18/8/2023

Is your orgnisation focused enough on cyber-security?

We live in a digital world where our data and (crucially) our customers’ data is under constant attack. Hackers are always looking for new ways to break into your systems and databases – and this has resulted in many significant data breaches in recent years.

When your security is breached, and your data is compromised, this isn’t just an IT issue, however. It’s a breach of trust between you, your customers and your suppliers – one that can be hugely damaging for your brand reputation and consumer’s perception of the organisation.

So, why are so few organisations taking cyber security seriously? And what can you do to enhance your cybersecurity and protect your valuable data?

In the 21st century, your data = your success

It’s the customer information in your CRM system, the supplier details in your system and the financial data in your accounting software. It’s your bank account details, your confidential client information and your organisation's secret intellectual property or hard-won R&D findings.

If you lose your data, you damage the organisation too. So protecting the safety and security of your data and systems has to be a top priority for any organisation.

To boost your cyber security:

  • Make cyber security a whole team concern – if a data breach occurs, there’s no use blaming the IT specialist after the fact. Cyber security has to be a concern for the whole team and something where you have clear advice, processes and training in place for. The better your people are prepared for protecting the organisation's valuable data, the less chance there will be of a security error or accidental data breach.
  • Keep devices and computing hardware secure – where your people are using laptops and mobile devices, it’s vital that they keep this hardware safe. Don’t leave computers unattended in laptop bags in a coffee shop or bar, and don’t leave your phone unsupervised. Always think about the security implications of leaving your hardware anywhere other than in a safe place.
  • Use a secure network connection – when connecting to applications, databases and shared folders, always use a secure network or an approved virtual private network (VPN). By using a secure network connection, you greatly reduce the chances of your data being intercepted and stolen, with VPNs allowing your team to log in securely when off-site or working at a client’s premises or their own home.
  • Save important data in the right place – you should have clear protocols regarding what kinds of data can be saved, and where this information should be stored. If your team are storing spreadsheets full of confidential client information on their laptop hard drives, you are only one lost laptop away from a security breach. Set up clear guidelines on which drives and folders to use, and make sure only the right people have access to any confidential folders and content.
  • Use proper authentication and encryption – use two-factor authentication or even multi-factor authentication for access to all your cloud databases and applications. And make sure you have proper data encryption of any confidential information that’s shared. By putting the best possible security steps in place, you greatly reduce the risk of a slip-up.
  • Log all security breaches – if the worst-case scenario does happen, make sure to log every single security or data breach – and be transparent about what’s happened when communicating with customers, suppliers or team who may have been affected. The sooner everyone is aware of the issue, the sooner you can work to resolve the problem and limit the potential damage.

Speak to IT security experts and protect your data

Keeping your data safe and secure is now a foundational need for any organisation. If you want to reduce your security worries, it’s sensible to speak to a cyber security expert. They will be able to review your current systems, networks and security practices and advise you on the key actions that are needed to tighten up your security.

Read more on Cyber Security from CERT NZ.

Tax and Trust have been our Church’s Accountants for approximately 13 years. They always do their upmost for our Church and for any help I need or questions answered. As we are a Charity they take care of all our Charity Obligations with filing to the Charities Commission and with our Auditors with their yearly audit of our Accounts. We use the XERO Accounting System and Michelle and her team always help us with any queries. The whole team at Tax & Trust have always been friendly and helpful to myself. I have no hesitation in recommending them for any Clients that are Charities or just need new Accountants that they can trust who are professional & efficient Accountants.

Janette McKay, Massey Community Church Accounts