-

Securing and rehosting a business-critical application service
|
Read more: Securing and rehosting a business-critical application serviceSecuring and rehosting a business-critical application service Assessing, remediating and transitioning an application stack into a secure managed environment Read Time A UK-based organisation relied on a business-critical application stack to support day-to-day operations. The application was also important to work involving UK Government departments, which meant security, assurance and operational confidence were central to…
-

Strengthening COMAH Cyber Security: A Leadership‑Focused View
|
Read more: Strengthening COMAH Cyber Security: A Leadership‑Focused ViewBy Jonny Keiller, Principal OT Security Consultant, Logiq As an ISA/IEC 62443 specialist (the global series of standards for securing industrial automation and control systems) with experience across Control of Major Accident Hazards (COMAH) sites in multiple sectors, I’ve seen a clear shift in what “good” looks like for cyber security in industrial environments. The…
-

Replacing legacy corporate IT with a secure managed environment
|
Read more: Replacing legacy corporate IT with a secure managed environmentReplacing legacy corporate IT with a secure managed environment Delivering secure collaboration and modern IT services through a single managed service Read Time A client needed to collaborate securely with government and partner organisations, but also had a wider internal technology challenge. Its existing on-premise corporate IT environment was approaching the point where it needed…
-

Enabling secure collaboration across government and industry partners
|
Read more: Enabling secure collaboration across government and industry partnersEnabling secure collaboration across government and industry partners Supporting controlled information sharing on a fast-moving multi-organisation programme Read Time A client working with a UK government organisation and several industry partners needed a secure way to collaborate across organisational boundaries. The programme involved a multidisciplinary team, sensitive information, and a need to work at pace.…
-

Data Handling and Sharing
|
Read more: Data Handling and SharingData is handled constantly, often without much conscious thought. Files sent by email, documents saved to shared drives, information passed on in a conversation or a screenshot. Most of the time this happens without consequence. But the habits formed around routine data handling determine what happens when something goes wrong, or when data ends up…
-

Recognising and Responding to a Security Incident
|
Read more: Recognising and Responding to a Security IncidentSecurity incidents happen. They happen to organisations with mature security programmes, experienced teams, and robust controls. The measure of a security posture is not only how well it prevents incidents but how effectively it responds when prevention falls short. Knowing what to do in the first moments after something goes wrong matters. Delayed or poorly…
-

When version control slips on MOD construction projects
|
Read more: When version control slips on MOD construction projectsDrawings standing still on construction projects is a very rare thing indeed. They move through constant cycles of issue, review, mark-up, and revision. On MOD programmes, that process involves multiple contractors and subcontractors, often working across different systems and environments, each with their own document practices and pace of delivery. Version control is straightforward in…
-

Account Security and Recovery
|
Read more: Account Security and RecoveryMost security guidance focuses on protecting accounts from being accessed by others. Less attention is placed upon what happens when you lose access yourself or when an attacker uses your own account recovery process against you. Account lockout is a more common experience than many people expect, and the recovery process, when not set up…
-

Working Securely When Travelling
|
Read more: Working Securely When TravellingTravel introduces a specific set of security risks that don’t exist, or exist in a more controlled form, in a normal working environment. You’re operating on unfamiliar networks, in public spaces, with devices that may be subject to inspection at borders, in locations where the people around you are unknown. The controls that protect you…
-

Why Backups Matter
|
Read more: Why Backups MatterBackups are one of the most consistently undervalued aspects of everyday security. Most people understand in principle that they should back their data up. Far fewer do so reliably, and fewer still have ever tested whether their backup actually works. The practical reality of not having a working backup becomes clear very quickly when something…
-

Collaboration challenges on MOD construction projects
|
Read more: Collaboration challenges on MOD construction projectsOn MOD construction projects, collaboration is constant. Drawings, RFIs, revisions, and mark-ups move between principal contractors, subcontractors, and specialist trades throughout the lifecycle of a programme. Decisions made in one part of the supply chain affect others. Coordination isn’t a phase of the project – it’s continuous. In theory, the process is structured. In practice,…
-

Phishing and Social Engineering
|
Read more: Phishing and Social EngineeringMost successful attacks don’t begin with sophisticated technical exploits. They begin with a message (an email, a text, a phone call), designed to make someone do something they wouldn’t otherwise do. Phishing and social engineering remain among the most effective methods available to attackers precisely because they target human judgement rather than technical defences. The…
