Assess Your Risk
The risks that your company’s computerG network faces depends on a variety of factors including the information that you gather, the size of the network and the number of employees with access to your computer network, just to name a few. The first step in protecting your business requires a comprehensive risk assessment to allow you to identify the ways in which you are most vulnerable to online threats.
Working with a computer security expert, a risk assessment will allow you to measure the probability of an array of threats as well as the financial and reputational impact of each. The statistical-based risk assessment will allow you to prioritize your network’s vulnerabilities and identify the solutions that you need to employ.
For some businesses, the threats with the highest risk are those that are most likely to occur. For others, the threats with the highest risk are those that may have a lower probability of occurring but could inflict the most financial and reputational damage. Risk assessments should always be in line with your business strategy.
A variety of online self assessment guides and checklists are available on the InternetG. Some of the most widely used resources are:
- Homeland Security U.S. Computer Emergency Readiness Team (US-CERT) Cyber Security Tips
- NIST Security Guides and Bulletins
- NIST MEP e-scan security assessment tool
- NIST Small Business Corner
- FBI InfraGard Program
- US Secret Service
- Information on threats, vulnerabilities, and protections
- Local cooperative chapters for businesses, academia, law enforcement
- NSA Security Checklists
- Configuration checklists for better securing Windows NT/2000, Routers, Servers, and other components
- Small Business Administration - ProNet
- Information sharing and expertise contacts
