man in orange shirt looking at laptop screen in shock

Are You Ready For…Phishing and Social Engineering Attacks?

How to Prevent Phishing and Social Engineering Attacks

  • Implement an awareness and training program for staff
  • Place internal controls to prevent any one person having unrestricted, unmonitored access to sensitive information
  • Institute policies forbidding the transfer of financial assets and personal information unless accompanied by verbal or in-person confirmation from stakeholders
  • Use caution with unsolicited calls or emails from anyone asking for internal information
  • Use anti-virus software, firewalls, and spam filters as directed by IT staff
  • Use complex passwords at least eight characters long, including letters, numbers and special characters (!, #, @, $, etc.)
  • Use a unique password for every website, especially personal and work accounts

If you Accidentally Click on a Phishing Link But Aren’t Sure of Infection

  1. Immediately contact management and your network administrators
  2. Isolate your computer from your district’s network
  3. From a separate computer, change your passwords that grant access to systems
  4. Refer to IT administrators to determine if an infection has actually occurred
  5. Notify your insurer
  6. CSD Pool members should visit eRisk Hub’s Incident Road Map to determine if the event is a real incident

If You Were Successfully Phished Or a Victim Of Social Engineering

  1. Immediately contact management and your network administrators
  2. Secure all network logs, audits, notes, and any other documentation on the incident
  3. Notify your insurer
  4. Contact law enforcement and legal counsel for assistance
  5. If necessary, prepare notifications to any customers or employees whose information has been compromised and obtain credit monitoring services on their behalf

The advice listed here is taken from Ready for Anything, our guide to responding to disasters and calamities big and small. For your free copy, visit our website.

The owner of this website has made a commitment to accessibility and inclusion, please report any problems that you encounter using the contact form on this website. This site uses the WP ADA Compliance Check plugin to enhance accessibility.