Blog

April 12th, 2012

One issue that’s gaining steam, especially with SMEs, is business continuity planning. Many companies are starting to develop plans so that they can continue to operate through both problems large and small. If you’re one such company, and are stuck at the point where you need to choose between software and templates, we have some advice for you.

The decision between templates and software can be a tough one to make, as whichever one you choose, you’ll be using and relying on for a long time. To help you we’ve covered some pros and cons on both choices:

Using Software If you choose to go with a software program, you will be walked through the whole process allowing you to develop a useable plan. Another benefit of using software is that you’ll be able to develop reports if needs be.

The drawbacks of using software include cost, inflexibility and learning time. For the most part, business continuity planning software is not cheap, and at times can be inflexible due to limits within the program. If you have a niche need, the software may not cover it. In addition, as with mastering any program, the learning curve can be quite steep.

In general, using software would be advantageous for companies that have a bigger budget for the development of a continuity plan. Software is also a good bet if you don’t have staff who are experts in continuity planning, or if you operate in an industry where a continuity plan is necessary, e.g., companies working with healthcare insurance, or manufacturing companies that have introduced ISO 9000.

Using Templates If you feel that your company is not ready for software you can use templates to help you develop your plan. These solutions are mostly written plans that you adapt to meet your business needs. They’re useful if you’re just starting to do continuity planning, as they provide a normally solid foundation, and are generally a lot cheaper than software.

A limitation to using templates is that they can be a little too basic at times, and may not meet your needs. Granted, most plans will follow a basic structure and your developer will need to adapt some steps for your relevant region and industry.

As each industry is different, it’s hard to make a recommendation on what type of planning style companies should take. We recommend you take your time, do your due diligence and weigh out what’s best for your business. No matter which method you choose to go ahead with, ensure that it’s easy to implement, and that you’ll be able to teach your staff how to run the plan.

If you feel really lost or are not sure what to do, talking to professional consultants could go a long way in helping you develop a plan. If you’d like to learn more about business continuity planning please contact us - we are happy to help.

Published with permission from TechAdvisory.org. Source.

April 11th, 2012

Does your company use cloud storage services or peer-to-peer (P2P) networks for the storage and sharing of data? Many businesses are now using both these services in an effort to make work less complicated. But did you know that there are potential issues in relation to recoverability and security of data?

With the seizure of a number of cloud storage and sharing websites, including Megaupload, and the seemingly omnipresent malware in P2P files and the shaky security in relation to P2P networks, businesses have had their hands full staying secure. Do you know what your options are when it comes to data security?

Cloud Services Knowhow The recent seizure of Megaupload’s files and servers by the US Government caught many people and businesses unprepared. While Megaupload’s main purpose was file sharing, it was found that a large number of organizations were using their services to store files. If you had files stored on Megaupload, the chances of getting the files back are non-existent.

It needs to be pointed out that many cloud services don’t guarantee that files stored on the service will be recoverable in the event of a crash, or disruption in service, e.g., a government seizing servers. If you read the user agreements of a number of major cloud services, they all have clauses stating that if data stored on their service is lost for any reason, it’s gone forever, and the hosts can’t be held liable for losses.

Risks of P2P With high speed Internet widely available at low prices, P2P file sharing has become incredibly popular, it’s almost uncommon to find someone who has never used a P2P service. If you or your employees use P2P at your office, there are a number of potential security threats you should be aware of:

  • The unknown share: If you put a file in a folder that is shared on a P2P network, it’ll be shared with all other people connected to that folder and almost anyone can access it. This is normally done by mistake, i.e., not looking where the file will be saved when you save it. There’s also malware out there that will move files into a shared folder which the developer of the malware can find and upload with ease and without the user knowing it is happening.
  • Open network: Typically P2P works on open networks: users give and share. What this means is that when using P2P on a poorly configured network, the whole network could be unsecure, allowing for access to other computers connected to the network.
  • Untracked data: If you share a document with another person, and they then share it with others, there is potentially, an unlimited amount of people that can get the data. If you want to take it back, it can be impossible to do so, even if the original document is deleted.
  • Storage hijacking: There’s news of malware that has been developed with the purpose of downloading illegal material onto your hard drive. This could pose a problem if the data is found, as you will be liable.
What Should I do? With regards to cloud services, as with anything that comes with a contract, the first thing you should do is gain an understanding of it by utilizing reading material such as blogs, news articles and Wikis. It’s a pain in the neck, but it’ll help you understand the boundaries of the program and your responsibilities. Remember that if you go to court to get files back from a company, and it becomes known that you didn’t read the agreement, you’ll probably end up losing that case.

Second, it’s not recommended to keep single copies of data on one cloud service. Chances are high that in your business, you store your data and backups in a place separate from the computer. This makes sense with the cloud as well - keep your data with a number of different cloud services. If it’s important enough, have physical backups of what you put in the cloud.

For P2P networks there are also a number of steps you can take to protect the data on your network:

  • The most obvious one is to ban employees from using any file sharing services outside of your network.
  • If you do allow file sharing, it’s a good idea to establish and strictly enforce a protocol for this. You should also set which users are allowed to share files, and what files are appropriate to share. Be sure that all staff are aware of your policy and the measures that will be taken in the event of any deviations.
  • Develop a system to classify documents by whether or not they can be shared, and who they can be shared with.
  • If you work in an office where you need to share files, but don’t want to use a P2P network or the cloud, and are unsure of other solutions out there, don’t worry. There are companies that specialize in document sharing solutions that should be able to provide you with assistance.
The most important thing is that whatever the situation is, you take action to try to solve the problem while frequently revisiting the actions to ensure that they are working. If you’d like to learn more about document sharing over the cloud, or via P2P networks, give us a buzz. We’re more than happy to help.
Published with permission from TechAdvisory.org. Source.

March 23rd, 2012

It is more or less the end of the first quarter of 2012, many companies have released their annual figures and people are looking to move jobs. Heading into Q2, the quarter in which companies are most likely to hire, chances are you will be doing some hiring in the not so distant future. These days, many companies use VoIP software like Skype or Microsoft Lync to conduct interviews. Do you?

Let’s face it, there are very few people out there who love conducting interviews. The ones that do, are journalists, the rest of us see it as a means to the end. But that doesn’t mean that you should put interviews on the back burner. Remember, the purpose of the interview is to find an employee that meets your needs and is a good fit for your business. Many of us have watched or conducted interviews over VoIP, and have walked away unimpressed, or unsure of the results. Here are some tips to ensure you get the most out of VoIP while interviewing.

Remember the Rules Many of us have another identity or personality when we are online, it’s common to see people who are usually quiet and reserved in real life become very vocal when placed in front of a computer. This also happens when people conduct interviews online, another personality often comes out during the interview. Remember: even though you are conducting an interview over VoIP, it is still an interview, and as such, you need to follow the same rules and guidelines you would when conducting a face-to-face interview. One of the biggest things interviewers forget when they conduct interviews via VoIP is that you are a representative of your company and its brand, the interviewee will form their own opinion based on what you say and how you act. Adopt your face-to-face interview persona, not the online persona.

Lights, Camera, Office? When conducting the interview it is best to pick a well-lit spot, with minimal to no distractions. Your office may be the one with Nirvana posters on the wall - which is cool - but they’re probably not the best thing to have as your background during the interview. The best spot to conduct face-to-face interviews is in a conference room, so why not conduct the online interview there? If you don’t have a conference room, pick a quiet spot in the office. Wherever you settle, be sure you are comfortable there, as chances are you will be conducting more than one interview.

When you have found a good spot, be sure to turn off your cellphone, or at least put it on silent. Also be sure to turn the various sound alerts on your computer off. Nothing is more annoying to interviewees than being interrupted mid-sentence by a telephone call, or the ubiquitous IM alert.

Test the Tech Before you conduct the interview, ensure you are familiar with the program you are using. You don’t want to accidentally mute the interviewee, or even worse, hang up on them. It is a good idea to set up in the place you are going to be conducting the interview, and check that the internet connection is stable, or if you are using WiFi, that the signal is strong. Conduct a test call with a colleague or another person to ensure that your webcam is working correctly, and you can hear the other person. It is best to do this a few days in advance, so you can iron out any glitches or problems with lots of time to spare.

If a technological mishap occurs during the interview, or you lose your connection, don’t give up and walk away, simply call the interviewee back, apologize and carry on. Better still, establish at the outset that if there is a problem, you will definitely call back. This will ensure that the interviewee isn’t calling you when you are calling them.

The Interview Remember that you are using technology for the interview, and this technology has many useful features, the most pertinent being the ability to record. Being able to play the interview back later if you feel you have missed something, or want to know other employees’ opinions, is an excellent perk to using VoIP. Be sure to let the interviewee know that their interview will be recorded, as it could be illegal to record the person without their consent.

One common oversight by both the interviewer and interviewee is time. It may happen that you need to conduct an interview with someone in another timezone. It’s important to be aware of the time difference and ensure that both parties are on the same page. Also, if you’re in an area that has Daylight Savings Time, be aware that some places don’t observe it, and adjust accordingly. If you know the interviewee is in another timezone, clearly state when you are setting up the interview time, if you mean your time or the interviewee’s time.

Finally, when conducting the interview: be aware of where you are looking. Most programs will have the other person in a large image with you in a smaller image. Look at the image of the person when they are speaking, and at the camera when you are speaking. This is the best way to replicate eye-contact in a face-to-face interview.

When you remain professional and can execute a good interview using VoIP software, you can be sure that the interviewee will be impressed and will want to join your company. Good luck! If you would like to know more about using VoIP for interviews, or other business operations give us a call - we are more than happy to hear from you.

Published with permission from TechAdvisory.org. Source.

March 23rd, 2012

One issue that has caused business owners and managers many headaches, and possible sleepless nights, is cybercrime. Businesses are always under threat of having data or money stolen, and need to be taking actions to stop this. Do you know what you need to protect your business?

A quick Google search for “cybercrime trends” yields over 78 million results, the majority of which are likely to affect large enterprises or governments. While it is beneficial for all businesses to be aware of the major trends, there are a number of threats that will affect small businesses more than others. Here are some current cybercrime trends that SMEs should be aware of.

Mobile Malware Smartphones are becoming ever more popular, and with this popularity has come an exploding number of apps. Malware developers have been picking up on this during the past few years and there have been an expanding number of apps dedicated to attacking your phone or mobile platform. The most common type of malware on mobile devices is spyware, followed by SMS Trojans. SMS Trojans run in the background of some applications, and make international calls or text messages from the developers’ services causing huge phone bills. The final form of malware targets online payment apps on the phone.

One of the main reasons this form of malware has become so popular is due to the openness of some markets, such as the Android Market. The owners of the app markets are working to track down and get rid of the guilty apps on their marketplaces, but you still need to remain vigilant. while installing apps. Look at the developer of the app - how many times has it been downloaded? Maybe double check the app’s integrity online before installing and double check the app on the internet.

Open-Source Malware Kits A common thing malware developers do is write code for malware and then sell it to interested buyers. But a rising trend is that developers are writing malware that is open-source—any person can download and change it. The worrying thing is, many developers of already powerful malware have been releasing open-source versions of their software. This means that there will be an increase in the number of malware attacks out there, as devious developers can easily come up with more elaborate hacks.

Banking Trojans Along with the open-source malware kits, there has been an increase in the number of banking trojans—aimed at stealing account information and passwords. While these trojans have been a threat ever since banks first started offering online banking, they have become popular again as people and businesses are starting to move their online banking onto mobile devices, and the trojan software is easily accessible. This makes mobile banking apps an easy target.

With cybercrime on the increase, now is a good time to review your security, ensure its up to date and remind employees of your mobile device policy. If you don’t have a policy in place, or feel that your security is inadequate, give us a call, we are happy to help you. Remember: with good security and knowledge, there is no reason you should fall victim to cyber theft.

Published with permission from TechAdvisory.org. Source.

March 21st, 2012

In this modern age, many businesses have become reliant on technological networks, with businesses big and small using some form of network in their day-to-day operations. But what happens when one of those networks goes down? Larger businesses will normally lose some profit, but will be able to recover. However, a network outage could be the death of a smaller business. 24/7 networking can help prevent this.

How can 24/7 network monitoring help your business, you ask? Through preventative operations. The main idea of network monitoring is to act as an “Early Warning System” to let managers and owners know of potential problems before they strike.

What Does Network Monitoring Monitor? There are a number of things you can monitor with Network Monitoring. The most popular areas include application and system performance, bandwidth usage, and server status. You can also set up monitoring of additional areas, for instance: server load, ink levels in printers, time left on software license agreements, which devices are connected to the network, their data usage, and more. This is all done 24/7.

The one thing Network Monitoring does not normally monitor is unauthorized access to networks. It can be set up to look for unauthorized access, but this is normally taken care of by another system.  

How Does Network Monitoring Help Me? Network Monitoring is a preventative system, intended to warn you about potential network problems so you can proactively seek solutions before a vital network goes down. This makes it, in a round-about way, a justifiable addition to business value since, when implemented right, there will be less network crashes—which means less or no profit loss.

What Should I Monitor? In an ideal world, you would monitor each and every network. Over time, you can get there, but if you’re like most Small Business owners or managers, you have neither the time nor the budget to implement a full system. As with most projects, it’s suggested that you implement a system like this in stages. The most common areas to start with are:

  • Local Area Network (LAN) Data
  • Internet data usage
  • server status
  • alerts to existing networks
If you’re unsure of where to start, try contacting a local Network Monitoring service, or hire a consultant to establish a system. If you would like to know more about 24/7 Network Monitoring, or other ways to improve business value, please contact us.
Published with permission from TechAdvisory.org. Source.

March 20th, 2012

In a little over four years, virtualization has gone from an idea that was practiced by few to a standard process in many organizations. It’s evident that there are cost savings, and a recent report has confirmed this. The report states that some organizations have enjoyed a return on investment of up to 269% from virtualization. Read on for more information.

What is Virtualization? Virtualization is the creation of a virtual computing environment, where one hardware system can run multiple virtual environments. Common types of virtualization include servers, storage devices, or networks. The benefits of virtualization include lower costs, improved IT management, and reduced energy consumption.

The Survey A report published by CDW-G focuses on government organizations in the United Sates. Many SME owners and managers like yourselves are probably asking, “How do study results involving the government help my business?” Well, if you look closer you can see that what the government organizations did can easily be replicated by SMEs, just on a smaller scale.

Results In recent years, many companies have had to tighten their belts due to economic difficulties. Government agencies are no exception. The results of the survey found that agencies and organizations realized investment returns as high as 134 to 269%. The survey found that if IT managers invest in Server Virtualization, Document Management, Storage Virtualization, and Cloud Computing in that order, the returns on Server Virtualization alone can help pay for, if not totally cover the cost of, the other three processes. CDW-G found that on average, the total cost of implementing all four separately is over USD 1.1million, but when implemented in order, the average cost was around USD 400,000.

While it is unlikely that SMEs will see a return on investments of this magnitude, it is highly likely that they will see increased returns if they follow this method of re-investing returns from Server Virtualization into the other three steps. In times of economic stress, this could be a huge boost to your bottom line.

Helpful Recommendations From the results, CDW-G offered some useful recommendations that all businesses can use:

  • When budget cuts are needed, first look for ways to increase efficiency without service cuts.
  • Review technologies and processes to identify inefficiencies.
  • Consider savings and efficiency opportunities in all new solutions.
  • Leverage available savings into new projects.
As with any new process, it’s equally important to ensure that you educate the users of the processes and stay on your toes to keep updated.
Published with permission from TechAdvisory.org. Source.

March 19th, 2012

When people hear the word “Apple”, most don’t think of a round red or green fruit, they think of the company. Apple and its products have become well known, with not only a loyal fan base, but products that look good and work well. One of the most successful products is the Apple iPad, and in early March, Apple introduced the New iPad. Is it the next step forward in Tablets? Will it be useful for you in your business?

The answer: yes, and no. The New iPad (that’s the actual name) takes the good parts of the iPad 2, and adds a few improvements including a new 5 mega pixel camera. The biggest change is the New iPad has the Retina Display, with a screen resolution of 2,048 x 1,536 pixels, making it one of the best Tablet displays on the market. Other changes include a new, slightly faster processor, and a slightly heavier (by 10 grams) body. Changes aside, the New iPad looks exactly the same as the iPad 2.

Apple has stated that the price of the New iPad will start at USD 499 for the 16 GB Wi-Fi version. There will be a version that connects to 4G mobile data networks, and the price for that version will start at USD 629 for the 16 GB version.

What Does this Mean for My Business? In truth, the New iPad means whatever you want it to for your business. Apple has said on many occasions that they want to bridge the gap between interaction and creation with the iPad. The New iPad is a step toward this goal, but it won’t be very useful for users who work with spreadsheets or other data-heavy programs. If you or your business gives lots of presentations, and doesn’t need to use the advanced functions of programs, then the New iPad could be a useful tool. It really comes down to how you, as a manager and company, operate. You can pretty much guarantee you will find some use for the iPad, it just may not be a Key Success Factor.

The one downside is the price. As a small business it can be hard to justify spending over USD 600 per iPad with data connectivity, when the iPhone costs far less with a plan and can do pretty much the same stuff, if not more.

Scam Warning As with most other Apple products, there is sure to be a number of scams surfacing over the next few weeks saying that you’ve won a free iPad, can get a free iPad, or any number of similar come-ons. It is a good idea to let your employees know that Apple doesn’t normally give away its products, and will definitely not post on people’s Facebook pages or put banners on websites advertising such a thing.

Apple has taken steps toward giving businesses a new way to operate, and the New iPad offers some great functions for businesses. If you’re thinking of adopting the iPad into your business, or would like to know more about the New iPad or Apple’s products, please contact us.

Published with permission from TechAdvisory.org. Source.

March 15th, 2012

One of the most popular technical trends in the past few years is the increasing amount of tablet computers on the market. With the development and application of mobile OSs like Android for tablets, they have been able to fill the mobile phone - PC gap. The Android OS has its own app market, with a ton of great apps for all users including businesses. Some of the most useful apps are the notes programs.

There are many ways businesses can use the tablet, one of the best is as a platform to record notes. This goes even further in that many notes programs do much more than just record notes. A quick search of the Android Marketplace for “Notes” returns over 1000 apps, but which are the best? Here are a few popular programs:

Evernote Evernote is one of the most comprehensive note programs out there. You can sync between your computers, phones, even your browser. This app allows and encourages you to go beyond just taking simple notes. You can tag locations, attach pictures and lists, and even post notes on Facebook. The simple layout and integration with other platforms makes this app one of the best choices for your Android Tablet.

Catch Notes With similar features to Evernote, Catch Notes is another great note program. There are a number of features that are great for businesses that set this app apart:

  • You can record voice memos.
  • You can share notes for collaboration with other employees.
  • Notes can be separated, so you can have both personal and business notes on the same program.
This is a good program for businesses that like to have a collaborative environment and the ability to add voice recordings to your notes.

Classic Notes Lite This app is, at first glance, very simple. Your notes are listed in chronological order, with the last edited at the top. But delve a little deeper and you will come across a ton of features ranging from the ability to sketch, quickly look up conversions, and even send to Google Docs. This app is good for users who want both a simple notes app, and an app with many extra features.

OneNote OneNote is Microsoft’s mobile note app. Developed as part of the Microsoft Office suite, and to sync with SkyDrive, this app is for those avid Microsoft users looking for integration across multiple platforms. The app was released at the end of February with the major features most other note apps have, as well as Microsoft flair.

InkPad InkPad is the notes app for users who want just a notes app, with no extra features. With a clean, simple layout this app is perfect for users who want to keep things simple.

With the incredible number of notes apps on the Android Market, there is a program that will meet any of your needs. If you would like to know more about Android Apps or tablets, please contact us.

Published with permission from TechAdvisory.org. Source.

March 14th, 2012

Many businesses are aware that they can be targets for hackers, and take necessary precautions to protect themselves. However, there is a new hack out there that is targeting your business’s banking information through a devious method. Be prepared, this hack could pose a difficult one to eradicate.

The hack, a variation of the Man-in-the-browser (MITB) hack, is a form of Trojan horse that mainly infects a Web browser and has the ability to change a Web page, insert orders or transactions covertly. The user will not notice any change to the website. This particular hack infects user’s computers with a Shylock malware program, a new form of malware that focuses on bank accounts and financial transactions.

The user goes to a banking website, attempts to log in and is given an error message stating that security checks are being undertaken. After a few minutes a window pops up telling the user that a representative from the bank will be contacting them to go over their account details. A chat window will open up and the “representative”, who is really the hacker, will ask the user for their account information. While the user and hacker are talking, the hacker will log into the account and proceed to go to town, so to speak.

At this time, it seems like the hack is not widespread, but it is spreading, and it is one of the more sophisticated programs out there. To learn more about this or any other security threat that may have you worried, please contact us.

Published with permission from TechAdvisory.org. Source.

March 10th, 2012

Disaster can strike at any time, and it can be as simple as a server or system crash, or as severe as the recent worldwide natural disasters. No matter what it is, the disaster will affect your company’s operations and potentially its bottom line, or worse — force you out of business. Are you prepared?

Most companies have at least basic protection from emergencies and disasters in place. The most common forms of protection are insurance, server and computer backup, and basic preparations as required by law. While these protective measures are considered adequate for most companies, there is still a chance a disaster will strike, leaving your company in the lurch.

In the recent months and years an increasing number of occurrences, such as the earthquake in Japan and flooding in Thailand, have caused widespread disruption to businesses. To counter this, two business initiatives have risen to the forefront: Disaster Recovery (DR) and Business Continuity Planning (BCP). In fact, these two terms have become common buzzwords, a quick internet search returns over 53 million hits on business continuity alone. The problem is that many professionals are unclear on what each really is. It’s important to be clear on each topic and the basic steps to take to be prepared for any disaster.

What is a Business Continuity Plan (BCP)? BCP, first seen during the Y2K scare of the late 90s, is a plan that covers the way an organization prepares for and maintains all critical business functions. BC planning is comprised of activities that ensure maintenance, stability, and recoverability of service before, during, and after a disaster. The plan is typically set up on a day-to-day basis, and covers the whole organization.

It’s important to have a BCP for your organization because if something happens and you can’t deliver to your customers, they will go to another company.

What is Disaster Recovery? Disaster Recovery is considered a part of the overall continuity plan that focuses on the technical side of the business, including components such as data backup and recovery. Think of BCP as an umbrella and DR is under the umbrella — if you don’t have a disaster recovery plan, the overall umbrella is more or less useless.

What Should be in Your DR and BCP Plans? These plans both share a number of similarities, generally following the same steps involving the same elements. Both plans should include:

  1. An operational plan for a number of disasters that could happen in your geographical area. The plans should cover occurrences as small as computer hardware errors and as large as massive natural disasters.
  2. A succession plan for you or your top management.
  3. Training for substitute employees on important tasks.
  4. Cross training of your employees on the basics of different roles so they will be able to take over if need be.
  5. A communication plan focused on different crises, including ways of communicating if networks are down.
  6. Off-site meeting places for staff and managers.
  7. A focus on safety. Foster partnerships and communication with local and emergency response services: Fire, Police, National Guard, Search and Rescue. Ideally, all employees should at least know basic first aid. If you have employees who are volunteer members of local Emergency Response Services, ask them to be responsible for teams.
  8. Daily plans to backup your Enterprise systems, along with training and testing of recovery of systems.
  9. Training and testing of all employees to practice recovery activities in situations as realistic as possible.
It’s important that you conduct regular tests of your systems and processes, and make changes as needed. Be aware that your business is always changing and so should your Business Continuity and Disaster Recover Plans.

With a carefully prepared and practiced plan, your business should be ready to face a variety of disasters with minimal downtime. If you would like to know more about Business Continuity and Disaster Recovery please contact us.

Published with permission from TechAdvisory.org. Source.