Tag: backup plan

  • What does your business’s cyberattack response plan look like?

    What does your business’s cyberattack response plan look like?

    Most businesses spend a lot of time thinking about how to prevent a cyberattack, but far less time thinking about what happens when prevention fails. Firewalls, endpoint protection, multifactor authentication, email security, backups, and employee training are all important, but none of them eliminate risk entirely.

    That is why every organization needs a documented cybersecurity response plan. A good plan gives your team a clear path forward when systems are compromised, data becomes unavailable, ransomware appears on a workstation, or an employee account is taken over.

    It should also work hand in hand with your disaster recovery plan. Cybersecurity response focuses on containing the incident, understanding what happened, and preventing further damage, while disaster recovery focuses on restoring systems, applications, data, and business operations. When those two plans are developed together, your organization is much better prepared to recover without making an already difficult situation worse.

    Cyber incidents create confusion quickly because people are forced to make decisions while critical systems may already be unavailable. Employees may not know whether they should shut down their computers, disconnect from the network, call IT, notify management, contact customers, or simply stop touching anything. Without a documented process, well-meaning employees can accidentally destroy evidence, spread malware further, overwrite usable backups, or delay the response while people argue about who has authority to make decisions. A cybersecurity response plan removes much of that uncertainty before an incident ever happens.

    The goal is not to create a 200-page binder that nobody will read. The goal is to establish clear responsibilities, reliable communication methods, technical recovery procedures, and a defined order of operations that your team can actually follow under pressure.

    Traditional disaster recovery planning often focuses on events such as equipment failures, storms, fires, power outages, or accidental data loss. Those scenarios still matter, but cyberattacks create additional complications because the systems you are trying to restore may themselves be compromised. For example, restoring a server from backup is not enough if the attacker still has access to an administrator account. Reconnecting restored systems to the network can immediately expose them to reinfection if the original vulnerability has not been identified and contained.

    Modern disaster recovery planning therefore needs to account for security incidents as well as infrastructure failures. Recovery should not simply mean getting computers running again. It should mean restoring the business to a known, secure, and functional state.

    10 Must-Have Items in a Disaster Recovery and Cybersecurity Response Plan

    A practical disaster recovery and cybersecurity response plan should cover the technical side of recovery as well as the people, communication, and decision-making processes surrounding an incident. At a minimum, every business should address the following ten areas.

    1. A clearly defined incident response team. Identify who is responsible for technical response, executive decisions, communications, legal coordination, insurance notifications, and vendor management. Everyone involved should know who has final authority during an incident.
    2. An emergency contact list that works when normal systems do not. Maintain contact information for employees, IT providers, cybersecurity vendors, insurance carriers, legal counsel, key software providers, and other critical partners. Store a copy somewhere that does not depend on your primary email system or network.
    3. A complete inventory of critical systems and data. Your team should know which servers, cloud platforms, applications, databases, endpoints, and business processes are essential to operations. Recovery priorities become much easier to determine when critical dependencies are already documented.
    4. A documented backup and restoration strategy. Backups should include critical business data and systems, and they should be protected from the same credentials and infrastructure used by production systems whenever possible. Restoration procedures should also be tested regularly rather than assumed to work.
    5. Defined recovery priorities and acceptable downtime. Determine which systems need to return first and how long the business can reasonably operate without them. This helps establish recovery time objectives and prevents less important systems from distracting the response team.
    6. Procedures for isolating compromised systems. Your cybersecurity response plan should explain how affected devices, accounts, servers, and network segments can be contained without unnecessarily taking the entire organization offline. Employees should also know when to disconnect a device and when to leave it untouched for investigation.
    7. Account and identity recovery procedures. Many modern attacks begin with stolen credentials, compromised email accounts, or abused administrator privileges. Your plan should include procedures for resetting credentials, revoking active sessions, reviewing authentication methods, disabling compromised accounts, and validating administrative access before systems are restored.
    8. A communication plan for employees, customers, vendors, and leadership. Determine who is authorized to communicate about an incident and how updates will be distributed if email, phone systems, or collaboration platforms are unavailable. Clear communication reduces confusion and helps prevent rumors or contradictory instructions.
    9. Cyber insurance, legal, and regulatory procedures. Know when your cyber insurance carrier must be contacted and what documentation they require. Businesses should also understand whether an incident could trigger contractual, regulatory, law enforcement, or customer notification requirements.
    10. A testing and review schedule. A plan that has never been tested is largely theoretical. Conduct tabletop exercises, restoration tests, contact-list reviews, and technical recovery drills so your team can identify gaps before a real cyberattack exposes them.

    Backups are a piece of the puzzle, but businesses sometimes treat backups as if they are synonymous with disaster recovery. Backups are one of the most important components of recovery, but having a backup does not automatically mean the business can recover quickly or securely. You also need to know how long restoration will take, whether the backup contains all required systems and data, whether passwords and encryption keys are available, and whether the environment you are restoring into is safe. These questions become particularly important during ransomware and account compromise incidents.

    A good disaster recovery plan answers those questions before anyone is staring at an encrypted server at 2:00 in the morning. It turns backup technology into an actual recovery capability rather than an insurance policy that may or may not work when needed. Your response plan should not count on your normal methods of communication only. Many businesses coordinate emergencies through Microsoft 365, Google Workspace, Teams, Slack, or another cloud platform. That works well until the incident involves the same identity provider, email environment, or collaboration system your team normally uses.

    Your response plan should include an alternate method for contacting leadership, employees, vendors, and your IT provider. It should also establish where critical documentation, insurance information, recovery credentials, and emergency contacts can be accessed if the primary network is unavailable. This does not mean printing every password and putting it in a desk drawer. It means intentionally designing an emergency communication and access process that does not depend entirely on the systems that might be under attack.

    It’s also important you test your plan before you need it. A cybersecurity response plan that exists only as a document is not enough. Your team needs to know whether the procedures actually work and whether the people listed in the plan understand their responsibilities. Tabletop exercises are one of the easiest ways to test preparedness without disrupting normal business operations. You can walk through a realistic scenario, such as a compromised Microsoft 365 administrator account or a ransomware event affecting a file server, and ask each participant what they would do next.

    These exercises often expose practical gaps that are easy to overlook during normal operations. Missing phone numbers, undocumented administrator accounts, unclear vendor responsibilities, outdated backup procedures, and forgotten legacy systems are much easier to correct during a planning meeting than during an active cyberattack. The objective of cybersecurity planning is not to guarantee that nothing bad will ever happen. The objective is to make sure a security incident does not automatically become a business-ending event.

    Organizations that prepare in advance can make decisions faster, isolate affected systems sooner, restore operations more confidently, and communicate more effectively with employees and customers. They are also more likely to preserve the information needed to understand what happened and prevent it from happening again.

    Valley Techlogic helps businesses evaluate their cybersecurity preparedness, backup strategy, disaster recovery capabilities, and incident response procedures. If your current cyberattack response plan is little more than “call the IT person and hope the backups work,” it is probably time to build something more resilient and Valley Techlogic can help your business in creating, and maintaining, your disaster recovery plan. Learn more today through a consultation.

    This article was powered by Valley Techlogic, leading provider of trouble free IT services for businesses in California including Merced, Fresno, Stockton & More. You can find more information at https://www.valleytechlogic.com/ or on Facebook at https://www.facebook.com/valleytechlogic/ . Follow us on X at https://x.com/valleytechlogic

  • Missing file? Don’t panic, 5 recovery tips for Windows devices

    Missing file? Don’t panic, 5 recovery tips for Windows devices

    I know this has happened to me before, I have a new Word document I’ve created sitting open (maybe I’m actively working on it) I mean to save it somewhere and I just don’t.

    Another scenario, someone requests an Excel spreadsheet I’d done some editing on and when I go to look for it, it’s nowhere to be found.

    Panic ensues, but then I remember Windows 10 (and 11) devices have a number of different ways of finding and retrieving lost documents – especially those that were created in the Office suite of software. Before trying any of these steps we suggest checking your recycle bin first just in case it was accidentally deleted.

    The easiest way (and possibly most obvious) is to just click the little magnifying glass on your taskbar and just search for what you can remember about the file name or the file contents. Windows search system is pretty powerful, and your search may end here. An extra tip for narrowing your options, up at the top of the search window you can narrow the options by type, such as Applications or Documents.

    If you tried searching for the document and came up empty, the next place you should look is the most recent files section in the document application you’re working with. In both Excel and Word you can find this section by going to the upper left hand section of the navigation panel and hitting the “File” button. From there you go to “Open”. In this section you’ll see all your most recent files.

    The recover unsaved documents button is here to save the day.

    If you strike out there don’t exit out yet, this is where tip number three comes in. At the bottom of this section, you may see a “Recover Unsaved Documents” button. Clicking that will bring up any documents that were closed without being saved and hopefully your missing document is found in this section because it starts to get a little trickier by step four and requires a bit of luck.

    If you have backups enabled on your computer you can follow these steps by first clicking the “Start” button followed by “Control Panel,” “System Maintenance” and then “Backup and Restore.” Once the backup has been restored, you can search it for your missing file.

    The final place to look is your temporary files folder, usually something like C:\Users\Owner\AppData\Local\Microsoft\Office\UnsavedFiles but individual file paths may vary.

    If you’re a Microsoft 365 OneDrive user you have a bonus recovery step available, you can try creating a file with the same name and file type as the missing document. After you’ve created the new file, select Properties, select the Previous Versions tab, and then hopefully a version appears there that you can restore.

    After trying all these steps if your wayward document is still missing, it may be time to call in the experts. Data recovery is a big part of what we do at Valley Techlogic, and to make sure our clients never have to go through the headache and stress of losing their very important documents and data backups are a core feature of all of our plans.

    Here’s an our backup program in a nutshell which we consider the gold standard for businesses:

    Click to learn more about TechVault.

    Want to learn more? Visit our calendar page to book a consultation.

    Looking for more to read? We suggest these other articles from our site.

    This article was powered by Valley Techlogic, an IT service provider in Atwater, CA. You can find more information at https://www.valleytechlogic.com/ or on Facebook at https://www.facebook.com/valleytechlogic/ . Follow us on Twitter at https://x.com/valleytechlogic.

  • How to best utilize and organize OneDrive, the free cloud storage included with your Microsoft 365 subscription

    How to best utilize and organize OneDrive, the free cloud storage included with your Microsoft 365 subscription

    We find with our clients we find they’re often unaware they have a personal cloud storage solution right at their fingers tips and included for free with their Microsoft 365 subscription, OneDrive.

    Every Microsoft 365 business subscription user will have 1 TB of storage space free with their Microsoft 365 subscription. If you have an IT provider managing your Microsoft 365 subscriptions they probably have set this up to backup certain folders by default, usually your documents, pictures and desktop folders.

    These folders will automatically be synchronized to the cloud, so it provides excellent protection if one of your company devices is lost, stolen or breaks. It’s also a good cybersecurity measure to have your company workstations backed up in someway so if there’s ever a cybersecurity attack that effects your office, not all of your files will be lost.

    On that note, Microsoft does operate on what they call a “shared responsibility” model, so if your Microsoft account is compromised as well you may still lose those files even if they were backed up (which is why we always recommend enabling 2-Factor Authentication, Microsoft makes it easy).

    If OneDrive is successfully enabled on a device you’ll see a little blue cloud icon on your task bar, that when you hover over will tell you the status of your backup (it should say your files are up to date).

    Clicking on the blue cloud will allow you a glimpse at what files have been backed up recently, as well as a quick way to access the OneDrive folder located on your computer as well as the one that’s found online.

    1 Terabyte of storage is plenty for most users, but if you’re a heavy data user or someone in charge of most of the documentation for your office you may need more. Microsoft offers OneDrive plans outside of the 1 TB you receive for free as a Microsoft 365 user, see our chart below:

    Also, if you just want to try the service out but you’re not yet a Microsoft 365 user, you can either purchase a OneDrive subscription outside of the Microsoft 365 service (though we wouldn’t necessarily recommend it, Microsoft 365 is a better value) or you can test drive the service with their completely free 5 gigabyte storage option.

    5 GB is not a lot of storage these days but if you’re wanting to see if the service would be a good fit for you, it’s plenty for a good test run.

    Once you have your OneDrive set up, you might be thinking about how you’re going to organize it. Luckily, for the folders you back up any pre-existing folder organization you have will be backed up as well. If you have a sub-folder inside your Documents folder labeled “Mikes Important Files 8/20/2019” that same sub-folder will exist in your OneDrive.

    Besides that, here are 5 fast and easy folder organization tips:

    1. Don’t let files languish in your Downloads folder. I’m guilty of this myself, you’re busy and files you receive from colleagues or make just never make it out of their origination folder. It’s a good habit as you go to organization your new OneDrive space to sort things as they come in.
    2. Organize things by project or by date. When you’re looking for work and documents around a certain task or event, sorting by the date or by project is a good system to easily find them again. I’m in favor of by project myself.
    3. Use descriptive names, there’s nothing worse than trying to find a specific receipt if all your receipts from that store have the exact same name. Rename files so they’re easy to find.
    4. While sorting things when they come in is a good idea, even the best intentions fail when we get busy. Set up a time once a week to sort anything that gets left behind.
    5. Don’t make a folder for every single thing. You don’t want the solution to become worse than the problem. Group up items where you can (this is another vote in favor of sorting by project).

    If you need help with your businesses Microsoft 365 subscription and OneDrive, or just for tackling the topic of backups once and for all – Valley Techlogic is here for you. We even have our own backup solution for servers, TechVault. Learn more with a quick consultation today.

    Looking for more to read? We suggest these other articles from our site.

    This article was powered by Valley Techlogic, an IT service provider in Atwater, CA. You can find more information at https://www.valleytechlogic.com/ or on Facebook at https://www.facebook.com/valleytechlogic/ . Follow us on Twitter at https://x.com/valleytechlogic.