Blog

May 17th, 2012

In many cases, the key to a competitive advantage is the effective application of Business Intelligence (BI). Through analyzing business data, companies gain the ability to identify weak spots and develop ways to strengthen them. While BI is complex, there are many software vendors that have released Software as a Service (SaaS) apps to help small businesses make sense of their data.

Here is an overview of four Business Intelligence SaaS apps that you could use in your business:

KPI KPI (Key Performance Indicator) is a company that offers a cloud based dashboard that integrates with your CRM or ERP software. It provides a way for businesses to visualize, analyze and report real-time data from your business’s key metrics. All the results can be viewed on your computer or on your mobile device.

GoodData GoodData is an on demand BI provider that offers users a base service that they can add apps to as and when needed. The whole service and dashboards are stored and run in the cloud, and are considerably cheaper than traditional BI services.

Bimotics Bimotics offers an on demand BI service for businesses in almost every major sector. They offer one suite that has data connectors, an established BI engine and analytical tools that should meet most small businesses’ needs. The suite can also be accessed by almost any mobile device.

Tibco Silver Spotfire Silver Spotfire is a cloud based SaaS aimed at individuals and small businesses. It lets users create interactive dashboards and visual analytics without the need of costly infrastructure. This app also integrates with major social media services, allowing users to put live dashboards on their blogs.

These are just four useful apps that you can use in your business. If you’re interested in how you can integrate BI solutions into your business, please contact us.

Published with permission from TechAdvisory.org. Source.

May 16th, 2012

Everywhere you look business owners are inundated by issues pulling their attention in a multitude of directions. One issue almost every owner has managed to get under control is network security. These businesses are secure from external threats and because of this, believe their systems to be 100% safe, however, they may have missed the possibility of internal threats.

In recent years the majority of security threats and compromises have come from within the company. A common threat to companies is the logic bomb - malware that targets IT systems and deletes data. As a logic bomb is introduced from within the network, the blame often lies with a disgruntled employee with full access to internal systems.

Insider threats Giving employees full access to the network when they don’t need it is a common mistake often made by companies. There’s little need for an employee who does graphic design to have access to weekly sales records. This practice could set your company up for a considerable security problem in the future.

Dawn Cappelli, an insider-threat expert at the Carnegie Mellon Software Engineering Institute stressed, "These types of insider attacks happen to businesses of all sizes, from small companies to very large corporations." This is an important issue businesses should be aware of if they want to remain secure.

Take Precautions Security threats can be a particularly harsh nightmare for small businesses, as many don’t have an IT department or staff with the technical expertise needed to maintain a secure network. If you’re one of these organizations, it’s a good idea to hire an outside consultant to help you with your network security. With consultants, it’s important that you maintain close contact with them to ensure any issues that crop up are dealt with expeditiously.

If you don’t work with an external company there are a few things you should do when you have an employee leave the company. First, their accounts should be deleted immediately and their access privileges should also be revoked. Second, if you have accounts with shared passwords, you should change them to ensure an ex-employee can’t gain access to the system.

If you’d like to learn more about internal security, and measures you can take to ensure you are safe, we are ready to help you. Please contact us.

Published with permission from TechAdvisory.org. Source.

May 16th, 2012

Respect him or not, Mao Tse-tung had it right when he said, “The only real defense is an active defense.” Businesses have taken this literally and have adopted Business Continuity Plans (BCP) to ensure that when a disaster strikes they are ready with an active plan. Many of them are prepared technology wise, but the other assets may not be so ready.

Here are six key non-IT functions and processes that need to be in place to ensure your company is ready to effectively execute your BCP.

Easy to use plans Many continuity plans have been developed mainly for the IT department, as such, they can be a little complicated to understand and follow if employees don’t have a technical background. You should aim to have a plan that’s easy to follow and can be understood by all employees.

Communicate plans Remember that your plan encompasses all facets of your organization. It’s crucial that every employee knows their role and the relevant actions to take when the plan is executed. To do this, you need to ensure that all employees have access to a copy of the plan and any changes or updates are clearly communicated.

Test plans Beyond communication, it’s important to conduct regular tests, with every quarter being sufficient. The tests should be as real as possible and span all departments within the organization. This will ensure that employees are aware of how they, and the systems, will react under duress. It’ll be beneficial to your business if the first time the employees execute the plan isn’t during an emergency.

Short term and long term plans Your BCP should consist of both long term and short term elements that can be easily adapted to meet changing business environments and the emergence of new threats. You should aim for an even mix of short and long term solutions that cover as wide a variety of situations as possible.

Ensure buy-in from all levels If you’re in the process of instituting a BCP you should ensure that the whole organization is onboard with the plan. If an employee is unsure about the validity of a part of the plan, take the time to find out why and ask for suggestions. An uninformed or uncooperative employee could be the difference between survival and failure in a disaster situation.

Update and Review After every test, staff turnover and technological update, you should review the plans and make changes if necessary. Essentially, if anything in the company changes, review and update the plan. Remember: just because you have an effective plan this month, doesn’t mean it’ll be so in the future.

Continuity plans are only as strong as the weakest link. In an emergency, the last thing you want is an employee following the wrong process or be unsure of what they should be doing. If this happens, you could see an exponential growth in recovery time and costs. We’re ready to tell you more, so please contact us if you would like to talk continuity planning.

Published with permission from TechAdvisory.org. Source.

May 9th, 2012

One issue that’s sparked a large amount of debate is whether or not companies should allow their employees to access social media while at work. One thing's for certain, the number of employees who actually use social media on a regular basis is large, and growing. There will come a time when companies that block social media can no longer afford to do so.

There are four distinct advantages to allowing social media:

  • Increased productivity. There have been a number of studies that have found that judicious use of social media in the workplace will actually increase productivity. A study conducted by the University of Melbourne found that employees with access to social media are 9% more productive than those without.
  • Increased buy-in. Employees like to feel trusted and empowered. If they don’t you can expect to experience higher turnover and lower morale. A good way to gain trust is to allow employees to use social media in the workplace. If an employee feels like they are trusted, they’ll be more likely to stay with the company.
  • Recruiting. Small businesses have started to use social media for recruitment, but limit efforts to one account. If you have 10 employees in your organization, each with a social media account with 100 friends, you have the potential to reach 1,000 people. This is achievable if employees are allowed to access social media at work and are encouraged to share posts.
  • Identification of business opportunities. Through the use of social media, employees in charge of sales and business development can source new clients and build fruitful relationships.
There are many advantages to allowing access to social networks at the office. If you‘re hesitant to completely open the social media floodgates, try doing so in short periods, like the final three hours of the working day.

No matter what you decide, allowing access to social media is a good practice for your business. If you would like to learn more about social media and how you can leverage it in your business, we are happy to talk with you.

Published with permission from TechAdvisory.org. Source.

May 5th, 2012

Collaboration is all around us. We see it on a daily basis in both our personal and professional lives. At work we cooperate with colleagues, managers, suppliers, customers and almost everyone we come in contact with at the office. It’s become so important that if businesses have employees who don’t mesh, their chances of success are almost non-existent.

Here are seven tips on how to improve collaboration within the office environment.

  1. Open communication. One of the keys to successful teams is the adoption and encouragement of an open communication culture. With this, teams are better able to grasp what’s going on within the company, and be more efficient contributors and team players.
  2. Use the right technology. It seems like there are a million different software and technology options out there. Some of the tools available offer some fantastic features and it’s easy to get sucked in by a flashy component. It’s important that when choosing a tool you pick one that meets your company’s needs and is easy to use.
  3. Collaboration tools must play well with others. It’s beneficial to select systems that can be seamlessly integrated with other tools and software used by your employees. If your solutions don’t work together, all parties won’t be able to work together.
  4. Employee learning is key. When you find the perfect tool to use, be careful to take time and learn how to effectively use it. Training for the users of the tool is equally important.
  5. Work hard, play harder. Teams and departments should step away from their computers and actually have face-to-face meetings at least once a week. These meetings should be a mixture of formal and informal, and offer employees a chance to come together as a team, unwind and share ideas. A team that can interact well will always work together with greater efficiency.
  6. Mobilize. The smartphone is here to stay and with each passing year the number of users grows exponentially. It’s beneficial to encourage the use of these devices, and look for mobile solutions that allow users to be a part of the group while out of the office. If you do allow mobile devices, be sure to establish a clear usage policy so employees know how and when they should be using their phones.
  7. Don’t just focus on internal collaboration. One of the most common mistakes companies make is that they focus on group participation within the business, but don’t provide adequate support for external interactions. Be sure you integrate tools that provide stakeholders with a way to connect and work with teams within the company.
With a team that interacts effectively you’ll see happier employees and higher profits: a win-win situation. If you have any questions regarding collaboration tools, or other ways to increase business value please don’t hesitate to contact us.
Published with permission from TechAdvisory.org. Source.

May 4th, 2012

Macs running OS X are often touted as the most secure machines. While OS X is definitely more secure than other operating systems, it may not be as secure as owners think. A new trojan that takes advantage of a security flaw in OS X has been discovered, and it’s a doozy. This has the potential to be a security nightmare.

If you mention “OS X” and “virus” in the same sentence, you’ll get some weird looks from Mac users. Traditionally viruses and trojans on OS X were near non-existent, but there’s a Mac specific trojan, codenamed Flashback, that has affected more than 600,000 computers. This is big news as it shows that machines running OS X may not be as secure as first thought.

Many Mac owners are unsure of what exactly the Flashback trojan is, what it does and how to ensure they’re not infected. We’re here to help clarify the situation.

What is a Trojan and What Does Flashback Do? In general terms, a trojan is a piece of malicious software that infects a computer and gives control of part, or the whole computer to hackers. The Flashback trojan takes advantage of an OS X Java vulnerability and infects computers by tricking them into downloading a fake Java update.

When the program is installed, Flashback will download and install the main trojan code without the need for permission from the administrator. From there it proceeds to hijack your browser, redirect search queries to websites developed by hackers, and then take advantage of pay-per-click advertising.

Why Should I be Worried? While this version hijacks your browser, there are far more sinister things it could do. As this trojan acts as a downloader, there’s nothing stopping the developers from updating the malware to steal passwords, banking information and other confidential information.

How do I Ensure My Mac is Clean? Apple has released an update for machines running OS X 10.6 and later. The first step you should take is to update your computer to patch the vulnerability. To update your Mac:

  1. Press the Apple logo, located in the top right hand of your screen.
  2. Select Software Update...
  3. Press Install and Restart.
While the patch will prevent Flashback from working, it won’t delete the program if you’ve been infected. The Internet security company F-Secure has developed a script that scans your computer and removes Flashback if found. Once you have downloaded the script, open and run it. The script will search your computer and place the infected files in an encrypted ZIP folder labeled Flashback_quarantine.zip.

Flashback has infected a higher number of Macs than any other trojan to date and goes to show that Macs also have security flaws. This also serves as a reminder that you should have a virus scanner and security program running on your Mac. If you have any questions regarding the security of your Mac or other devices, please don’t hesitate to contact us. We are here to help keep your machines secure.

Published with permission from TechAdvisory.org. Source.

May 3rd, 2012

Technology has advanced at such a pace that the number of networked devices in the world now outnumbers people. This is a staggering figure by itself, but pause for a moment and think: these devices all create data, lots of data. The amount of data produced is expected to grow to a point where companies won’t be able to process it. To make sense of this, the term Big Data has been coined, but what exactly is Big Data?

You’ve probably been reading technology blogs and have seen Big Data mentioned in conjunction with large companies, maybe even dismissed it as something, “for the big guys”. While Big Data is currently the focus of large companies, it won’t stay that way for long and it will pay to know about it.

What is Big Data? In recent years the amount of data available has exploded and companies have reached a point where there’s so much of it available they can’t physically store or analyze it using existing means. This quandary is called Big Data.

Frank Moss, former director of MIT Media Lab, describes Big Data as coming from, “Computers, smart phones, GPS devices, embedded microprocessors, sensors...[which] are forming a ‘societal nervous system’ that is generating a cloud of data that’s growing at an exponential rate.”

This growth has overwhelmed many companies causing a need for Big Data solutions. These solutions provide businesses with a way to immediately make sense of vast amounts of information, make informed decisions and exploit data.

What can I Do With Big Data? The uses of Big Data are near limitless. For small businesses the best deployment, currently, is for market research. You can use Big Data to help decrease the risk of decisions by increasing your knowledge of current trends, your target market’s demographics and customer buying patterns. Research that would normally take weeks can be done in minutes or seconds, allowing your company to make better marketing decisions quicker and with a higher chance of success.

Are SMEs Ready for Big Data? Large companies are utilizing Big Data because they simply can’t keep up with the incredible amount of data generated. At the same time, smaller organizations have simply not reached the point where they are being overwhelmed by data, therefore there’s no pressing need to look into it. This is rapidly changing though, so it’s beneficial to keep your eye on developments.

If you have any more questions regarding Big Data or Business Intelligence and their uses within your organization please contact us, we will be happy to sit down with you.

Published with permission from TechAdvisory.org. Source.

April 12th, 2012

One issue that’s gaining steam, especially with SMEs, is business continuity planning. Many companies are starting to develop plans so that they can continue to operate through both problems large and small. If you’re one such company, and are stuck at the point where you need to choose between software and templates, we have some advice for you.

The decision between templates and software can be a tough one to make, as whichever one you choose, you’ll be using and relying on for a long time. To help you we’ve covered some pros and cons on both choices:

Using Software If you choose to go with a software program, you will be walked through the whole process allowing you to develop a useable plan. Another benefit of using software is that you’ll be able to develop reports if needs be.

The drawbacks of using software include cost, inflexibility and learning time. For the most part, business continuity planning software is not cheap, and at times can be inflexible due to limits within the program. If you have a niche need, the software may not cover it. In addition, as with mastering any program, the learning curve can be quite steep.

In general, using software would be advantageous for companies that have a bigger budget for the development of a continuity plan. Software is also a good bet if you don’t have staff who are experts in continuity planning, or if you operate in an industry where a continuity plan is necessary, e.g., companies working with healthcare insurance, or manufacturing companies that have introduced ISO 9000.

Using Templates If you feel that your company is not ready for software you can use templates to help you develop your plan. These solutions are mostly written plans that you adapt to meet your business needs. They’re useful if you’re just starting to do continuity planning, as they provide a normally solid foundation, and are generally a lot cheaper than software.

A limitation to using templates is that they can be a little too basic at times, and may not meet your needs. Granted, most plans will follow a basic structure and your developer will need to adapt some steps for your relevant region and industry.

As each industry is different, it’s hard to make a recommendation on what type of planning style companies should take. We recommend you take your time, do your due diligence and weigh out what’s best for your business. No matter which method you choose to go ahead with, ensure that it’s easy to implement, and that you’ll be able to teach your staff how to run the plan.

If you feel really lost or are not sure what to do, talking to professional consultants could go a long way in helping you develop a plan. If you’d like to learn more about business continuity planning please contact us - we are happy to help.

Published with permission from TechAdvisory.org. Source.

April 11th, 2012

Does your company use cloud storage services or peer-to-peer (P2P) networks for the storage and sharing of data? Many businesses are now using both these services in an effort to make work less complicated. But did you know that there are potential issues in relation to recoverability and security of data?

With the seizure of a number of cloud storage and sharing websites, including Megaupload, and the seemingly omnipresent malware in P2P files and the shaky security in relation to P2P networks, businesses have had their hands full staying secure. Do you know what your options are when it comes to data security?

Cloud Services Knowhow The recent seizure of Megaupload’s files and servers by the US Government caught many people and businesses unprepared. While Megaupload’s main purpose was file sharing, it was found that a large number of organizations were using their services to store files. If you had files stored on Megaupload, the chances of getting the files back are non-existent.

It needs to be pointed out that many cloud services don’t guarantee that files stored on the service will be recoverable in the event of a crash, or disruption in service, e.g., a government seizing servers. If you read the user agreements of a number of major cloud services, they all have clauses stating that if data stored on their service is lost for any reason, it’s gone forever, and the hosts can’t be held liable for losses.

Risks of P2P With high speed Internet widely available at low prices, P2P file sharing has become incredibly popular, it’s almost uncommon to find someone who has never used a P2P service. If you or your employees use P2P at your office, there are a number of potential security threats you should be aware of:

  • The unknown share: If you put a file in a folder that is shared on a P2P network, it’ll be shared with all other people connected to that folder and almost anyone can access it. This is normally done by mistake, i.e., not looking where the file will be saved when you save it. There’s also malware out there that will move files into a shared folder which the developer of the malware can find and upload with ease and without the user knowing it is happening.
  • Open network: Typically P2P works on open networks: users give and share. What this means is that when using P2P on a poorly configured network, the whole network could be unsecure, allowing for access to other computers connected to the network.
  • Untracked data: If you share a document with another person, and they then share it with others, there is potentially, an unlimited amount of people that can get the data. If you want to take it back, it can be impossible to do so, even if the original document is deleted.
  • Storage hijacking: There’s news of malware that has been developed with the purpose of downloading illegal material onto your hard drive. This could pose a problem if the data is found, as you will be liable.
What Should I do? With regards to cloud services, as with anything that comes with a contract, the first thing you should do is gain an understanding of it by utilizing reading material such as blogs, news articles and Wikis. It’s a pain in the neck, but it’ll help you understand the boundaries of the program and your responsibilities. Remember that if you go to court to get files back from a company, and it becomes known that you didn’t read the agreement, you’ll probably end up losing that case.

Second, it’s not recommended to keep single copies of data on one cloud service. Chances are high that in your business, you store your data and backups in a place separate from the computer. This makes sense with the cloud as well - keep your data with a number of different cloud services. If it’s important enough, have physical backups of what you put in the cloud.

For P2P networks there are also a number of steps you can take to protect the data on your network:

  • The most obvious one is to ban employees from using any file sharing services outside of your network.
  • If you do allow file sharing, it’s a good idea to establish and strictly enforce a protocol for this. You should also set which users are allowed to share files, and what files are appropriate to share. Be sure that all staff are aware of your policy and the measures that will be taken in the event of any deviations.
  • Develop a system to classify documents by whether or not they can be shared, and who they can be shared with.
  • If you work in an office where you need to share files, but don’t want to use a P2P network or the cloud, and are unsure of other solutions out there, don’t worry. There are companies that specialize in document sharing solutions that should be able to provide you with assistance.
The most important thing is that whatever the situation is, you take action to try to solve the problem while frequently revisiting the actions to ensure that they are working. If you’d like to learn more about document sharing over the cloud, or via P2P networks, give us a buzz. We’re more than happy to help.
Published with permission from TechAdvisory.org. Source.

March 23rd, 2012

One issue that has caused business owners and managers many headaches, and possible sleepless nights, is cybercrime. Businesses are always under threat of having data or money stolen, and need to be taking actions to stop this. Do you know what you need to protect your business?

A quick Google search for “cybercrime trends” yields over 78 million results, the majority of which are likely to affect large enterprises or governments. While it is beneficial for all businesses to be aware of the major trends, there are a number of threats that will affect small businesses more than others. Here are some current cybercrime trends that SMEs should be aware of.

Mobile Malware Smartphones are becoming ever more popular, and with this popularity has come an exploding number of apps. Malware developers have been picking up on this during the past few years and there have been an expanding number of apps dedicated to attacking your phone or mobile platform. The most common type of malware on mobile devices is spyware, followed by SMS Trojans. SMS Trojans run in the background of some applications, and make international calls or text messages from the developers’ services causing huge phone bills. The final form of malware targets online payment apps on the phone.

One of the main reasons this form of malware has become so popular is due to the openness of some markets, such as the Android Market. The owners of the app markets are working to track down and get rid of the guilty apps on their marketplaces, but you still need to remain vigilant. while installing apps. Look at the developer of the app - how many times has it been downloaded? Maybe double check the app’s integrity online before installing and double check the app on the internet.

Open-Source Malware Kits A common thing malware developers do is write code for malware and then sell it to interested buyers. But a rising trend is that developers are writing malware that is open-source—any person can download and change it. The worrying thing is, many developers of already powerful malware have been releasing open-source versions of their software. This means that there will be an increase in the number of malware attacks out there, as devious developers can easily come up with more elaborate hacks.

Banking Trojans Along with the open-source malware kits, there has been an increase in the number of banking trojans—aimed at stealing account information and passwords. While these trojans have been a threat ever since banks first started offering online banking, they have become popular again as people and businesses are starting to move their online banking onto mobile devices, and the trojan software is easily accessible. This makes mobile banking apps an easy target.

With cybercrime on the increase, now is a good time to review your security, ensure its up to date and remind employees of your mobile device policy. If you don’t have a policy in place, or feel that your security is inadequate, give us a call, we are happy to help you. Remember: with good security and knowledge, there is no reason you should fall victim to cyber theft.

Published with permission from TechAdvisory.org. Source.