News

How to create an effective cyber security plan

In order to have an effective cybersecurity plan, it is first necessary to know what assets need to be protected, whether tangible or intangible (buildings, computers, software, data, etc.), and then to investigate possible vulnerabilities in order to determine the risks. What is the purpose of the plan? To prevent, avoid or eliminate these risks.

In the first half of last year 2017, many computers around the world were affected by a malware programme called "WannaCryOnce executed on the computers, it encrypted the data in such a way that it prevented the normal execution of the programs. And the users were forced to pay in bitcoin The payment was made and they received the key to decrypt the data and return to normality, if such a situation of abuse could be called that when both individuals and employees received an email pretending to be from a known company and executed an attached programme.

Why were both individuals and companies affected? Because the path they followed until they fell for the scam was easy and simple, since in both cases they had received an email simulating a well-known company in the market and executed an attached programme initiating the process, becoming unstoppable. Could the above situation have been avoided?

Intentional collaboration?

Today, we know that there are many people in the world dedicated to understanding the vulnerabilities of operating systems, whether for large corporations or for security services, even sponsored by countries, which could make it easier for this group to carry out intrusive cyber-attacks on computers. But to this specialisation we have just discussed, we must add the importance of the collaboration, intentional or not, of people who receive or use the email. Some additional questions arise: do all employees need to have access to the internet? can everyone enter or retrieve data by tapping an external hard drive, flash drive or similar? which employees can have open communications? are the passwords that are used secure? If we have computers in our care, do we apply the security policies recommended by software manufacturers? It has been noted and is well known that, even when vulnerabilities are known, many companies do not apply the appropriate policies.

All this leads us to think about how much resources, in time and money, to devote to cyber security and how far to go. These are questions that everyone needs to answer in one way or another. Finally, to prevent cybersecurity from being seen as an activity that impedes the daily development of any business and to see it as an ally that allows us to work safely, even if we have to follow certain processes and procedures, we must have an appropriate communication policy.


Manuel García Ramírez
Director at MGR IT and Security Consultants

Communication strategy for the epidemic: information by flood

Information crisis management is a compulsory subject with a wealth of literature and many case studies. One of the golden rules of crisis communication is that it must contribute to success and not put sticks in the wheel, not become an additional problem. Like the good referee in a disputed...

"Cinema has always adapted to change".

Jerónimo José Martín, critic for COPE, TRECE TV, Fila 7, Aceprensa and president of the Círculo de Escritores Cinematográficos (CEC), has participated in a new video by PROA Comunicación. As well as giving his views on what influence the coronavirus crisis will have on the film industry, he also gives his opinion on the aid...

Private equity, an increasingly solid alternative to traditional investments

Private equity funds are emerging as an increasingly solid and credible alternative for investors seeking attractive returns with lower risk. This is one of the conclusions of a recent event held in Madrid, which looked at the current outlook for the sector and the prospects for...

How to communicate in a VUCA environment

How do we categorise VUCA environments? They are spaces dominated by four basic characteristics: volatility, uncertainty, complexity and ambiguity. These four terms, originally from the English expression, mark the business communication activites that we have today to develop professional communication. This communicaction is sometimes surprising due the speed of its...

José Antonio R. Piedrabuena -- Against the belief in neural networks

They should stop discrediting real neurons, because the brain does not only work thanks to them, and change the name of neural networks. I don't think they can be considered to be the model of any 'neural network', beyond the pure appearance and opportunistic use of the name....

José Antonio R. Piedrabuena -- Not just vaccines. We depend on our immune system

We already have more data on why physical exercise lengthens life, rejuvenates the body and leaves us better protected against many diseases. Since we are born, a process of replacement of cells that have finished their useful life begins, through the production of new ones from stem cells, which, by...

More conversations, more ideas, more PROA.
Follow us on our networks.

Receive ideas with criteria

Every week we share reflections, trends and the key aspects of about reputation, strategic communication, public affairs and innovation. Content designed for professionals who value information with diligence and perspective.