(866) 251-4459 support@compnetsys.com
Emergency! It’s Time to Patch and Protect.

Emergency! It’s Time to Patch and Protect.

Security vulnerabilities are no joke, especially in the healthcare industry.
See how keeping patches and security measures up-to-date will protect your patient data, and your organization’s future.

Healthcare poses a unique challenge for cybersecurity professionals, with some of the largest threats in recent history coming from ransomware attacks. With billions of dollars lost each year in data breaches, healthcare organizations have a lot to lose if personal data is breached.Hospitals, in particular, are vulnerable (as proven by the May 2017 global ransomware attack tied to a National Security Agency leaked exploit). The hospitals that hadn’t installed a critical Microsoft patch were susceptible to the hack.  This could have been prevented by ensuring all maintenance tasks were up-to-date.

Healthcare Cybersecurity Threats Are Increasing!
As the IoT (Internet of Things) expands into the healthcare realm, security becomes an even bigger challenge for healthcare IT administrators. The cyber threat landscape continues to evolve, making it even more difficult to predict where attacks will come from in the future.The widespread use of healthcare-related devices such as heart monitors, mobile phones, and other mobile-ready devices provides a “playground” for individuals looking to hack corporate healthcare networks. The fast-paced adoption of digital health records continues to provide challenges to IT leaders due to the lack of interoperability between systems.
Fortunately, IT managed services firms like {company} offer a way for understaffed hospitals, healthcare providers and networks to leverage additional support to ensure that the “guardrails” remain strong, and threats are minimized.

Your Employees Are Your First Line of Defense.
Without extensive cybersecurity training, most employees won’t understand the potential severity of their actions. IT professionals should constantly be on the lookout for opportunities to preach IT hygiene with users, including the practice of limiting orphaned or untracked devices.There are plenty of headlines around cyber security threats from malware and hacking. And phishing is on the rise again as employees are targeted, being the weakest link in the security chain.
New staff members who aren’t familiar with security requirements, both physical and digital, may not be taking the necessary steps to ensure workstations are fully secured before stepping away. Passwords may be less-secure than administrators would like, and the fast-paced environment may lead to skipped steps.
Much of the work to educate employees about cybersecurity is left to business-level leaders who may not understand the full impact of the requirements themselves. This is why it’s imperative that IT security training is done by experts like those at Computer Network Systems.Improving Breach Response and Blocking Attacks with A Proper Defense.

A proper defense involves:

A diligent attitude about applying server and software patches. This can substantially limit the ability of hackers to gain digital entrance to your organization. While time-consuming to manage, keeping Windows and other critical patches updated can stop many widespread attacks. Microsoft provides immediate access to updates that are known vulnerabilities to help keep organizations safe. Take advantage of them.Penetration testing by IT experts with technical testing, and replace or refresh end-of-life platforms with options that can be more secure.The use of sophisticated detection software, as zero-day attacks, are likely to become more common and the overall sophistication of hackers will increase. Advanced anti-virus and malware detection solutions are critical, as well as upgrades to next-generation firewalls.

Controlling access to critical information. This provides hospitals and other healthcare organizations with a way to reduce the opportunity for social engineering or phishing hacks to occur. Personally identifiable healthcare information, also known as PHI, can be sold for as much as $50 per record on the open market, making it an exceptionally valuable target for hackers.
A need-to-know policy. If employees only have access to information that they need to do their jobs, then there’s less of a chance they’ll be able to inadvertently provide access to unauthorized parties. Limiting privileges at all levels of the hospital administration provides an intermediate step that helps manage support requests and reduce the number of potential breach incidents that happen on an ongoing basis.
Advanced tools to combat advanced threats. Attacks today can be focused on DNS servers, where hackers have the ability to knock out an entire range of systems in one fell swoop: email engines, web-based services and more. The level of disruption caused by this type of attack can be difficult to return from and causes a serious distraction from crucial patient care. The new AI (artificial intelligence) options, as well as behavioral analytics, are one way that organizations can help manage the potential threats through quick attention to any breaches.

The recent Equifax hack clearly demonstrates the importance of quickly rolling out security fixes, and ensuring that all patches are up-to-date. If the Equifax team had simply applied a security patch, it’s unlikely that the hack would have been successful–saving the company millions of dollars in remediation, notifications and lost business.

Contact Us

Let the security professionals at Computer Network Systems complete a full review of your potential vulnerabilities and create a plan for remediation.  We’ll bring the security practices in your organization to a high level of preparedness. Our ongoing support will assist your organization to maintain critical patches and quickly discover any potential breaches so you can take immediate action.
Contact at 1.866.205.8123 today or support@compnetsys.com to learn more.

Are You an Email Expert?

Are You an Email Expert?

Do people respond to your emails?

YES – You probably do 5 key things.
NO – You could do 5 key things.

Subject Line:
Add “Response Needed” at the end of the subject line.
Greeting:
Make it positive and personalized to set the email tone and indicate this isn’t a mass email.
Call to Action:
Tell the reader what you want at the beginning of the email. Use bold, color or type size to further highlight your request/deadline.
Information:
Email content is best with:

1 subject per email, to stay on topic
1-3 short sentences per paragraph
bulleted points, for easy reading

Note: Emails between 50 and 125 words are 50% more likely to be read (according to Boomerang).
Closing:
Solidify your relationship with the reader and encourage/discourage a response.
Use these 5 key tips to get a response to your emails, as the average office worker receives 120 emails every day.

Thanks to Karen Turner for sharing this tip with us.

Did You Know the Equifax Hack Hit 100,000 Canadians?

Did You Know the Equifax Hack Hit 100,000 Canadians?

Are you one of them?  If so, what should you do?  
Addresses, social insurance numbers, and credit card details were compromised in the massive Equifax hack that hit 143 million Americans, and now we’ve learned 100,000 Canadians.

While 100,000 Canadian victims compared to the143 million Americans, seems quite small, if you’re one of the few whose confidential information was compromised, these numbers don’t matter.
Equifax set up a website for Americans to check whether their information was affected by the breach, but that website doesn’t work for Canadians! However, Equifax said that they’ll be sending notices out in the mail to all impacted customers, with instructions as to what to do.   Credit card companies are also expected to reach out to those Canadians who were affected as well.
What’s not clear is whether those affected are limited to Canadians with dealings in the U.S.  And you can only ask for a replacement SIN if you can prove to the Canadian government that it’s been fraudulently used.
In the meantime, take a proactive stance against identity theft:

Sign up for Equifax’s free credit monitoring and identity theft protection. Also, consider freezing your credit report. The majority of Canadian banks offer credit monitoring, which helps keep track of any suspicious activity that could potentially be linked to identity theft.
Be sure to scrutinize your credit card and bank statements every month for charges that you don’t recognize. (You should be doing this anyway.)
Watch out for any notifications that new credit applications have been filed on your behalf. If your personal information is circulated on the black market, other criminals will try to find ways to take advantage of it.
Keep a lookout for con artists. Cybercriminals often sell stolen personal information for use in email “phishing” and “spear-phishing” campaigns that persuade victims to hand over additional sensitive information, including bank account numbers. Never send sensitive information via email. Instead, contact the sender of the email by telephone to make sure the correct person really requested the information from you. And, don’t trust anyone who contacts you offering to protect you from the Equifax breach

For more information about what you can do, go to: https://www.consumer.equifax.ca/canada/equifaxsecurity2017/en_ca/
Or contact {company} in {city}.  We’re always here to help.  {phone} {email}

Don’t Update Your iPhone Yet!

Don’t Update Your iPhone Yet!

ADVISORY: Apple Mail Is Incompatible With Microsoft Office 365
Our Microsoft Office 365 experts want to keep you informed about the latest developments in Office 365 and the Apple iOS and any other technologies you use every day.

As necessary as software updates are for keeping programs effective and users safe, they can occasionally cause issues. In the process of fixing a number of other problems and adding new features, software developers can often cause a new issue that won’t be known until the update releases – especially when it involves how another provider’s software works with the software in question.
Case in point: iOS 11, which was released on September 19th, has exhibited compatibility issues when using the native Mail app. If you have recently updated your iPhone or iPad, you won’t be able to send or reply from Outlook.com, Office 365, or Exchange 2016 in the native iOS Mail app.
Luckily, our Microsoft Office 365 experts in {city} are here to help. We want you to know there is an available solution while Microsoft and Apple work to resolve the issue. Simply download the free Outlook for iOS client from the App Store, which fully supports a range of email services, including those affected by the iOS update.
The fact is that as technology continues to evolve and improve, compatibility issues like this will continue to occur – that’s why it’s so important to have the {company} team of Microsoft Office 365 experts in {city} on your side.
Microsoft Office 365 connects each and every Microsoft application with the cloud, which makes accomplishing your tasks more convenient and user-friendly. As the leading name in cloud business productivity software, Microsoft Office 365 has an extensive range of services and features designed to help you and your employees do more each day.
However, that’s not all – as one of the world’s biggest technology companies, Microsoft knows their products have to continually change in order to keep up with the ever-changing demands of users. Always innovating, Microsoft Office 365 has a range of new features being introduced this year to offer even further productivity and efficiency to those that use it for their business:

Outlook MFA: Securely access content anywhere with Multi-factor Authentication for when you’re away from the corporate network.
New DLP Policies: Significantly reduce the risk of leaking sensitive data with built-in Data Loss Prevention across Word, PowerPoint, Excel, and Outlook.
Deferred Updates: Never miss a security update because Office 365 provides automatic monthly security updates and feature releases.
Single Sign-On: Say ‘Hello’ just once.  Windows 10 Hello and Office 365 log you into your PC and Office – all in one simple step.
And much more!

Don’t forget – as is the case with Microsoft Office 365, these many features are in addition to the already considerable number of solutions offered by Microsoft Office 365 experts in {city}.
Not getting everything you think you should from Microsoft Office 365? Allow {company} to help.
The {company} team of Microsoft Office 365 experts in {city} are well-versed in everything that Microsoft Office 365 has to offer, from the core functions of workhorses like PowerPoint and Excel to the hidden features and handy tricks that will allow you to use old standards in new and exciting ways. Upgrading to Microsoft Office 365 and actually using this new version to its full potential requires a solid grasp of exactly what it has to offer, which features and applications will have the most benefit for your unique business, and how to leverage the cloud aspect of this productivity suite to improve the way your staff gets work done.
Partnering with Microsoft Office 365 experts in {city} takes the guesswork out of it and offers your business a valuable resource to help your team use this game-changing Office suite to your maximum advantage. After all, what’s the point of investing in high-end technology if you’re not going to use it the way it was intended?
The key to finding real success with Microsoft Office 365 experts in {city} is having the needed resources and support in place to keep things running smoothly. That means having an experienced {city} IT provider like {company} taking care of needed patches and updates, monitoring and maintaining the security of your entire IT environment, and helping you manage the devices that have access to business-critical data and applications.
Our Microsoft Office 365 experts in {city} can provide you with many benefits in your Microsoft experience, including:

Sensible Costs: Due to the very nature of Microsoft Office 365 and cloud computing, there is almost no up-front capital required to pay for any physical hardware or the space to store it. Furthermore, pay-as-you-go pricing offers both predictability and flexibility in your budgeting process.
Convenience: Microsoft Office 365 helps you keep content, meetings, and contacts synced across all your devices for use on the go when you’re away from the office.
And much more!

Microsoft Office 365 is flexible, versatile, and surprisingly simple – not to mention the extensive storage it offers users! It’s just a matter of having the right IT provider to help you leverage this incredible productivity tool, making sure you’re not missing out on what our Microsoft Office 365 experts in {city} have to offer.
Interested? Call the {company} Microsoft Office 365 experts in {city} right away at {phone} or email {email} to learn more.

Don’t Pay the Price of a Data Breach

Don’t Pay the Price of a Data Breach

Cybersecurity is a key topic for our healthcare tech professionals, especially as the cost of data breaches continues to rise. As I tell all of my clients, only a layered approach to security will provide a framework for complete protection.  

Did you know that millions of records of data are impacted by data breaches every year? — And few industries are impacted as much as healthcare.
The sheer volume of personally identifiable healthcare information makes healthcare organizations like yours a prime target for cybercriminals—Especially since the going price for these details is $50 per record!
HHS has identified more than 200 data breaches so far in 2017, with each representing the PHI of a minimum of 500 individuals. Every breach requires notification of the individuals affected. The costs of remediation are taxing the resources of overworked healthcare professionals throughout the country.
Is Your Data Vulnerable?
As you know, your caregivers need access to patient data to do their jobs.  However, even the most rigorously-trained may forget and leave their computer unmanned for a few moments, potentially exposing PHI to dishonest individuals.
Your nurses, doctors, and administrators need quick access to the most detailed and personal information in order to provide the highest possible quality of care—And if this access is provided on an unsecured workstation or on personal devices such as mobile phones or tablets, the information can easily be laid bare for all to see.  The result?  You’ll pay the price.
Digital Records and Devices Are Essential But Pose a Risk to Your Organization.
EMRs and EHRs provide portability to an individual’s healthcare that your doctors and providers can track information over time.  They’ve proven to be much more efficient than using the traditional paper records of the past.
A person’s EHR contains a great many details that can easily be passed between different medical practices, hospitals or other healthcare providers—And, as helpful as this is, information can be lost or exposed if connections lack the proper security.
Lost laptops and mobile phones are also a critical concern as someone could quickly grab a device that’s been left out for only a moment. If you allow your staff to BYOD (Bring Your Own Device) you face an additional hurdle as individual phones or tablets accessing your intranet or medical records may be easier to hack than computer devices in your facility.
A Data Breach It Can Have a Far-Reaching Impact on Your Patients.
If you experience a data breach and immediately notify those affected, they can usually protect their personal accounts. However, if the notification isn’t received or acted upon, they may find themselves spending weeks, months and even years trying to untangle the web of fraudulent credit accounts and charges.
Identity theft causes an average of $2,500 in out-of-pocket costs to each person whose data has been misappropriated—a staggering sum that most American families would find difficult to recover from. This is especially distressing as fewer than one-third of the individuals a healthcare organization attempts to notify, receives the intended notification.
A Data Breach = Lost Business and Legal Fees
Studies show that more than 90 percent of individuals whose data is exposed due to a data breach move to a different healthcare provider—while others file lawsuits, change insurance providers and take actions against the organization that was the target of the cyberattack.
Unfortunately, consumers don’t typically report the data breach to the organization where the breach occurred—which can make it even more problematic for smaller healthcare providers to determine the cause of the breach, or even discover that an attack has happened.
Healthcare providers are trusted with a great deal of information. This can cause a strong negative reaction from those they serve when they find that the details of their personal health and life have been obtained by cybercriminals. The best way to maintain positive relations with your patients is by implementing stringent security protocols to ensure data integrity and preservation.
So, What’s the Lesson Learned?
Attacks will continue to grow in sophistication as your information systems grow in complexity, resulting in a perfect nexus of data that are ripe for attack. To avoid paying the price of a data breach, you must implement a sound basis for your IT operations that only a layered approach to security can provide. Contact us and we’ll be happy to explain what this is.
{company}
{phone}
{email}