Skip to main content

Cookies on BBB.org

We use cookies to give users the best content and online experience. By clicking “Accept All Cookies”, you agree to allow us to use all cookies. Visit our Privacy Policy to learn more.

Cookie Preferences

Many websites use cookies or similar tools to store information on your browser or device. We use cookies on BBB websites to remember your preferences, improve website performance and enhance user experience, and to recommend content we believe will be most relevant to you. Most cookies collect anonymous information such as how users arrive at and use the website. Some cookies are necessary to allow the website to function properly, but you may choose to not allow other types of cookies below.

Necessary Cookies

What are necessary cookies?
These cookies are necessary for the site to function and cannot be switched off in our systems. They are usually only set in response to actions made by you that amount to a request for services, such as setting your privacy preferences, logging in or filling in forms. You can set your browser to block or alert you about these cookies, but some parts of the site will not work. These cookies do not store any personally identifiable information.

Necessary cookies must always be enabled.

Functional Cookies

What are functional cookies?
These cookies enable the site to provide enhanced functionality and personalization. They may be set by us or by third party providers whose services we have added to our pages. If you do not allow these cookies, some or all of these services may not function properly.

Performance Cookies

What are performance cookies?
These cookies allow us to count visits and traffic sources so we can measure and improve the performance of our site. They help us to know which pages are the most and least popular and see how visitors move around the site. All information these cookies collect is aggregated and therefore anonymous. If you do not allow these cookies we will not know when you have visited our site, and will not be able to monitor its performance.

Marketing Cookies

What are marketing cookies?
These cookies may be set through our site by our advertising partners. They may be used by those companies to build a profile of your interests and show you relevant content on other sites. They do not store personal information directly, but are based on uniquely identifying your browser or device. If you do not allow these cookies, you will experience less targeted advertising.
Latest News

BBB Business Tip: 5 essential ways to safeguard your business against cybersecurity threats

By Better Business Bureau. April 26, 2021.
padlock in center of futuristic web

(Getty Images)

Cybercrime is an unfortunate reality.

A big reason businesses don’t prioritize cybersecurity is that many don't recognize the gravity of cyberattacks. Securing your online system protects everything from your employee’s personal information and health records to your intellectual property and data. Here are 5 essential ways to safeguard your business against cybersecurity threats.

1. Backup your data

Most businesses are familiar with data backups; in fact, over 90% of companies claim to secure their information through backups. However, out of this number, only 28% perform weekly data back-ups.

Nearly 70% of companies are losing precious information because they did not back up their recent data, according to Acronis. The simple task of securing your files on either a virtual database, like cloud storage, or a physical database, like a USB drive, will grant you access to your information in cases of cyber threats, as well as accidental deletions and power outages. 

2. Install security software

According to Tessian, 88% of cybersecurity breaches are the result of human error. In other words, most cyberattacks take place because of the unintentional actions of employees, such as clicking on malware or using a vulnerable password. A Google/Harris poll found that 65% of people use the same password across all or multiple sites, making it easy for hackers to access workplace systems.

Downloading security software can help prevent these mistakes from occurring. In addition to anti-virus software and firewalls, it's advisable to set up spam filters to protect against phishing campaigns.

3. Use encryption and MFA

Encryption is a technique that encodes information, making it impossible for hackers or anyone outside of your workplace to consume your data. The number of businesses that utilize encryption is on the rise, with nearly 50% of companies claiming to encrypt their data in 2020. 

While encryption is a strong line of defense, it should not be your only one. Businesses should take advantage of multi-factor authentication (MFA) to prevent cybersecurity breaches in the first place. MFA requires extra information, such as a unique code sent to a mobile device, to protect against hackers.

4. Protect against internal threats

Verizon claims that 30% of data breaches come from internal actors. While you can do your best to hire trustworthy employees, it's impossible to verify the reliability of every single person you hire. Methods to prevent internal breaches include:

  • Outlining strict computer policies (forbid employees from bypassing firewalls)
  • Installing IDS (intrusion detection systems)
  • Changing passwords frequently (and especially when employees leave)

In just the past two years, the number of internal cybersecurity breaches has escalated to 47%, according to The Ponemon Institute, making it more essential than ever to implement these policies and changes.

5. Create an incident response plan

When it comes to physical emergencies, such as fires, most workplaces have a plan in place. However, an IBM study found that an overwhelming 77% of organizations do not have a response plan ready when it comes to cybersecurity. Considering that, according to a Black Hat USA survey in 2019, 65% of business leaders predict the occurrence of a security breach in their organization in the coming year, you should have a protection plan ready.

An incident response plan (IRP) is a set of instructions designed to help recognize, address and recover from network security threats. In short, an IRP calls for creating a list of responsibilities for team members, summarizing technologies that the team should use, and detailing a data recovery process.

The main purpose of an IRP is to detect a cybersecurity breach as soon as it happens. In the unfortunate incident that employees fail to prevent the breach, knowing about the incident can lead to a smoother and swifter recovery. Believe it or not, in a 2016 Bitdefender survey, 74% of companies reported that they didn't even know how hackers gained access.

Cybersecurity resources

The fact that we can't physically see cyberattacks doesn't make them any less dangerous. A single data breach in the United States can cost a company over $8 million and expose employees’ and clients’ personal information, hurting the brand itself and the people behind it. That's why it's more important than ever to take steps to secure your business against cybersecurity breaches.

Learn more about cybersecurity resources by visiting these BBB tips on cybersecurity

Visit BBB.org/get-accredited to learn how trust, honesty and integrity can play an integral part in your business’s success.

 

BBB of Southern Piedmont and Western N.C. contributed to this article.