Guidance
How to prepare for and plan your organisation's response to severe cyber threat: a guide for CNI
Act now to be ready to withstand and recover from severe cyber attacks.
Pages
Page 13 of 26
Activity 3. Harden defences

Monty Rakusen via Getty Images
Hardening defences means strengthening your systems, networks, and processes to reduce vulnerabilities and limit the impact of attacks. It involves:
-
applying security best practices now
such as patching, secure configuration, and access controls (see 3.1)
-
designing robust systems architectures
for flexibility, defensibility and resilience (see 3.2)
-
planning to be able to rapidly harden security measures
like isolation and segmentation during a severe cyber incident (see 3.3)
-
documenting and rehearsing defensive actions
(see 3.4)
For CNI organisations, being able to harden defences to reduce exposure and ensure you can rapidly escalate to extreme measures – such as network isolation or system isolation and rebuild – without chaos, if and when a cyber threat becomes severe, or an attack occurs.