Cordoba's cybersecurity proposals review access, information and connections in different operations. Each territory raises specific sources of understanding the environment before agreeing on measures and priorities.
ELIGE A CONTEXT
Examples to talk to your team. The selection does not examine accounts or systems.
PROPOSED REVISION / 01
Persons and functions
THE INFORMATION IMPORTS
Accounts that consult or modify business information.
WHAT COMPROBAR
Identify responsibilities, necessary actions and procedure to withdraw access when a person changes function.
What to check with your team
User ratio, functions and permissions in the tools.
PROPOSED REVISION / 02
Data and documents
THE INFORMATION IMPORTS
Information that is kept and shared within or outside the company.
WHAT COMPROBAR
Review purpose, location, version and recipients to agree who can consult each source and for how long.
What to check with your team
Information map and folder and link managers.
PROPOSED REVISION / 03
Connections and availability
THE INFORMATION IMPORTS
Applications and credentials that allow to continue work between areas.
WHAT COMPROBAR
Check integration permissions, responsible and recovery options available without assuming that the environment is already verified.
What to check with your team
Inventory of agreed connections and conservation and recovery patterns.
02 / CRITERIA WHICH MAY BE REVISED
What every person needs. For as long as you need it.
A function, an access
To link the tasks with the permits for consultation, change and export. Check high, function changes and low.
Share with limits
Identify the approved version, its recipients and available options to limit or remove the link.
Connections with responsible
Know which applications exchange data, which actions can be executed and who authorizes your credentials.
A useful review leaves decisions that can be followed.
User ratio, functions and permissions in the tools.
01
Determine information
Accounts that consult or modify business information. The set of tools and documents that will enter the review is agreed.
02
Relating persons and permits
Identify responsibilities, necessary actions and procedure to withdraw access when a person changes function. Each decision contrasts with the person who knows the work and manages the application.
03
Check how you share
Review purpose, location, version and recipients to agree who can consult each source and for how long. The available options are reviewed in the tools used, before proposing changes.
04
Documenting and monitoring
Inventory of agreed connections and conservation and recovery patterns. They are recorded responsible, decisions and agreed checks to review access when the activity changes.
CIBERSECURITY / TERRITORY
Every territory, its context.
Explora propuestas locales sobre accesos, documentos y herramientas conectadas.
The directory connects with municipal proposals and their location links. The examples guide the conversation; the tools, access and scope are agreed with each company.
Cordoba's cybersecurity proposals review access, information and connections in different operations. Each territory raises specific sources of understanding the environment before agreeing on measures and priorities. A first set of information to be defined would be: Accounts that consult or modify business information.
What documentation should we have at hand?
User ratio, functions and permissions in the tools. It also identifies who manages each tool and who authorizes permit changes.
How is collaboration with third parties reviewed?
Review purpose, location, version and recipients to agree who can consult each source and for how long. It is remembered which people can pass access and who reviews their withdrawal at the end of the work.
Is the panel analyzing my company?
No. Please provide examples of a review to talk to your team. It does not examine accounts, devices or networks or provide a safety diagnosis. The actual checks require an agreed scope and access.
Are recovery options reviewed?
The versioning and recovery options available in the tools included in the project can be reviewed and evidence can be agreed with your manager. Their availability and limits are checked with each supplier; no complete recovery or a managed copy service is promised.
What does the project include and how does the cost be agreed?
The scope is part of the tools, functions and documentation used by the company. The reviews of access, permits, information and integration, good practices and changes to be made are agreed. The phases and cost are determined before starting.
Start with what your team uses.
Tell us how the information is shared in your company in Córdoba. We will start from a specific set of documents, access or connections to agree what to review with your team.