Threatucation Logo
CALL US
302-537-4198
Creating a Culture of Cyber Security in small- to mid-sized organizations
  • Home
  • Services
    • Risk Assessment
    • Security Policies
    • Security Awareness Training
    • Cyber Security Solutions
    • Backups
  • Security Awareness Training
  • Testimonials
  • About
  • Blog
  • Reports
  • Contact

New E-Book! SMB Resolutions for 2021

January 13, 2021 by Eric Magill

New Year Resolutions for SMBs

Small business owners and CEOs face a number of continuing challenges, and even though COVID-19 continues to hamper growth, increasing productivity and efficiency while holding off cyber attacks will continue to be the main issues they must deal with.

For that reason, our sister company, FlexITechs IT Services, has produced a new e-Book, “New Year Resolutions for Businesses”, that addresses the primary areas small businesses should focus on to improve security and securely increase productivity. Included are important measures all SMBs can take in 2021 to enhance their cyber security posture.

For your FREE copy, click this link and submit the form and you’ll also be enrolled in our monthly e-letter that provides advice and tips on a variety of small business IT topics.

Filed Under: Risk Assessments, Security Awareness Training, Security Policies, Social Engineering

Share:

SMBs Not too Small to Hack

January 7, 2021 by Eric Magill

A colossal data breach like the one of Solarwinds should serve as a reminder that small business owners, too, need to keep an eye on their cyber security measures.

While data breaches at small businesses don’t generate those kinds of headlines, they do cause pain in the affected SMBs including not only financial losses but also operational disruption and loss of time and reputation.

In the past year, 35 percent of small businesses who experienced a data breach either closed their doors or filed for bankruptcy,  according to a survey of 1,006 small business owners by the National Cyber Security Alliance.

Additionally, in a 2019 Ponemon Institute study, 66 percent of SMBs said they suffered a cyber attack in the previous year, 69 percent said an attack eluded their intrusion detection system, and 57 percent reported succumbing to Social Engineering attacks like phishing emails.

The fact is, you’re not too small to hack.

Cybercriminals continually tune the efficiency of their mass attacks on small organizations because they handle the same types of sensitive information as large enterprises but don’t have the sophisticated security measures that big companies deploy.

They have also learned to target specific small businesses because of the unique value of their data or because of their relationships with larger companies.

So, the need for SMBs to pay attention to their data’s security has never been greater.

But, just how do you protect your data without breaking your bank account?

In its Q1 2020 Wave Security Awareness and Training Solutions document, titled “Behavior and Culture Reign Supreme over Awareness and Punishment”, Forrester Research determined that the best security awareness training vendors aim to change negative employee behaviors by fostering a culture of cyber security within organizations.

Threatucation’s motto has always been “Creating a Culture of Cyber Security in Small Organizations”. We have long championed this approach over phishing email simulations designed to punish an employee with a bad score for succumbing to a phishing test.

While phishing simulations are part of Threatucation’s Cyber Security Awareness Training program, we really create a culture of Cyber Security with our unique policy-based approach that helps employees understand the reasoning behind the policies, the ramifications of violating them to the company, co-workers, customers and board members, and how to recognize and properly react to cyber attacks.

The whole process takes just 3 steps, starting with a Cyber Security Risk Assessment to ensure the security measures you ultimately choose to protect your business actually match your data security requirements.

For a free, no-obligation Cyber Security Risk Assessment for your business, contact us at info@threatucation.com or 302-537-4198.

Filed Under: Risk Assessments, Security Awareness Training, Security Policies, Social Engineering Tagged With: #cyberattack, #cybersecurity, databreach, smallbusiness

Share:

Data Breaches pose grave threat to SMBs

September 14, 2020 by Eric Magill

One of the most frightening and controversial statistics used in cyber security and cyber insurance advertising regards the impact a data breach has on a small business.

As the narrative goes, 60% of small businesses file for bankruptcy within six months of a breach. That number is often attributed to the National Cyber Security Alliance.

That’s a frightening number for obvious reasons but controversial because the National Cyber Security Alliance says it never stated or reported that figure.

So perhaps in response to the controversy that has embroiled the organization for the past half-dozen years over that claim (google it to see how many times it appears in the search results), the Alliance commissioned a survey of 1,006 small business owners and CEOs to get a better handle on what the actual figure might be.

The results aren’t a whole lot more encouraging.

More than one-third of small businesses responded that they filed for bankruptcy or closed their doors after a successful cyber attack. That’s 25 percent who filed for bankruptcy and 10 percent who went out of business.

That’s certainly not in the 60 percent stratosphere but it should give small business leaders enough pause to ensure that their cyber security measures meet their data handling needs.

In addition, 63 percent of small businesses in a 2019 Ponemon Institute study conducted for Keeper Security said they had suffered a data breach in the previous 12 months. Keep in mind this is just the percentage of small businesses that suffered a data breach, not the actual number that were attacked, which is 100 percent as every SMB receives phishing emails on a regular basis.

I state this often but it bears repeating often — you cannot protect your business with guesses. You must know what risks your specific business faces to make the most cost-effective decisions regarding the cyber security measures you need. The only way to do that is with a Cyber Security Risk Assessment.

If you need help with that, call Threatucation at 302-537-4198. Mention this blog post and we’ll conduct a free, no-obligation Cyber Security Risk Assessment for you.

Filed Under: Risk Assessments, Security Awareness Training, Social Engineering Tagged With: bankruptcy, businessclosings, databreach, nationalcybersecurityalliance, ncsa, smallbusiness

Share:

COVID-19 Unemployment Insurance Fraud

July 12, 2020 by Eric Magill

Never ones to idly stand by while pain, suffering, fear and desperation abound, Cyber criminals have pounced on the opportunites created by COVID-19.

And sure enough, the FBI has reported a spike in fraudulent Unemployment Insurance claims since the onset of the C0ronavirus.

Cyber criminals have exploited the pandemic using their complete toolbox of cyber crime scams, from phishing emails to snail mail letters to phone calls to impersonated and hijacked web sites to Dark Web purchases of the personally identifiable information required to fill out the UI claim forms.

Victims whose PII has been used in UI fraud don’t know until they apply for their own UI benefits and learn that a claim has already been applied for in their name.

The effect on a small business could be an increase in its unemployment insurance tax when its employees’ PII is used to file fraudulent claims.

Employees should be made aware of this scam but also receive security awareness training to spot all forms of scams in general, such as social engineering schemes including phishing emails and fraudulent web sites that are typically used in other types of opportunistic frauds like traumatic man-made or natural events.

More information about this scam can be found on the FBI’s web site.

Filed Under: Security Awareness Training, Social Engineering Tagged With: fbi, fraud, security awareness training, social engineering, unemploymentinsurance

Share:

FOLLOW US

Latest News

  • New E-Book! SMB Resolutions for 2021 January 13, 2021
  • SMBs Not too Small to Hack January 7, 2021
  • Data Breaches pose grave threat to SMBs September 14, 2020
  • COVID-19 Unemployment Insurance Fraud July 12, 2020

Contact Us

Form for requesting a free cyber security risk assessment.

Copyright © 2021 · Threatucation · 12 Osprey Ln, Ocean View, DE 19970