Protecting Availability

As a CISO for a publicly traded company, ensuring the availability of my systems is crucial. Some of the protections I would implement are as follows;

1. Redundancy and Failover Systems: I would implement redundant systems and failover mechanisms to ensure continuous operation. Even if one system fails, it wouldn’t critically impact operations.

2. Institute Load Balancing: I would ensure that the amount of data exchange could be handled and scaled to prevent overload on the infrastructure (i.e., servers), thus ensuring consistent availability of services.

3. Develop and execute a Disaster Recovery Plan (DRP): I would develop a DRP that would regularly test exhaustive backup and disaster recovery procedures that would quickly aid in recovering a catastrophic event (e.g., natural disaster, sandworm attack, etc…). Regular backups of critical data and systems to minimize the impact of data loss or corruption of assets.

4. Conduct regular Cyber Security events with Endpoint Security Systems: This system would implement services like Denial of Service attacks protection, Monitoring and Alerting, and Patch Management.

Implementing these protections would provide a deterrent and reduce the risk of data systems and services not being available. Using the NIST guidance, CIA Triad would aid in safeguarding my company’s operations and customer base.

Leave a Reply

Your email address will not be published. Required fields are marked *