Issa healthcare panel

14
**Confidential** **Confidential** Mitigation - Defense in Depth

Transcript of Issa healthcare panel

Page 1: Issa healthcare panel

**Confidential** **Confidential**

Mitigation - Defense in Depth

Page 2: Issa healthcare panel

**Confidential** **Confidential**

Secure Configurations

• Most basic line of defense

is a secure configuration.

• Do blank passwords work?

Guest access?

• Is your wireless

accesspoint using WPA?

• Can the software be

secured? Is it still

supported?

• Many excellent resources

to help users at all levels.

Page 3: Issa healthcare panel

**Confidential** **Confidential**

Is your software updated?

• Auto-updates

• Verify current status

• Qualys Browser Check

• Windows Update

Page 4: Issa healthcare panel

**Confidential** **Confidential**

Anti-Virus

Page 5: Issa healthcare panel

**Confidential** **Confidential**

Firewall - Windows

Page 6: Issa healthcare panel

**Confidential** **Confidential**

Social Media

• Who are your on-line “friends”? Attackers? Who are their friends?

• What information are you (or your spouse, or your kids) disclosing?

• Master the privacy policies of each service BEFORE you use it.

Page 7: Issa healthcare panel

**Confidential** **Confidential**

Two Factor Authentication

• Use two factor authentication whenever possible.

• Do not synchronize passwords!

• Make sure email accounts are locked down.

Page 8: Issa healthcare panel

**Confidential** **Confidential**

Password Management

• Do not synchronize passwords!

• Make sure email accounts are locked down.

• Password management programs help with complying with

good password practices.

Page 9: Issa healthcare panel

Challenges

Page 10: Issa healthcare panel

Users

Page 11: Issa healthcare panel

Case Study - Phishing Email

Page 12: Issa healthcare panel

Phishing Webpage

Page 13: Issa healthcare panel
Page 14: Issa healthcare panel