality – many small businesses, the backbone of most African economies, simply cannot afford to employ dedicated IT professionals and the massive increase in the cost of cybersecurity and cyber insurance puts them out of reach for many.
While you are never able to completely eradicate risk, there are simple steps to take that can build the cyber-resilience of almost every business. Work with your reality – whilst IS issues are global, they manifest differently in different areas; there isn’t a one-size-fits-all solution. Focus on the basics, develop a plan and lead for success. Don’t attempt to force people to do as they are told, adjust the message dynamically to fit the actual situation. The priority is to lead in a way that keeps your business and your customers safe.
The first step is to check the internal and external IT perimeter for gaps. A single-entry point can allow an attacker in, rather like an open window is an invitation to an opportunist thief. In today’s fully connected workplace, every device is a potential entry point for criminals.
Everyone’s security and every piece of equipment needs to be on par.
You may have a partner who can assist – at Canon we offer our partners comprehensive assessments to help mitigate security vulnerabilities.
Look for third-party service providers with built-in security and a good track record, you may have already paid for security services through your email and internet provider; check what you already have and plan from there. Working at scale allows them to incorporate many security features a much more reasonable cost.
Most importantly, ensure your employees turn on security features in the software and devices they use. Multi-factor authentication is offered on almost all social platforms, is usually free and is one of the easiest ways to give your security a dramatic boost.
Ultimately, people are both your strongest and weakest link. It only takes one errant click on a phishing mail to open the company to risk. Educate employees on basic cyber hygiene and encourage them to come forward and share mistakes. If an error is out in the open, it can be fixed. Your defence strategy is only effective if breaches are reported.
Develop processes and systems that protect against loss if one person’s email is compromised.
You don’t need to be the most secure business; you just need to be more secure than your neighbours. Most criminals are opportunists, looking to attack easy targets. It’s not about spending; some companies invest heavily in IS but haven’t turned on email multi-factor authentication.
By taking control of your information and network and educating all your employees, you can keep one step ahead of cyber-criminals and continue to serve your customers with confidence.
Canon has developed useful tools for managing risk and workspace security including a guide available for free download (https://bit.ly/2YfXUEA) and the Canon Information Security Insights YouTube series (https://bit.ly/3B7HDzu)Distributed by APO Group on behalf of Canon Central and North Africa (CCNA).
Media enquiries, please contact:
Canon Central and North Africa
APO Group - PR Agency
About Canon Central and North Africa:
Canon Central and North Africa (CCNA) is a division within Canon Middle East FZ LLC (CME), a subsidiary of Canon Europe. The formation of CCNA in 2015 was a strategic step that aimed to enhance Canon’s business within the Africa region - by strengthening Canon’s in-country presence and focus. CCNA also demonstrates Canon’s commitment to operating closer to its customers and meeting their demands in the rapidly evolving African market.
Canon has been represented in the African continent for more than 15 years through distributors and partners that have successfully built a solid customer base in the region. CCNA ensures the provision of high quality, technologically advanced products that meet the requirements of Africa’s rapidly evolving marketplace. With over 100 employees, CCNA manages sales and marketing activities across 44 countries in Africa.
Canon’s corporate philosophy is Kyosei (https://bit.ly/2Zctq6h) – ‘living and working together for the common good’. CCNA pursues sustainable business growth, focusing on reducing its own environmental impact and supporting customers to reduce theirs using Canon’s products, solutions and services. At Canon, we are pioneers, constantly redefining the world of imaging for the greater good. Through our technology and our spirit of innovation, we push the bounds of what is possible – helping us to see our world in ways we never have before. We help bring creativity to life, one image at a time. Because when we can see our world, we can transform it for the better.
For more information: www.Canon-CNA.com.
© Press Release 2021
Disclaimer: The contents of this press release was provided from an external third party provider. This website is not responsible for, and does not control, such external content. This content is provided on an “as is” and “as available” basis and has not been edited in any way. Neither this website nor our affiliates guarantee the accuracy of or endorse the views or opinions expressed in this press release.
The press release is provided for informational purposes only. The content does not provide tax, legal or investment advice or opinion regarding the suitability, value or profitability of any particular security, portfolio or investment strategy. Neither this website nor our affiliates shall be liable for any errors or inaccuracies in the content, or for any actions taken by you in reliance thereon. You expressly agree that your use of the information within this article is at your sole risk.
To the fullest extent permitted by applicable law, this website, its parent company, its subsidiaries, its affiliates and the respective shareholders, directors, officers, employees, agents, advertisers, content providers and licensors will not be liable (jointly or severally) to you for any direct, indirect, consequential, special, incidental, punitive or exemplary damages, including without limitation, lost profits, lost savings and lost revenues, whether in negligence, tort, contract or any other theory of liability, even if the parties have been advised of the possibility or could have foreseen any such damages.