Cybersecurity Resource Center.

There are many free and valuable resources available online for companies of all sizes. Below are quick references to many of these resources.

Online Resources.

Security Frameworks.

Overt Channel recommends three frameworks for security, often used in assessments or developing security programs:

Security Guides.

US Federal Government Resources.

  • Department of Homeland Security’s Cybersecurity and Infrastructure Security Agency (CISA) – https://www.cisa.gov/

The FFIEC provides extensive resources directed toward financial institutions with the aim of assessing and improving their cybersecurity postures. These resources are free – and useful – to all organizations. The FFIEC’s Cybersecurity Assessment Tool (CAT) is an excellent resource.

Non-Government Organizations.

Information Sharing and Analysis Centers (ISACs) are sector-based membership organizations which facilitate information sharing.

Reporting & Notifications.¹

  • DMCA Takedown Requests – https://www.copyright.gov/dmca/ – A DMCA Takedown Request is a letter sent to a website owner asking them to remove protected (proprietary, trademark, or copyright) content. If the owner is unresponsive, a similar letter can be sent to the website hosting company. Examples include:
  • Someone has copied my website. I think they are trying to steal my customers.

  • Someone has copied my original photographs.

  • Someone has copied my whitepaper and posted it on their site. They did not link it to my site or attribute ownership.

  • Someone has copied my advertising.

  • Uniform Domain Name Dispute Resolution Policy (UDRP) –  The UDRP is a process established by the Internet Corporation for Assigned Names and Numbers (ICANN) for the resolution of disputes regarding the registration of internet domain names. The process can be used to take ownership of a domain, when successful. Examples include:
  • Someone has register a look-alike domain that is one letter different than mine. They are using this in an email phishing campaign against my company.

  • Someone has registered a look-alike domain and built a similar website. I think they are trying to steal my customers.

  • IC3 Complaint – The FBI’s Internet Crime Complaint Center (IC3) should be notified by victims of cybercrime. This enables federal law enforcement to correlate crimes based and maintain statistics. It should be considered simply a notification mechanism. It is not a substitute for requesting law enforcement involvement during cyber incident response, suspected terrorism, or suspected crimes against children.

¹ Not intended to be legal advice. Please refer to https://overtchannel.com/legal/.

Security resources, whitepapers, downloads.

SECURITY

SETS YOU FREE.