© 2019-2020 True North Group | All Rights Reserved
Protecting Your Remote WorkforceProtects Your Business
Thomas StamulisTrue North GroupApril 29, 2020www.tngllc.com
© 2019-2020 True North Group | All Rights Reserved
Who Am I?
2
• 20-year U.S. Army Veteran Counterintelligence Agent
• Over 25 years in the Cybersecurity Industry • 19 Years as a Cybersecurity Consultant • Managed delivery of an industry-recognized
cybersecurity program to over 130 companies and 490 sites globally
• Founded True North Group in 2019
• Senior-level cybersecurity positions at:
Previous Positions
• Previous positions in U.S. Army & Big-4 Firms (PwC & KPMG)
BS Cybersecurity Policy & Management
University of Maryland, Global Campus
Experience
Education & Certifications
© 2019-2020 True North Group | All Rights Reserved
COVID-19 and Cybersecurity
3NTT Security, Global Threat Intelligence Report, 2019
© 2019-2020 True North Group | All Rights Reserved
Agenda• The Changing Workforce
• The World Before COVID-19
• The World With COVID-19
• Why You Need a VPN
• Ideas to Protect Your Company
• Owners
• Employees
• The World After COVID-19
• How We Are Helping Businesses
• Resources4
© 2019-2020 True North Group | All Rights Reserved
Remote Worker Statistics
5NTT Security, Global Threat Intelligence Report, 2019
• Prior to the COVID-19 outbreak, on an average workday, 27% of users worked remotely.
• How has this changed?
• Week ending March 6 - 32%
• Week ending March 17 - 55%
• Week ending March 20 - 60%
• Week ending March 30 - 64%
Netskope: https://www.netskope.com/fr/blog/remote-work-increasing-exponentially-due-to-covid-19
© 2019-2020 True North Group | All Rights Reserved
The World Before COVID-19
6
True North GroupSimple Network (WAN)
InternetInternet
Wide AreaNetwork
Wide AreaNetwork
Server VPNServer
Branch OfficeRouter
Firewall
LANLAN
LANLAN
Router
Router
BranchOfficeLAN
BranchOfficeLAN
Main Office
VPNRequest
VPNTunnel
RemoteUser withVPN Client
RemoteUser withVPN Client
© 2019-2020 True North Group | All Rights Reserved
The World Before COVID-19
7
True North GroupSimple Network (No WAN)
InternetInternetServer VPNServer Firewall
LANLAN
LANLAN
BranchOfficeLAN
BranchOfficeLAN
Main Office
VPNRequest
Firewall
Firewall
VPNTunnel
RemoteUser withVPN Client
RemoteUser withVPN Client
© 2019-2020 True North Group | All Rights Reserved
The World With COVID-19
8
True North GroupPandemic Network
InternetInternet
Server VPNServer
Firewall
LANLAN
LANLAN
BranchOfficeLAN
BranchOfficeLAN
Main Office
VPNRequest
Firewall
Firewall
VPNTunnel
VPNRequest VPN
RequestVPN
RequestVPN
Request
VPNRequest
VPNRequest
VPNRequest
VPNTunnel
VPNTunnel
VPNTunnel
VPNTunnel
VPNTunnel
VPNTunnel
VPNTunnel
RemoteUser withVPN Client
RemoteUser withVPN Client
RemoteUser withVPN Client
RemoteUser withVPN Client
RemoteUser withVPN Client
RemoteUser withVPN Client
RemoteUser withVPN Client
RemoteUser withVPN Client Remote
User withVPN Client
RemoteUser withVPN Client
RemoteUser withVPN Client
RemoteUser withVPN Client
RemoteUser withVPN Client
RemoteUser withVPN Client
RemoteUser withVPN Client
RemoteUser withVPN Client
© 2019-2020 True North Group | All Rights Reserved
Why You Need A VPN
9
True North GroupHow a Virtual Private Network (VPN) Works
InternetInternet
Remote UserNo VPN Client
Internet ServiceProvider (ISP)
NoVPN
UnencryptedTraffic
UnencryptedTraffic
UnencryptedTraffic
UnencryptedTraffic
Internet
Remote UserNo VPN Client
Internet ServiceProvider (ISP)
NoVPN
UnencryptedTraffic
UnencryptedTraffic
Hackers ISP Websites Competitors
InternetInternet
VPNServer
VPN
Internet ServiceProvider (ISP)
EncryptedTunnel
EncryptedTunnel
EncryptedTunnelRemote User
With VPN Client
EncryptedTunnel
UnencryptedTraffic
UnencryptedTraffic
Internet
VPNServer
VPN
Internet ServiceProvider (ISP)
EncryptedTunnelRemote User
With VPN Client
EncryptedTunnel
UnencryptedTraffic
Hackers ISP Websites CompetitorsHackers ISP Websites Competitors
AttemptsRejected
© 2019-2020 True North Group | All Rights Reserved
10
Business Owners• No TeleWork Policy = No Guidance
• You don’t know, what you don’t know.
• Perform a cybersecurity audit.
• A router is not enough.
• Install a firewall.
• Encrypt your devices (It’s easy and free).
• Remote Desktop Protocol (RDP) is insecure.
• Close port 3389 or use a VPN.
• Train your remote workforce about cybersecurity.
• Kaspersky is offering a free 30 minute cybersecurity training course.
• Consider purchasing cyber insurance.
• Most carriers offer this option.
© 2019-2020 True North Group | All Rights Reserved
11
• Secure your router
• Reboot or reset it today
• Change the default password
• Install firmware updates or set to automatically update
• Follow the company’s “Teleworking Policy”
• Only connect to the internet using the company’s VPN
• Only YOU should use the device and only for work-related tasks
• Remember: If you would not go to a site from your office, do not go there from your remote office.
Remote Workers (Company-Owned)
© 2019-2020 True North Group | All Rights Reserved
12
• Secure your router
• Windows 7 and all prior versions are no longer supported by Microsoft, and therefore, are insecure
• Upgrade to Windows 10
• Regularly install all Operating System patches
• You can automate this procedure
• Encrypt your hard drive
• Antivirus is your responsibility
• You can install or upgrade your antivirus for free.
Remote Workers (Personally-Owned)
© 2019-2020 True North Group | All Rights Reserved
13
• Remote working is here to stay.
• New social distancing guidelines may demand businesses change their work environments.
• …a typical employer can save about $11,000/year for every person who works remotely half the time
• It is estimated that employees save between $2,500 and $4,000 per year by working at home half the time.
• In terms of time, a half-time telecommuter saves the equivalent of 11 work days per year they would have spent commuting.
• Start planning today for tomorrow’s work environment.
The World After COVID-19
© 2019-2020 True North Group | All Rights Reserved
14
• Weekly external vulnerability scans with reporting of your Internet facing devices.
• Installation of Cloud Agents on all Desktops, Laptops, Servers and Virtual Machines providing instant visibility of your IT assets.
• Provides 100 percent coverage of your infrastructure
• Continuously monitor all assets and track missing patches on each device in real time
• No credential management, no firewall rule changes, and only requires encrypted outbound communications on a single port
• Sign up by May 30th and the offer runs through August 1st
Our Security Offer
© 2019-2020 True North Group | All Rights Reserved
Why Businesses Need Remote Cybersecurity
15NTT Security, Global Threat Intelligence Report, 2019
© 2019-2020 True North Group | All Rights Reserved
16
Questions?
© 2019-2020 True North Group | All Rights Reserved
Resources
17NTT Security, Global Threat Intelligence Report, 2019
• Windows 10 Upgrade
• https://www.zdnet.com/article/heres-how-you-can-still-get-a-free-windows-10-upgrade/
• Free Antivirus Vendors
• https://www.digitaltrends.com/computing/best-free-antivirus-software/
• Free Security Awareness Training
• https://go.kaspersky.com/stay_secure_course.html
• The Best VPN Service of 2020
• https://www.techradar.com/vpn/best-vpn
• 10 Best Hardware Firewalls for Home and Small Business Networks (2020)
• https://www.networkstraining.com/best-hardware-firewalls-for-home-small-business/
• True North Group’s Free Security Offer
• https://tngllc.com/covid-19/