Actualidad

This is how an effective cybersecurity plan is developed

In order to have an effective cybersecurity plan, first of all one must know what assets need to be protected, whether they are tangible or intangible (buildings, computers, programs, data…). Once known, one must investigate the possible vulnerabilities in order to determine the risks. What is the purpose of the plan? To prevent, avoid or eliminate those risks.

In the first half of 2017, many computers around the world were affected by a harmful program called «WannaCry«, which once executed on the computers encrypted the data in such a way that it prevented the normal execution of the programs. And users were forced to pay in bitcoin at a hidden network address. Once the payment was made, they received the key to decode the data, and were able to return to normal, if such an abusive situation could be called that, when both individuals and employees received an email simulating a known company and ran an attachment.

Why were both individuals and companies affected? Because the course they followed until they fell into the trap was easy and simple, since in both cases they had received an email simulating a company known in the market and they executed an attached program starting the process, becoming unstoppable. Could the previous situation have been avoided?

Collaboration, intentional?

Nowadays, we know that there are many people in the world dedicated to understanding the vulnerabilities of operating systems, whether for large corporations or for security services, even sponsored by countries, which could make it easier for this group to carry out intrusive cyber-attacks on computers. But to this specialization we must add how important is the collaboration, intentional or not, of people who receive or use emails. Some additional questions arise: does everyone need to have access to the internet? can everyone enter or extract data by clicking on an external hard drive, (pendrive) or similar? which employees can have open communications? are the access keys used secure? If we have equipment in our charge, do we apply the security policies that software manufacturers recommend? It has been observed, and it is well known, that even though the vulnerability is known, many companies do not apply the appropriate policies.

All this leads us to think about how many resources, in time and money, should be devoted to cybersecurity and how far to go. Questions that everyone has to answer in one way or another. Finally, in order to avoid cyber security being taken as an activity that prevents the daily development of any business and to live it as an ally that allows working in a safe way, even if certain processes and procedures have to be followed, we must have a proper communication policy.


Manuel García Ramírez
MGR Consultants IT y Security Manager

El pin parental según el Dr. Rodríguez Piedrabuena

«La paternidad es un concepto biológico», reflexiona el Dr. Rodríguez Piedrabuena, especialista en psiquiatría y psicoanálisis, en un nuevo vídeo de PROA Comunicación. «El concepto tiene poco que ver con las teorías políticas sobre la infancia», sentencia. 

...

José Antonio R. Piedrabuena —— La lucha contra los efectos estresantes de la pandemia

Es habitual gastarse mucho dinero en tratamientos anti-edad, pero lo cierto es que el único científicamente probado es el ejercicio. He visto algunas personas después de seis meses y las he encontrado envejecidas debido a la falta de ejercicio. El ejercicio tiene muchos efectos beneficiosos sobre la salud del cerebro,...

Gobiernos de papel

No sé vosotros, pero tengo la sensación de estar atrapada dentro de la serie «La casa de papel», donde el objetivo es ganar tiempo como sea para seguir imprimiendo billetes. Nuestros gobiernos de papel nos marean sin compasión para seguir fabricando votos. Debimos saberlo el día que EEUU eligió presidente...

Yago de la Cierva —— «Without good communication during a crisis, the problem is not solved»

Yago de la Cierva, director of crisis communication at PROA, explains in this new video the importance of having a strategic plan in crisis communication prepared ex ante, highlighting the important role of an external agent, such as consulting firms for its better implementation. This text may be reproduced provided...

Ángel Expósito adelanta en COPE ideas clave del Observatorio PROA Comunicación de Defensa

El periodista Ángel Expósito, al frente del programa informativo La Linterna de la cadena COPE, adelantó en su emisión de anoche, realizada desde Kiev (Ucrania), algunas ideas clave del Observatorio de Defensa PROA Comunicación que tiene lugar este jueves en nuestra sede de Madrid.   Expósito entrevistó a uno de...

Why it is Important to Learn how to Debate

Marco Bolognini, founding partner of Maio Legal, highlights the importance of debate skills and the need for countries like Spain or Italy to reinforce their practice in the education system. In addition, he details why the skills that that he learned are important due to the level of debate in...

Más conversaciones, más ideas, más PROA.
Síguenos en nuestras redes.

Recibe ideas con criterio

Cada semana compartimos reflexiones, tendencias y claves sobre reputación, comunicación estratégica, asuntos públicos e innovación. Contenido pensado para profesionales que valoran la información con rigor y perspectiva.