Image source: Pixabay
20.04.2021

Use cloud services securely

Cybersecurity | IT Protection | Attack Vectors | Remarks

Reputable cloud providers such as DATEV offer companies, law firms and self-employed people very high security standards. This makes it all the more important to also pay attention to cybersecurity when using these cloud solutions – so as not to allow vulnerable vulnerabilities to arise.

A common vulnerability: access to your cloud solution

The same applies to clouds as it does to all systems: they are only as secure as their weakest link. Due to the high security standards of reputable cloud providers, the people and companies that use them are usually the biggest potential vulnerability.

However, if you are aware of this, you can minimize many security risks. The most important thing is to protect the access data to your cloud solution. This is because logging in with the right access data is hardly recognizable as an attack or abuse for cloud providers.

Key concrete actions

Strong, unique passwords. The harder a password is to guess or calculate, the better. Passwords that are used multiple times become a risk as soon as a provider has been hacked and the captured access data circulates on the darknet. Therefore, treat your cloud access to an individual, complex password.
Two-factor authentication. If it’s offered, take advantage of it. However, be careful not to allow a permanent connection. Because if someone spies on your password, a permanent connection is not a protective second factor.
Block access that is not needed. Delete cloud access that is no longer needed. For example, after someone has changed departments or companies.

Lock screen when leaving the workplace. A small precaution that can make a big difference and quickly becomes a habit. Practice them consciously, even if you are currently working from home. A nice side effect in the home office: when the screen is locked, toddlers and pets can abuse the keyboard without causing much damage.
General measure: Increasing your cyber security

Many general measures to increase your cyber security also indirectly increase the security of your cloud solution. This is because the higher the overall cybersecurity of your company, the lower the risk that cybercriminals can spy on your cloud credentials.

Cyber security has many aspects – technical, human and organizational. With the help of guidelines or with the help of a service provider such as Perseus, you can increase the cyber security of your company in a targeted manner. In addition to the security of your cloud solution, you also increase your protection against data loss and ransomware, among other things.

Four key measures to increase your cyber security

  1. Optimize your protection against phishing attacks. The legitimate-looking phishing emails with their malware attachments are widespread. For example, they may contain so-called keyloggers – software that allows cybercriminals to log your keystrokes and thus spy on your passwords. Their best defense is sustainably sensitized employees who consciously look twice at e-mails, even in hectic everyday work.
  2. Keep an eye out for updates. Keep your entire system up to date, from the browser to the server. Many updates close newly discovered security vulnerabilities. If possible, install them immediately or enable the automatic installation of updates.
  3. Be careful with other people’s and private devices. The smartphone, the colleague’s fitness tracker, the colleague’s USB stick – any device can contain malware . After contact with the company Wi-Fi or after connecting to a company computer, these malware programs can spread through the company network. Formulate rules on how to deal with this risk, e.g. through separate networks, virus scanners, firewalls , etc.
  4. Increase cyber awareness in the company. Employees with a trained awareness of cyber security are an irreplaceable protective factor. You can deflect attacks such as phishing emails, CEO fraud , and fraudulent support calls. In the event of successful attacks via other routes, they can react prudently and thus minimize or even avert damage. Perseus offers a sustainable cyber awareness training program that can be easily integrated into everyday work. But every self-imposed measure also contributes to increasing cyber security.

Special service for members of the auditing and tax consulting professions

In the field of auditing and tax consulting, you work with highly sensitive data on a daily basis. Perseus provides you with targeted information on which cyber risks you should pay attention to – and is happy to support you in increasing your cyber security.