Cyber Security First Aid – What to do immediately on becoming aware of an incident
Cybersecurity incidents can strike at any time, often when least expected. Penny Gamble, an experienced digital marketer and cybersecurity advocate, shared practical advice on what to do immediately when you become aware of a cyber incident. Her insights aim to equip small business owners and freelancers with actionable steps to protect their digital assets and minimise disruption.
Recognising the Signs of a Cyber Incident
Early detection is crucial to limit the damage of a cyberattack. Penny outlined key symptoms to watch for, including:
- Inability to access accounts despite using correct login details.
- Suspicious activity in email or messaging apps, such as unrecognised sent items or reports from colleagues about unusual messages.
- Unusual social media behaviour or posts you didn’t create.
- Devices behaving strangely—slowing down, crashing, overheating, or displaying pop-ups.
These symptoms may indicate malware or unauthorised access. Penny emphasised the importance of acting quickly, as speed can significantly reduce the impact.
Emergency Cyber Security First Aid
When a cyber incident occurs, Penny recommends following these three steps immediately:
-
Disconnect:
- Power off your router to sever the internet connection and prevent malware from spreading across your network.
-
Change the Locks:
- Use a separate device on a different internet connection (e.g., mobile data) to reset passwords on compromised accounts.
- Enable two-factor authentication (2FA) wherever possible.
- Notify your contacts of the breach to minimise the spread of potential scams.
-
Secure Your Device:
- Run a malware scan and ensure all software is up to date.
- Clear your browser’s cache and cookies.
- Seek expert help if necessary to ensure the device is fully secure.
Preparing to Prevent Future Incidents
Proactively improving your cybersecurity is far less stressful than reacting to an emergency. Penny highlighted the importance of consciously designed security rather than reactive, on-the-go solutions.
Here’s how to take a strategic approach to cybersecurity:
-
Know Your Digital Assets:
- Create an inventory of all your accounts, devices, and digital assets, including who has access to them.
-
Set Policies:
- Establish clear expectations for security, especially if you work with team members or freelancers.
-
Strengthen Account Security:
- Use strong, unique passwords and enable 2FA for all accounts. Avoid reusing passwords across platforms.
-
Secure Devices and Software:
- Ensure antivirus software is installed and active. Set software updates to run automatically.
-
Plan for Incidents:
- Create a clear incident response plan outlining steps to recover critical assets, contact clients, and minimise downtime.
Why Proactive Security Matters
Cybersecurity emergencies don’t just disrupt workflows—they create stress and can damage reputations. By proactively designing a security system tailored to your business, you can work faster, more confidently, and with reduced friction.