Started By
Message

Security specialists in LA that can prepare a company for a ransomware attack

Posted on 5/10/21 at 3:58 pm
Posted by diat150
Louisiana
Member since Jun 2005
43570 posts
Posted on 5/10/21 at 3:58 pm
Just wondering if anyone knows of any companies or consultants that are well versed in ransomware attacks and can help get a company setup to best recover quickly from one. Haven’t been hit but you never know. Seems it’s becoming more and more common and would prefer to be prepared for the day that someone clicks the wrong link in an email.

Basically come in, look at how we are doing things, then make some suggestions on backups, architecture, whatever.
This post was edited on 5/10/21 at 4:00 pm
Posted by BabySam
FL
Member since Oct 2010
1505 posts
Posted on 5/10/21 at 4:31 pm to
What size company, how many sites/locations, what type of data center and infrastructure? How many client PCs and servers? Virtual/physical or both? Yall have AV on machines or a form of endpoint security? If you’re worried about someone clicking on an email link then you could already be well behind the curve.
This post was edited on 5/10/21 at 4:32 pm
Posted by SlackMaster
Baton Rouge
Member since Jan 2009
2655 posts
Posted on 5/10/21 at 5:04 pm to
Sparkhound, Transformyx, and CMA have experience with prevention and remediation.
Posted by ArkLaTexTiger
Houston
Member since Nov 2009
2467 posts
Posted on 5/11/21 at 6:05 am to
You need to start an anti-phishing campaign with your employees by teaching them what to look for.
Posted by BobRoss
Member since Jun 2014
1694 posts
Posted on 5/11/21 at 8:12 am to
I'm not a security guy, but I think almost all these issues come from phishing attacks.
Posted by CAD703X
Liberty Island
Member since Jul 2008
78101 posts
Posted on 5/11/21 at 9:48 am to
quote:

Just wondering if anyone knows of any companies or consultants that are well versed in ransomware attacks and can help get a company setup to best recover quickly from one. Haven’t been hit but you never know. Seems it’s becoming more and more common and would prefer to be prepared for the day that someone clicks the wrong link in an email.

Basically come in, look at how we are doing things, then make some suggestions on backups, architecture, whatever.


i work for a company with a little over 1k employees. our CEO is paranoid and created an entire security division who has been doing nothing for the last 2 years but 'battening down the hatches'.

unfortunately i dont think this is a 'come in and fix it one time and you're done' type situation. ransomware is very nasty and i think you have to have a complete paradigm shift where you devote a team to constantly improving security.

we have at least 2,000 pieces of hardware at our data center and now with expanding to AWS the amount of places where an attack could originate from is scary.
This post was edited on 5/11/21 at 9:51 am
Posted by gmrkr5
NC
Member since Jul 2009
14892 posts
Posted on 5/11/21 at 9:51 am to
there are tons of "consultants" that will offer to come in and get you prepared for these types of attacks. the decent ones will be expensive and you will have to be willing to impliment a good bit of process and/or technology changes.
Posted by diat150
Louisiana
Member since Jun 2005
43570 posts
Posted on 5/11/21 at 10:06 am to
quote:

there are tons of "consultants" that will offer to come in and get you prepared for these types of attacks. the decent ones will be expensive and you will have to be willing to impliment a good bit of process and/or technology changes.




I’m more concerned about being able to recover quickly. We are a small shop so I don’t think it makes sense to overdue it on the prevention but being prepared to recover imho would be more important.
Posted by td1
Baton Rouge
Member since Oct 2015
2838 posts
Posted on 5/11/21 at 11:38 am to
quote:

We are a small shop so I don’t think it makes sense to overdue it on the prevention


And this right here is why ransomware continues to proliferate.
Posted by broadhead
Member since Oct 2014
2111 posts
Posted on 5/11/21 at 12:19 pm to
You need solid backups and images of your computers. That's an easy way to do it.
Posted by CAD703X
Liberty Island
Member since Jul 2008
78101 posts
Posted on 5/11/21 at 12:51 pm to
quote:

We are a small shop so I don’t think it makes sense to overdue it on the prevention


where is your hardware; data center or cloud?

how locked down are your employee laptops?

do they have access to company server resources via vpn?

do you have any customer-facing applications served from your data center/cloud? who wrote those?

Posted by Bestbank Tiger
Premium Member
Member since Jan 2005
71171 posts
Posted on 5/11/21 at 12:53 pm to
quote:

You need solid backups and images of your computers. That's an easy way to do it.



This.

If it's a small operation you want frequent backups so you can quickly and easily restore.
Posted by rsb831
Member since Oct 2007
481 posts
Posted on 5/11/21 at 1:22 pm to
Don't know about local consultants, but Travelers offers Cyber coverage, a product that includes review of your systems with recomendations, and if something does happen, ransom payment and forensic study.

They have some informative articles and self assesments on their website.

Travelers Cyber

I'm sure other carriers have similar products.
Posted by BottomlandBrew
Member since Aug 2010
27105 posts
Posted on 5/11/21 at 2:02 pm to
We are a smallish outfit (a couple dozen work stations) that got hit with a ransomare attack about four years ago. We outsource all of our IT to an outside company that specializes in IT work for businesses our size. They had our system set up to do multiple backups per day. We called them the morning we got locked out, they nuked everything, and had us back up in a few hours. It was merely a minor inconvenience.

We would have been up shite creek had we not had the backup. They got in to our server that runs our manufacturing plant and that would have been a nightmare to lose hundreds of in-process orders plus the tens of thousands of records of orders that we have to keep.

I have our IT company send out phishing emails every so often to try and educate my employees. The shite they fall for blows my mind
Posted by diat150
Louisiana
Member since Jun 2005
43570 posts
Posted on 5/11/21 at 2:28 pm to
Yeah this is what I am after. We are a small company so I think the best way is do as much as we can but not go overboard on trying to eliminate the threat but be proficient and have the proper backup plan in place so we can rest assured our files are safe.
Posted by broadhead
Member since Oct 2014
2111 posts
Posted on 5/11/21 at 3:58 pm to
quote:

Yeah this is what I am after. We are a small company so I think the best way is do as much as we can but not go overboard on trying to eliminate the threat but be proficient and have the proper backup plan in place so we can rest assured our files are safe.


What I might suggest is to outsource to an IT company (I'm one) and have a plan developed for you then you do the maintenance work. Backups of servers and critical data, make sure no one has local admin accounts and have users change their dang passwords monthly.
Posted by BabySam
FL
Member since Oct 2010
1505 posts
Posted on 5/11/21 at 4:09 pm to
You will need to define your Recovery Time Objective and and Recovery Point Objective. How long can you be down and how much data are you comfortable with losing?
Posted by Walter White
Judice Inn Booth 1
Member since Sep 2012
3111 posts
Posted on 5/12/21 at 6:59 am to
If you are in the Lafayette area, I highly recommend Rader Solutions. We’re a small company too and have been very happy with them. Top notch customer service and they’re great on the cybersecurity front. They are also well versed in assisting companies who have been hit by ransomware attacks.
Posted by shawnlsu
Member since Nov 2011
23682 posts
Posted on 5/12/21 at 9:13 am to
Transformyx, ask for Kyle, he is brilliant.
Posted by bluebarracuda
Member since Oct 2011
18242 posts
Posted on 5/12/21 at 9:21 am to
MIS out of Zachary is one I'd look in to for a smaller business
first pageprev pagePage 1 of 2Next pagelast page

Back to top
logoFollow TigerDroppings for LSU Football News
Follow us on Twitter, Facebook and Instagram to get the latest updates on LSU Football and Recruiting.

FacebookTwitterInstagram