Why this matters
Most small businesses will face some kind of cyber incident, from a compromised mailbox to ransomware. Preparation decides whether it is a bad day or a disaster. These steps build readiness before you need it.
What you'll need
- Your IT asset register
- Your backup details
- Key contacts
Step-by-step instructions
Step 1
Write a simple incident response plan
Document who leads, who to call and the first actions to take. Keep a printed copy.
Step 2
Check your cyber insurance
Confirm whether you have cover, what it requires (such as MFA and backups) and the insurer’s incident hotline.
Step 3
Make sure logging is turned on
Audit logs in Microsoft 365 and other systems are essential for working out what happened.
Step 4
Confirm backups can be restored
Test a restore of critical data and keep an offline copy.
Step 5
Keep emergency access
Ensure at least two people can access admin accounts, the domain registrar and key systems, with credentials stored securely.
Step 6
Run a short tabletop exercise
Spend 30 minutes walking through a scenario such as "a client says they paid a fake invoice from our email". Note the gaps you find.
Summary
A plan, working backups, logging and a quick practice run put your business in a strong position to respond to any incident.
Still Need Help?
Some IT problems are easier to solve with a professional. If you've followed the guide and still need help, the Omnicron team can assist.