Home / Blog / Cybersecurity
June 3, 2019 by FoxPointe Solutions
With the increasing number of security and data breaches being identified, cybersecurity has gained global and local attention. Increased emphasis and scrutiny from regulators, including the Federal Financial Institutions Examination Council (FFIEC), will be bringing cybersecurity awareness to the forefront of annual audits and reviewing every day risk management practices.
Cybersecurity has been defined by The National Institute of Standards and Technology as the process of protecting information by preventing, detecting, and responding to attacks. These attacks, better known as cyberattacks, target networks, infrastructures, systems, etc. using various malicious acts that usually manipulate, destroy, or steal specific data or systems. The types, frequency, and costs of these incidents, including the resulting security/data breaches, are increasing at an astounding rate. In addition, companies that fall victim to a cyberattack that results in a breach may also be violating security laws and regulations and feel the financial, legal, and reputational impact.
The following are seven items that will help your organization be more cybersecurity aware, and also ensure that the necessary controls are in place for regulatory reviews:
As cyberattacks become more frequent and sophisticated, your organization’s security practices and safeguards also need to be increased and strengthened. These defenses and best practices are no longer solely an IT department issue and now include ‘buy in’ from business units, upper management, and Board members alike. Being prepared in today’s environment is crucial as the question is not ‘if’ but ‘when’ an incident or attack will occur.
How can FoxPointe help?
This material has been prepared for general, informational purposes only and is not intended to provide, and should not be relied on for, tax, legal, or accounting advice. Should you require any such advice, please contact us directly. The information contained herein does not create, and your review or use of the information does not constitute, a consultant client relationship.