The CISO's 6-Step Ransomware Response Plan

Tech Insights for Professionals
The latest thought leadership for IT pros
With ransomware attacks doubling in 2021, having a strategic response plan is the best way CISOs can protect their data and minimize the impact of an attack.

Ransomware attacks continue to blight businesses around the world, with increasingly professional criminal gangs focusing on easy victims through endless waves of automated strikes or taking the time and effort to breach high-value targets using the latest vulnerabilities.

Thanks to the automated nature of ransomware tools, any business is a target and every company must have a response plan in place. So what will you do when your system’s screens start posting sinister messages and you find all your data is encrypted and being held for ransom? 

The need for a strategic and organized response

Ransomware attacks doubled in 2021, and will only continue to rise in volume as most businesses remain unprepared for them and criminals see easy money. Businesses need to be ready with ransomware incident response teams and a detailed response plan to protect the business, its data (typically operational files, customer lists, credit card or financial records) and employees from the worst effects of an attack.

Fortunately, due to the wide-ranging nature of ransomware attacks, there are several helpful ransomware playbooks to help get you prepared for when your data vanishes and criminals start demanding payments in Bitcoin.

Given the daily risk of attack and the growing use of ransomware-as-a-service tactics, a breach for any business is inevitable. While endless failed attacks clutter spam inboxes, are blocked at the firewall or by rules or profiles in your security suite or are thwarted by aware employees, one day the business won’t always be so lucky as a new attack sneaks through.