Why your firm’s data security is more important than ever (and 3 steps to protect yourself)
All too often people prioritize the wrong things when it comes to data security. Everyone goes to great lengths to protect their physical laptops, for example. They don’t leave them lying around just anywhere. They keep them hidden away when traveling. And eccentric passwords are used to protect them.
Yet, when it comes to the things laptops are actually used for, data protection is considered by few. Usually it’s only the most tech-savvy—the ones who know the risks.
Most people don’t have multi-factor authentication on their email. And an even larger number use the exact same password for hundreds of sites and accounts. It’s these types of “digital habits” that become the standards for which accounting firms, small business, and even major multinational corporations, handle client information.
We’ve seen this happen at scale with the Yahoo data breaches in 2013 and 2014 (affecting over 3.5 billion users), the Marriott/Starwood breaches, Equifax, and when 100 million Capital One customers had their data compromised.
Unfortunately, these data breaches happen all the time. And they never happen because someone left the front door open. It’s because someone forgot to close the side door or the back door.
So, what do we do? And especially if you’re running an accounting firm, how can you ensure your most sensitive data doesn’t fall into the wrong hands?
Step 1: Understand the basics of data security
At a high-level, there are 5 main categories of data security:
System/Data Tampering: Access to your systems or your data by an unauthorized third party.
Exploitation: Misusing resources that were left open and shouldn’t be available to people.
Unauthorized access: Accessing sensitive information people shouldn’t have access to.
Disruption: Disrupting the normal function(s) of business or business processes.
Ransomware: Attacking and either encrypting data or encrypting systems so that the original operators no longer have access.
Your basic data security must cover the above at a minimum.

:format(avif))
:format(jpeg))
:format(jpeg))

:format(jpeg))
:format(jpeg))
:format(jpeg))
:format(jpeg))