• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • Skip to footer

My TechDecisions

  • Best of Tech Decisions
  • Topics
    • Video
    • Audio
    • Mobility
    • Unified Communications
    • IT Infrastructure
    • Network Security
    • Physical Security
    • Facility
    • Compliance
  • RFP Resources
  • Resources
  • Podcasts
  • Project of the Week
  • About Us
    SEARCH
Network Security

How Can SMBs Get the Cybersecurity of Enterprise Organizations?

As an SMB you don’t have the cybersecurity team of a large enterprise organization, but there are ways for you to improve cybersecurity practices nonetheless.

October 15, 2018 Jonathan Blackwood Leave a Comment

Expel MDR for Kubernetes, cloud

If you think about enterprise organizations, there are typically teams of cybersecurity professionals on staff or hired to help them bolster their security portfolio. For SMBs, there typically isn’t this type of support to help them with cybersecurity practices.
As you peel back the layer, many SMBs think that they’re protected, when in reality all they have is an antivirus and a firewall. However, many of these companies have invested in physical protection for their buildings – access control systems, surveillance, alarms, etc. In addition, they’ll inform and train employees on what to do in case of emergency situations.

Treat Cybersecurity Like Physical Security

The average loss in a burglary is around $5,000, while the average loss in a cyber attack starts around $80,000. So there is clearly a disconnect among SMBs between what they should invest in to protect themselves.

“You really need to have comprehensive, multiple layers of protection on the cybersecurity front, and we really don’t see that with small business today,” says Rob Simopoulos, Co-Founder of Defendify.

Related: Who Got Hacked This Week?

If you think of it in terms of a building, many of these same sorts of physical security initiatives can be applied to the network. Alarm systems can be activated if there is any strange activity in the network. Training can teach employees cybersecurity best practices. Policies can be put in place to make sure they’re protected.

“Human error is really the leading reason for most incidents, and we think it’s really important that people think about their cybersecurity posture,” says Andrew Rinaldi, Co-Founder of Defendify. “What am I doing every day to help protect and defend?” You need to think about the human error, and then determine what technology to put into place to aide.

Educate Employees on Cybersecurity

“I think that it’s important that the employees totally understand how they’re expected to use computer, mobile phones, and applications,” says Simopoulos. “Make sure that they understand why those things are put in place.”

One of the key places to start it to develop strong policies and guidelines for the employees that work there. Basically writing the rulebook and then training employees on that. In the end, you’ll also want to do testing to ensure that the human error is under control.

If one of the policies is that employees can’t use devices for personal things, explain why and how that puts the organization at risk. When an employee understands the true risk of logging into personal accounts on company devices they’ll shy away from doing so. Otherwise, an employee that doesn’t understand risk will consider some of the policies simple paranoia.

It’s a serious topic, but it doesn’t have to be so serious when you present the information to the team. When you explain the why, and weave some fun into it. Presentations, videos, training, and so on – keep it short and digestible, explained in ways laymen employees can wrap their heads around. You want employees to actually engage with it – it’s not the most exciting material.

“The other big thing is leading by example,” says Rinaldi. “The IT Director is often in a position where people are looking to them and thinking of them from a tech perspective, but they’re also a leader of the organization. Having someone in that role talking about cybersecurity as a posture, and building everyone to be a cyber defender, leading by example, doing things they’re asking others to do, really goes a long way.”

One way to weave in some fun is to offer prizes when employees complete training or pass things like phishing tests.

Hire Consultants and Managed Service Providers

One way for SMBs to get the support that an enterprise organization gets at a fraction of the cost is to outsource their cybersecurity needs. Managed service providers and consultants are a great way to get professional help without the need to hire new staff members. They can work with your existing IT department to put many of these practices and technologies in place.

“It really depends on the situation,” says Rinaldi. “It’s about setting the table in terms of how you’re going to work together from a relationship perspective.”

Related: My TechDecisions Podcast – Episode 43, Bryan Payne PMP

Everyone’s cybersecurity program is different, and unique to the organization’s needs. Make sure the conversation is had in plain English. Things tend to get overcomplicated in the tech world – but complicated and confusing concepts should be made to be understood by your cybersecurity partner.

Another big thing is to make sure your partner is accessible. There’s a trend in the industry of companies hiding behind their computers – you want to be able to have a conversation with your partner when you need to talk to them. Decisions should be made with the end user in mind, and someone should be there to answer your questions along the way.

A good user experience is what you’re searching for. How do they engage with what you’re doing? How does it work for your organization? Is it something that you understand? Is there someone there to help you along the way?

If you can be sure that your partner is just that – a partner – then you’re on your way to improving your cybersecurity portfolio.

If you enjoyed this article and want to receive more valuable industry content like this, click here to sign up for our digital newsletters!

Jonathan Blackwood
Jonathan Blackwood

Jonathan Blackwood is the Editor-in-Chief of TechDecisions. Jonathan joined TechDecisions in 2014 and writes about technologies that help to innovate and improve practices for companies of all sizes, K-12 and higher education, government, healthcare, hospitality, retail and large venue spaces. He is especially interested in the future of work and education and the Internet of Things. Follow him @BlackwoodTweets.

Tagged With: Cyber Security, Managed Services

Related Content:

  • Cybersecurity and information or network protection. Future technology web services for business and internet project CrowdStrike Cyber Armageddon: How Do Firms Now Build…
  • DDoS, NETSCOUT Arbor Insight 7 Layers of DDoS Attacks and How To…
  • cisco webex-rooms-modern-space AVI-SPL Receives Cisco 2023 Reimagine Workspaces Partner of…
  • data breach Nearly 900 Schools Impacted by National Student Clearinghouse…

Free downloadable guide you may like:

  • Download TechDecisions' Blueprint Series report on Security Awareness now!Blueprint Series: Why Your Security Awareness Program is Probably Falling Short

    Learn about the evolution of phishing attacks and best practices for security awareness programs to ensure your organization is properly prepared to defend against them in this report from TechDecisions' Blueprint Series.

Reader Interactions

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Latest Downloads

Practical Design Guide for Office Spaces
Practical Design Guide for Office Spaces

Recent Gartner research shows that workers prefer to return to the office for in-person meetings for relevant milestones, as well as for face-to-fa...

New Camera Can Transform Your Live Production Workflow
New Camera System Can Transform Your Live Production Workflow

Sony's HXC-FZ90 studio camera system combines flexibility and exceptional image quality with entry-level pricing.

Creating Great User Experience and Ultimate Flexibility with Clickshare

Working and collaborating in any office environment today should be meaningful, as workers today go to office for very specific reasons. When desig...

View All Downloads

Would you like your latest project featured on TechDecisions as Project of the Week?

Apply Today!

More from Our Sister Publications

Get the latest news about AV integrators and Security installers from our sister publications:

Commercial IntegratorSecurity Sales

AV-iQ

Footer

TechDecisions

  • Home
  • Welcome to TechDecisions
  • Contact Us
  • Comment Guidelines
  • RSS Feeds
  • Twitter
  • Facebook
  • Linkedin

Free Technology Guides

FREE Downloadable resources from TechDecisions provide timely insight into the issues that IT, A/V, and Security end-users, managers, and decision makers are facing in commercial, corporate, education, institutional, and other vertical markets

View all Guides
TD Project of the Week

Get your latest project featured on TechDecisions Project of the Week. Submit your work once and it will be eligible for all upcoming weeks.

Enter Today!
Emerald Logo
ABOUTCAREERSAUTHORIZED SERVICE PROVIDERSYour Privacy ChoicesTERMS OF USEPRIVACY POLICY

© 2025 Emerald X, LLC. All rights reserved.