12 tips to reduce your risk:
1. Use multi-factor authentication, particularly on all public-facing accounts.
2. Always install patches as soon as they become available and don’t run software beyond its end of life (the date after which it stops being supported).
3. Use good email security and understand how email-based malware works.
4. Protect your internal network by making it more difficult for people to access resources.
5. Always install software from their official sources and avoid pirated software.
6. Have a cybersecurity consultant on call who will be available to quickly assist in case of a ransomware incident.
7. Understand your exposure to third party systems in case they get affected by ransomware.
8. Speak to your cloud providers to understand how their systems can be exploited by ransomware actors.
9. Limit the amount of data that you keep.
10. Make sure you make backups often, store them outside your organization’s network, and test them regularly.
11. Hold regular tabletop exercises that focus particularly on direct and indirect ransomware incidents.
12. Consider cybersecurity insurance.