When thinking about how to reduce the RISK of a cyber-attack, it’s useful to think about:

  • How you can reduce the LIKELIHOOD of an attack and
  • How you can reduce the IMPACT of an attack.

So What?

Some security measures will reduce the LIKELIHOOD – e.g. Multi-Factor Authentication. Others will reduce the IMPACT – e.g. secure backups.

Both types are important.

And it’s important to have both types.