Security Tips
Learn essential security tips to protect your business from evolving cyber threats and vulnerabilities

Essential security tips to protect your business from cyber threats
Protecting your business from cyber threats starts with knowledge. Explore NERO Consulting’s expert security tips to safeguard your data, networks, and operations from the latest vulnerabilities. Stay one step ahead with practical advice you can implement today.
Email Security Tips Use your email safely by keeping in mind the following
Learn to spot fake emails and fake websites
They set them up to con people into giving away passwords and bank details. The technical word for this is ‘phishing’.
For example, they might send you an email that looks like it comes from us and it might contain a link to a website that looks like this one. When you try to log on, they can steal your password. They could also ask you to make a phone call or reply by email.
They are good at making their emails and websites look realistic. But you can often spot the fake ones:
- Dodgy looking email or web addresses
- Poor design, typos or bad spelling
- They ask you to do something unusual
- A site doesn’t display the padlock symbol in the address bar when you log in
Minimise the use of attachments
Question unsolicited documents
Never respond to spam email
Never respond to the spam email’s instructions to reply with the word “remove”
Never sign up with sites that promise to remove your name from spam lists
Question executable programs received via email
Disable macros on your machine
Make sure that file extensions are viewable
Notify the person you received an infected file from
Monitor your transactions
Don’t reply to any e-mail that requests your personal information.
Keep your virus protection up-to-date
ATM Security Tips Here are some of the ways by which you can protect yourself every time you use your ATM
- Never disclose your Personal Identification Number (PIN) to anyone.
- Never write your PIN or Password on your ATM card or Credit card. Memorize your PIN or Password.
- Never use an ATM with a blank screen.
- Do not force your card into the card slot.
- Stand close to the ATM and use your body and hand as a shield to make sure nobody sees you keying in your PIN.
- Keep your hand over the card slot to make sure nobody can swap or take your card.
- Follow the instructions on the ATM screen carefully.
- Do not insert your card until asked to do so by the display screen.
- Only put in your PIN when the ATM tells you to do so.
- Avoid drawing cash late at night or when you are alone.
- Leave the ATM immediately if you don't feel safe or you are suspicious of individuals loitering around. Come back later or use another ATM.
- Never hurry when using an ATM. Make sure you are not distracted, intimidated or rushed into your transaction.
- Never accept help from strangers when using an ATM. Always be wary of strangers asking for help. While one distracts you the other steals your card and money.
- Do not count your cash in front of the ATM.
- Avoid using ATMs in secluded areas after dark.
- If the ATM retains your card, cancel it immediately.
- Never allow a bystander to call the toll-free number on your behalf - they could be tricking you into thinking your card has been stopped.
- Always check that it is your card you get back from the ATM.
- Be aware of the daily withdrawal limits on each of your cards and decrease them if necessary.
- When using your cards at ATM's be alert that there are no additional devices affixed on the card reader slot or keypad, and also ensure that no one can see you punch the PIN number on the ATM keypad.
- Report lost or stolen cheques, ATM cards, or Credit Cards as soon as you discover they are missing.
Online Banking Security Protect your information every time you use
Protect your Password and Personal Information:
- Do not use passwords that are easy to guess, e.g. your name, your date of birth, your telephone number(s), etc.
- Use a combination of upper and lower case letters as well as numbers.
- Do not use share your password with anyone and do not use the same password for other websites.
- Change your password frequently and never write it down.
- Avoid logging into Internet Banking from Internet Cafes, Libraries or public sites.
- Always close the window once you have logged out of your Internet Banking session.
Protect your Computer and Internet session:
- Never share your computer.
- Use a password on your PC to prevent unauthorized access to your information.
- Be wary of opening email messages from untrustworthy sources, especially if they contain attachments.
- Do not reply to emails that request your personal information. They may appear to come from a trusted friend or business, but they are designed to trick you in disclosing sensitive personal information.
- Use personal firewalls and anti-virus software.
- Avoid downloading software such as screen savers, desktop themes, games, and other executable type programs from websites that are obscure or unidentifiable. These programs may contain Trojan viruses that would enable hackers to monitor or take over your PC.
- Disable all unnecessary services running on your computer.
- Always verify that the site is the genuine site.
- Do not leave your internet banking session unattended at any time.
- Before you start your internet banking session, ensure that all other internet sessions are closed. If your internet banking session is open we recommend that you do not open other internet browsers at the same time.
Reporting Fraud Follow the below guidelines if you faced fraud
- Access to your accounts can be protected
- Stop payments placed on missing cheques
- Personal Identification Numbers (PINs) and Online Banking Passwords changed
- Be sure to indicate to the bank or issuer all the cards and/or accounts potentially impacted, including your ATM cards and credit cards.
- Review all recent transactions on your accounts linked to those cards. Additionally, ensure that no one has requested an address change, title change, PIN change, or ordered new cards or checks to be sent to another address when appropriate.
Maintain a written chronology of what happened, what was lost, and the steps you took to report the incident to the various sources. Be sure to record the date, time, contact telephone number, person you talked to, and any relevant report or reference number and instructions.
For further information or queries, please call 600 54 0000
Sim Swap Protect yourself from online & mobile banking SIM Swap fraud
What is SIM SWAP? How does 'SIM Swap' fraud happen?
- SIM SWAP is where a fraudster compromises telecom operator processes and gets the SIM Card of your registered mobile number without your knowledge and authorization. In these cases, fraudsters use fake documents to get the SIM CARD and use it in their mobile handsets. This enables them to access SMS Authorization codes sent by banks for financial transactions.
- As a result, all calls and text messages will be directed to the fraudster’s phone, including one-time passwords for banking transactions. After receiving a one-time password SMS, the fraudster tries to access your digital banking credentials and conduct financial transactions.
How to detect a potential threat and protect yourself?
- To avoid any SIM Swap fraud activity, we highly encourage you to use Smart Pass feature available through our online and mobile banking platforms. By using Smart Pass you can authorize your online/mobile banking transactions independently from your local or international telecom operator. Click here to know more about Smart Pass.
- If you stop receiving calls or texts and you don't know why, check with your mobile operator immediately.
- Don’t share your online/ mobile banking passwords or any other personal credentials with anyone.
- Do not install applications from unknown sources to your mobile devices or your computer. Please make sure that you are using a trusted anti-virus software to protect your devices from potential viruses and malwares.
- We send all transaction details to you through SMS or email. Please keep a close eye on your financial transactions.
- Refrain from publishing your personal details such as your phone number, date of birth or details that you have provided to financial institutions for verification purpose on any of the social media platforms.
- Try to use a different e-mail address for your financial transactions and your social media accounts.
Update your browser Modern browser software adds protection against fake websites.
The program you use to look at websites is called a web browser. Modern browsers warn you if you visit fake websites and it is harder for viruses to infect them.
If you have updated your computer regularly, it is likely that you are already running either the latest version of Microsoft Internet Explorer / Google Chrome / Mozilla Firefox (on Windows PCs) or Safari (on Macs). It is a good idea that you install an up-to-date web browser. There are several to choose from and they are all free.
Keep your software up-to-date It’s harder for viruses to infect updated software.
- The criminals who create viruses take advantage of software bugs to infect computers.
- Software companies fix bugs with free downloadable updates.
- It is a good idea that you install updates for your software as soon as they become available.
- Be wary of fake emails about bogus updates. Use the update software that comes with your computer - don't click on links in emails. As well as your computer software, other programs need updating. This includes your web browser and the applications you use. Most modern software will check for updates automatically. You may want to install them as they become available.
Don’t share private information online Double-check privacy settings on social networking sites.
What’s your mother’s maiden name? What’s the name of the first school you went to? What was your favorite subject at school? What’s your address? Birthday? Phone number?
All this information is useful to people who want to steal your identity or break into your online banking. You wouldn’t give this information away to a stranger on the street but if you use social networking sites, such as Facebook, Twitter or MySpace, you could be over-sharing personal data.
You may want to think carefully about the information you put into your profiles on sites like these. It is also a good idea that you check the privacy settings on each site that you use to make sure you only share personal information with people you trust.
Please also remember that you must take all reasonable precautions to keep your details safe and prevent any unauthorized use of any cards and security details. If any information forms part of your security details, you should make sure that you do not disclose it to anyone else – see terms and conditions that apply to your account(s) for more detail.
Look after your paper statements Fraudsters use personal information from different sources to steal people’s identities.
Viruses are one way to do it. But they also use paper documents of your accounts containing personal details, such as receipts and bank statements.
Fraudsters use many methods such as searching in dustbins to obtain these documents. You should take simple precautions to keep your details safe and to dispose of these documents safely, such as shredding them before you bin them.
Understand how criminals use the internet Criminals are in it for the money
- Steal your passwords and bank details with viruses, fake emails and fake websites
- Ask you to provide security details
- Send spam with bogus offers and products
- Take over your computer and use it to attack other people's computers
- Use viruses to display unwanted adverts on your PC
Avoid online fraud and con tricks If it’s too good to be true, it probably is
When it comes to protecting yourself and your money on the internet be wary of ridiculous deals.
Criminals may contact you by email, through websites you use, via SMS or even by phone. It pays to be on your guard as they can be quite convincing.
Here are some warning signs:
- Big promises: 'You have won the lottery'
- Big threats: 'Your account has been hacked'
- A false sense of urgency: 'Act now or it'll be too late'
- Unnecessary secrecy: 'Don't tell anyone'
- There is no reason for them to contact you. Did you even buy a lottery ticket?
- 'Business opportunities' that involve holding or receiving money for strangers
If an attachment looks suspicious, don’t open it. Don’t install software unless it comes from a website you trust. If it doesn’t feel right, take your time.
If you suspect that there is a problem with your online banking, you can always talk to us first.
Protect your mobile phone Your mobile phone may contain personal information.
You may even use it for internet banking and online shopping.
For example, they might send you an email that looks like it comes from us and it might contain a link to a website that looks like this one. When you try to log on, they can steal your password. They could also ask you to make a phone call or reply by email.
You may want to think about:
- Setting and using a security PIN code
- Adjusting the phone settings so that it locks automatically if you don't use it for five or ten minutes
- Not storing passwords or other sensitive information on your phone in a way that can be understood by someone else
- Not storing your home phone number and address under ‘home’ in the contact list (you wouldn't want a thief to be able to know your address and be able to check if you're home)
- Be wary of voicemail and text message scams
- Clicking on links in text messages can be risky - be careful