官术网_书友最值得收藏!

Security mitigation

For the significance of Windows 10's security focus, one simply needs to look at the news. It seems every day that another story emerges of a company or organization that has had ransomware installed and then been blackmailed into paying for an encryption key to regain access to their own data. A review of the work needed to protect from these types of attacks is worth the time.

One company, Third Tier, even has a kit they offer to help prevent this sort of intrusion on your network. From the Third Tier ransomware prevention kit site, http://www.thirdtier.net/ransomware-prevention-kit/, you can see that the package makes many modifications and recommendations, including group policies, WMI filtering, software restriction policies, blocking of known attack vectors, backups, recovery methods, and even training materials to teach users to be more security aware.

Even if you choose not to use it, it is a great checklist of have I thought of... when it comes to risk mitigation. In an age where antivirus products cannot protect against everything, especially social engineering attacks on end users, it behooves administrators to protect users from themselves in the best interest of the company.

Additionally, software products working in tandem with antivirus solutions, such as data loss prevention (DLP) software or even intrusion detection software/systems (IDS) can be used to protect organizations and their data from accidental or even intentional theft by third parties or rogue employees. The typical goal of an organization is to prevent their data from ending up on Wikileaks, so any steps that can be taken toward that end are a good target for the enterprise administrator.

While prevention is all well and good, what about the aftermath of a detected intrusion? Are you prepared for that scenario? More so, is your security team prepared? Forensics tools, Windows log configuration, and subsequent auditing can go a long way toward answering the questions of what happened, how it happened, and what we lost.

With Windows 10, suffice it to say that Microsoft has made many improvements on preventing attacks from occurring. These are discussed in depth in Chapter 8, Windows 10 Security.

主站蜘蛛池模板: 绵竹市| 永胜县| 苗栗县| 永靖县| 屯昌县| 新密市| 武安市| 屯门区| 尉氏县| 阳朔县| 左贡县| 巴林左旗| 承德市| 桂平市| 施甸县| 关岭| 永嘉县| 津南区| 乐安县| 会宁县| 林口县| 湖口县| 大关县| 东安县| 梓潼县| 墨脱县| 太湖县| 宜州市| 苍梧县| 南陵县| 图们市| 南开区| 比如县| 韶山市| 崇明县| 肃北| 双桥区| 株洲市| 五原县| 禄劝| 永福县|