Search
00
GBAF Logo
trophy
Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

Subscribe to our newsletter

Get the latest news and updates from our team.

Global Banking and Finance Review

Global Banking & Finance Review

Company

    GBAF Logo
    • About Us
    • Profile
    • Privacy & Cookie Policy
    • Terms of Use
    • Contact Us
    • Advertising
    • Submit Post
    • Latest News
    • Research Reports
    • Press Release
    • Awards▾
      • About the Awards
      • Awards TimeTable
      • Submit Nominations
      • Testimonials
      • Media Room
      • Award Winners
      • FAQ
    • Magazines▾
      • Global Banking & Finance Review Magazine Issue 79
      • Global Banking & Finance Review Magazine Issue 78
      • Global Banking & Finance Review Magazine Issue 77
      • Global Banking & Finance Review Magazine Issue 76
      • Global Banking & Finance Review Magazine Issue 75
      • Global Banking & Finance Review Magazine Issue 73
      • Global Banking & Finance Review Magazine Issue 71
      • Global Banking & Finance Review Magazine Issue 70
      • Global Banking & Finance Review Magazine Issue 69
      • Global Banking & Finance Review Magazine Issue 66
    Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

    Global Banking & Finance Review® is a leading financial portal and online magazine offering News, Analysis, Opinion, Reviews, Interviews & Videos from the world of Banking, Finance, Business, Trading, Technology, Investing, Brokerage, Foreign Exchange, Tax & Legal, Islamic Finance, Asset & Wealth Management.
    Copyright © 2010-2025 GBAF Publications Ltd - All Rights Reserved.

    Editorial & Advertiser disclosure

    Global Banking and Finance Review is an online platform offering news, analysis, and opinion on the latest trends, developments, and innovations in the banking and finance industry worldwide. The platform covers a diverse range of topics, including banking, insurance, investment, wealth management, fintech, and regulatory issues. The website publishes news, press releases, opinion and advertorials on various financial organizations, products and services which are commissioned from various Companies, Organizations, PR agencies, Bloggers etc. These commissioned articles are commercial in nature. This is not to be considered as financial advice and should be considered only for information purposes. It does not reflect the views or opinion of our website and is not to be considered an endorsement or a recommendation. We cannot guarantee the accuracy or applicability of any information provided with respect to your individual or personal circumstances. Please seek Professional advice from a qualified professional before making any financial decisions. We link to various third-party websites, affiliate sales networks, and to our advertising partners websites. When you view or click on certain links available on our articles, our partners may compensate us for displaying the content to you or make a purchase or fill a form. This will not incur any additional charges to you. To make things simpler for you to identity or distinguish advertised or sponsored articles or links, you may consider all articles or links hosted on our site as a commercial article placement. We will not be responsible for any loss you may suffer as a result of any omission or inaccuracy on the website.

    Home > Business > 5 ways small businesses can improve cybersecurity
    Business

    5 ways small businesses can improve cybersecurity

    5 ways small businesses can improve cybersecurity

    Published by Gbaf News

    Posted on February 13, 2020

    Featured image for article about Business
    Tags:articlesecurity

    By Robert Wright, Head of Sales at Nexor,

    As the number of cyber attacks in the UK increases, small businesses need to be proactive, rather than reactive, in their approach to cyber security.

    Every day, small businesses in the UK fall victim to around 10,000 cyber attacks, and this number is on the rise. Worryingly, a huge 72% of businesses in the UK were defined as cyber security ‘novices’ in the Hiscox Cyber Readiness Report.

    Since the introduction of GDPR, the average loss from a cyber attack is reported to be around £280,434, which is an increase of 61% compared to the previous year. Small businesses will likely take longer to recover from an attack, which is why they must have the correct infrastructure in place. Whilst it is still imperative to be cyber secure, businesses must become cyber resilient, too.

    Robert Wright

    Robert Wright

    Cyber resilience and cyber security are counterparts, not opposites. Although they are similar, cyber security focuses on reducing the chance of an attack occurring, whilst cyber resilience ensures that your business is still operational after an attack, and able to recover.

    As the volume of attacks is so high, experts assume that eventually, at least one hacker attempt will get through your security. Although this may seem pessimistic, we cannot hide from the fact that hackers are becoming more intelligent and can easily identify ‘backdoors’ in our security systems.

    The game of ‘cat and mouse’ is never ending – we may adapt, but hackers will soon find a new way in. Therefore, it is vital that we begin focusing on our cyber resilience strategies, to ensure that business can go on as normal after an attack.

    We have put together our five top tips on how to implement a cyber resilience strategy:

    • Your employees

     Human error is the cause of many IT incidents, especially when the correct training hasn’t been provided for staff members. Everyone within your company should be trained to understand the importance of both cyber resilience and cyber security. The cyber security training should focus on how hackers can gain access to systems and valuable information, what to look out for (e.g. email phishing) and who they should report suspicious activity to within the team. It is also important to implement cyber resilience training, so that staff members understand the processes in the event of an attack. 

    • Run simulations

    Simulate a company-wide security incident at least once per year. Run through the steps your business will take in the event of a breach or attack to see how well your plans work out. Exercise in a Box is an online tool from the NCSC which can help you to test and practise your response to a cyberattack. This will allow you to iron out any kinks in your plans, so when a real life event occurs you won’t be caught off guard.

    • Protect your critical systems

    You should prepare a cyber resilience strategy to protect your critical systems from being affected by a cyber attack. Here are four useful techniques:

    1. Realignment – Understand and manage the connections between critical and non-critical systems, reducing the probability that a non-critical system breach will spread to a critical one.
    2. Access Control – Restrict critical systems access solely to those who need it to do their jobs.
    3. Redundancy – Where possible, have backup critical systems with separate protections in place.
    4. Segmentation – Segmenting your network according to importance and trustworthiness will prevent a breach from affecting your entire system.
    5. Develop an incident response plan

    According to The National Cyber Security Centre, the characteristics of a cyber resilient system can be broken down into four phases. The phases are:

    • Prepare (through preventative security)
    • Absorb (reducing the risk of an incident escalating)
    • Recover (developing and executing an incident response plan)
    • Adapt (not only after an attack but also to the ever-changing landscape)
    • Business leaders should first look at their own internal structures and processes to determine where there could be any weaknesses. From here, there should be a thorough plan for each of the four phases above – this will most likely involve input from a number of teams.

      Review and adapt

    As your business grows, it will naturally develop new ‘weak points’. Therefore, it is crucial that your cybersecurity and cyber resilience governance strategies are reviewed on a regular basis. Previously implemented measures may need refreshing to ensure they remain in line with your legal and regulatory requirements; this will likely require board-level commitment and internal auditing. New weaknesses will also open up as hackers employ more sophisticated attacks to get access to sensitive information.

    Your employees can be the strongest defence, but they must be trained up and informed of any developments if they’re to help detect any potential threats and actively respond to them in order to protect the business.

    Related Posts
    Why Email Deliverability is a Business Risk Your Company Can’t Afford to Ignore
    Why Email Deliverability is a Business Risk Your Company Can’t Afford to Ignore
    Five questions to ask before stepping into Employee Ownership
    Five questions to ask before stepping into Employee Ownership
    Cybersecurity as a Profit Engine: Turning Financial Services Security into Measurable Business Value
    Cybersecurity as a Profit Engine: Turning Financial Services Security into Measurable Business Value
    How Investability Helps Companies Navigate Transformational Times
    How Investability Helps Companies Navigate Transformational Times
    88% of UK and US organisations concerned about state-sponsored cyber attacks as national threat levels surge, IO research reveals
    88% of UK and US organisations concerned about state-sponsored cyber attacks as national threat levels surge, IO research reveals
    One in three SME leaders do not fully understand cash flow, despite 82% facing cash flow problems
    One in three SME leaders do not fully understand cash flow, despite 82% facing cash flow problems
    Inside the Company that Predicted the Remote Work Mega-Trend Before It Became Mainstream
    Inside the Company that Predicted the Remote Work Mega-Trend Before It Became Mainstream
    SEO Consultant Adrian Czarnoleski on How to Increase Business Value Before Exit
    SEO Consultant Adrian Czarnoleski on How to Increase Business Value Before Exit
    No SOC 2, No Deal: Why You’re Already Losing Clients - and What You Can Do About It
    No SOC 2, No Deal: Why You’re Already Losing Clients - and What You Can Do About It
    Jose Tolosa Guides Organizations Forward with Clarity, Purpose, and Integrity
    Jose Tolosa Guides Organizations Forward with Clarity, Purpose, and Integrity
    Reducing Freight Costs to Drive Global Trade Expansion
    Reducing Freight Costs to Drive Global Trade Expansion
    The Psychology of Music in the Modern Workplace
    The Psychology of Music in the Modern Workplace

    Why waste money on news and opinions when you can access them for free?

    Take advantage of our newsletter subscription and stay informed on the go!

    Subscribe

    More from Business

    Explore more articles in the Business category

    Revealed: Low-Cost/No-Cost Marketing Hacks For Results Oriented Businesses

    Revealed: Low-Cost/No-Cost Marketing Hacks For Results Oriented Businesses

    Finance teams still stuck in spreadsheets as manual processes stall digital transformation

    Finance teams still stuck in spreadsheets as manual processes stall digital transformation

    The Future of Remote & Hybrid Leadership: Leading With Data-Driven Foresight

    The Future of Remote & Hybrid Leadership: Leading With Data-Driven Foresight

    2025-2030: The Next Technological Innovations for Business

    2025-2030: The Next Technological Innovations for Business

    The CFO’s New Playbook: 5 Ways AI Is Redefining Finance with Insights from Rishi Oberoi

    The CFO’s New Playbook: 5 Ways AI Is Redefining Finance with Insights from Rishi Oberoi

    Revolutionizing Payments: Secure, Scalable, Sovereign

    Revolutionizing Payments: Secure, Scalable, Sovereign

    Why Trademark Abuse in Paid Search Is a Growing Risk for Financial Institutions

    Why Trademark Abuse in Paid Search Is a Growing Risk for Financial Institutions

    E-commerce Customer Service: Tips

    E-commerce Customer Service: Tips

    When to Automate Your Warehouse: The Tipping Point for Operations Growth

    When to Automate Your Warehouse: The Tipping Point for Operations Growth

    Hurt at Work? 5 Financial Facts You Need to Know

    Hurt at Work? 5 Financial Facts You Need to Know

    Against the Odds: Resilience in Consumer Subsectors Offers Prime Opportunities for Investors

    Against the Odds: Resilience in Consumer Subsectors Offers Prime Opportunities for Investors

    Empower Your Workforce With Financial Wellness This Labor Day

    Empower Your Workforce With Financial Wellness This Labor Day

    View All Business Posts
    Previous Business Post12 ways to improve sustainability in the workplace
    Next Business PostBuilding a sustainable trade strategy in challenging economic conditions