{"id":2682,"date":"2022-03-24T09:48:00","date_gmt":"2022-03-24T15:48:00","guid":{"rendered":"https:\/\/trustarc.com\/?post_type=resource&#038;p=2682"},"modified":"2025-05-13T13:07:27","modified_gmt":"2025-05-13T18:07:27","slug":"growing-need-cyber-resiliency","status":"publish","type":"resource","link":"https:\/\/trustarc.com\/resource\/growing-need-cyber-resiliency\/","title":{"rendered":"The Growing Need for Cyber Resiliency (NOW)"},"content":{"rendered":"\t\t<section id=\"block_79ae4f455853e90f0d2682992fcce87e\" class=\"resource-intro intro-simple\">\n\t\t\t<div class=\"container\">\n\t\t\t\t\t\t\t\t\t<strong class=\"sub-title block uppercase\">Articles<\/strong>\n\t\t\t\t\t\t\t\t\t\t<h1>The Growing Need for Cyber Resiliency (NOW)<\/h1>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\n\n\t<section id=\"block_25bad2e41d2332d20fcaaff68a9413b6\" class=\"columns-content\">\n\t\t<div class=\"container\">\n\t\t\t<div class=\"left\">\n\t\t\t\t\t\t<div class=\"person-wrap\">\n\t\t\t<span>\t\t\t\t\t\t\t<div class=\"img-holder\">\n\t\t\t\t\t<img loading=\"lazy\" decoding=\"async\" width=\"110\" height=\"110\" src=\"https:\/\/trustarc.com\/wp-content\/uploads\/2024\/02\/people-andy-mcmenamy.png\" class=\"attachment-full size-full wp-post-image\" alt=\"\" \/>\t\t\t\t<\/div>\n\t\t\t\t\t\t\t\t<div class=\"text-holder\">\n\t\t\t\t\t\t\t\t\t\t\t<strong class=\"block name\">Andy McMenamy<\/strong>\n\t\t\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t\t\t<\/span>\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t<div class=\"middle\">\n\t\t\t\t<div class=\"content\">\n\t\t\t\t\t<p>Both the public and private sectors around the world recognize information security is a valuable priority. As more people than ever are working from home and the world is witnessing Russia invade Ukraine, the need for operational cyber resiliency has increased.<\/p>\n<p>McAfee Enterprise and FireEye released findings in\u00a0<a href=\"https:\/\/cts.businesswire.com\/ct\/CT?id=smartlink&amp;url=https%3A%2F%2Fwww.mcafee.com%2Fblogs%2Fenterprise%2Fmcafee-enterprise-atr%2Ftis-the-season-for-holiday-cyber-threats-targeting-enterprises-in-a-pandemic-world%2F&amp;esheet=52523896&amp;newsitemid=20211108005775&amp;lan=en-US&amp;anchor=Cybercrime+in+a+Pandemic+World%3A+The+Impact+of+COVID-19&amp;index=1&amp;md5=b6fab3476e99bb6138878782d789139b\" target=\"_blank\" rel=\"noopener\"><em>Cybercrime in a Pandemic World: The Impact of COVID-19<\/em><\/a>, revealing that 81% of global organizations experienced increased cyber threats during the pandemic.<\/p>\n<p><strong>79% of those organizations also suffered from downtime during a peak season.<\/strong><\/p>\n<p><a href=\"https:\/\/www.firstpoint-mg.com\/blog\/analysis-of-top-11-cyber-attackson-critical-infrastructure\/\" target=\"_blank\" rel=\"noopener\">Cyber threats to critical infrastructure<\/a>\u00a0can have devastating consequences. Power grids, pipelines, transportation, and healthcare, for example, need continuous activity to provide service to citizens.<\/p>\n<p><strong>Any disruption could end in significant financial loss and the loss of life.<\/strong><\/p>\n<h2>Cyber resiliency advisories to combat Russian efforts<\/h2>\n<p>The Russian government is targeting the infrastructure of Ukraine and Western nations.<\/p>\n<p>Recent publications show Russia is engaging in a cyber war with attempts to steal, disrupt, or otherwise influence elections, healthcare, aviation, and critical manufacturing (not an exhaustive list).<\/p>\n<p>Russian state actors use many different tactics to gain access to targeted networks. Historically, spear-phishing, brute force\/password spray attacks, and security vulnerability exploitation have been witnessed.<\/p>\n<p>Lately, the\u00a0<a href=\"https:\/\/www.cisa.gov\/uscert\/ncas\/alerts\" target=\"_blank\" rel=\"noopener\">Cybersecurity &amp; Infrastructure Security Agency (CISA)<\/a>\u00a0and the FBI have alerted that Russia is using destructive malware to render computer systems completely inoperable.<\/p>\n<ul>\n<li>January 15, 2022:\u00a0<a href=\"https:\/\/www.cisa.gov\/uscert\/ncas\/alerts\/aa22-057a\" target=\"_blank\" rel=\"noopener\">Microsoft disclosed that malware known as WhisperGate<\/a>\u00a0was being used against the government and various organizations within Ukraine to destroy their computer systems.<\/li>\n<li>February 23, 2022:\u00a0<a href=\"https:\/\/www.cisa.gov\/uscert\/ncas\/alerts\/aa22-057a\" target=\"_blank\" rel=\"noopener\">Russian malware known as HermeticWiper<\/a>\u00a0was found to target Windows devices, manipulating the master boot record and resulting in a subsequent boot failure.<\/li>\n<\/ul>\n<p>Russia\u2019s main intelligence agency, the GRU, has been attributed to some of Russia\u2019s worst cyber operations. These include attacks targeted at spreading disinformation, spying, and destroying cyber capabilities around the world.<\/p>\n<p>In light of Russia\u2019s recent invasion of Ukraine, agencies have been issuing cyber resiliency advisories to combat malicious cyber actors.<\/p>\n<h2>What is cyber resiliency?<\/h2>\n<p><a href=\"https:\/\/csrc.nist.gov\/publications\/detail\/sp\/800-160\/vol-2-rev-1\/final\" target=\"_blank\" rel=\"noopener\">According to NIST<\/a>, it is \u201cthe ability to anticipate, withstand, recover from, and adapt to adverse conditions, stresses, attacks, or compromises on systems that use or are enabled by cyber resources.\u201d<\/p>\n<p>From a risk management perspective, cyber resiliency is about measuring how robust your cyber defense systems are and taking measures to improve them.<\/p>\n<p>CERTs are issued by various governing bodies as guidance to help improve your overall cyber resiliency (also known as your \u201cposture\u201d).\u00a0Recently, CISA, the FBI, and NSA have\u00a0<a href=\"https:\/\/www.cisa.gov\/uscert\/sites\/default\/files\/publications\/AA22-011A_Joint_CSA_Understanding_and_Mitigating%20_Russian_Cyber_Threats_to_US_Critical_Infrastructure_TLP-WHITE_01-10-22_v1.pdf\" target=\"_blank\" rel=\"noopener\">given guidance to combat Russian state-sponsored cyber attacks<\/a>.<\/p>\n<p>Robust cyber resiliency includes regularly reviewed reporting processes and an updated cyber <a href=\"https:\/\/trustarc.com\/resource\/creating-a-robust-data-incident-response-plan\/\" target=\"_blank\" rel=\"noopener\">incident response plan<\/a> and continuity plan.<\/p>\n<p><strong>Organizations should follow best practices for identity and access management.\u00a0<\/strong><\/p>\n<p>Effective cyber resiliency also requires you to implement protective controls and vulnerability and configuration management, and continuously monitor for new threats.<\/p>\n<h3>You might be asking yourself, how do I DO those things?<\/h3>\n<p>To effectively respond to a network intrusion, an organization should:<\/p>\n<ul>\n<li>Build a\u00a0<a href=\"https:\/\/blog.trustarc.com\/2019\/07\/05\/startup-cybersecurity-success\/\" target=\"_blank\" rel=\"noopener\">cybersecurity culture from day one<\/a>.<\/li>\n<li>Have a plan detailing how to report potential cyber incidents and to whom they should be reported.<\/li>\n<li>Assign key points of contact and address their individual roles and responsibilities.<\/li>\n<li>Assign backup personnel for key points of contact in case someone is unavailable.<\/li>\n<li>Conduct periodic testing of the plan.<\/li>\n<li>Follow best practices, such as requiring multi-factor authentication and adopting a zero-trust security model.<\/li>\n<li>Ensure assets are protected with antivirus\/antimalware software and kept up-to-date with the latest security patches.<\/li>\n<\/ul>\n<h3>Cyber incident reporting for Critical Infrastructure Act<\/h3>\n<p>As of March 15, 2022, the Cyber Incident Reporting for Critical Infrastructure Act (CIRCIA) was signed into law under the\u00a0<a href=\"https:\/\/www.congress.gov\/bill\/117th-congress\/house-bill\/2471\/text\" target=\"_blank\" rel=\"noopener\">Consolidated Appropriations Act 2022<\/a>.<\/p>\n<p>This act requires critical infrastructure organizations to report cyber incidents to CISA within 72 hours after the incident occurs.<\/p>\n<p>Organizations will then need to keep CISA informed until the incident as closed, including the reporting of ransom payments within 24 hours.<\/p>\n<p>While this new regulation is an effort to improve the nation\u2019s cybersecurity, it\u2019s likely the increasing threat from Russia was on Congress\u2019 mind when passing this law.<\/p>\n<p><strong>Cyber resiliency isn\u2019t just for government, infrastructure, and large enterprises<\/strong>. Any organization can be at risk of an attack. Cyber security and data privacy work together to ensure the safety of your information systems.<\/p>\n<p>Don\u2019t wait until it\u2019s too late to have a privacy program and cyber resiliency plan in place.<\/p>\n\t\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t\t<div class=\"right sm\">\n\t\t\t\t<div class=\"share-it\">\n\t\t\t\t\t<strong class=\"title block uppercase\">Follow us<\/strong>\n\t\t\t\t\t<div class=\"soc-list\">\n\t\t\t\t\t\t<a href=\"https:\/\/www.linkedin.com\/company\/trustarc\/\" target=\"_blank\"><img decoding=\"async\" src=\"https:\/\/trustarc.com\/wp-content\/themes\/trustarc\/assets\/dist\/images\/li-dark.svg\" alt=\"\" \/><\/a>\n\t\t\t\t\t\t<a href=\"\nhttps:\/\/twitter.com\/TrustArc\" target=\"_blank\"><img decoding=\"async\" src=\"https:\/\/trustarc.com\/wp-content\/themes\/trustarc\/assets\/dist\/images\/tw-dark.svg\" alt=\"\" \/><\/a>\n\t\t\t\t\t\t<a href=\"javascript:;\" id=\"copy-url\"><img decoding=\"async\" src=\"https:\/\/trustarc.com\/wp-content\/themes\/trustarc\/assets\/dist\/images\/link-dark.svg\" alt=\"\" \/><\/a>\n\t\t\t\t\t\t<span class=\"copied\" style=\"display:none;\">Link Copied!<\/span>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t\t\t\t\t<div class=\"key-topics\">\n\t\t\t\t\t\t<strong class=\"title block uppercase\">Key Topics<\/strong>\n\t\t\t\t\t\t<ul>\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<li><a href=\"https:\/\/trustarc.com\/topic-resource\/cyber-security\/\" class=\"badge\">Cyber Security<\/a><\/li>\n\t\t\t\t\t\t\t\t\t\t\t\t\t<\/ul>\n\t\t\t\t\t<\/div>\n\t\t\t\t\t\t\t\t<div class=\"cta-area\">\n\t\t\t\t\t<p>Get the latest resources sent to your inbox<\/p>\n\t\t\t\t\t<a href=\"\/subscription-center\/\" class=\"cta\">Subscribe<\/a>\n\t\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t<\/div>\n\t<\/section>\n\t","protected":false},"excerpt":{"rendered":"<p>As more people than ever are working from home and the world is witnessing Russia invade Ukraine, the need for cyber resiliency has increased.<\/p>\n","protected":false},"featured_media":1685,"template":"","topic-resource":[62],"type-resource":[6],"class_list":["post-2682","resource","type-resource","status-publish","has-post-thumbnail","hentry","topic-resource-cyber-security","type-resource-articles"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v27.4 (Yoast SEO v27.4) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>The Growing Need for Cyber Resiliency (NOW) | TrustArc<\/title>\n<meta name=\"description\" content=\"As more people than ever are working from home and the world is witnessing Russia invade Ukraine, the need for cyber resiliency has increased.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/trustarc.com\/resource\/growing-need-cyber-resiliency\/\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/trustarc.com\\\/resource\\\/growing-need-cyber-resiliency\\\/\",\"url\":\"https:\\\/\\\/trustarc.com\\\/resource\\\/growing-need-cyber-resiliency\\\/\",\"name\":\"The Growing Need for Cyber Resiliency (NOW) | TrustArc\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/trustarc.com\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/trustarc.com\\\/resource\\\/growing-need-cyber-resiliency\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/trustarc.com\\\/resource\\\/growing-need-cyber-resiliency\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/trustarc.com\\\/wp-content\\\/uploads\\\/2024\\\/02\\\/res-feat-city-gray.png\",\"datePublished\":\"2022-03-24T15:48:00+00:00\",\"dateModified\":\"2025-05-13T18:07:27+00:00\",\"description\":\"As more people than ever are working from home and the world is witnessing Russia invade Ukraine, the need for cyber resiliency has increased.\",\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/trustarc.com\\\/resource\\\/growing-need-cyber-resiliency\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/trustarc.com\\\/resource\\\/growing-need-cyber-resiliency\\\/#primaryimage\",\"url\":\"https:\\\/\\\/trustarc.com\\\/wp-content\\\/uploads\\\/2024\\\/02\\\/res-feat-city-gray.png\",\"contentUrl\":\"https:\\\/\\\/trustarc.com\\\/wp-content\\\/uploads\\\/2024\\\/02\\\/res-feat-city-gray.png\",\"width\":610,\"height\":152},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/trustarc.com\\\/#website\",\"url\":\"https:\\\/\\\/trustarc.com\\\/\",\"name\":\"TrustArc\",\"description\":\"\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/trustarc.com\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"The Growing Need for Cyber Resiliency (NOW) | TrustArc","description":"As more people than ever are working from home and the world is witnessing Russia invade Ukraine, the need for cyber resiliency has increased.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/trustarc.com\/resource\/growing-need-cyber-resiliency\/","schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/trustarc.com\/resource\/growing-need-cyber-resiliency\/","url":"https:\/\/trustarc.com\/resource\/growing-need-cyber-resiliency\/","name":"The Growing Need for Cyber Resiliency (NOW) | TrustArc","isPartOf":{"@id":"https:\/\/trustarc.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/trustarc.com\/resource\/growing-need-cyber-resiliency\/#primaryimage"},"image":{"@id":"https:\/\/trustarc.com\/resource\/growing-need-cyber-resiliency\/#primaryimage"},"thumbnailUrl":"https:\/\/trustarc.com\/wp-content\/uploads\/2024\/02\/res-feat-city-gray.png","datePublished":"2022-03-24T15:48:00+00:00","dateModified":"2025-05-13T18:07:27+00:00","description":"As more people than ever are working from home and the world is witnessing Russia invade Ukraine, the need for cyber resiliency has increased.","inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/trustarc.com\/resource\/growing-need-cyber-resiliency\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/trustarc.com\/resource\/growing-need-cyber-resiliency\/#primaryimage","url":"https:\/\/trustarc.com\/wp-content\/uploads\/2024\/02\/res-feat-city-gray.png","contentUrl":"https:\/\/trustarc.com\/wp-content\/uploads\/2024\/02\/res-feat-city-gray.png","width":610,"height":152},{"@type":"WebSite","@id":"https:\/\/trustarc.com\/#website","url":"https:\/\/trustarc.com\/","name":"TrustArc","description":"","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/trustarc.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"}]}},"_links":{"self":[{"href":"https:\/\/trustarc.com\/wp-json\/wp\/v2\/resource\/2682","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/trustarc.com\/wp-json\/wp\/v2\/resource"}],"about":[{"href":"https:\/\/trustarc.com\/wp-json\/wp\/v2\/types\/resource"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/trustarc.com\/wp-json\/wp\/v2\/media\/1685"}],"wp:attachment":[{"href":"https:\/\/trustarc.com\/wp-json\/wp\/v2\/media?parent=2682"}],"wp:term":[{"taxonomy":"topic-resource","embeddable":true,"href":"https:\/\/trustarc.com\/wp-json\/wp\/v2\/topic-resource?post=2682"},{"taxonomy":"type-resource","embeddable":true,"href":"https:\/\/trustarc.com\/wp-json\/wp\/v2\/type-resource?post=2682"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}