Skip to content

        • Connectivity
        • Connectivity solutions ranging from basic broadband connections, through to fully managed, innovative SD-WAN solutions providing an always-on, dynamic connection that will automatically select the best path for your network traffic.

        • Unified Comms
        • With a pedigree in fixed and mobile communications, cloud voice, and cloud-based Productivity tools, Timico’s unified and converged services enables your end-users to work and collaborate more effectively, where when and how they need.

        • Cloud & Hosting
        • Our leading edge cloud and data centre services range from simple Hosting and Data Protection right through to complex hybrid cloud deployments and Public Cloud solutions utilising Microsoft Azure, enabling you to focus on what you do best.

        • IT Managed Services
        • We deliver IT managed services so you can focus your resources on creating client value. Our capability extends from the end-user device right through to the Public Cloud, offering a single point of contact for all IT services and support.

        • Security
        • No matter what level of protection your business needs, we've got 1st class security management and applications at the ready - our job is to keep your business safe from unwanted threats and attacks.

        • Retail
        • Helping retailers increase lifetime value and enhance customer experience by supporting an omnichannel strategy.

        • Leisure & Hospitality
        • Helping leisure & hospitality brands and operators to increase brand loyalty and enhance guest experience digitalisation.

        • Professional Services
        • Helping professional services firms to create client value and capture long term advantage, by enabling their digitalisation and increasing return on talent.

        • Not For Profit
        • Enabling Not for Profit organisations to increase their impact by embracing technology to create additional value, drive digital transformation and efficiencies.

        • Don't see your industry here?

          We work with many business sectors, so if you would like to find out where there is space for change in your business, book a free roadmap consultation with one of our experts today.

          Book in today
        • Strategic Partnerships
        • We have excellent relationships with a series of strategic partners that enable us to provide you with a comprehensive range of business-enabling solutions.

        • Our Commitments
        • We have grown rapidly over the past 14 years, and so has our commitment to implement and improve support for our colleagues, customers and our local community.

        • Compliance and Security
        • Security and compliance are important factors of managed services, that are absolutely essential to the security and integrity of your business.

        • Meet the Team
        • We have built a world class executive team that use their extensive experience across all sectors to inspire our team to drive the growth and success of our business.

  • Blog
  • Support
  • Log-in

BLOG

Keep Your Users and Data Cyber Secure this Winter

Keep your Users and Data Cyber Secure this Winter

The holidays are a time to put your feet up and relax. However, it is also an opportune time for cyber-attacks; especially when you are working remotely. As we explore below, many security habits go out the window faster than your Dry January attempt, leaving your company at risk. It’s worth noting that 80% of attacks occur from internal activity, so it’s vital that staff have received security awareness training.

Luckily, there are ways to reduce this threat, so, you can happily sit back and enjoy the holidays, knowing your business is safe and secure. Here are some tips to stay cyber-safe these holidays:

cyber security over the holidays managed disaster recovery IT solutions provider

  1. Public Wi-Fi

With lots of people travelling over the holiday period, one area that becomes a weakness is where colleagues choose to connect from. Often staff will work at any free Wi-Fi spots they can find, including hotels, cafes, supermarkets and shops.

Nearly one third of employees (31%) use free Wi-Fi hotspots, and nearly a quarter (24%) use them for work-related emails and documents. However, the use of rogue Wi-Fi in public areas, mimicking legitimate Wi-Fi is increasing and pose a significant risk to data and privacy.

If you are travelling over the holiday period and working, never leave your devices unattended. If you need to leave your computer, phone, or tablet for any length of time—no matter how short—lock it up so no one can use it while you’re away. If you keep sensitive information on a USB or external hard drive, make sure it is encrypted and lock it up as well.

Employees should also be aware of the risk of snooping and eavesdropping, not just online, but from other people in the vicinity. Can someone see and potentially grab a discreet photo of company sensitive information while they work in a public space?

Timico Top Tip:  Look to encrypt and protect traffic at source by using a VPN or a Cloud based security suite that will protect endpoints. Until then, when using public Wi-Fi be careful of what you do. Don’t pay bills, do online banking or access other sensitive data. Yes, that includes e-mail and social media, like Facebook, which can sometimes share sensitive info. Only use public Wi-Fi to surf the web.

  1. Shared Computers

Unless you empower users with secure systems such as VDI, then using shared, public or friends’ computers can be risky and shouldn’t be used for any business purposes (we’d also advise not to use personal accounts with sensitive information especially financial data!). With an unknown security posture, these devices can be easily infected with malware which will leak any personal information used on the system and gain access to your data, which is usually used for exploitation.

Timico Top Tip: Send out a reminder to all staff to use safe connections, regularly change their passwords and don’t leave their devices open in public places. Don’t be tempted to log in to any work platforms from public internet cafes, or anywhere you may find a lone computer not certified by your company, without a VPN.

  1. Password Security Policies

With the most common passwords still being ‘123456’ and ‘Password’ it’s easy to see why the number of detected credential brute force attacks increased 400% last year. The number of users that regularly cycle through simple passwords that can usually be identified with a little effort or social engineering is scary.

Once your credentials have been taken, it takes on average 85 days to detect a breach. That’s a lot of time for someone to harvest data or try identifying higher value targets in your environment.

Timico Top Tip: Implementing a password policy is very straight forward, especially with the use of free guidance from the National Cyber Security Centre (NCSC). Teach your employees how to create secure passwords. Using phrases help create complex passwords and that can be made easier by doing things like recommending the use of song lyrics to generate passwords. Well, I wish it could be Christmas every day!

  1. Protecting devices with security software

Any devices that are owned by your organisation should be properly protected. It’s also in your interest to help your staff protect any device used for BYOD or remote working.

There are a number of options available to companies to help protect endpoints from the various attack methods that afflict modern computing. Some of these are, antivirus for the obvious, web filtering to protect from malicious sites and malware, firewalls to prevent direct attack across networks like public WiFi and device encryption.

This can be a difficult area to negotiate as your employee may feel this impinges on the personal use of their device. Your cyber security policies will need to address issues like these, either restricting staff from using their own devices for certain business critical activities, providing secure company owned devices, or making your cyber security protection mandatory.

Timico Top Tip:  Before you go on holiday, check with your IT manager that your firewalls and antivirus software are up to date and you have encryption enabled where appropriate and ask what else you can do to protect yourself.

  1. Cyber Awareness Training

Technology can help reduce the risk but there is nothing better than investing in people to protect your IT assets and their personal data too! There are a number of online cyber awareness training facilities available that start with the basics. Its not safe to assume anyone’s level of awareness.

Be cyber smart (and secure) by enabling your employees with training and reminders before the holidays, including providing steps for what to do should a security breach occur. Make sure you have a robust security solution for your IT networks and devices or talk to our experts about how to better protect your business, so you can sit back and enjoy your well-earned rest, worry free.

Timico Top Tip: Enroll your people in Cyber Awareness training but just before you break up for the holidays, send out a brief guide on keeping secure online.

Of course, there is an easier way to be cyber secure over the holiday period, you could allow staff to have a complete break until they’re safely using on-premise connections after the holiday!

Martin Riley

Technical Director

Dec 20, 2018

More great content you might be interested in

Inviting in the Attacker – Cyber Security in Retail

One of the business sectors that has gone through major disruption in the modern digital era is retail. This started in the 90’s with leading businesses evolving their first e-commerce projects. But in recent times, with growth being led across Online and Mobile services, retail businesses are finding that their digital attack surface is getting…
Read More

The evolution of technology procurement from suppliers to partners

I’m really looking forward to being part of the panel discussion at RetailEXPO 2019: “How is technology procurement evolving and what are retailers looking for from supplier partnerships?” Recently, I’ve really seen a difference in the relationships that are being built between technology providers and retailers, because technology can now become a sales enabler, as…
Read More

A Guide to Digital Transformation for Hospitality

Driving digital transformation in the hospitality industry Digital transformation has made it to hospitality, and it is just in time. Guest expectations have changed; they demand digital communication and personalised experiences. More people travel than ever before, and a burgeoning middle class in places like China, India and South Korea is putting pressure on established…
Read More

Book a FREE consultation

Find out where there is space for change in your business, and how you are performing against your competitors.