shochan said: I don't know the specifics, but I wonder if their IT company just had their hands tied due to restricted IT budgets to have safeguards in place or if they just had an incompetent security posture in place. I believe they had their own IT staff but it could have been outsourced to a local MSP.
TechGromit said: shochan said: I don't know the specifics, but I wonder if their IT company just had their hands tied due to restricted IT budgets to have safeguards in place or if they just had an incompetent security posture in place. I believe they had their own IT staff but it could have been outsourced to a local MSP. In my opinion there's really no excuse not to have a monthly offline backup of your network. When i worked at a casino, monthly tape backups went off site, and we had backups going back years. I can see losing weeks of data due to a ransomware attack, where your offline backup are compromised or deleted, but you should have tape backups going back far enough to recover at some point. A tape dive backup solution is fairly cheap.
yoba222 said: Can't remember off the top of my head but I believe this is a control item in the CIS benchmark for Windows hardenings -- to not allow local admins.
averageguy72 said: We had deployed managed state across our whole organization about a year before being acquired. Now we're part of a very large company and everybody has local admin, nutty.
TechGromit said: averageguy72 said: We had deployed managed state across our whole organization about a year before being acquired. Now we're part of a very large company and everybody has local admin, nutty. Things run more efficiently when everyone has Enterprise Admin rights. What could go wrong?