Skip to content

senhasegura 正式宣布更名為 Segura®: 嶄新名稱、智能升級平台,共創 無畏未來

過去二十餘年,senhasegura 致力於協助數百家企業與企業重新掌握其身份安全的控制權。憑藉卓越表現,senhasegura 榮獲評為頂尖的 PAM(特權存取管理)解決方案,深獲全球 IT 及資訊安全專業團隊的信賴與肯定。如今,senhasegura 已準備好邁入嶄新的發展階段。

Segura® 不僅代表一個新名字,更象徵著一個新時代的來臨:這意味著更清晰的品牌定位、更遠大的企業願景,以及一個為未來精心構建、功能更強大的平台。

 

安全的未來奠基於信任

Segura® 深信,安全的核心在於建立信心,而非散播恐懼。IT 團隊無須再與其安全工具角力。長久以來,身份安全領域充斥著複雜性、僵化性與被動應對的挑戰,Segura® 決心改變此一現狀。

Segura® 不僅致力於重新定義身份安全,更矢志重塑產業規則。Segura® 提供更快捷、更簡易的操作體驗,專為追求高效能安全防護的實際 IT 團隊度身設計。安全方案應賦予使用者力量,而非成為他們的負擔。這正是 Segura® 積極構建的未來藍圖。

 

不僅是視覺革新:Segura® 4.0 隆重登場

此次升級不僅限於視覺革新。Segura® 4.0 已隆重推出,作為備受信賴的 PAM 解決方案的最新版本,Segura® 4.0 實現了速度與智能的雙重提升,專為應對現實世界安全挑戰的 IT 專業團隊而設計。其煥然一新的使用者介面(UI)、提升工作流程以及主動式安全策略,顯著簡化了特權存取管理的複雜度。

更強保護,更佳掌控。精益求精,臻於至善。

關於 Segura®
Segura® 致力於確保企業對其特權操作與資訊的自主掌控。為此,我們透過追蹤管理者在網絡、伺服器、資料庫及眾多裝置上的操作,有效防範資料竊取。此外,我們也協助企業符合稽核要求及最嚴格的標準,包括 PCI DSS、沙賓法案(Sarbanes-Oxley)、ISO 27001 及 HIPAA。

關於 Version 2 Digital
資安解決方案 專業代理商與領導者
台灣二版 ( Version 2 ) 是亞洲其中一間最有活力的 IT 公司,多年來深耕資訊科技領域,致力於提供與時俱進的資安解決方案 ( 如EDR、NDR、漏洞管理 ),工具型產品 ( 如遠端控制、網頁過濾 ) 及資安威脅偵測應 變服務服務 ( MDR ) 等,透過龐大銷售點、經銷商及合作伙伴,提供廣被市場讚賞的產品及客製化、在地化的專業服務。

台灣二版 ( Version 2 ) 的銷售範圍包括台灣、香港、中國內地、新加坡、澳門等地區,客戶涵 蓋各產業,包括全球 1000 大跨國企業、上市公司、公用機構、政府部門、無數成功的中小企業及來自亞 洲各城市的消費市場客戶。

PAM 與 ITDR 的協同效應: 建構穩固的身份與特權存取防禦體系

 

在這個網絡威脅日益嚴峻的時代,身份與存取安全已成為企業不可或缺的防護屏障。結合特權存取管理(PAM)與身份威脅偵測與回應(ITDR),能夠有效控制存取權限,並主動偵測及遏止基於身份的威脅,從而建構更為穩固的安全防禦體系。

什麼是特權存取管理(Privileged Access Management,PAM)?

特權存取管理(PAM)是一種先進的網絡安全技術,專為保護、管理及監控企業 IT 環境中的特權帳戶而設計。與傳統身份管理方案不同,PAM 專注於管理那些能夠賦予高階權限的特權帳戶,這些帳戶如同企業核心系統的數碼鑰匙。

PAM 作為一個集中化的軟件平台,透過實施嚴格的存取控制、加密儲存憑證,以及即時監控特權活動,確保僅有授權使用者能夠存取敏感資源,從而有效降低資料外洩與營運中斷的風險。PAM 猶如一位嚴謹的守護者,精確控制存取權限,持續監控使用者行為,並嚴格執行安全政策,以防範任何潛在的濫用行為。

什麼是身份威脅偵測與回應(Identity Threat Detection and Response,ITDR)?

身份威脅偵測與回應(ITDR)是一種專為應對日益增長的身份相關威脅而設計的安全策略,其核心目標在於偵測並回應可能預示身份洩露的異常行為。

根據 Gartner 的研究,ITDR 將身份與存取管理(IAM)的實踐與人工智能驅動的行為分析相結合,以早期發現身份相關威脅。隨著雲端遷移與遙距工作的普及,ITDR 已成為零信任與最小權限等安全框架的重要組成部分,為企業提供更強大、更具適應性的安全防禦。

身份安全趨勢與風險

2023 年 Gartner 的報告指出,超過九成的企業曾遭遇與身份濫用相關的安全事件,這突顯了加強憑證相關攻擊防禦的迫切性。由主要科技供應商主導的 PAM 市場規模已達數十億美元,並隨著企業向雲端與混合環境轉型而持續擴張。

ITDR 作為 PAM 的有力補充,能夠有效識別可能預示身份洩露的可疑活動。根據 KuppingerCole 的分析,領先的科技企業正積極投資 ITDR,並將其與存取管理工具及安全營運中心(SOC)整合,以提升威脅回應速度。

PAM 與 ITDR 的協同效應

將 PAM 與 ITDR 相結合,能夠透過嚴格的存取控制與即時的身份威脅監控,顯著提升企業的整體安全防護能力。

  • PAM 嚴格限制特權存取,有效防止憑證濫用
  • ITDR 監控並回應洩露跡象,例如特權升級嘗試或使用被盜帳戶

例如,PAM 實施最小權限政策,限制存取範圍,而 ITDR 則偵測並阻止與這些權限相關的異常活動。

結合 PAM 與 ITDR 的效益:提升安全效能與效率

同時採用 PAM 與 ITDR 能夠帶來以下顯著效益:

  • 強化威脅偵測:結合存取控制與偵測能力,構建多層次的防禦體系,提升威脅偵測的準確性與效率
  • 縮小攻擊面:透過嚴格的 PAM 存取控制與 ITDR 的行為監控,有效減少攻擊者在網絡中未被發現的機會
  • 提升安全營運效率:自動化回應與整合警報,協助安全團隊更快速、更有效地採取行動。

整合挑戰與未來展望

儘管結合 PAM 與 ITDR 具有顯著優勢,但整合過程可能面臨複雜性。企業可能需要克服整合不同供應商工具或管理大量安全資料的挑戰。此外,協調 IT 與安全團隊,制定互補的身份政策與威脅回應策略,亦是成功的關鍵。

隨著威脅的日益複雜化,PAM 與 ITDR 的協同作用將在企業網絡安全中扮演更為重要的角色。Gartner 預測,到 2026 年,七成的企業將把 ITDR 納入其 PAM 策略,作為更廣泛的身份安全框架的一部分。

採用結合 PAM、ITDR 與 SOC 工具的企業,將能夠更有效地偵測並遏止威脅,防範攻擊升級。

總結

在瞬息萬變的數碼環境中,整合 PAM 與 ITDR 是企業保護身份安全的關鍵策略。透過採用這種方法,企業不僅能夠強化當前的安全防護,更能為未來的挑戰做好準備。

然而,強大的身份安全不僅僅依賴於技術,更需要清晰的策略與持續的改進。

senhasegura 致力於協助企業有效管理特權身份,從內部降低風險,並強化整體安全防護。

關於 Segura®
Segura® 致力於確保企業對其特權操作與資訊的自主掌控。為此,我們透過追蹤管理者在網絡、伺服器、資料庫及眾多裝置上的操作,有效防範資料竊取。此外,我們也協助企業符合稽核要求及最嚴格的標準,包括 PCI DSS、沙賓法案(Sarbanes-Oxley)、ISO 27001 及 HIPAA。

關於 Version 2 Digital
資安解決方案 專業代理商與領導者
台灣二版 ( Version 2 ) 是亞洲其中一間最有活力的 IT 公司,多年來深耕資訊科技領域,致力於提供與時俱進的資安解決方案 ( 如EDR、NDR、漏洞管理 ),工具型產品 ( 如遠端控制、網頁過濾 ) 及資安威脅偵測應 變服務服務 ( MDR ) 等,透過龐大銷售點、經銷商及合作伙伴,提供廣被市場讚賞的產品及客製化、在地化的專業服務。

台灣二版 ( Version 2 ) 的銷售範圍包括台灣、香港、中國內地、新加坡、澳門等地區,客戶涵 蓋各產業,包括全球 1000 大跨國企業、上市公司、公用機構、政府部門、無數成功的中小企業及來自亞 洲各城市的消費市場客戶。

Tackling Insider Attacks

It’s hard to accept, but the facts don’t lie: organizations must face the reality that “the call may be coming from inside the house.” In other words, you have a bad actor on your team. 

Whether it’s malicious intent or simply human error, someone may be derailing your business security from the inside. 

What Is an Insider Threat?

An insider threat is a security risk posed by individuals within an organization who have access to its data, systems, or premises. These threats can originate from current or former employees, contractors, business partners, or anyone granted access to the organization’s infrastructure. 

They can be malicious, with the intent to cause harm, or unintentional, stemming from negligence or mishandling (such as falling victim to phishing attacks).

PAM vs. Your Insider Threats

Insider breaches can lead to severe financial losses and damage an organization’s reputation. Privileged Access Management (PAM) solutions, like those offered here at senhasegura, are essential in reducing these threats. 

A key concept in PAM is the Principle of the Least privilege (PoLP), which limits access rights to only what is necessary for users to perform their duties, reducing the risk of misuse or exploitation. By controlling and monitoring privileged access, senhasegura’s PAM solution minimizes the attack surface and ensures that potentially dangerous actions are detected and addressed.

senhasegura’s PAM solution provides continuous insider threat detection by monitoring and auditing all activities performed through privileged accounts. Its capabilities include detecting and addressing potentially harmful actions before they escalate, reducing the attack surface.

This allows organizations to identify insider threat indicators such as:

  • Unusual Access Patterns: Attempts to access systems outside of normal working hours or from unexpected locations.
  • Data Transfers: Unauthorized or unusually large transfers, uploads, or downloads of data.
  • Behavioral Deviations: Actions that significantly deviate from a user’s established behavior patterns.

The Power of Session Management

PAM solutions also offer session management capabilities, including monitoring and recording user activities during privileged sessions. If a user is detected possibly engaging in malicious or unauthorized actions, the PAM system will detect and flag these activities for immediate review. 

This level of monitoring ensures that even subtly suspicious behaviors are recorded and available for analysis.

The case of Edward Snowden is an infamous insider threat example. Snowden, an NSA contractor, used his authorized access to leak sensitive data. Although he had legitimate access, his actions in exfiltrating and disseminating data were unusual and could have been flagged by proper PAM monitoring.

Excessive or unchecked privileged access can be easily exploited by bad actors, resulting in data breaches and unauthorized actions. Misuse and exposure of sensitive data can lead to catastrophic outcomes, especially if an attacker gains access through compromised credentials.

To combat these risks, PAM solutions employ all sorts of measures, including the rotation of credentials and restriction of access, ensuring that even if a credential is compromised, it is of limited value to attackers.

People First: Insider Threat Training

While technical solutions are essential, providing insider threat training to your team is equally important. Organizations must educate employees on security best practices and establish a culture of vigilance. 

Human errors, whether due to carelessness or lack of awareness, can (and will) be exploited by attackers. Combining advanced PAM technology with regular training is vital for effective insider threat prevention.

Trust No One

Organizations should adopt a Zero Trust approach, which assumes that no one – regardless of rank or role – can be trusted by default. This framework recognizes that even well-meaning employees can make mistakes that lead to security incidents. 

This matters even more for upper management, whose accounts are highly targeted because of their elevated privileges. Effective insider threat management involves not only reactive measures but also proactive steps, such as analyzing user behavior, evaluating risk, and assessing access controls. 

These actions anticipate and prevent potential threats before they escalate.

Remote Work and Hybrid Environments

The ship has sailed. Days of closed systems and dedicated internal servers are gone. The rise of remote and hybrid work has created new challenges for insider threats in cyber security

Without traditional physical boundaries, it’s harder to monitor user activities—further compounded by high turnover and increased third-party access. PAM solutions offer centralized control and monitoring, ensuring secure management of both internal and external users – no matter where they work.

Broad Capabilities for Insider Threat Prevention

senhasegura offers a centralized platform to manage privileged accounts, enforce the principle of least privilege, monitor user activities, and provide insider threat detection through real-time alerts and session recordings

These solutions include credential rotation, detailed auditing, and management of third-party access, all of which are critical in managing risks and mitigating insider threats

By ensuring visibility, security, and compliance, senhasegura strengthens organizations against insider threats, reducing their impact and enhancing overall security posture.

About Segura®
Segura® strive to ensure the sovereignty of companies over actions and privileged information. To this end, we work against data theft through traceability of administrator actions on networks, servers, databases and a multitude of devices. In addition, we pursue compliance with auditing requirements and the most demanding standards, including PCI DSS, Sarbanes-Oxley, ISO 27001 and HIPAA.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

【產品資訊】企業360°全方位的PAM管理平台─Senhasegura

特權存取管理 (PAM ) 是一種網路安全策略,專注於控制和保護 IT 環境中具有較高存取權限的帳戶。這些帳戶具有特殊權限,如果受到威脅,可能會對組織造成嚴重損害。


為什麼 PAM 很重要?
網路攻擊經常針對特權帳戶,使攻擊者能夠不受限制地存取機密資料和關鍵系統。 senhasegura PAM 解決方案透過以下方式幫助減輕這些風險:

  1. 嚴格的存取控制:senhasegura PAM 解決方案確定誰有權存取帳戶、何時以及出於什麼目的
  2. 監控和稽核:監控並記錄帳戶活動以偵測可疑行為
  3. 憑證保護:憑證被安全地儲存和加密
  4. 代理訪問:允許透過senhasegura 監視帳戶的訪問,記錄所有使用者操作以供以後審核
  5. 命令控制:允許在代理存取期間阻止特定命令,防止執行有害操作


安全第一的解決方案將重新定義您的身分安全性原則
senhasegura 的革命性創新有效防止特權攻擊,使其成為業界最全面的保護人類和機器身分的解決方案。它經濟實惠且全面,可確保為您組織的關鍵資產提供優質保護,同時提供無與倫比的客戶支援。包含:

  1. 安全特權訪問:PAM Core透過集中控制、實施詳細的存取限制、監督使用者活動和建立深入的稽核追蹤來專業的管理特權帳戶
  2. 安全的遠距工作:Domum Remote Access將遠端使用者安全的連結到內部系統、管理詳細的存取控制權、監控使用者會話並採用多重驗證
  3. DevOps秘密管理:DevOps Secret Manager透過存取控制、自動秘密輪調、與現有DevOps工具整合以及全面的報告和分析來安全的保護敏感資料
  4. 證書管理:證書管理器及中並自動化證書管理、監控證書狀態並與證書頒發機構合作
  5. 端點和設備保護:Endpoint Manager透過監督應用程式使用情況、指派特定權限、管理憑證以及提供全面的報表和分析來實施最低權限原則
  6. 個人密碼管理器:MySafe將使用者憑證權的儲存在加密的保管庫中、產生高強度密碼、自動登入並促進安全的資訊共用
  7. 雲端身份和存取管理:Cloud IAM透過多因素身分驗證、基於角色的控制、稽核追蹤和詳細報告以及與目前身份提供者的相容性來簡化身份管理
  8. 雲端權力和基礎設施管理:雲端權利透過基於角色的控制、持續的風險監控、與雲端提供者的無縫整合以及易於報告的審計追蹤來簡化權利管理


Senhasegura 成功的核心在於其 360° 特權平台,這是一個強大且使用者友好的解決方案,旨在保護特權使用者和機器的安全。 Gartner、KuppingerCole 和 ITRG 等產業分析師一致認為 Senhasegura 是 PAM 領導者,因為該平台在保護敏感資料、降低風險和確保合規性方面非常有效。值得注意的是,Senhasegura 還擁有PAM 行業中最快的價值實現時間 (TTV) 和最低的擁有成本,這使其成為尋求全面特權存取安全的組織的有吸引力的選擇。


【 Senhasegura/特權帳號管理解決方案】 https://version-2.com.tw/senhasegura/#products&domum  
✽ 歡迎電話洽詢台灣二版專業資安團隊(02)7722-6899

關於 Segura®
Segura® 致力於確保企業對其特權操作與資訊的自主掌控。為此,我們透過追蹤管理者在網絡、伺服器、資料庫及眾多裝置上的操作,有效防範資料竊取。此外,我們也協助企業符合稽核要求及最嚴格的標準,包括 PCI DSS、沙賓法案(Sarbanes-Oxley)、ISO 27001 及 HIPAA。

關於 Version 2 Digital
資安解決方案 專業代理商與領導者
台灣二版 ( Version 2 ) 是亞洲其中一間最有活力的 IT 公司,多年來深耕資訊科技領域,致力於提供與時俱進的資安解決方案 ( 如EDR、NDR、漏洞管理 ),工具型產品 ( 如遠端控制、網頁過濾 ) 及資安威脅偵測應 變服務服務 ( MDR ) 等,透過龐大銷售點、經銷商及合作伙伴,提供廣被市場讚賞的產品及客製化、在地化的專業服務。

台灣二版 ( Version 2 ) 的銷售範圍包括台灣、香港、中國內地、新加坡、澳門等地區,客戶涵 蓋各產業,包括全球 1000 大跨國企業、上市公司、公用機構、政府部門、無數成功的中小企業及來自亞 洲各城市的消費市場客戶。

什麼是自帶技術以及如何實現?

 

Bring Your Own Technology (BYOT) is a practice adopted by companies that allow employees to use their own personal devices at work.

The adoption of this concept favors professionals, who use devices with which they are familiar, and companies, which invest less in technological devices. To learn more, read our text to the end!

Bring Your Own Technology (BYOT) started among executives who had access to cutting-edge technology useful to their work.

Over time, other professionals have begun to use their own mobile devices in the companies in which they work, which benefits companies and employees themselves.

On the other hand, ensuring information security in a context where employees access corporate data directly from their tablets, smartphones, and other electronic devices is challenging. With that in mind, we prepared this article on the subject. Here you will see:

1. What Is Bring Your Own Technology?

2. What Is the Importance of BYOT For a Company and Its Employees?

3. Does BYOT Have Disadvantages?

4. What Is a BYOT Example?

5. What Is the Difference Between BYOT and BYOD?

6. How to Ensure the Security of External Devices?

7. About senhasegura

8. Conclusion

Enjoy the read!

1. What Is Bring Your Own Technology?

Bring Your Own Technology (BYOT) is an increasingly common practice in the corporate environment, where employees of a company choose and purchase their devices.

This concept refers especially to mobile devices, such as tablets, laptops, and smartphones, and refers to the integration between these devices and users, as well as the expectation of people to have their devices customized and not chosen by the organization in which they work.

Bring Your Own Technology (BYOT) can also be understood as Bring Your Own Device (BYOD).

2. What Is the Importance of BYOT For a Company and Its Employees?

As we have mentioned in the introduction to this article, BYOT favors the company and the employees themselves. This is because most professionals prefer to use the devices with which they are familiar, becoming much more productive.

Moreover, encouraging Bring Your Own Technology allows companies to save money by reducing investments in their own equipment.

3. Does BYOT Have Disadvantages?

Organizations that adhere to BYOT need to be more attentive to information security. This is because their employees can access malicious files, making their devices more vulnerable to leaks of sensitive information, and these devices do not always comply with the company’s trust standards or are evaluated by the IT department.

In addition to the lack of security related to BYOT, professionals can take more work home, compromising their time off and getting overwhelmed.

4. What Is a BYOT Example?

BYOT refers to devices, such as tablets, computers, laptops, and smartphones, belonging to professionals and used in corporate contexts, internal or external to the company.

5. What Is the Difference Between BYOT and BYOD?

As we have mentioned in this article, BYOD is a concept that means ?Bring Your Own Device.? That is, the term refers to the practice of authorizing company employees to work using their own devices.

This concept has three variations: BYOT, BYOP, and BYOPC. The first is Bring Your Own Technology, the second is Bring Your Own Phone. BYOPC stands for Bring Your Own PC.

6. How to Ensure the Security of External Devices?

The main practices that can optimize security in the context of Bring Your Own Technology are:

  • Establish a password policy;
  • Ensure the privacy of company data;
  • Limit the use of the devices; and
  • Learn how to proceed in case of dismissals.

Check out each of these practices more closely:

  • Establish a password policy

Using strong passwords is an efficient way to prevent data breaches. Thus, companies that have adopted BYOT must require their employees to create secure passwords, guided by the following good practices:

  • Opt for long passwords, preferably with 14 characters or more;
  • Create a full combination of characters, which gathers numbers, upper and lower case letters, and symbols;
  • Avoid words easily found in dictionaries, in addition to names of companies, products, and people;
  • Do not reuse previously used passwords;
  • Do not use words written backward as a password; and
  • If possible, use a password vault, so you do not have to memorize several complex passwords.
  • Ensure the privacy of company data

It is important to make it clear to employees that the company’s data belongs only to the organization, in addition to presenting a privacy policy and showing what will be the consequences in the event of confidential information leaks.

  • Limit the use of the devices

Although the devices belong to employees, their use should be restricted in the corporate environment. In this sense, they should avoid using certain resources when in the organization’s network.

  • Learn how to proceed in case of dismissals

There must be a security protocol in case of the dismissal of employees. Ideally, the data on the employee’s device should be deleted/blocked as soon as possible to ensure this information does not reach the wrong people.

7. About senhasegura

We are from senhasegura, an organization specializing in cybersecurity, whose main purpose is to guarantee the digital sovereignty of the companies that hire us, providing control over actions and privileged data and avoiding unauthorized access and leaks of confidential data.

To achieve this goal, we follow the lifecycle of privileged access management through machine automation, before, during, and after accesses.

Moreover, we work to avoid disruptions to companies’ operations, which can impact their performance; we automatically verify the use of privileges; and we bring organizations into compliance with audit criteria and standards such as HIPAA, PCI DSS, ISO 27001, and Sarbanes-Oxley.

8. Conclusion

In this article, you saw that:

  • Bring Your Own Technology is an increasingly common practice in corporate IT, where employees from a company bring their own technologies to work.
  • This practice is welcomed by employees, who use devices which they are used to, and by companies, which have access to technology and at the same time reduce costs with the acquisition of equipment;
  • On the other hand, the use of personal devices at work increases vulnerability to cyber threats, since not all devices comply with company security standards;
  • BYOT refers to devices such as tablets, computers, laptops, an
    d smartphones;
  • This concept has three variations: BYOT, BYOP, and BYOPC.
  • To ensure the security of external devices, it is essential to establish a password policy, ensure the privacy of company data, limit the use of devices, and have a security protocol in case of dismissals.

 

About Segura®
Segura® strive to ensure the sovereignty of companies over actions and privileged information. To this end, we work against data theft through traceability of administrator actions on networks, servers, databases and a multitude of devices. In addition, we pursue compliance with auditing requirements and the most demanding standards, including PCI DSS, Sarbanes-Oxley, ISO 27001 and HIPAA.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

senhasegura 參與 ISA 全球網絡安全聯盟

The topic of cyber threats is becoming increasingly present on the agendas of organizations of all sizes and verticals. With the intensification of the digital transformation movement through the introduction of technologies such as 5G and the Internet of Things, ensuring the protection of infrastructure will be an even greater challenge for organizational leaders.

One of the preferred targets of malicious attackers are organizations that use Industrial Control Systems (ICS). ICS processes critical data and is responsible for the functioning of sectors such as telecommunications, logistics, energy generation, and the healthcare sector. These sectors are a vital part of countries’ economies, forming part of what we call critical infrastructure. According to a Kaspersky study, during the second half of 2021, almost 40% of industrial devices were targeted at least once. These attacks bring significant consequences not only for these organizations but for society as a whole.

One of the biggest examples of the damage that attacks on this type of organization bring occurred in 2017. That year, Maersk, a logistics giant, fell victim to the NotPetya malware, a virus with high propagation and destruction capacity that encrypted its data. The attack caused infected devices to simply stop working, affecting the continuity of its operations and bringing revenue losses.

In addition, various governments around the world have shown concern about the impact associated with cybersecurity, especially those linked to critical infrastructure. This has caused an increase in the activity of regulating how companies implement appropriate cybersecurity controls in industrial environments.

As part of the effort to ensure the cybersecurity of control and automation systems, the International Society of Automation (ISA) developed the 62443 series of standards. These standards are internationally recognized and have been adopted by the International Electrotechnical Commission and the United Nations. The ISA 62443 standards define requirements and procedures for the implementation of safe industrial and automation systems, as well as best security practices for these systems. The adoption of the ISA 62443 standards allows industrial organizations to address the challenges related to the cybersecurity of their systems and eliminate the gaps between operations and Information Technology in their infrastructure.

Moreover, with the aim of increasing awareness and protection capability of ICS in industrial and critical infrastructure installations and processes, ISA created the Global Cybersecurity Alliance (GCA). The cybersecurity alliance created by ISA brings together automation and system control providers, IT infrastructure suppliers, service providers, system integrators, and end-users to address threats to ICS together.

ISAGCA also works to stimulate the adoption of the ISA 62443 standards, which allows for increased awareness, knowledge sharing, and tool development to assist organizations in implementing the entire cybersecurity protection lifecycle. ISAGCA members are also committed to working together with government agencies, regulators, and other stakeholders around the world.

ISAGCA members include leading technology and industrial application providers, among which is Senhasegura. senhasegura’s participation in ISAGCA since its foundation allows for the application of our experience in protecting privileged access to achieve the alliance’s objectives, especially those related to ICS protection. senhasegura’s participation in the alliance also allows for identifying gaps, reducing risks, and ensuring that member companies have the appropriate tools to protect their infrastructure from malicious attacks.

All of these aspects also show the commitment of the entire senhasegura team and ISA to the effective security of industrial environments, as well as the importance of advancing together to ensure the application of these standards, methods, and best practices for the protection of industrial systems. In this way, it is possible to ensure not only the security of organizations but of society as a whole.

About Segura®
Segura® strive to ensure the sovereignty of companies over actions and privileged information. To this end, we work against data theft through traceability of administrator actions on networks, servers, databases and a multitude of devices. In addition, we pursue compliance with auditing requirements and the most demanding standards, including PCI DSS, Sarbanes-Oxley, ISO 27001 and HIPAA.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

CISA 和 FBI 發布 ESXiArgs 勒索軟件恢復腳本

The US Cyber Security and Infrastructure Agency (CISA) and the Federal Bureau of Investigation (FBI) released this week a recovery guide for the ESXiArgs ransomware, which has harmed thousands of companies globally.

This was because malicious attackers were allegedly taking advantage of known vulnerabilities in unpatched, out-of-service or outdated versions of VMware ESXi software. Through these “loopholes” they would be deploying ESXiArgs ransomware on ESX servers, rendering these devices unusable.

The recovery tool can be found at this link and has been used by numerous corporations, who managed to recover encrypted items without paying a ransom to attackers.

However, CISA warns that to use this resource, it is essential to understand how it works. In this sense, companies harmed by ESXiArgs should evaluate the recommendations present in the README file, which comes with the script.

The number of servers infected by ESXiArgs in several countries has already exceeded 3 thousand. According to the victims, in order to decrypt the data, the hackers requested about 2 Bitcoins, which is equivalent to approximately US$ 22,800 (as of the present moment).

In addition, malicious attackers would have demanded payment of the ransom within three days, as a condition for not disclosing the organizations’ sensitive data.

As per Rapid 7, ESXiArgs attempted to shut down virtual machines by killing a process in the virtual machine’s kernel that handles I/O commands, however, in some cases it was unsuccessful as organizations were able to recover their data.

The recovery script developed by CISA in conjunction with the FBI is based on the work of researchers Enes Sonmez and Ahmet Aykac, and shows how victims can rebuild virtual machine metadata from disks that the malware was unable to encrypt.

In practice, the function of the script is to create new configuration files that allow access to the VMs and not delete encrypted files. However, CISA makes no guarantees that the script is secure.

VMware recommends that companies implement the patch released in 2021 for the vulnerability exploited by ESXiArgs. Organizations that do not fix the flaw should temporarily disable the ESXi Service Location Protocol (SLP) or still keep port 427 disabled.

About Segura®
Segura® strive to ensure the sovereignty of companies over actions and privileged information. To this end, we work against data theft through traceability of administrator actions on networks, servers, databases and a multitude of devices. In addition, we pursue compliance with auditing requirements and the most demanding standards, including PCI DSS, Sarbanes-Oxley, ISO 27001 and HIPAA.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

用戶和實體行為分析如何幫助網絡安全

Cyberattacks are increasingly sophisticated, making traditional digital security tools insufficient to protect organizations from malicious actors.

In 2015, Gartner defined a category of solutions called User and Entity Behavior Analytics (UEBA).
Its big advantage is monitoring suspicious behaviors of human users and devices in corporate networks through algorithms and machine learning, determining if there are threats and issuing alerts to security teams.

In this article, we explain more about this subject, which is extremely important for the security of your company. To facilitate your reading, we divided our text into the following topics:

  • What Is User and Entity Behavior Analytics?
  • How Does UEBA Work?
  • What Are Its Three Pillars?
  • What Are the Benefits of UEBA?
  • Disadvantages of User and Entity Behavior Analytics
  • Best Practices for User and Entity Behavior Analytics
  • What Is the Difference Between SIEM and UEBA?
  • UEBA X NTA
  • What Is UBA and What Is It For?
  • What Is the Difference Between UBA and UEBA?
  • senhasegura UEBA Solution
  • About senhasegura
  • Conclusion

Enjoy the read!

What Is User and Entity Behavior Analytics?

User and Entity Behavior Analytics (UEBA) is a digital security feature that uses algorithms and machine learning to identify abnormal behaviors in users, routers, servers, and endpoints of a network.

In practice, this technology allows alerting IT administrators about anomalies and automatically disconnecting users with unusual behavior from the network, as it monitors human and machine behavior.

With this, it helps detect people and equipment that could compromise an organization’s system, strengthening its digital security and sovereignty.

How Does UEBA Work?

To ensure the effectiveness of User and Entity Behavior Analytics, it is necessary to implement this feature in the organization’s infrastructure, which can be targeted by malicious attackers.

Moreover, many corporations ask their employees to install this solution on their home routers to avoid risks. This is because the professional may have to access the corporate network using their own router, generating security vulnerabilities.

It is very simple to understand how UEBA works. Let’s imagine an unauthorized user steals an employee’s credentials and accesses the network. This does not make them capable of imitating this employee’s usual behavior.

Therefore, UEBA issues alerts, which reveal suspicious behavior to IT administrators. A UEBA solution has three essential elements. They are analytics, integration, and presentation.

Analytics collects and organizes data about the behavior of human users and entities to determine what should be considered normal. Through this system, profiles are created of how each user behaves when accessing the network. Thus, one can develop models that allow the identification of suspicious behavior.

With the growth and evolution of corporations, it becomes necessary to integrate UEBA into other security systems. Through proper integration, UEBA solutions compare information collected from different sources, which optimizes the system.

Finally, the presentation involves how User and Entity Behavior Analytics responds to abnormal behaviors. It depends on what is defined by the company.

Some UEBA systems are configured to simply create an alert, suggesting an investigation for IT administrators. Others are configured to perform additional actions, such as disconnecting an employee with abnormal behavior.

What Are Its Three Pillars?

According to Gartner, a UEBA solution has three pillars:

  • Use cases;
  • Data sources; and
  • Analytical methods.

Use cases refer to the behavior of human or machine users reported by User and Entity Behavior Analytics, which monitors, identifies, and alerts about anomalies. Unlike systems that perform specialized analysis, UEBA technology needs to be relevant to different use cases.

When we talk about data sources, we refer to repositories of information that feed into UEBA, since User and Entity Behavior Analytics does not collect data directly from IT environments.

Analytical methods are what enable UEBA to identify abnormal behavior. They include threat signatures, statistical models, rules, and machine learning.

What Are the Benefits of UEBA?

Traditional security solutions have proven ineffective at protecting corporations from sophisticated cyberattacks, which has boosted the rise of User and Entity Behavior Analytics, as it allows one to identify even the smallest of unusual behaviors.
Its main benefits include:

Broad Approach to Cyberattacks

In addition to monitoring the behavior of human users, UEBA monitors devices such as endpoints, servers, and routers, which are often targeted by malicious attackers.

Thus, User and Entity Behavior Analytics detects a wide variety of cyberattacks, including insider threats, compromised accounts, brute force attacks, and DDoS.

Operational Efficiency

With the use of artificial intelligence and machine learning, UEBA solutions can replace the workforce of IT employees, which represents a benefit for corporations and security teams.

Nevertheless, User and Entity Behavior Analytics does not generate a drastic reduction in IT staff, especially in larger organizations, due to the complexity of security requirements, which require skilled people to configure systems and guide employees.

These professionals may also be responsible for investigating abnormal behaviors if the company decides to investigate them before taking measures.

In addition, IT analysts can develop other projects, working strategically for business growth.

Cost Reduction

With the reduction of the IT team, an organization consequently reduces costs. Also, by detecting abnormal behavior and preventing cyberattacks, companies prevent losses by stopping activities.
They also avoid having their customers’ and employees’ data exposed, which could result in fines due to data protection laws.

Risk Reduction

With professionals connected to corporate networks, including in a home environment, vulnerabilities caused by cyber threats increase gradually, making protection solutions in silos insufficient.

For IT teams, it is impossible to manually monitor all devices in use. Hence the perks of UEBA solutions.
It is worth mentioning that UEBA resources are not limited to ensuring information security. They also enable compliance with security standards for regulated industries, avoiding problems that could lead to lawsuits and fines for companies, as previously mentioned.

Disadvantages of User and Entity Behavior Analytics

The UEBA solutions also have some negative aspects. The first one is its high price, which can make this technology inaccessible to small and medium-sized businesses.

Another disadvantage of User and Entity Behavior Analytics is the slow deployment. Although many vendors claim this system can be deployed in a short time, Gartner customers say that in simple use cases, it can take three to six months, and in complex situations, it can take up to 18 months.

In addition, the view UEBA offers over network behaviors is restricted as its logs are enabled on a small part of a corporation’s network.

It is also important to keep in mind UEBA needs third-party logs to work. Failures in the generation of these logs impact its function.

Best Practices for User and Entity Behavior Analytics

User and Entity Behavior Analytics is designed to identify abnormal behaviors of humans and machines.
However, this solution should not be used in isolation but associated with other mo
nitoring systems, in order to improve the digital security of an organization. Other best practices for companies using UEBA resources are:

  • Avoiding false alerts and overloading of generated data, taking advantage of big data resources, and using machine learning and statistical analysis;
  • Creating security policies taking into account insider and external threats;
    Ensuring that only information security professionals receive alerts from UEBA; and
  • Not underestimating the risks posed by unprivileged user accounts, as hackers can increase privileges to gain access to sensitive systems.

What Is the Difference Between SIEM and UEBA?

Like UEBA, Security Information and Event Management (SIEM) features tools that make it possible to improve information security through normal patterns and suspicious behaviors.

The notable difference is that User and Entity Behavior Analytics uses data from human and machine user behavior to define what is normal.

Because SIEM is rule-based, malicious actors can circumvent these guidelines to attack a corporation. Also, SIEM detects threats that happen in real-time, but it is inefficient to prevent sophisticated attacks performed over months or years.

UEBA, on the other hand, is not based on rules, but on risk-scoring techniques and algorithms, which make it possible to detect abnormal behavior over a much longer period.

UEBA X NTA

Like UEBA, Network Traffic Analysis (NTA) solutions are based on machine learning, advanced analytics, and security rules, and monitor user behavior on corporate networks. Moreover, it detects suspicious actions and threats.

However, this technology has other advantages. One is to allow companies to visualize everything that happens on their network, including in the context of a cyberattack. NTA also makes it possible to create network profiles and devices, with easy deployment.

We emphasize these two solutions should be used in a complementary way, since NTA alone does not track local events, nor detect advanced security problems.

What Is UBA and What Is It For?

User Behavior Analytics (UBA) is a technology that allows one to identify unusual or abnormal behaviors, detect intrusions, and minimize their consequences.

Through UBA solutions, one can discover an invasion promoted by cybercriminals or find out if an employee is misusing the data to which they have access.

The focus of User Behavior Analytics is on user analytics, their accounts, and identity, not machine behavior.

What Is the Difference Between UBA and UEBA?

The difference between UBA and UEBA is that, in the first case, we refer to a solution that monitors human users to detect any anomalies in their behavior.

The extra “e” in UEBA extends monitoring to machine entities such as routers, servers, endpoints, and devices in general.

The acronym was updated in 2017 by Gartner to show that in addition to tracking human users, it is essential to identify threats related to devices and applications.

senhasegura UEBA Solution

senhasegura has a UEBA solution embedded in its PAM security platform, which allows one to monitor the behavior of human and machine users automatically.

This technology features a self-learning mechanism to identify and respond to changes in users’ behavior patterns and access profiles.

Some of the main characteristics are:

  • Analysis of user session based on behavioral history;
  • Identification of accesses and check of suspects by a series of criteria;
  • Identification of unusual behavior with abnormality alerts for SIEM/SYSLOG;
  • Detailed dashboards with a visual representation of incidents and threats, which allow a security team to act quickly;
  • Algorithms are continuously adjusted to user behavior.

Its benefits include:

  • Restriction of privilege abuse;
  • Fast detection of attacks and compromised accounts;
  • Control over the user’s administrative actions;
  • Automatic response to suspected credential theft.

About senhasegura

We, from senhasegura, are part of the group of information security companies MT4 Tecnologia, founded in 2001, and we aim to provide digital sovereignty to our customers through the control of privileged actions and data.

With this, we prevent data leaks and theft, as we manage privileged permissions before, during, and after access through machine automation. We work to:

Optimizing the performance of companies, avoiding interruption of operations;
Performing automatic audits on the use of permissions;
Auditing privileged changes to detect abuse of privilege automatically;
Providing advanced solutions with the PAM Security Platform;
Reducing cyber threats; and
Bringing the organizations that hire us into compliance with audit requirements and standards such as PCI DSS, Sarbanes-Oxley, ISO 27001, and HIPAA.

Conclusion

In this article, you saw that:

  • User and Entity Behavior Analytics uses algorithms and machine learning to identify abnormal behaviors in users, whether they are humans or machine entities;
  • This solution allows alerting IT administrators about anomalies and automatically disconnecting users with unusual network behavior;
  • To ensure the effectiveness of User and Entity Behavior Analytics, it is necessary to install this feature on the organization’s and employees’ devices;
  • A UEBA solution has three essential elements. They are analytics, integration, and presentation;
  • According to Gartner, a UEBA solution also has three pillars: the use cases, the data sources, and the analytical methods;
  • The benefits of UEBA include: a broad approach to cyberattacks, reduction of human labor, cost reduction, and risk reduction;
  • Among its negative aspects, the high price and slow deployment stand out;
  • The creation of security policies that take into account insider and external threats is among the best practices in the use of UEBA solutions;
  • It is also recommended to consider the risks presented by users without privileges;
    SIEM differs from UEBA because it is rule-based and detects only threats that occur in real-time.
    NTA allows organizations to view all the activities that occur on their network, including in the context of a cyberattack, and enables the creation of network profiles and devices, with easy deployment;
  • The difference between UBA and UEBA is that the first provides for the monitoring of human users and, in the second case, it is extended to machines.

 

About Segura®
Segura® strive to ensure the sovereignty of companies over actions and privileged information. To this end, we work against data theft through traceability of administrator actions on networks, servers, databases and a multitude of devices. In addition, we pursue compliance with auditing requirements and the most demanding standards, including PCI DSS, Sarbanes-Oxley, ISO 27001 and HIPAA.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

美國運輸安全管理局 (TSA) 的新網絡安全要求

cybersecurity requirements

On the last March 7th, the Transportation Security Administration (TSA) issued a new emergency amendment requiring regulated airlines and airports to increase their capacity to face cyber attacks. The measure was taken less than a week after the United States government announced its national cyber security strategy, following similar requirements directed at freight and passenger rail carriers.

According to the issued statement, TSA’s priority is to protect the United States transportation system, working collaboratively with stakeholders and offering safe, secure, and efficient travel. This was necessary due to hackers who have attacked the aviation industry using different invasion methods.

In July 2022, American Airlines was a victim of a phishing attack, granting unauthorized access to its IT environment. In addition, various airports in the United States were targeted by DDoS attacks in October of the same year.

For this reason, regulated entities affected by the TSA must promote the following actions:

  • Develop network segmentation policies and controls, ensuring that operational technology systems continue to function securely in case of a compromise of IT;
  • Create access control measures, protecting critical systems from unauthorized access;
  • Implement continuous monitoring and detection policies and procedures to identify and respond to cyber security threats and anomalies; and
  • Reduce the risks of exploitation of uncorrected systems by applying security patches and updates on operating systems, applications, drivers, and firmware through a risk-based methodology.

Previously imposed requirements for aircraft operators and airports include establishing a cyber security point of contact, developing and adopting a cyber security incident response plan, conducting a cyber security vulnerability assessment, and reporting significant cyber security incidents to the Cybersecurity and Infrastructure Security Agency (CISA).

Conclusion

In conclusion, the new amendment issued by the TSA is their latest effort to ensure that transportation operators improve their ability to address cyber threats. In this article, we covered its goals and importance.

According to Cybersecurity Ventures, the world ended 2020 with 300 billion passwords to protect. And the trend shows this number will increase dramatically. Email accounts (personal and professional), banking services, corporate systems, devices, and applications are some examples that require authentication through passwords. And with the increase in the number of data leaks, it is easy to find compromised credentials on forums on the dark web being sold for pennies.

And yes, we know that it is not easy to manage so many passwords. Even the most tech-savvy can struggle to manage and protect credentials in so many different environments. In times of personal data protection legislation, such as LGPD and GDPR, ensuring the protection of such data has become more than a security requirement – it is a business must.

Despite all the risks associated with their use, many users and companies use passwords that are easy to guess, such as numbers or sequential letters (123456 or abcdef). SolarWinds itself, the victim of a serious attack on its supply chain, was using the password solarwinds123 in its infrastructure. Certainly, your email password or mine is stronger than the one used by this American technology company.

So, on this World Password Day, here are some tips that should be considered by users to keep their data protected:

  1. Use long and complex passwords. This prevents hackers from using techniques to guess them. However, just using complex passwords may not be enough to protect them from hackers.
  2. Many devices are configured with default passwords. Change them immediately.
  3. Avoid reusing your passwords on different accounts. Also, constantly check if you have already been the victim of a data leak through senhasegura Hunter. If so, change your passwords immediately.
  4. Configure your passwords to be changed frequently. The ideal is at least every 3 months.
  5. Do not write down, store in an easily accessible place, or share your passwords with others, thus avoiding unauthorized access.
  6. Consider password management solutions, or even privileged access management (PAM), to manage the use of systems and devices.
  7. Use Multiple-Factor Authentication (MFA) mechanisms to add a layer of security to your accounts.
  8. Set up means of retrieving access, such as including phone numbers or emails.

Passwords are one of the oldest security mechanisms in the computing world and are also one of the main attackvectors by hackers. And in the “new normal” era, with increasing threats resulting from the covid-19 pandemic, it is vital that users be alert and properly protect their digital identities. In this way, we can avoid cyberattacks that can cause considerable damage not only to people, but also to companies. And on this World Password Day, remember: security starts with you!

About Segura®
Segura® strive to ensure the sovereignty of companies over actions and privileged information. To this end, we work against data theft through traceability of administrator actions on networks, servers, databases and a multitude of devices. In addition, we pursue compliance with auditing requirements and the most demanding standards, including PCI DSS, Sarbanes-Oxley, ISO 27001 and HIPAA.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

國際數據隱私日:為什麼這個日期很重要?

On January 28, we celebrate the International Day for the Protection of Personal Data, or Data Privacy Day. This date leads us to reflect on the importance of laws that safeguard the correct processing of private information in the most diverse countries. Data Privacy Day began with an educational action by the Council of Europe, which began celebrating the date in 2007, and two years later, in 2009, the United States followed. The purpose of Data Privacy Day is to make people aware of best practices for protecting their personal data in the online environment, especially on social media. Nowadays, the day is celebrated in 47 member states of the European Union, the United States, and countries such as Canada, Israel, and Brazil. We prepared this article to address topics related to Data Privacy Day. To facilitate your understanding, we divided our text into the following topics:
  • Data Protection Day: Background
  • How Data Protection Laws Work
  • About GDPR
  • LGPD: Brazilian Data Protection Law
  • How to Protect Personal Data
  • About senhasegura
  • Conclusion
Enjoy the read!

Data Protection Day: Background

In April 2006, the Council of Europe chose January 28 to celebrate Data Protection Day. The date was stipulated in reference to Convention 108, established on January 28, 1981, which addresses the automated processing of personal data. This document was signed by all member states of the Council in the period, to ensure the fundamental right to privacy, including good data processing practices. Currently, it is celebrated to make people aware of its importance, taking into account that, every day, organizations collect and process more information, which needs to be monitored so that the rights of data subjects are not put at risk.

How Data Protection Laws Work

Data protection laws establish personal information protection policies, determining how corporations should treat the data of their customers, employees, and business partners. In practice, it is necessary for individuals, companies, and governmental organizations to apply certain rules related to how they handle this information, such as collection, processing, and storage, to ensure compliance with current legislation. Moreover, companies wishing to conduct business with another country must respect the data protection laws present in both nations.

About GDPR

European standards regulating the use of personal information in electronic environments are contained in the General Data Protection Regulation (GDPR), which requires the responsible use of personal information. Its mass spread is still recent. For this reason, not all countries in Europe have adhered to the GDPR. On the other hand, countries that conduct commercial transactions with European nations should pay attention to the requirements of the Regulation, which addresses criteria such as consent of owners, notification of data breach to authorities, and users’ rights, including:
  • Being notified about the collection and use of their personal information;
  • Requesting a copy and details on how the collection is performed, what data is being collected, and who has access to it;
  • Requiring rectification of incomplete or incorrect data;
  • Demanding that their data be deleted within 30 days;
  • Restricting their personal information;
  • Ensuring the transfer of personal data securely;
  • Opposing the way data is used (except for information used by legal authorities).

LGPD: Brazilian Data Protection Law

The General Data Protection Law (LGPD) is Brazilian legislation that has the function of protecting the personal information of citizens living in Brazil. It details what personal data is and what information should be prioritized when protecting it. According to the LGPD, even companies based outside the country must respect the rules established by the legislation.

How to Protect Personal Data

It is possible to have control over your data through good practices that reinforce its security. Here are some of them:
  • Keep your devices’ software up-to-date to prevent threats that could damage your devices and compromise your personal data;
  • Verify that web pages are reliable before inserting your data, making sure that addresses start with http:// or https:// and that the lock icon or security certificate is present;
  • Avoid exposing personal information on social media such as Facebook, LinkedIn, Instagram, and TikTok, and set up your privacy in posts;
  • Do a general scan to know what data is being shared and, if necessary, disable options;
  • Do not enter sensitive data on public Wi-Fi networks;
  • Use strong passwords. For this, you can combine uppercase, lowercase, numbers, and special characters. It is also important to avoid obvious things like names, phone numbers, and dates of birth.

About senhasegura

We, from senhasegura, are part of MT4 Tecnologia, a group of companies focusing on information security, founded in 2001 and operating in more than 50 countries. Our commitment is to provide digital sovereignty and security to our clients, grant control over privileged actions and information, and prevent data breaches and leaks. For this, we follow the lifecycle of privileged access management through machine automation, before, during, and after accesses. In short, our initiatives aim to:
  • Avoid interruption of companies’ activities, which may impair their performance and profitability;
  • Provide advanced PAM solutions;
  • Automatically audit privileged changes in order to identify privilege abuses;
  • Automatically audit the use of privileges;
  • Reduce cyber threats; and
  • Bring organizations into compliance with audit criteria and standards such as HIPAA, PCI DSS, ISO 27001, and Sarbanes-Oxley.
Conclusion In this article, we have shown the importance of Data Protection Day and laws related to the preservation of personal information, in addition to some measures that can be adopted to protect sensitive data. Was our content relevant to you? Then share it with someone also interested in the topic.

About Segura®
Segura® strive to ensure the sovereignty of companies over actions and privileged information. To this end, we work against data theft through traceability of administrator actions on networks, servers, databases and a multitude of devices. In addition, we pursue compliance with auditing requirements and the most demanding standards, including PCI DSS, Sarbanes-Oxley, ISO 27001 and HIPAA.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.