Tips: Best Practices For Network Security

Businesses seeking to protect their sensitive systems and data must be just as aggressive as the hackers and solidify their approach to network security practices, systems and management. Just about any network, no matter how well protected, can be breached if hackers invest enough time and effort (and money) to break in. The key to a successful security strategy is to make your systems so time-consuming and difficult to break, with no weak points and fresh layers of protection added consistently, that the hackers conclude it’s not worth their time and search for easier targets. PEAK Technologies offers tips for strong network security.

Protect All Avenues of Attack. The first step toward establishing an aggressive security posture is to make sure all avenues of attack are equally secure. For the “wired” portion of a network, this means up-to-date network firewalls and proxy servers that provide protection from all the latest Internet viruses and worms, and to control access into your network in a very organized and secure manner. The increasing use of wireless devices in enterprise networks presents a serious new challenge for network administrators. Hackers may literally drive around with laptops, looking for wireless points of access on corporate networks, and then relentlessly test the authentication protocols to try and get their laptops accepted into a network. Many retail operations may have good security procedures for credit card information in their stores. However, the warehouse that supports those stores and uses wireless devices in its operations often has a much lower level of security. As a result, hackers may be able to break in to the company’s databases and access that same credit card data, from an entirely different angle.

Data Encryption. Any data moving through the air must be protected. It must be encrypted using an actively changing encryption protocol, such as the widely adopted WIFI Protected Access (WPA) protocol, which uses the Temporal Key Integrity Protocol (TKIP) to periodically rotate the data encryption WEP key. This is better and much safer than using a static WEP key, which many older systems utilize.

Device Authentication. A standalone authentication server must confirm that a wireless device is permitted to access the network. Authentication is through security “certificates,” or software records that define precisely what the wireless device is and what access is permitted. Certificates should have expiration dates, and be updated routinely. If a device attempts to attach and its certificate is out of date, the authentication server will reject it.

Rogue Device Detection. With many people setting up home WIFI networks, wireless routers are now commonly available -- which means they’re showing up where they don’t belong, on corporate networks. If someone wants to wirelessly synch their PDA with their office computer, and they bring it into the office, these “rogue” devices, without any network security features, are the prime targets many hackers are seeking. Companies need to incorporate rogue device surveillance tools into their security architecture to identify and flag devices and shut them down, before they become the hole in the network wall.

Good Password Practices. These include routinely forcing passwords to expire and be updated, and use of “strong” passwords -- at least 15 characters long, with upper and lower-case characters, numeric and symbols required. Mixing letters and numbers are not enough anymore

Annual Security Audits. PEAK Technologies recommends security audits for companies either implementing or upgrading their wireless platforms. An effective audit should always include:

  • Evaluating encryption and authentication schemes and their strengths and weaknesses against all the latest risks and identifying what needs to be updated.
  • Physically inspecting all company environments (offices as well as warehouses) to detect rogue devices connected to the network.
  • Simulate an attempted hacker’s attack, to identify any vulnerabilities that have been overlooked.

Annual security audits provide a valuable management framework to keep your network security one step ahead of the hackers. It ensures that security is an actively managed issue for your network, not something that is set up once and then allowed to languish, making your business more vulnerable with each passing day.

The bottom line: Constant network vigilance is worth the investment. Force those hackers to spend more time on a secure system and they’ll look for easier fruit to pick.

Featured

  • New Gas Monkey Garage Venue Uses AI-Enhanced Video Technology

    Gas Monkey Garage, the automotive custom shop and entertainment brand founded by Richard Rawlings of Fast N’ Loud TV fame, has opened a vibrant new restaurant and bar in South Dakota, equipped with advanced, AI-enhanced video tech from IDIS Americas. Read Now

  • Data Driven, Proactive Response

    As cities face rising demands for smarter policing and faster emergency response, Real Time Crime Centers (RTCCs) are emerging as essential hubs for data-driven public safety. In this interview, two experts with deep field experience — Ross Bourgeois of New Orleans and Dean Cunningham of Axis Communications — draw on decades of operational, leadership and technology expertise to share how RTCCs are transforming public safety through innovation, interagency collaboration and a relentless focus on community impact. Read Now

  • Integration Imagination: The Future of Connected Operations

    Security teams that collaborate cross-functionally and apply imagination and creativity to envision and design their ideal integrated ecosystem will have the biggest upside to corporate security and operational benefits. Read Now

  • Smarter Access Starts with Flexibility

    Today’s workplaces are undergoing a rapid evolution, driven by hybrid work models, emerging smart technologies, and flexible work schedules. To keep pace with growing workplace demands, buildings are becoming more dynamic – capable of adapting to how people move, work, and interact in real-time. Read Now

  • Trends Keeping an Eye on Business Decisions

    Today, AI continues to transform the way data is used to make important business decisions. AI and the cloud together are redefining how video surveillance systems are being used to simulate human intelligence by combining data analysis, prediction, and process automation with minimal human intervention. Many organizations are upgrading their surveillance systems to reap the benefits of technologies like AI and cloud applications. Read Now

New Products

  • A8V MIND

    A8V MIND

    Hexagon’s Geosystems presents a portable version of its Accur8vision detection system. A rugged all-in-one solution, the A8V MIND (Mobile Intrusion Detection) is designed to provide flexible protection of critical outdoor infrastructure and objects. Hexagon’s Accur8vision is a volumetric detection system that employs LiDAR technology to safeguard entire areas. Whenever it detects movement in a specified zone, it automatically differentiates a threat from a nonthreat, and immediately notifies security staff if necessary. Person detection is carried out within a radius of 80 meters from this device. Connected remotely via a portable computer device, it enables remote surveillance and does not depend on security staff patrolling the area.

  • Camden CM-221 Series Switches

    Camden CM-221 Series Switches

    Camden Door Controls is pleased to announce that, in response to soaring customer demand, it has expanded its range of ValueWave™ no-touch switches to include a narrow (slimline) version with manual override. This override button is designed to provide additional assurance that the request to exit switch will open a door, even if the no-touch sensor fails to operate. This new slimline switch also features a heavy gauge stainless steel faceplate, a red/green illuminated light ring, and is IP65 rated, making it ideal for indoor or outdoor use as part of an automatic door or access control system. ValueWave™ no-touch switches are designed for easy installation and trouble-free service in high traffic applications. In addition to this narrow version, the CM-221 & CM-222 Series switches are available in a range of other models with single and double gang heavy-gauge stainless steel faceplates and include illuminated light rings.

  • HD2055 Modular Barricade

    Delta Scientific’s electric HD2055 modular shallow foundation barricade is tested to ASTM M50/P1 with negative penetration from the vehicle upon impact. With a shallow foundation of only 24 inches, the HD2055 can be installed without worrying about buried power lines and other below grade obstructions. The modular make-up of the barrier also allows you to cover wider roadways by adding additional modules to the system. The HD2055 boasts an Emergency Fast Operation of 1.5 seconds giving the guard ample time to deploy under a high threat situation.