What is a digital shadow?

We all cast a digital shadow on the Internet. This is the ever-expanding trail of publicly available data and information that we leave behind as we conduct our day-to-day lives.

This shadow may unintentionally expose a person's movements, friends and interests or an organisation's key employees, software versions, network and security settings.

The current epidemic of cyber attacks has seen a long list of victims including Google, Sony and the IMF, each of whom suffered targeted attacks that harnessed this information. Such attacks bypass all traditional defences and can involve data theft, extortion or even physical harm.

72%

The percentage of employees exposing valuable data via social media.

90%

The percentage of a hacker's time spent on hostile reconnaissance.

200%

The increase in personalised targeted cyber attacks this year.

* Source: Results from our own research

* Source: Certified Ethical Hacker Program

* Source: Cisco June 2011

Are you at risk?

Organisations and individuals are sharing more information online than ever before.

Sharing the right information is a powerful enabler, but sharing the wrong information can lead to a successful compromise of your network and in some cases your reputation.

How can we protect you?

Digital Shadows Spotlight™ is a unique technology platform which continuously scours the internet for any trace of information that could give an attacker a foothold in your organisation.

We assess, monitor and mitigate against the risks posed using our unique three step process.

Digital Shadows Sportlight TM Assess - Monitor - Mitigate

We identify critical information assets, threat actors and vulnerabilities and create a tailored risk profile that allows us to tune the service to your needs.

We continuously monitor your digital shadow, identifying personal, technical and organisational vulnerabilities. We deliver monthly reports that set out the current risks and suggested mitigations. We carry out real life tests to assess your resilience to attack.

We work with our clients to help put in place practical measures, enabling clients to reap the benefits of the Internet whilst managing the risks. Our mitigations include policy, training, technical countermeasures and consultancy advice.

The typical engagement process:

We provide an ongoing service to our clients based on an initial risk assessment, and a programme of targeted mitigations. This helps our clients to measure the effectiveness of the controls put in place and understand new threats as they emerge.

Magnify
Example engagement timeline