Reflecting on Foxconn's Cybersecurity Incident, Considering SMEs' ISO 27001 Protection Mechanisms
Recently, Foxconn, the global manufacturing giant, had parts of its North American facilities targeted by the ransomware group "Nitrogen Ransomware".
Recently, Foxconn, the global manufacturing giant, had parts of its North American facilities targeted by the ransomware group "Nitrogen Ransomware".
Emerging risks continue to emerge around the world, gradually changing our lives. Climate change causes the earth's temperature to continue to rise, human economic activities cause climate changes, and the impact of the epidemic causes a reshuffle of global supply chain strategies. What changes will occur in the future is unknown.
▍Do small and medium-sized enterprises also need ESG? Read More »
Recently, we witnessed the first case in China of hackers hijacking the Jingding website and making public threats. This not only attracted widespread attention but also reminded us of the critical importance of cybersecurity in the digital age.
I was once particularly impressed when I was auditing the risk analysis of an automobile parts processing factory. The risk analysis of this manufacturer listed nearly 100 risks, ranging from the impact of the epidemic on performance to poor employee morale affecting work performance. The results of the brainstorming discussions in each department surprised me at the beginning. The level of risk control was really impressive. However, the interesting thing is that after these risks were listed, there was not a single contingency measure to propose risk reduction plans for these 100 risks.
Debate is to shut the other party up, while negotiation is to win the other party's heart. I think we all need to learn a little negotiation so that we can communicate in the same language.
When I was a supervisor, I met a young man who had just graduated. He typed the content of the email in the subject line without writing “to whom”. After all, it was you who received the email.
What he disagrees with most is the responsibility system. He likes his boss to discuss the task clearly at the outset.
He also disagrees that company missions must take priority, even if it conflicts with his personal life.
Later, after working for a year, he told the HR department without even turning back that he wanted to travel around the island to work and exchange accommodation to experience life, leaving the online supervisor, who he had worked so hard to train, stunned. Then, he still informed the HR department of his resignation via Line.
After I started doing certification coaching, most of the supervisors I met told me the following: Young people today are really mama's boys. Young people are unwilling to work in traditional industries. There is a shortage of workers and people now. Where can they fill the gap?
Young people of Generation Z, how much do you know about Generation X and Y? Read More »
Because of ISO27001, I came into contact with a lot of IT (Information Technology)/IS (Information Security). One of my clients was a basic lecturer in this field. I also took a basic course with him so that I could have a deeper understanding of the client's needs. But I am not going to talk about my business relationship with him. What I am talking about is that at the beginning, during the self-introductions in his class, I magically discovered that none of the students were from computer-related majors. Some were breakfast shop owners, some were lawyers, some were doctors, some were accountants, and some were even police officers.
Disruptive innovation to improve competitiveness Read More »
Let me first explain the interest rate hike. The interest rate hike is a means for the central bank to tighten its monetary policy. When the central bank decides to raise interest rates, downstream banks will also raise interest rates, and the interest rates on people's deposits in banks will increase, but conversely, the interest rates on people's loans will also increase.
Risks and opportunities of rising interest rates Read More »
System architecture allows ISO27001 to solve potential risk issues. When counseling ISO27001, consultants will specifically incorporate "risk assessment", "risk factors", "impact analysis" and "sustainable operation" into the company's "information security management policy". A website crash is like a small screw loosening. The system architecture behind it, the entire risk assessment, continuous drills, and even employees' self-security awareness are all potential problems.
System architecture of information security issues-ISO27001 Read More »
I was chatting with an old director yesterday. He didn’t have the condescending airs of a chairman, but rather seemed like an amiable elder. In the 10th year since he started his business, his capital increased from 700,000 to 700 million. At that time, his 10 glorious construction projects had just begun. Now, he has become the world’s number one leader.
Everything starts from the basics Read More »