Skip to content

Cybersecurity

Engineering write-ups on cybersecurity from deployments KYCONNECTS has run, with the reasoning behind each approach.

Page 1 of 2

Cybersecurity7 min read

IT for banking and financial services

What makes financial IT different is not stronger security. It is that every action must be attributable afterwards, every change must be evidenced, and the availability requirement is contractual rather than aspirational.

Audit loggingPCI DSSSegregation of dutiesMFAImmutable storage
Read the write-up
Cybersecurity7 min read

IT for healthcare providers

Healthcare IT has a constraint most sectors do not: the access control has to be strict enough to protect records and loose enough that nobody is locked out of information they need in an emergency. Everything difficult follows from that tension.

Access controlAudit loggingSegmentationEncryptionBackup
Read the write-up
Cybersecurity9 min read

Endpoint protection: beyond having antivirus

Almost every business has antivirus and believes endpoints are handled. The gap between having it and being protected by it is where most intrusions live — in the machines that stopped reporting, and in the attacks that never involve a malicious file at all.

EDRMITRE ATT&CKMicrosoft DefenderApplication control
Read the write-up
Cybersecurity8 min read

Security auditing: what the words actually mean

Audit, assessment, scan and penetration test are used interchangeably and are four different things with four different prices. Buying the wrong one is the most common way businesses spend a security budget and learn nothing they did not already know.

NIST SP 800-115CVSSCISA KEVVulnerability scanning
Read the write-up
Cybersecurity10 min read

A cybersecurity checklist for growing businesses

Most published checklists are lead generation with a form at the end. A real one already exists, is free, is maintained, and is ordered by what actually stops attacks — this maps it onto what a growing business already runs, and is honest about which items are hard.

CIS ControlsNIST CSFMFAEDRSIEM
Read the write-up
Cybersecurity13 min read

MFA strategy for business

Enabling multi-factor authentication is a Tuesday afternoon. Choosing which factors, covering the accounts that matter, and handling the recovery path without recreating the weakness are the parts that decide whether it holds.

FIDO2TOTPMFASSO
Read the write-up
Cybersecurity16 min read

VoIP security for business

Voice systems are attacked continuously and automatically, and the objective is almost always money. Toll fraud is billed by a carrier who delivered exactly the calls that were requested, which makes it a loss you cannot dispute your way out of.

SIPTLSSRTPFail2ban
Read the write-up
Cybersecurity15 min read

Access control and offboarding

Disabling someone's account is the visible part of offboarding and the smallest part. What survives is the access nobody recorded: certificates, service accounts, shared credentials, and integrations built under a named person's login.

OAuth 2.0MFAActive Directory
Read the write-up

Have a Problem That Looks Like One of These?

We typically respond within 4–8 business hours.