Group Policy Security Best Practices for Preventing Ransomware in Retail and Point of Sale (POS) Networks
Retail companies are accountable for protecting personal, financial and operational information. A recent Carbon Black survey found that 70 percent of consumers said they would consider leaving a retailer if they were hit with ransomware. Any attack against vulnerable point-of-sale (POS) technology represents a nightmare scenario for retailers. Locked out of the system, store associates would be completely unable to run transactions.
According to the Department of Homeland Security, more than 4,000 ransomware attacks have occurred daily since January 1, 2016. Moreover, the Department of Homeland Security states that “Prevention is the most effective defense against ransomware and it is critical to take precautions for protection.” In accordance with the department’s Ransomware Executive One-Pager and Technical Document, preventative measures include the following:
- “Manage the use of privileged accounts based on the principle of least privilege: no users should be assigned administrative access unless absolutely needed; and those with a need for administrator accounts should only use them when necessary.”
- “Implement Software Restriction Policies (SRP) or other controls to prevent programs from executing from common ransomware locations, such as temporary folders supporting popular Internet browsers or compression/decompression programs, including the AppData/LocalAppData folder.”
SEPTEMBER 24, 2019 AT 1PM EASTERN
Join Jeremy Moskowitz, 15-Time Microsoft MVP awardee for Endpoint Management and Enterprise Mobility, for a free 60-minute webinar on Group Policy Security best practices for preventing ransomware. During this webinar, you’ll receive 100% free Windows security tips taken directly from Jeremy’s award-winning Group Policy training program. Plus, you’ll learn how Windows Administrators around the country use PolicyPak to protect their networks from ransomware attacks.
Group Policy Security Best Practices for Preventing Ransomware covers the following topics:
- Delegating Permissions over Group Policy usage
- Default GPOs and Fine-Grained Password Policy
- AppLocker, DeviceGuard & PolicyPak Least Privilege Manager
- LAPS: Local Admin Password Solution
- Application and Browser Security using PolicyPak
ABOUT THE SPEAKER
Jeremy Moskowitz is a 15-time Microsoft MVP awardee for endpoint management and enterprise mobility using Group Policy and Modern Device Management. Jeremy’s published works include Group Policy: Fundamentals, Security and the Managed Desktop (Copyright © 2015 by John Wiley & Sons., Indianapolis, Indiana) and MDM: Fundamentals, Security and Modern Desktop (Copyright © 2019 by John Wiley & Sons., Indianapolis, Indiana). Jeremy Moskowitz is the CEO and head instructor for MDMandGPanswers.com, which has enrolled over 16,000 students and is the founder of PolicyPak Software, which manages and protects nearly 2 Million endpoints worldwide.