News

How to create an effective cyber security plan

In order to have an effective cybersecurity plan, it is first necessary to know what assets need to be protected, whether tangible or intangible (buildings, computers, software, data, etc.), and then to investigate possible vulnerabilities in order to determine the risks. What is the purpose of the plan? To prevent, avoid or eliminate these risks.

In the first half of last year 2017, many computers around the world were affected by a malware programme called "WannaCryOnce executed on the computers, it encrypted the data in such a way that it prevented the normal execution of the programs. And the users were forced to pay in bitcoin The payment was made and they received the key to decrypt the data and return to normality, if such a situation of abuse could be called that when both individuals and employees received an email pretending to be from a known company and executed an attached programme.

Why were both individuals and companies affected? Because the path they followed until they fell for the scam was easy and simple, since in both cases they had received an email simulating a well-known company in the market and executed an attached programme initiating the process, becoming unstoppable. Could the above situation have been avoided?

Intentional collaboration?

Today, we know that there are many people in the world dedicated to understanding the vulnerabilities of operating systems, whether for large corporations or for security services, even sponsored by countries, which could make it easier for this group to carry out intrusive cyber-attacks on computers. But to this specialisation we have just discussed, we must add the importance of the collaboration, intentional or not, of people who receive or use the email. Some additional questions arise: do all employees need to have access to the internet? can everyone enter or retrieve data by tapping an external hard drive, flash drive or similar? which employees can have open communications? are the passwords that are used secure? If we have computers in our care, do we apply the security policies recommended by software manufacturers? It has been noted and is well known that, even when vulnerabilities are known, many companies do not apply the appropriate policies.

All this leads us to think about how much resources, in time and money, to devote to cyber security and how far to go. These are questions that everyone needs to answer in one way or another. Finally, to prevent cybersecurity from being seen as an activity that impedes the daily development of any business and to see it as an ally that allows us to work safely, even if we have to follow certain processes and procedures, we must have an appropriate communication policy.


Manuel García Ramírez
Director at MGR IT and Security Consultants

The elections, part one

Our brains are not built for us, they come from a series of conserved adaptive successes, modules, parts, systems that come from way back in evolution, which explains why we are the way we are. What's more, the structure of our brain is common to all animals that have vertebrates.....

Eduardo Rodríguez Rovira -- A stubborn vaccination

Discouragement sets in when we see that not only are we the developed country with the highest number of deaths per inhabitant due to Covid-19, with the highest rates of economic destruction, the highest unemployment rate and the biggest stock market crash during 2020, but that at the beginning of...

Formula 1 and its communication shortcomings

In these turbulent times we are living through with the closure of stadiums, circuits, pavilions, the postponement or cancellation of major sporting events such as MotoGP and F1 World Cup races, or the postponement or possible cancellation of sports leagues, Eurocups or even Olympic Games, it is time to make a...

Carmen García -- Towards a new model of work and life

On 3 March I took part in an event at Deusto Business School (still in person) invited by Madrid Foro Empresarial during Women's Week, and I focused a large part of my talk on the difficulties of teleworking in Spain. On 9 March, during the celebration of Women's Day, I...

Leticia Espinosa de los Monteros -- "Communication is essential".

Lucía Casanueva, managing partner of PROA, interviews Leticia Espinosa de los Monteros, founder and director of Círculo Orellana. In addition to highlighting the importance of communication for the development of the activities of a non-profit association, she also explains how they have promoted female talent in the development of the...

Luis J. García-Torremocha -- "Communication is key in a company".

Luis J. García-Torremocha, CEO of Movilex Recycling Group, has participated in a new PROA video. In relation to the importance he gives to communication and reputation management in his company, he has highlighted the role it plays, assuring that it is a key element. In addition, he has...

More conversations, more ideas, more PROA.
Follow us on our networks.

Receive ideas with criteria

Every week we share reflections, trends and the key aspects of about reputation, strategic communication, public affairs and innovation. Content designed for professionals who value information with diligence and perspective.