{"id":11902,"date":"2017-05-10T09:37:00","date_gmt":"2017-05-10T07:37:00","guid":{"rendered":"http:\/\/www.intelligentcio.com\/africa\/?p=11902"},"modified":"2017-05-10T09:37:00","modified_gmt":"2017-05-10T07:37:00","slug":"digital-resilience-a-better-way-to-cybersecurity","status":"publish","type":"post","link":"https:\/\/www.intelligentcio.com\/africa\/2017\/05\/10\/digital-resilience-a-better-way-to-cybersecurity\/","title":{"rendered":"Digital resilience: a better way to cybersecurity"},"content":{"rendered":"<p>Who says prevention is better than cure? Since the advent of networks and hacking, prevention, coupled with detection, has been the primary cyber strategy to counter cyberattacks. But, with the exponential increase in the pace and complexity of digital connections and sophistication of the attackers, this approach is falling short, as the recent Shamoon attacks in KSA so clearly demonstrated.<\/p>\n<p>Clearly, we need more and better prevention. But, here\u2019s the cold, hard truth: it\u2019s not a question of if your organisation will suffer a security breach but when \u2013 no matter how good your prevention is. Cyberattacks are now so advanced that, should a hacker\u2019s attention turn to your company, the attack will almost certainly succeed in getting inside your network. Your mission should be to shut the attacker down \u2013 and fast.<\/p>\n<p>You must be able to keep operating and stay productive even while fending off a cyberattack or fixing a vulnerability. A new cyber operating strategy is needed. This new strategy is called resilience, and more specifically \u2013 digital resilience. Digital resilience, coupled with world-class prevention, is your best defence.  <\/p>\n<p>An attack doesn\u2019t have to equal disaster. To minimise harm and loss, your organisation must be able to operate through impairment and rebound quickly. I\u2019ll say it again: your organisation must have resilience as part of your cyber strategy. To make this happen, you must be able to accurately measure and manage your organisation\u2019s digital resilience. This is now a crucial line in any effective cyber defence strategy. How do you measure it? You start with knowing your network and providing understandable metrics to the executive leadership.<\/p>\n<p><strong>Network liabilities: people, places, things<\/strong><br \/>\nNetworks evolve. They were built over decades by different people to achieve different goals, and they are continuing to be built, even faster than ever. But people move on, they change jobs and this means most companies do not possess a complete and accurate blueprint of their network. Even if those people are still around, the reasons behind a particular design ten years ago may no longer apply, yet that design is likely still to be in the network. Rarely is there complete or accurate documentation that shows the true blueprint, design and infrastructure of a network. The result is that these networks are very often fragile, fraught with design flaws and while they were built with the best intentions by good people, they frequently contain devices with unpatched software, weak or default passwords or misconfigurations. The first step in addressing digital resilience is for every organisation to truly understand its network \u2013 in its entirety \u2013 starting with finding all the undocumented assets and understanding how it all works as a system. It is &#8216;the unknown&#8217; that keeps the CISO up at night.<\/p>\n<p><strong>Leadership liability: lack of visibility<\/strong><br \/>\nWe have to get smarter. We can be smarter. We have to realise that cybersecurity is not a tactical aspect of business \u2013 it is a critical strategic function that starts at the top of the business. And as such, it must be understood at the board level. Yes, C-suite and board members may not be equipped to understand all the technicalities of cybersecurity. That\u2019s not their job. But they should at least be able to understand a measurement of their organisation\u2019s digital resilience and understand what the measurement tells them. If done properly, it will tell them how and where to invest, how to make decisions through an impediment, how to make decisions about which assets to protect first, how to respond, how to recover and how to reduce the impact of loss. Measurement also provides a means to discuss cyber investments. A simple question like \u201cif I spend $X, what might be my expected benefit in terms of resilience or security capability?\u201d Measuring this capability provides the board with a starting point to have this important conversation in an informed, intelligent manner.<\/p>\n<p>Right now, the kind of overview data available to most executives looks something like the following. The IT department reports that it received 1,000 IDS alerts in the preceding 24-hour period. Maybe it pushed out 200 antivirus signatures in the same period. Or perhaps it implemented 50 device patches across the enterprise with 5,000 devices in the past week. But such a report does not say if the network is at more or less risk based on these activities, or if it is better after their work compared to before. It does not indicate overall risk. In reality, the only knowledge you can draw from such a report is how busy the security team is. That\u2019s a useful number for staffing and budgeting but it provides zero insight to the network\u2019s resilience in the face of an attack.<\/p>\n<p>The benefits of preparing for a cyberattack extend well beyond the company walls. Digital transformation, in the modern world, has made sure that virtually all companies these days are connected. And, given this connectivity, attention must be paid to the fact that a cyberattack can initiate from a company\u2019s own supply chain. Once organisations understand the value of being able to measure and manage their digital resilience, they can demand the same level of insight and accountability from their supply chain \u2013 containing their partners, their customers and their suppliers. Ideally, this connected resilience will soon form a new line of cyber defence.<\/p>\n<p>The Dutch Renaissance scholar Erasmus of Rotterdam coined the adage &#8216;prevention is better than cure&#8217; back in the 16th century. But the only network Erasmus dealt with was the network of roads and canals around his city. In the modern cyber world, his slogan doesn\u2019t hold water. But we\u2019re not here to diss on Erasmus. In fact, we embrace another of his famous adages: &#8216;give light and the darkness will disappear of itself&#8217;. In today\u2019s cyber work, this light is in the form of knowing the network and operating with a strategy of digital resilience.     \t<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Who says prevention is better than cure? Since the advent of networks and hacking, prevention, coupled with detection, has been the primary cyber strategy to counter cyberattacks. But, with the exponential increase in the pace and complexity of digital connections and sophistication of the attackers, this approach is falling short, as the recent Shamoon attacks [&hellip;]<\/p>\n","protected":false},"author":23,"featured_media":11903,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[5,328,136,399],"tags":[387,388,2569,2299,2570],"class_list":["post-11902","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-enterprise-security","category-features","category-industry-expert","category-more-news","tag-cyberattack","tag-cybersecurity","tag-digital-resilience","tag-digital-strategy","tag-redseal"],"acf":[],"publishpress_future_workflow_manual_trigger":{"enabledWorkflows":[]},"_links":{"self":[{"href":"https:\/\/www.intelligentcio.com\/africa\/wp-json\/wp\/v2\/posts\/11902","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.intelligentcio.com\/africa\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.intelligentcio.com\/africa\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/africa\/wp-json\/wp\/v2\/users\/23"}],"replies":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/africa\/wp-json\/wp\/v2\/comments?post=11902"}],"version-history":[{"count":0,"href":"https:\/\/www.intelligentcio.com\/africa\/wp-json\/wp\/v2\/posts\/11902\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/africa\/wp-json\/wp\/v2\/media\/11903"}],"wp:attachment":[{"href":"https:\/\/www.intelligentcio.com\/africa\/wp-json\/wp\/v2\/media?parent=11902"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/africa\/wp-json\/wp\/v2\/categories?post=11902"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/africa\/wp-json\/wp\/v2\/tags?post=11902"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}