Cyber-attacks against Law firms are continuing to rise.
According to the Solicitors Regulation Authority, 75% of Law firms have become the target of a cyber-attack. With the top three most common cyber-attacks being:
The good news is that the National Cyber Security Centre (NCSC) has launched the fully Funded Cyber Essentials Programme - NCSC.GOV.UK to help specific sectors that are at high risk of a cyber-attack, at no cost.
Cyber Essentials is a simple and effective Government-backed scheme, supported by industry experts and the Cyber Resilience Centre Network. Cyber Essentials will help you put measures in place to protect your organisation, against a range of the most common cyber-attacks. This includes protecting against threats such as malware, ransomware, and phishing.
Read more here: Cyber Essentials & Plus Training & Certification ¦ ECRC (ecrcentre.co.uk)
The legal sector is an increasingly targeted industry for cyber attackers due to the sensitive and confidential information that the industry handles, including client data, financial information, and legal documents. This information is highly valuable to cyber attackers, who can use it for financial gain or to carry out other malicious activities. With the increasing use of technology in the legal industry, the risk of cyber-attacks has become even more pronounced.
Cyber Essentials can fully or partially mitigate up to 99% of common cyber-attacks. Meaning if you meet the Cyber Essentials standard you are less likely to fall victim to a cyber-attack yourself and you will be able to reassure your customers and trustees that you have recognised the threat, risks and have taken proactive steps to minimise the impact.
All modern businesses are susceptible to cyber-attacks, however, certain organizations face a heightened risk, whether it's due to the possession of sensitive information or being perceived as an effortless target by cybercriminals.
To address this issue, the National Cyber Security Centre (NCSC) has established theFunded Cyber Essentials Program, specifically targeting the most vulnerable sectors. This initiative aims to provide vulnerable organisations with help to implement baseline security controls to prevent the most common types of cyber-attack.
The scheme is designed to lead an organisation through the technical controls required to achieve Cyber Essentials certification, followed by the audit for Cyber Essentials Plus. No previous cyber security certification or experience is necessary.
To qualify for this scheme, your organisation must be: a micro or small business (1 to 49 employees) that offers legal aid services.
Applying organisations must also meet the following criteria:
If your business or organisation meets the above criteria and you wish to express an interest in the Funded Cyber Essentials Programme, please visit the website of the NCSC’s Cyber Essentials partner, IASME, where you can register your interest.
Here at the ECRC, we would recommend taking the following proactive steps to enhance your cyber resilience and protect your organization from potential cyber-attacks:
When you join our community, you will receive access to:
If you are a business, charity or other organisation which is currently suffering a live cyber-attack (in progress), please call Action Fraud on 0300 123 2040 immediately. This service is available 24 hours a day, 7 days a week.
Please report online to Action Fraud, the UK's national reporting centre for fraud and cybercrime. You can report cybercrime online at any time using the online reporting tool, which will guide you through simple questions to identify what has happened. Action Fraud advisors can also provide the help, support, and advice you need.
For enquiries: enquiries@ecrcentre.co.uk
01223 856020
Facebook | Twitter | LinkedIn: @EasternCRC
Instagram: @_EasternCRC
Click to Open Code Editor