TubbTalk 134: The Best Cybersecurity Resources for MSPs You Need to be Aware of

TubbTalk 134: The Best Cybersecurity Resources for MSPs You Need to be Aware of

TubbTalk 134: The Best Cybersecurity Resources for MSPs You Need to be Aware of image

In this interview, Richard speaks to Mostyn Thomas, the Senior Director of Security at Pax8 and an expert in cybersecurity. He’s Cybersecurityresponsible for overseeing the company’s channel security operations, empowering Pax8 partners to reduce risk, improve efficiency, and ultimately grow their business.

Mostyn has more than 20 years of experience working with managed service providers, including founding Astrix Integrated Systems in 2001. He’s a Cyber Essentials trainer and holds a range of security qualifications.

An Interview With Mostyn Thomas

How MSPs can Support Clients with Small Cybersecurity Budgets

Mostyn admits that budgets are a challenge for many small businesses, especially when it comes to IT. “But cybersecurity is important. So I think MSPs need to be mindful of what it is they’re trying to protect, which is data.

“If you have a client with a limited budget, prioritise what matters most to them. They can’t have everything, so help them to choose what they need. Don’t just follow the tech, follow the data. Ask what their priority is, and look for cost-effective ways to protect it. And then you can build from there.”

The One Cybersecurity Tool Every SMB Should Have

Every business is different, but almost all will have an email tool of some sort. So that’s the first thing MSPs should help their clients protect. Mostyn adds: “And we all know that it’s the number one attack vector. It makes sense to protect that. So ensure that they have a good password policy and 2FA – both of those are free.

“Make it clear to your MSP clients that they can ramp up their security free of charge, or with low-price solutions. Encryption can be done cheaply or for free, and anti-malware and firewall are also reasonable. For very little investment, the payoff is huge.”

Resources to Stay up to Date with Cybersecurity Trends

As a distributor, Pax8 commit a lot of time and effort into providing their MSPs partners with free resources on cybersecurity. Plus, their in-house team can answer tool-specific questions, such as how to strengthen Microsoft Office.

Mostyn also delivered a cybersecurity masterclass, which has been very popular. “I’d  also recommend looking out for podcasts and other online resources. Lots of vendors offer resources and training programmes tailored to their solutions. And peer groups can also help. Threat intelligence needs to be top of your list.”

How can today's #MSPs stay up-to-date with #cybersecurity resources? Mostyn Thomas of @Pax8 explains all to Richard Tubb. Click to Tweet

Cybersecurity Threats SMBs Should be Aware of

Unfortunately, SMBs are at risk of a whole range of cybersecurity threats these days. However, the good news is that there are also lots of techniques to defend against them. Mostyn says that the first one to know about is phishing emails.

“These are sent in cast quantities, and while the majority get caught, you only need one to get through to cause damage. Alongside that is business email compromise, which is slightly different. People can lose a lot of money through those.

“These are highly targeted and well-researched, and it’s usually a member of staff who’s taken in. And finally, ransomware is a big problem. This is also often delivered via a phishing email, and it’s an extortion exercise. It can really damage your reputation, so be aware of that.”

The Number One Mistake MSPs Make

MSPs sometimes forget that they’re also small businesses, and equally vulnerable to phishing and ransomware attacks. However, Mostyn says the biggest mistake he sees managed services owners make is a failure to clearly communicate with clients on how they help.

“Your clients don’t always know what they need, but they may ask you about a specific service they’re looking for,” says Mostyn. “If they say, ‘Do you offer cybersecurity separately?’ and you say no, there’s a risk that they assume it’s already included in their services.”

This could end badly if they fall foul of a ransomware attack that they’re not protected against. Mostyn’s advice: “Tell them clearly what you offer, and more importantly, what you don’t.

“As an MSP owner, you also have to be a salesperson. So make it clear that you can offer it as an additional service, or point to someone else who can. The potential damage to both their business and your reputation could be colossal. And make sure they know your SLAs, too, in case something does go wrong.”

How to Have a Security-First Mindset

When you’re dealing with so many vendors, clients, providers and software, MSPs can’t always dictate what happens. But you still need to be flexible, so you need to have the right mindset to stay constant.

“Don’t say ‘No, we can’t do it that way’, because then people ignore it. But we have to have a risk-based approach to governance and compliance, because your clients need it.

“Make sure you’re constantly assessing the risks and how to resolve it. This is a good analogy I use to help MSPs think security first: Imagine you had to break into your own system. How would you do it?

“How would you break into your own home? Where are the weaknesses with your burglar alarm system, your door locks? Now realise that your burglar is thinking the same way. And likewise, a hacker is thinking like that about your networks. Now you’re in the right mindset to implement protection.”

How to Connect With Mostyn Thomas

How to Connect With Me

Mentioned in This Episode

You Might Also be Interested in

RICHARD TUBB

Richard Tubb is one of the best-known experts within the global IT Managed Service Provider (MSP) community. He launched and sold his own MSP business before creating a leading MSP media and consultancy practice. Richard helps IT business owner’s take back control by freeing up their time and building a business that can run without them. He’s the author of the book “The IT Business Owner’s Survival Guide” and writer of the award-winning blog www.tubblog.co.uk

All Posts

You might like:

TubbTalk 170: How to Master Email and File Migrations for MSPs image

TubbTalk 170: How to Master Email and File Migrations for MSPs

Podcasts | By Richard Tubb
TubbTalk 169: Professional Musician to MSP Guru: the Amazing Luis Giraldo image

TubbTalk 169: Professional Musician to MSP Guru: the Amazing Luis Giraldo

Podcasts | By Richard Tubb
TubbTalk 168: Best-Kept Secret to Global Leader: The Remarkable Evolution of CompTIA image

TubbTalk 168: Best-Kept Secret to Global Leader: The Remarkable Evolution of CompTIA

Podcasts | By Richard Tubb
Bonusode: Live From Pax8 Beyond EMEA: Rob Rae on Amazing Events image

Bonusode: Live From Pax8 Beyond EMEA: Rob Rae on Amazing Events

Podcasts | By Richard Tubb
Travelogue: Pax8 Beyond EMEA 24 image

Travelogue: Pax8 Beyond EMEA 24

Events | By Richard Tubb
Bonusode: Live From Pax8 Beyond EMEA With Phylip Morgan: What’s New? image

Bonusode: Live From Pax8 Beyond EMEA With Phylip Morgan: What’s New?

Podcasts | By Richard Tubb
TubbTalk 167: Building a Culture of Success: Secrets from the UK’s Top ISP image

TubbTalk 167: Building a Culture of Success: Secrets from the UK’s Top ISP

Podcasts | By Richard Tubb
TubbTalk 166: Need More Free Time? Call Answering Services are a Game-Changer for MSPs image

TubbTalk 166: Need More Free Time? Call Answering Services are a Game-Changer for MSPs

Podcasts | By Richard Tubb
TubbTalk 165: The 20-Year Overnight MSP Success Story You Need to Hear image

TubbTalk 165: The 20-Year Overnight MSP Success Story You Need to Hear

Podcasts | By Richard Tubb
TubbTalk 164: Top Lessons from 25 Years Building a Successful MSP image

TubbTalk 164: Top Lessons from 25 Years Building a Successful MSP

Podcasts | By Richard Tubb
Travelogue: UptimeLIVE 2024: Business Growth for MSPs image

Travelogue: UptimeLIVE 2024: Business Growth for MSPs

Podcasts | By Richard Tubb
TubbTalk 163: Why Modern MSPs Need to be at UptimeLIVE image

TubbTalk 163: Why Modern MSPs Need to be at UptimeLIVE

Podcasts | By Richard Tubb

Comments

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore.

Share via
Send this to a friend