官术网_书友最值得收藏!

Summary

So far, we discussed why infrastructure is an absolute requirement for today's internet world and what this means for system admins and internet users. We also learned how to build secure IT infrastructure and policy frameworks to protect information.

One of the major weaknesses in information security today is the human element. The everyday behavior of employees and end users represents one of the greatest risks to organizations and customers. IT technology is evolving faster than ever before. We are seeing new security controls, policies, and best practices put in place within organizations, but every day security breaches continue to take place. Nobody is 100% protected from small to large organizations. It only takes a simple mistake from an uneducated end user to leave a back door open in your information security. Organizations need to be aware of the people they work with, within the organization and outside as well. Developing adequate training and security frameworks for employee and end users becomes very important for protecting systems, especially considering the fact that it's not just technology which plays an important role, but also its users. I again repeat: if you have internet enabled devices, it is also your responsibility to secure them.

In 2017, Ransomware such as WannaCry, NotPetya, and Bad Rabbit have demonstrated the dangers of this threat and the potential impact on almost any industry. In 2018, it is predicted that IOT will be a big target for attackers in upcoming years, as well as Cloud infrastructures, Artificial Intelligence (AI), and of course the rise of mobile attackers increases daily.

In our next chapter we will discuss how to design secure infrastructure, keeping common risk factors in mind. This starts with placement of firewall and DDoS protection techniques.

Here is a famous quote to keep in mind:

“If you spend more on coffee than on IT security, you will be hacked. What's more, you deserve to be hacked”
― Richard Clarke

主站蜘蛛池模板: 惠安县| 临沧市| 佛冈县| 通城县| 高阳县| 彰武县| 佛山市| 甘孜| 寻乌县| 六盘水市| 大庆市| 安康市| 灵川县| 余姚市| 垣曲县| 宁化县| 集贤县| 交城县| 依兰县| 龙江县| 张北县| 湟中县| 青田县| 额尔古纳市| 那坡县| 海城市| 交城县| 永吉县| 淮南市| 安丘市| 曲沃县| 紫阳县| 津南区| 芦山县| 会理县| 精河县| 沁水县| 方城县| 乐东| 延寿县| 南城县|