asked on
The CIS Controls (formerly known as Critical Security Controls) are a recommended set of actions for cyber defense that provide specific and actionable ways to stop today's most pervasive and dangerous attacks.
ASKER
ASKER
The cyber security specialization covers the fundamental concepts underlying the construction of secure systems, from the hardware to the software to the human-computer interface, with the use of cryptography to secure interactions. Cyber security refers to the protection of personal or organizational information or information resources from unauthorized access, attacks, theft, or data damage. This includes controlling physical access to the hardware, as well as protecting against the harm that may come via network access, data and code injection, and due to malpractice by operators, whether intentional, accidental, or due to them being tricked into deviating from secure procedures.
TRUSTED BY
You also need something that will filter your emails for phishing and malware. If you are on Office 365, you should subscribe to the Advanced Threat Protection (ATP).
You can also, once in a while, have pentests done by professionals to help you discover the weakness of your network.
And finally, and probably the most important, you need to train your users to have a good behavior by not opening emails that look suspicious (and how to recognize them), strong passwords (and better with MFA), ... Have a look at https://www.knowbe4.com/ and https://terranovasecurity.com/