Backups in a Multi Cloud World

Backups. They are a chore, right up until the time you need to get some data restored. Then backups become the greatest thing ever! Backup up data used to be relatively simple. You had data on servers, or sometimes on desktops and laptops, and these were all backed up periodically to tape. The latest tape […]

Identity and Access Management: Protecting Digital Identities

Remote working is suddenly in the news, and high on the agenda of executives and IT teams. One thing that is vital when providing remote access to systems is security. Allowing access to those who should have it, without placing too many onerous hoops for them to navigate, while at the same time ensuring that […]

Working from home in a COVID-19 scenario

Remote working from home or other remote locations has been on a steadily upward trend for the last few years. The tools to allow remote collaboration, with VPN access to file stores and the proliferation of web and mobile apps has driven this trend. Indeed, some businesses today are staffed mainly by remote employees. (See […]

Threat Detection and Response – How to Stay Ahead of Advanced Threats

Cyber Attack methods are continuously evolving, and there is an ongoing ‘arms-race’ between cybercriminals and those tasked with cyber-defence. Attacks often have multiple components at the same time designed to probe for weaknesses in defence across various parts of the IT infrastructure landscape. The human element is also tested via Phishing attempts and other social […]

Staying PSD2 Compliant with QWAC

A new EU directive related to security is due to go into effect in the UK on the 14th of September 2021. It is called the Payment Service Directive 2 (PSD2), and it is focused on the banking and financial technology sectors. As the name suggests PSD2 is the second implementation of EU wide banking […]

Network Access Control

The number of endpoints on IT networks is expanding at an ever-increasing rate. User devices have moved beyond the traditional desktop and laptop to include smartphones, tablets, and wearable devices with network connectivity, such as the Apple Watch. The rapid growth seen for mobile devices over the last decade may now have stalled, but the […]

GDPR One Year On: What Have We Learned?

Saturday the 25th of May marked a year since the EU General Data Protection Regulations (GDPR) came into force in the EU. Most member states have adapted their national data protection laws to be GDPR equivalent (Portugal, Greece, and Slovenia are in the final stages) and the rules governing how data is collected, stored and […]

Secure Email and Accidental Data Leakage

Data breaches are still a threat for all organisations and with the advent of GDPR in the EU, the implications if one occurs go beyond the reputational into the potentially significant financial area. Most of the focus on preventing data breaches is on thwarting attacks from outside, but there is potential for data leakage from […]

The Evolution of Penetration Testing

Penetration Testing, or Pen Testing, is an essential component in any comprehensive network and application security strategy. Each security component is important, but there has been a tendency to see Pen Testing as an afterthought or as a box-ticking exercise for regulatory reasons. Indeed, organisations that gather credit card information need to comply with the […]