官术网_书友最值得收藏!

Security mitigation

For the significance of Windows 10's security focus, one simply needs to look at the news. It seems every day that another story emerges of a company or organization that has had ransomware installed and then been blackmailed into paying for an encryption key to regain access to their own data. A review of the work needed to protect from these types of attacks is worth the time.

One company, Third Tier, even has a kit they offer to help prevent this sort of intrusion on your network. From the Third Tier ransomware prevention kit site, http://www.thirdtier.net/ransomware-prevention-kit/, you can see that the package makes many modifications and recommendations, including group policies, WMI filtering, software restriction policies, blocking of known attack vectors, backups, recovery methods, and even training materials to teach users to be more security aware.

Even if you choose not to use it, it is a great checklist of have I thought of... when it comes to risk mitigation. In an age where antivirus products cannot protect against everything, especially social engineering attacks on end users, it behooves administrators to protect users from themselves in the best interest of the company.

Additionally, software products working in tandem with antivirus solutions, such as data loss prevention (DLP) software or even intrusion detection software/systems (IDS) can be used to protect organizations and their data from accidental or even intentional theft by third parties or rogue employees. The typical goal of an organization is to prevent their data from ending up on Wikileaks, so any steps that can be taken toward that end are a good target for the enterprise administrator.

While prevention is all well and good, what about the aftermath of a detected intrusion? Are you prepared for that scenario? More so, is your security team prepared? Forensics tools, Windows log configuration, and subsequent auditing can go a long way toward answering the questions of what happened, how it happened, and what we lost.

With Windows 10, suffice it to say that Microsoft has made many improvements on preventing attacks from occurring. These are discussed in depth in Chapter 8, Windows 10 Security.

主站蜘蛛池模板: 福安市| 肇源县| 武威市| 鲁甸县| 库伦旗| 新宁县| 永胜县| 普宁市| 横山县| 龙里县| 蒲江县| 金沙县| 奎屯市| 威信县| 临澧县| 东明县| 南安市| 休宁县| 杨浦区| 西青区| 汾西县| 台北市| 保康县| 嘉善县| 黄大仙区| 巴彦县| 洛南县| 鱼台县| 蒙城县| 家居| 碌曲县| 岳阳县| 女性| 潢川县| 永昌县| 乌兰察布市| 屏东县| 吉林省| 峨眉山市| 娄烦县| 荔波县|