Cyber Risks Emerging due to COVID-19

Cyber threats are evolving as businesses are making changes to how they operate. Remote working and new technology may not be as secure as first thought.

All industries are being targeted. Attacks are increasing because of the reliance on IT as remote access becomes critical to your business operation. Home workers are an easy target for cyber criminals capitalising on the COVID-19 situation and exploit vulnerabilities.

Why is COVID-19 causing new risks?

There has been a significant move to remote working and use of IT equipment normally located in an office environment. The disruption to your employees and your suppliers may expose vulnerabilities of any existing risk as new remote working practices will increase staff uncertainty.
Logistical changes create opportunities for cyber criminals – disruption to work practices, staff shortages and financial pressures can lead to vulnerabilities.

Where companies have adapted their business function to continue trading or have diversified their operations, there will be changes to normal business processes with communications and paperwork coming from unfamiliar suppliers.
All of this creates risk and an opportunistic environment for cyber criminals.

Key actions to counteract opportunistic cyber threats.

1) Secure your remote working arrangements

  • Monitor remote working and take action when issues arise.
  • Ensure remote access systems are fully protected and resilient.
  • Make sure your normal security arrangements function in a remote environment.
  • Key security controls may have been overlooked, review the remote technology you now have in place

2) Ensure the continuity of critical security arrangements

  • Understand which of your activities are critical and need close monitoring.
  • Consider freezing IT changes to critical systems if normal implementation cannot be followed.
  • Check that remote updates and patches are working correctly.
  • Update your response plan so it still functions in a remote environment.

3) Put steps in place to counter opportunistic threats

  • Reinforce cyber awareness in your workforce so they are aware of these new threats and know how to respond to them.
  • Install increased defences around your email system and workstations to mitigate against the increased risk of phishing.
  • Put safe guards in place so staff know how to authenticate requests for payment or sensitive data.
  • Have a plan for quickly managing threats posed by individuals from within your company.
  • Review your company incident plan make sure it works for current working operations, have a hard copy so everyone knows who the key contacts are and how to get in touch.
  • Include numbers and special and mixed case characters in passwords.
  • Run live backups regularly in addition to your normal backup system.

Many initial organisation responses to the COVID-19 situation will have had a negative impact on the cyber security arrangements. By implementing these key actions you can reduce the threat of cyber-attacks against your company.

Read more about cyber insurance
Back to our news section.