Saudi Arabia, Cyprus agree visa exemption for holders of diplomatic and special passports    Saudi Arabia marks 8th anniversary of Vision 2030, showcasing monumental progress and strategic achievements    Lt. Gen. Al-Bassami: 28 Public Security units in Saudi Arabia to exchange information on human trafficking    MWL session affirms global Islamic unity, tackles challenges    Al-Ahsa Airport to double capacity to accommodate 100 million passengers a year    L'Oréal dermatology conference emphasizes sustainability in Riyadh edition    Saudi internet penetration hits 99% while online shopping jumps to 63.7% in 2023    Biden keeps needling Trump as he walks a tightrope over his rival's trial    Ukraine uses longer-range US missiles for first time    At least 32 dead as flash floods sweep through half of Kenya    Russia vetoes US-backed UN resolution to ban nuclear weapons in space    Riyadh Season announces first overseas event with boxing gala in Los Angeles    Riyadh to host Saudi-UK expo "GREAT FUTURES" in May    Belgian man whose body produces alcohol in rare condition acquitted of drunk driving    Al Hilal's comeback effort falls short in AFC Champions League semi-finals    Australian police launch manhunt for Home and Away star Orpheus Pledger    Spice Girls reunite at Posh's 50th birthday    Swedish rider Eckermann wins 2024 Show Jumping World Cup in Riyadh    Aspiring fencer Josh Brayden aims for Olympic glory    Revenues touch SR3.7 billion in Saudi cinema sector since 2018    JK Rowling in 'arrest me' challenge over hate crime law    Trump's Bible endorsement raises concern in Christian religious circles    Hollywood icon Will Smith shares his profound admiration for Holy Qur'an    We have celebrated Founding Day for three years - but it has been with us for 300    Exotic Taif Roses Simulation Performed at Taif Rose Festival    Asian shares mixed Tuesday    Weather Forecast for Tuesday    Saudi Tourism Authority Participates in Arabian Travel Market Exhibition in Dubai    Minister of Industry Announces 50 Investment Opportunities Worth over SAR 96 Billion in Machinery, Equipment Sector    HRH Crown Prince Offers Condolences to Crown Prince of Kuwait on Death of Sheikh Fawaz Salman Abdullah Al-Ali Al-Malek Al-Sabah    HRH Crown Prince Congratulates Santiago Peña on Winning Presidential Election in Paraguay    SDAIA Launches 1st Phase of 'Elevate Program' to Train 1,000 Women on Data, AI    41 Saudi Citizens and 171 Others from Brotherly and Friendly Countries Arrive in Saudi Arabia from Sudan    Saudi Arabia Hosts 1st Meeting of Arab Authorities Controlling Medicines    General Directorate of Narcotics Control Foils Attempt to Smuggle over 5 Million Amphetamine Pills    NAVI Javelins Crowned as Champions of Women's Counter-Strike: Global Offensive (CS:GO) Competitions    Saudi Karate Team Wins Four Medals in World Youth League Championship    Third Edition of FIFA Forward Program Kicks off in Riyadh    Evacuated from Sudan, 187 Nationals from Several Countries Arrive in Jeddah    SPA Documents Thajjud Prayer at Prophet's Mosque in Madinah    SFDA Recommends to Test Blood Sugar at Home Two or Three Hours after Meals    SFDA Offers Various Recommendations for Safe Food Frying    SFDA Provides Five Tips for Using Home Blood Pressure Monitor    SFDA: Instant Soup Contains Large Amounts of Salt    Mawani: New shipping service to connect Jubail Commercial Port to 11 global ports    Custodian of the Two Holy Mosques Delivers Speech to Pilgrims, Citizens, Residents and Muslims around the World    Sheikh Al-Issa in Arafah's Sermon: Allaah Blessed You by Making It Easy for You to Carry out This Obligation. Thus, Ensure Following the Guidance of Your Prophet    Custodian of the Two Holy Mosques addresses citizens and all Muslims on the occasion of the Holy month of Ramadan    







Thank you for reporting!
This image will be automatically disabled when it gets reported by several people.



Three factors you need to address to keep your remote teams cybersecure
Published in The Saudi Gazette on 26 - 04 - 2020

As employees across the Middle East join the world of remote working in response to the current pandemic, companies are having to urgently implement policies and processes to keep their teams cybersecure.
Countries in the Middle East have now implemented strict lockdowns to curb the spread of COVID-19, with most only allowing people to leave their houses with permission. If organisations didn't already have work from home policies in place, they've quickly had to implement them if they wanted any business continuity.
There is a general escalation in cybercriminals' activity during times of heightened disruption. Already, malicious actors are spreading disinformation with the sole purpose of creating panic. Once panic settles in, rational thought goes out the window. And that creates gaps that cybercriminals exploit.
Suddenly, there's an increase in false specials and sales for in-demand products like face masks, hand sanitiser and protective gloves that are being promoted online. The Mimecast Threat Intelligence Centre has seen a large number of malicious emails impersonating trusted brands like the World Health Organization and the Centres of Disease Control.
Additionally, the Mimecast Brand Exploit Team found 59,700 spoofed coronavirus related websites in just two weeks. Even one mis-click on a link could initiate malware and put the user — and the organization — at risk.
A combination of self-isolation and heightened tension also puts strain on people's psyche which can lead to irrational or sometimes careless actions. People are desperate to find out more about the crisis and are letting their guards down, clicking on just about anything sent to them. When your entire workforce is working remotely, any careless action could have ripple effects across the organisation as security becomes vulnerable.
Companies need to ensure they are looking after the cybersecurity of their remote teams, so those teams look after the cybersecurity of the company. Three factors should inform company policies and processes as they prepare for a swelling remote workforce:
Factor 1: Web Security
Despite a growing tendency among professionals to work remotely, very few companies have built policies to ensure web security maintains the same standards at the employee's home as at the office. Home routers with default or easy-to-guess passwords could open the employee — and the company — up to compromise.
Connected devices - smart TVs, home automation, baby monitors and other devices that are connected to home networks — all offer potential entry points for cybercriminals. Employees should be required to change all default passwords and ensure all security software is up to date. In addition, now more than ever, organisations need to have an easy to deploy and manage service that keeps the web safe and consistently secures employees even when they're off the company network.
The web is used in 91% of malware attacks and is the second-most commonly used vector for cyberattacks. It's also the top distraction for employees, especially right now as communication channels are flooded with links about COVID-19, that may or may not be legitimate.
Factor 2: Awareness Training
Remote working means you are now sitting with a distributed workforce, and each employee is potentially an entry point into the organisation's processes and data. Employees are the last line of defense against cyberattacks. One IBM study found that human error was a factor in more than 90% of security breaches.
Companies should conduct regular and effective cybersecurity awareness training, giving employees adequate and up-to-date information about how to identify and avoid risky behavior. Alarmingly, only a third of UAE companies in Mimecast's 2019 State of Email Security report offered regular awareness training.
As more COVID-19 themed malicious emails make their way into employees' mailboxes, user awareness is going to be vital. Just last week our Threat Intelligence Centre spotted a phishing scam hitting thousands of mailboxes that claimed to be an airline offering immediate refunds to travellers. The link takes users to a refund page that then asks them to enter their credentials.
Travel restrictions and difficulties in obtaining refunds have been widely reported in the media. For those facing financial issues, the prospect of an immediate refund is very appealing, and they may be more likely to fall for the scam. With attacks like this doing the rounds, the cost of human error escalates, so organisations need to take steps to adequately prepare employees to spot these threats.
Factor 3: Impersonation attacks
The threat of impersonation attacks is heightened during extended periods of remote work. It's now much harder to walk over to the financial director's desk and confirm a payment to a supplier. Even before governments ordered lockdowns and forced every employee to work remotely, impersonation fraud was a major issue: three quarters of UAE companies reported an increase in impersonation in Mimecast's 2019 report.
Companies need to implement appropriate policies to ensure payment processes and other tasks involving money are not compromised. Tools that extend beyond the company's security perimeter, such as DMARC, can help companies identify when their brand is being abused by impersonators seeking to exploit customers, employees and partners. However, only half of UAE organizations reported using DMARC in 2019.
— The writer is cybersecurity specialist at Mimecast


Clic here to read the story from its source.