LOUISIANA CYBER INCIDENT WATCHIndependent. Sourced. Local.
BAYOUBREACH
Menu
FROM AWARENESS TO ACTION

How ready is
your agency?

You do not need to be a CISO to ask the right questions. Check eight essential practices, then leave with a short action plan for your IT team, service owners or managed provider.

No account or upload needed. Your answers stay in this page and clear on reload.

0 of 8 answered
01Do you know what your critical services depend on?

Think dispatch, records, payments or patient care, plus the systems, providers and people behind them.

02Is strong multifactor authentication required for remote and administrator access?

Check employee, administrator and vendor accounts. Prefer phishing-resistant methods such as security keys.

03Is someone responsible for urgent security updates on internet-facing systems?

Include firewalls, remote-access systems and vendor-managed services.

04Have you successfully restored a critical system from a protected backup?

A successful backup job is not a restore test. Check that an attacker using normal administrator credentials cannot alter every backup.

05Does a named person or provider investigate security alerts after hours?

Ask who receives the alert, how quickly they respond and who can authorize containment.

06Have you practiced the first hour of a cyber incident?

Include leadership, IT, communications and key providers. Keep contact details available if email fails.

07Can staff use a tested fallback for an essential service?

Think paper workflows, alternate communications and the safe return to normal operations.

08Are responsibilities clear between your agency and its technology providers?

Check who handles security updates, access removal, incident notification and restoration.

Answer 8 more questions. “Not sure” is a useful answer.