Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Easy Mode

Get it Done

The Journey

  • Do you know all of the devices on your business network?

    • This includes desktops, laptops, mobile phones, game devices, TVs, thermometers, fridges, coffee machines, robovacs, door locks - anything connected to the internet.

  • Implement an Asset Register to record details of every device connected to your network, especially if they hold client data.

  • You may want to have some form of MDM (Mobile Device Management) solution to remotely update and / or wipe business owned devices.

    • Both Apple and Google have solutions, but you may need a third party solution if you have a mix of devices in your business.

  • You will want an auto discovery tool on your network to tell you every device that is connecting to your network.

  • Do you know all the applications your business uses?

    • You would have already done this when you looked at your passwords, but there are other applications that may not need a password, eg applications installed on your device.

    • Which applications do you think are “mission critical”, or really important for your business.

  • Which applications can you delete?

    • Old software that is not in use anymore.

      • Do you need to export data from it before you delete it?

    • Trial versions that you never used.

  • What is installed on other users' devices?

    • Is there anything on there that you didn’t know they were using?

    • Is it something to delete, or make a part of the standard business systems for your business?

  • Which applications store business critical data?

  • Which applications store client data?

  • Are all these applications up to date for the latest versions, or if you have chosen to not upgrade to the latest version, are there any security patches from the vendor that they require or recommend?

    • If you choose to not update an application to the latest version, document the reasons why.

  • All For all those applications you discovered, especially the ones that are business critical or hold client data, add them to a register of digital assets for your business.

  • For mobile devices, the applications should only be from what is available on the app stores, rather than being installed directly on the device.

  • You will want to implement some form of automated Application Allow Listing (previously known as Whitelisting)Control for all your PCs, and devices.

  • What happens if you lose your phone?

  • Have automatic updates turned on for all applications on your mobile devices.