New Year lull makes time for security house-keeping

Stuart Hodkinson outlines some security tasks more easily done over the holidays

By Stuart Hodkinson

12 Jan 2010

Be the first to comment

  • Digg
  • Tweet
Stuart Hodkinson, Courion's GM
Hodkinson: A quiet time is a good chance to overhaul security and authentication for your customers

Many companies shut down or drastically reduce activity over the Christmas-New Year holidays. This quiet period is a good chance to catch up on non-critical jobs that have been delayed. Some may also use the time to get ahead for the first quarter.

The lull also provides a perfect opportunity for criminals to target known vulnerabilities and lapses in end-user security and authentication management. Malware activity often peaks in December.

Due to the recession, many companies have a backlog of fully functional network access credentials from former employees waiting to be deactivated. While active, they can be exploited.

Large companies where lay-offs may have been more widely publicised are at particular risk of being targeted during quiet holiday periods. They should make more effort to maintain security measures, regardless of reduced traffic.

The lull also is an ideal time for VARs to do some tidying and tightening, such as deep-cleaning of access privileges, redundant accounts, out-of-date security tools, or tuning firewalls and other perimeter defences at client sites.

Not only do you limit the disruption to your customer, but you make the provisioning and de-provisioning workload more manageable when full-time staff return from their holidays and seasonal casuals depart.

For most companies, Q1 is a key trading period. A new year refresh of desktops and servers may add to the IT workload.

The lull is also a good time to check out automated user provisioning. Tools that automate as much of the process as possible and clearly outline who should have access to what will help minimise future workloads and disruption.

Assess, add or remove user privileges as needed. Doing this while workload is down gives you the time to do it properly, and make adjustments as people filter back into the office for the New Year.

Update all antivirus definition files, particularly on mail servers and perimeter defences. If using an external mail filtering service, update keyword filters, white lists and black lists.

This is also a good time to check that data back-up processes are working properly. Test tapes for corrupted data, evaluate access to back-up data and check what is being backed up.

Does the customer plan an OS upgrade in the new year? If so, it is important to know what devices it has and who should have access to them.

Stuart Hodkinson is UK general manager at Courion

display:none
Loading
We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions

Your comment will be moderated before publication.

What do you see as the biggest threat to your business this year?

48%

10%

0%

17%

25%

0%

CRN Partner Connect 2012

CRN Partner Connect logo

CRN's premier networking event is back on 17 May at the Ricoh Arena

Date: Thu 17 May 2012

CRN Fight Night 2012

One of the fights from CRN Fight Night 2010

Channel fighters preparing to square up once more on 24 May

Date: Thu 24 May 2012

Sign up for our range of FREE newsletters:

Submit your email address and we'll send a link to a personal newsletter control panel

fragment image

The mobile enterprise: Secure the data, not the device

The proliferation of endpoint devices within the enterprise has highlighted the shortcomings of one of the traditional approaches to data security

fragment image

Measuring the ROI of Google Apps

This Forrester report compares the costs and benefits of legacy email and productivity software with Google Apps


The Editors dairy blog

The editor's diary

When disaster strikes...

A power failure has caused CRN HQ to relocate remotely - I won't be so blase about disaster recovery now

Dave the dealer blog

Dave the dealer

Perkaholics

Dave marvels at the altruistic attitude of another channel boss

View from the channel

Views from the Channel

Departing CEO has done Dixons a service

Mark Needham, founder of distributor Widget, argues that John Browett leaves for Apple with Dixons in better shape than when he arrived

To send to more than one email address, simply separate each address with a comma.