Cyber Crisis by Eric Cole

Cyber Crisis by Eric Cole

Author:Eric Cole
Language: eng
Format: epub, azw3, mobi
ISBN: 9781953295279
Publisher: BenBella Books
Published: 2021-03-12T00:00:00+00:00


One of the ways that we protect, secure, and lock down critical data and information is with encryption. I’m not going to get into the mathematical formulas of cryptography within this book, but I’ll give you the general breakdown. It’s like putting your information in a safe. With encryption, your data is encrypted with a key. If somebody only gets the encrypted data and it’s encrypted correctly, it’s pretty much useless to them because they’re not able to read or access it unless they have access to the key. So the question you need to ask when it comes to encrypted data is where are the keys stored?

In protecting your critical data with encryption or cryptography, it’s all about protecting and securing the keys. If somebody can access the keys, they can decrypt your data, and it defeats the whole purpose of encryption. This is probably one of the biggest misunderstandings that businesses have when protecting their critical data. They believe that encryption equals security, so as long as the cloud provider, third party, or their business is encrypting information, they believe that it’s protected and secure. What they fail to realize is that encryption doesn’t accomplish anything if the keys aren’t properly protected, secured, and locked down.

Every company that has had a major breach over the last three years always encrypted that data. The problem wasn’t that data encryption wasn’t in place—it was that the keys weren’t properly protected and secured. Remember, as I mentioned earlier in this book, many companies store the keys with the data. Therefore, you need to make sure that if you’re utilizing a cloud provider, you ask them:

How is the data encrypted?

Where are the keys stored?

How are the keys protected and locked down?



Download



Copyright Disclaimer:
This site does not store any files on its server. We only index and link to content provided by other sites. Please contact the content providers to delete copyright contents if any and email us, we'll remove relevant links or contents immediately.