Description
Cyber Smart Bronze Level Certification
Overview: The Cyber Smart Bronze certification is designed for organizations beginning their cybersecurity journey. It establishes foundational security practices essential for protecting data and operations against common cyber threats.
Key Components:
1. Basic Security Controls:
o Implement basic firewall and router configurations to prevent unauthorized access.
o Ensure that all devices use updated antivirus software and scan for malware regularly.
2. User Access Management:
o Establish clear password policies requiring strong, unique passwords for all users.
o Conduct basic user training to increase awareness of phishing attacks and social engineering tactics.
3. Software and Patch Management:
o Maintain an inventory of all software and promptly apply security patches and updates.
o Remove unsupported or unnecessary software from critical systems.
4. Data Protection:
o Implement fundamental data encryption practices for sensitive data, both in transit and at rest.
o Regularly back-up critical data and test restoration processes.
5. Incident Response Preparation:
o Develop a basic incident response plan outlining steps to take in the event of a security breach.
o Ensure key staff members are familiar with their roles in the event of an incident.
6. Regular Audits and Assessments:
o Conduct regular security audits to assess the effectiveness of implemented controls.
o Use findings to refine and enhance the organization's security posture.
Benefits:
• Demonstrates commitment to cybersecurity to customers and partners.
• Provides a structured pathway for improving security practices.
• Acts as a stepping stone for achieving higher levels of Cyber Smart certification.
Eligibility and Process:
• Suitable for organizations of any size embarking on their cybersecurity enhancement journey.
• Involves a straightforward application and assessment process, with support provided by IDESA to guide implementation.