Risk management
The Australian Signals Directorate has commenced a major step in ensuring that there is a strict security control in their cyber. It is clear that four security mechanisms had been put in place but due to the fact that their operations have expanded to a larger extend, there has been a call to double the security controls from four to eight. The main aim for this is to cover a wider range of threats than just the targeted attacks. I believe that many small enterprise businesses and government agencies have taken this initiative so as to ensure that they are protected from any cases of attacks.
These cyber threat strategies have been published by ASD since 2010 and it is believed to highly mitigate the techniques that are commonly used in cyber targeted interruptions. The four common strategies that have been formulated and reported to be effective includes the application of whitelisting, patching applications, patching OS vulnerabilities and finally the restriction of administrative privileges. There are about 30 controls that agencies are required to select but I think this will only work once these mega four have been met. So as to mitigate cyber securities effectively, the ASD has extended the list from four to eight and if correctly implemented, then the baseline cyber security posture will have been achieved. I believe that the Essential Eight will be a very effective tool in risk management