惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

酷 壳 – CoolShell
酷 壳 – CoolShell
H
Hacker News: Front Page
P
Palo Alto Networks Blog
T
ThreatConnect
Apple Machine Learning Research
Apple Machine Learning Research
博客园_首页
T
True Tiger Recordings
P
Privacy & Cybersecurity Law Blog
B
Blog
IT之家
IT之家
Last Week in AI
Last Week in AI
F
Full Disclosure
Hacker News: Ask HN
Hacker News: Ask HN
C
Comments on: Blog
Microsoft Azure Blog
Microsoft Azure Blog
C
Cybersecurity and Infrastructure Security Agency CISA
Microsoft Security Blog
Microsoft Security Blog
博客园 - 【当耐特】
N
News and Events Feed by Topic
NISL@THU
NISL@THU
腾讯CDC
雷峰网
雷峰网
Security Latest
Security Latest
李成银的技术随笔
M
Microsoft Research Blog - Microsoft Research
L
LangChain Blog
L
Lohrmann on Cybersecurity
cs.CL updates on arXiv.org
cs.CL updates on arXiv.org
C
Check Point Blog
Y
Y Combinator Blog
Recent Announcements
Recent Announcements
博客园 - Franky
N
News | PayPal Newsroom
V
V2EX
A
About on SuperTechFans
The Register - Security
The Register - Security
月光博客
月光博客
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
Google Online Security Blog
Google Online Security Blog
MyScale Blog
MyScale Blog
Cisco Talos Blog
Cisco Talos Blog
Vercel News
Vercel News
WordPress大学
WordPress大学
C
Cyber Attacks, Cyber Crime and Cyber Security
The Hacker News
The Hacker News
IntelliJ IDEA : IntelliJ IDEA – the Leading IDE for Professional Development in Java and Kotlin | The JetBrains Blog
IntelliJ IDEA : IntelliJ IDEA – the Leading IDE for Professional Development in Java and Kotlin | The JetBrains Blog
爱范儿
爱范儿
A
Arctic Wolf
L
LINUX DO - 最新话题
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More

Megaport Blog

Early Warning Signs Your Network Needs a Refresh Introducing Megaport DDoS Protection A Guide to 400G Connectivity A Guide to NAT Gateway A Guide to Cloud Storage How the Data Center Is Evolving in 2026 What to Expect When Attending Your First Network Operator Group (NOG) Nine Ways to Connect to Cloud Using Private Connectivity Migrate Your On-premises to the Cloud: A Step-by-Step Guide How to Lower Your Egress Fees in 2026 How to Achieve Data Sovereignty in Europe Redefining the Edge with Cisco and Megaport How to Reduce Latency in Your Multicloud Environment Introducing Megaport High-Speed Cross-Cloud Encryption Are Businesses Leaving the Cloud? Using Meraki and Megaport Virtual Edge for Multicloud Networking Equinix Metal® is Going Away: Here’s What You Can Do Introducing Megaport On-ramp as a Service Megaport’s Full Solution Portfolio Is Coming to India New Bare-metal GPU Instance Now Available with NVIDIA RTX Pro 6000 A Look Back at 2025: Megaport's Biggest Updates Megaport Expands Into India With Extreme IX Your 2026 Predictions From AWS re:Invent 2025 Top NaaS Trends for 2026 What is IPsec? When to Move From Public Internet to Private Connectivity Megaport and Latitude.sh: Bringing Compute and Connectivity Together Improve Your Microsoft ExpressRoute Resilience with Megaport Comparing Ways to Connect to AWS What is API-First Networking? The Hidden Cost of Running Cloud-Hosted SD-WAN for IaaS Overcoming NaaS Integration Challenges Introducing SCION with Anapaya and Megaport How to Use Network as a Service to Future-Proof Your Network Introducing 400G Ports All the As-a-services, Compared Introducing Megaport IPsec Tunnels High Score: Megaport Hits 1,000 Locations A Guide to Colocation Data Centers Maximizing Peering Through Flow Analysis Build Resilient Networks for AI Production Workloads Introducing Packet Filtering on Megaport Cloud Router Building Resilient Government IT: Strategies for Secure, Compliant, and Scalable Connectivity Future-Proofing Government IT Telstra Programmable Network Is Being Discontinued. Here’s How to Migrate The Future of WAN Design Depends on Network as a Service (NaaS) Cisco Webex Edge Connect Launches on Megaport Voice and Video Exchange How to Prepare for APRA CPS 230 Comparing the SD-WAN Licensing Needs of Major Vendors A Guide to Improving Network Performance How Latitude.sh, Wasabi, and Megaport Unlock Cost-Effective Multicloud Four Ways to Connect Your Clouds SD-WAN and MPLS: Weighing the Similarities, Differences, and Benefits A Guide to Network as a Service (NaaS) How to Arrange Bilateral Peering Sessions Comparing Major SD-WAN Vendors Software Defined Networking in Healthcare Deploying A Global Network in Minutes With Megaport AWS Direct Connect Gateway (DGW) Data Transfer Outbound Rules Bilateral and Multilateral Peering: What’s the Difference? Multi-Region SD-WAN: Why Megaport SDCI is the Right Choice Microsoft Azure is Going Secure by Default. Are You Ready? How Megaport and Vultr Are Solving the Enterprise AI Challenge Introducing Megaport NAT Gateway A Guide to AWS Security Tools How to Deploy Amazon Bedrock Using AWS Direct Connect and Megaport Azure Private Link, Explained Introducing 100G MCRs Simplifying Hybrid and Multicloud Network Connectivity How to Fix Poor AWS Latency A Look Back at 2024: Megaport’s Biggest Updates Your 2025 Predictions From AWS re:Invent 2024 Six Ways to Get a More Resilient Network in 2025 Multicloud Security: Challenges and Solutions The Real Cost of High Network Latency Why Brazil is Your Key to Unlocking Business Growth in Latin America Why You Need Integrated Network Security Six Key Differences Between Major Cloud Providers How to Automate Your Megaport Infrastructure With APIs Why Italy is Europe’s Next Cloud Expansion Hotspot How to Lower Your Cloud Costs Peering: How Local Is Local? Introducing Megaport AI Exchange Two Scenarios for Hybrid Multicloud Deployment With IBM Cloud and Microsoft Azure How to Connect Equinix and Digital Realty Megaport Enables Microsoft Azure ExpressRoute Metro for More Resilient Network Connectivity Executives, Here’s What Your Network Team Wants You to Know Easy Ways to Interconnect Your Network The Role of the Data Center in Your Network 100G VXC Expansion: Now Available From 597 Data Centers Worldwide Top 10 How-To Guides To Improve Your Network Comparing Encryption in Transit Options Comparing Generative AI Offerings From Major Cloud Providers A Sustainable Business Strategy Starts With Your Network Solutions to Common API Issues With Megaport Transforming Financial Connectivity: Introducing Megaport Financial Services Exchange (FSX) Megaport Enhancing Connectivity in Adelaide Megaport’s Latest Portal Features and Functionalities Automate Your Network Deployments With The New Megaport Terraform Provider A Recap of the Megaport World Tour 2024
How to Build a Cybersecurity Culture in Your Business
2023-03-24 · via Megaport Blog

In IT, the latest tools are a must to keep companies safe. But here’s why culture is just as important – and how you can foster a safer workforce.

How do you maintain a healthy immune system? Not by living in continual fear of illness, or forever consulting doctors (although that may be comforting to some), but by pursuing wellness – fitness, nutrition, and physical and mental balance.

Likewise, in business, the goal is not simply to be reactive—to keep responding to problems as they appear—but to proactively develop and execute strategies that prevent these problems from occurring in the first place. This is particularly important for IT and cybersecurity teams as, by the time a problem appears, it can often be too late.

Is your business approaching IT with a cybercrime mindset, where problems are to be feared? Or with a security-first mindset, where you focus on integrating best practices for improving the safety of your data? In this blog, we examine how IT teams can cultivate security best practices throughout the wider business and facilitate a culture shift from reactive to proactive.

Every business is in the IT business

“Major service provider suffers large-scale breach.” Headlines like this are so common now that they barely attract notice. Russia, China, and the U.S. regularly claim attacks against critical communications and energy grids, with election tampering and COVID misinformation the most recent alleged threats in fashion.

And other countries haven’t been spared. Take Australia, for example (the home of Megaport HQ). In October 2022 alone, hackers targeted a platform containing sensitive Department of Defence data, health insurer Medibank suffered a data breach affecting nearly 10 million customers, and AFP classified documents were leaked, exposing agents fighting drug cartels.

With so many types of cybercrime rampant around the world (from critical utility sabotage, to cryptocurrency fraud, to ransomware), the cybersecurity market is projected to grow from 155.83 billion USD in 2022 to 376.32 billion USD by 2029. The challenge is ongoing – and it affects everyone. So how can IT teams shift an entire business’s mindset toward maintaining cybersecurity best practices to help protect the business at large?

The more clouds you use, the more security risks your business can face. Here’s how to stay safe.

Solutions

Many times, cybersecurity issues arise not because of technology gaps or system defects, but because of carelessness or ignorance on the part of employees – most often those not working in or adjacent to IT.

According to IBM, “human error was a major contributing cause in 95% of all breaches.” This is not to necessarily blame employees, but highlights a need to focus not just on technology but also workplace culture and behaviors.

Here are some practices you can adopt to proactively make your workplace culture more cybersecure.

1. Understand your business

Prior to any other step, every organization should conduct their own business impact analysis (BIA) and risk assessment. This ensures that IT and cybersecurity team activity is aligned to the goals of the business and understands the priority areas to maintain and secure. Make this a continual practice, and don’t leave it purely to the IT department – all areas of management should be involved.

Weaknesses in business processes and procedures can occur outside of the IT team’s area of responsibility, which is all the more reason to maintain visibility and involvement of how businesses are creating, using, and sharing their data and information assets. This is also a great way to build collaborative relationships and a sense of ownership within organizations (with all the benefits of enhanced visibility and collaboration that may flow).

All cybersecurity starts with good IT governance. The following activities may be common knowledge to IT and cybersecurity teams but may not be to other non-technical teams. Even where it falls outside their purview, it is worth sharing these basic IT and cybersecurity goals with the wider business in order to communicate how and why your teams work to securely deliver IT services.

  • Build and maintain secure user systems – ensure there is proper encryption, anti-malware is enabled, and software is regularly updated
  • Enable secure and reliable storage – provide approved and encrypted storage services, regular backups, and periodic recovery testing
  • Securely connecting resources – build low-latency, security layered networks to connect users to data centers and cloud services
  • Email and spam filtering – ensure that only relevant emails arrive in your inbox and that a fraudster’s phishing email is blocked
  • Enable identity and access controls – enforce strong passwords, implement two factor authentication (2FA), and consolidate logins where possible
  • Maintain continual awareness – communicate threats and risks to the business as well as the procedures for staff to follow in the event of a concern or incident.

Learn how Firewall as a Service (FWaaS) acts as your cloud infrastructure’s own security guard.

2. Implement relevant protections

After conducting your BIA and risk assessment, do IT and cybersecurity teams understand business goals, constraints, and reasons how and why certain business processes are conducted? Which areas present the biggest concern? What changes are required to best protect against any weaknesses?

By assessing the risks in the context of the business goals, the IT and cybersecurity teams can devise practical and enforceable mitigations against threats. They can then plan a roadmap to implementing necessary changes that minimize disruption (and hopefully annoyance) to your staff. People will generally follow guidelines if they understand that there is reasonable purpose and alignment to business goals.

IT and cybersecurity teams engage best when available to discuss why certain guidelines are implemented and advise as necessary on the best way to implement or comply. This typically includes:

  • Onsite security how to handle visitors, locking sensitive documents, and other audio-visual equipment
  • Removable media how can USB sticks, SD cards, optical or magnetic media be securely used (or better yet – don’t use them at all)
  • Mobile devices – what information or business systems can be accessed and how
  • Remote site security any additional precautions or requirements for home or public spaces and Wi-Fi
  • Cloud services – what is acceptable use for implementing cloud services and storage of business data
  • Being email savvy never click suspicious links, download unknown files, or follow strange instructions sent in email
  • And being web savvy – check for secure sites (HTTPS), take care on social media, and take care in where you transfer files
  • Confidentiality and privacy – ensuring that information and data is only accessed or known to those who require it
  • Keeping your identity secure never write or share your (strong, complex) passwords or tokens

Whatever training it may be that you provide, and however it is delivered, the key is to do so with purpose and enthusiasm. Mindset matters – if you offer half-measured programs of dull compliance training videos, you can expect similar results.

We listed intrinsic security as one of five features your enterprise network needs – learn the others in our blog.

3. Engage and cultivate buy-in

Ultimately, the purpose of IT is to enable the technology tools required to conduct business serving both the employees and your customers. IT and cybersecurity are more than a means to operate the business on a logistical level – but a hub of knowledge and support for others to perform their role. Technology permeates every aspect of your business.

To ensure everyone is engaged and supporting your initiatives, propose relevant, reasonable controls that solve clearly articulated problems instead of dictating requirements. Solicit and consider feedback regarding productivity and other potential business impacts. Integrate communications with operational and leadership discussions to maintain effective awareness and stakeholder feedback loops. Speak to the business partners in terms they understand and seek to understand the business. Recognise security champions and reward achievement. Employ relevant, and engaging, awareness and training in regular, consumable packages.

Summary

Crime is a fact of human societies around the world. Information technology and the Internet bring the world together in unprecedented ways, so it is inherently a medium for crime of many varieties, scales, and motivations. As a result, measures to prevent or minimize IT crime can feel like an endless game of cat and mouse.

Instead of considering cybersecurity as an obligation or roadblock, leverage your relationships with partners in the business to embed protections and good practice into the foundation of the business. Seize it as an opportunity to cultivate greater awareness and unity in achieving business objectives.

By curating continual assessment and awareness processes, you can quickly react to changes in the threat landscape and develop controls suited to your organization. By embedding processes and communication channels into other teams and business units you can develop, revise, and adapt policies, processes, and procedures that align with business objectives and constraints. By soliciting and considering feedback you get everyone involved – because that involvement is meaningful and genuinely helpful. Monitor the sentiment of your people, not just their completion of generic online compliance courses.

And ultimately, by not viewing cybersecurity as merely a cost and an inconvenience or, worse, as some hypothetical threat, your organization will be poised to meet the challenges presented by the continual change in technology.

Should you avoid using the public internet, or does it have a place in your cloud network? Find out here.

Cybersecurity and Megaport

Virtualizing your network with a secure private provider helps streamline your network security and gives you more time to focus on people. Provisioning virtual private connectivity with a Network as a Service (NaaS) provider like Megaport will shield your data from transiting the public internet, and will instead provide a protected path between your locations, cloud providers, and platforms.

When you connect to Megaport’s vendor-neutral Software Defined Network (SDN), you’re enabling a private network backbone that can be applied across your entire network for better security, performance, and ease of management. With on-demand provisioning and no lock-in contracts, customers can also future-proof their architecture with the ability to scale their network up in real time as they grow, as well as full network visibility via the Megaport Portal.

Our Megaport API allows customers to get even more control over their network by automating a range of Megaport-related processes and enabling on-demand private connectivity between customer, marketplace, and cloud-service provider locations. Meanwhile, Megaport Virtual Edge (MVE) gives customers control of their network from end to end, meaning they can keep a closer eye on security controls and protect their data to the edge.

You can also easily and securely integrate your network through SASE (if partnered with Fortinet or Versa) for a NaaS and Security as a Service (SaaS) fusion that supports faster speeds and higher bandwidth without compromising on security.

This solution enforces consistent security policy at the cloud services level, meeting users wherever they are, on any device; the security perimeter allows direct communication to the resources that your end users need to access.

We have also been looking at advanced security measures for our network through quantum cryptography.

Discover how Megaport’s private and secure connectivity solutions could help you – book a demo today.