What is Essential 8?

The Essential 8 is a set of cybersecurity practices designed by the Australian Cyber Security Centre (ACSC) to help protect businesses from common online threats. By following these steps, businesses can significantly reduce the risk of cyberattacks, making their systems safer and more secure.

Application Patching

Keep applications up to date by using the latest versions and patching critical vulnerabilities promptly to maintain security and reduce risk

Operating System
Patching

Ensure that computers and servers are updated with the latest versions and patched regularly to address vulnerabilities and maintain system security

Application Control

Prevents the execution of unauthorised and malicious programs

User Application
Hardening

Harden user applications by disabling unnecessary features in web browsers, Microsoft Office, and PDF viewers to reduce the risk of exploitation and malware infections

Microsoft Office
Macro Settings

Restrict macros to prevent attackers from using malicious documents and files to execute unauthorised code, deliver malware, or exploit vulnerabilities in your system, significantly reducing the risk of phishing attacks and ransomware

Restrict Administrative
Privileges

By restricting privileges to more defined roles, you ensure a more precise control over access, minimising the risk of unauthorised access and potential breaches

Multi-Factor
Authentication

Harden access to enhance security by protecting user accounts and reducing the risk of unauthorised access to critical systems

Daily Recovery
Strategy

Ensure that you can quickly recover from cyber incidents, data loss, or system failures. Without this strategy, you risk losing critical information and experiencing prolonged downtime, which can impact business operations and security