G6 layers endpoint detection and response, email filtering, access controls and tested backup and recovery procedures to reduce both the likelihood and the impact of a ransomware event. No single control eliminates ransomware risk, which is why G6 treats prevention and recovery as two separate, equally necessary disciplines.
Layered ransomware defense is comprehensive:
- Endpoint detection and response (EDR) identifies suspicious encryption behavior on a device and can isolate it from the network automatically.
- Immutable, off-site backup copies ensure that encrypted production data can be restored from a version ransomware cannot also encrypt or delete.
- Conditional access and MFA reduce the initial compromise vectors, such as stolen credentials, that most ransomware incidents begin with.
- If ransomware activity is detected on an endpoint, then that device is isolated from the network before the encryption process can spread to shared drives or servers.
Learn more on the cybersecurity page or read: What is included in G6’s cybersecurity services?