 |
Could You Recover From Ransomware?
Most organizations find out what their recovery
is actually worth during the incident, which is
the most expensive moment to learn it.
Altius IT's ransomware recovery readiness audit
answers three questions before an attacker asks
them for you: what could you restore,
how long would it take, and
what would you lose.
Backups that complete successfully are not the
same as backups that restore. Our audit tests
the difference, and reviews the controls that decide
whether an intrusion becomes an outage:
- Backup coverage and integrity - which systems
and data are actually covered, immutability and
air gapped or offline copies, retention periods,
encryption of backup media, and whether backup
credentials are separated from production so the
same compromise cannot reach both.
- Restore testing - evidence that restores have
been performed, timed, and validated, rather than
backup jobs that report success and have never
been read back.
- Recovery objectives - documented recovery time
objectives and recovery point objectives for each
critical system, measured against how long a
restore actually takes, and the gap between the
two.
- Containment and spread - network segmentation,
privileged and administrative accounts, multi
factor authentication, remote access, endpoint
protection, and logging and monitoring that would
show an attacker moving before encryption starts.
- Incident response - a current plan with named
roles and contact trees, notification obligations
to regulators, clients, and law enforcement, cyber
insurance conditions you are required to meet, and
evidence the plan has been exercised.
Our report identifies each specific gap and
provides detailed instructions to close it, ordered
so that the changes which reduce your risk the most
come first.
Measured Against Recognized Standards
Findings are mapped to the frameworks your
regulators, insurers, and clients already
recognize: the Recover and Respond
functions of the NIST Cybersecurity Framework,
NIST SP 800-34 contingency planning, and the
joint CISA and FBI #StopRansomware Guide.
Where a ransomware event would also be a
reportable breach, we identify the obligation
rather than leave it for your counsel to
discover later.
Audit Report
Altius IT's reports provide specific
recommendations and detailed steps you can
take to address any identified gap in your
recovery. After delivery of our reports,
Altius IT provides three months of free
support to answer any questions you may
have. This ensures your recovery gaps are
properly mitigated or eliminated.
Certified Auditor Letter
Let your clients, your board, and your cyber
insurer know that your recovery has been
independently tested.
As an IT security audit company with Certified Information Systems Auditors,
we can provide you with our
Auditor Opinion
Letter stating your systems
meet security and compliance requirements.
Audit Team
Altius IT provides a certified auditor with each engagement:
- Certified Information Systems Auditor
- Experienced Project Manager
- Senior Security Engineer
Proposal
Our proposal provides you with detailed
information so you know exactly how we will
help you:
- Project scope and tasks
- Pricing options
- CV's of our audit and security team
members
- Sample reports you will receive
- Why Altius IT
We Do Not Sell the Fix
Altius IT sells no backup software, no
recovery platform, and no managed service.
Nothing in our report is a product we
benefit from you buying, which is what makes
the finding worth reading. See
Why Altius IT.
Client Experience
Altius IT works with a diverse number of
clients across a wide range of industries.
We help organizations of all sizes, from the
smallest mom and pop start-up to the world's
largest and most recognized names. Our
case
studies show how we have helped
organizations identify, manage, and reduce their
risks.
|