Cybersecurity Tips For SMEs: Protecting Your Business In The Digital Age

Hello again, one and all; how are you doing?


Well, it's been an eventful few weeks since the last newsletter. We've had to put the

disappointment of the Euros final behind us, and we've now said goodbye to Gareth

Southgate, who, for my money, did a sterling job despite the lack of silverware.

As I write, we are in the throes of the Paris Olympics, which are going to plan as far as I

can tell. What did you think of the rain-sodden and frankly bizarre opening ceremony,

by the way?


But I want to talk about the Crowdstrike cyber meltdown, which caused chaos for

millions of Microsoft users in mid-July. This incident is a stark reminder of the potential

risks in the digital age. It's a wake-up call for all businesses, large or small, to prioritise

cybersecurity. If any Enso clients were affected and need to understand the financial

impacts, get in touch.


Worse, though, this event gave Mac users like me even more reason to feel smug

about our choice of IT kit! No doubt this vanity will end in humiliating hubris. It's only a

matter of time before some AI-enabled bad actor discovers how to penetrate our shiny,

overpriced laptops and wipe the self-satisfied smile from our entitled faces.


While there was little MS users could have done to avoid the Crowdstrike mega-glitch,

SMEs are being targeted by cybercriminals every day. That's why savvy business

owners will implement robust security measures to protect their firms and clients. So

here are some simple but practical cybersecurity tips to do just that.

It's Everyone's Job


Every member of your team should be cyber-savvy. This means Regular training

sessions to help your employees understand cyber threats and how to counter them.

Teach them to recognise phishing emails, avoid suspicious links, and practice safe

online behaviour. A culture of cybersecurity awareness ensures everyone understands

their role in protecting company data.


$tr0n9 P@55w%rD$


If you're still using "password123," go and stand in the corner. Implementing strong

password policies is a classic 'no-brainer'. Everyone must use complex passwords and

update them regularly. If you can incorporate multi-factor authentication (MFA) for an

added layer of security, then go ahead. Of course, password sharing is a no-no, and

no-blame reporting of compromised passwords should be encouraged. Check here for

tips on creating a strong password.


Update & Stay Ahead of the Curve


Cyber threats evolve rapidly. Bad Actors constantly find new ways to breach defences.

It's a pity they don't use these skills to do nice things, isn't it? Stay ahead by keeping

your software up to date. Ensure that all operating systems, applications, and antivirus

programs are regularly updated with the latest security patches. Enable automatic

updates where possible so you never miss a critical patch. Of course, this won't have

prevented the Crowdstrike incident, but this tip remains sound advice overall.


Backup Data Regularly


Data loss can be catastrophic, but regular backups can save the day, especially against

ransomware attacks. Back up your critical business data frequently and store it securely,

whether offsite or in the cloud. And remember to test your backup plan to ensure your

network can be restored without a hitch should the worst happen.


Secure Networks


There are a few businesses where IT isn't the backbone of their operations, so

protecting your network is paramount. As you'll know, all my clients rely on tech to run

their firm's finances efficiently. Install firewalls to prevent unauthorised access and

implement intrusion detection and prevention systems (IDPS) to monitor for suspicious

activity. This is your first line of defence against cyber threats, so make sure it's tip-top.


Lock Down Wi-Fi Access


If not appropriately secured, Wi-Fi networks can be an open door for cybercriminals.

Use strong encryption (like WPA3) and hide your network SSID to make it less visible to

outsiders. Ensure only authorised devices can connect using strong passwords and

well-conceived access controls.


Access Privileges & Control


Only some people in your organisation need access to all data. Restricting data access

on a need-to-know basis helps plug potential problems. This is known as the principle

of least privilege (PoLP). Implementing role-based access control (RBAC) in your tech

can help manage permissions effectively and reduce the risk of insider threats.


Keep Malware Out


Malware can wreak havoc on your systems, so robust antivirus and anti-malware

software can keep threats at bay. Ensure your team understand the dangers of

downloading software from untrusted sources and run regular scans on your network

for these unpleasant gremlins.


Protect Data On The Go


Mobile devices are everywhere, and no more so than in the workplace. Mobile tech

that accesses your network must be protected using strong passwords or biometric

authentication. Do you know how to remotely wipe mobile capabilities to erase data if

a device is lost or stolen? Accidents happen, so know how to prevent your valuable

data from falling into the wrong hands.


Best Laid Recovery Plans


Even if you're conscientious about data management, breaches can still happen. An

incident response plan ensures you can act swiftly and effectively. Document clear

steps to take in the event of a security incident and include contact information for key

personnel and external partners, such as network providers, your legal team, and cyber

support contracts.


Continuous Improvement


Tech is constantly changing, and cyber-baddies are continually devising new and

nefarious ways to ruin your day. That's why Regular security audits can identify new

vulnerabilities and ensure compliance with security policies (and the law). Inviting

external cybersecurity experts to perform an objective review will provide valuable

insights on improving cyber defences. That's money well spent, in my view.

Encrypt Your Information Today!


Encryption is a powerful tool for protecting sensitive data in transit and at rest. Ensure

that encryption keys are managed securely and that your licences are always current.

Again, a bit of training will ensure that your team understands the importance of

ALWAYS using encryption to safeguard information.


Trust Cloud Services (But Verify)


At Enso, we rely on cloud services to offer our clients convenience and scalability, but

we only use selected suppliers. Why? Because security varies by provider. I only

recommend cloud services with iron-clad security practices and verifiable compliance

certifications. In the same spirit, you should familiarise yourself with the security

settings of the cloud platforms you rely on and configure them to protect your data.


Check, Little & Often


Implementing logging and monitoring allows you to monitor user activities and detect

unusual behaviour. Review your logs regularly to spot potential security incidents early

and take prompt action. Do some research in your crucial systems to find out where

this useful BI can be accessed and used.


Best Efforts Will Make A Difference


All the above are just the tip of the iceberg for protecting your firm. Some of these

simple steps may take more work for micro businesses. However, awareness is a good

starting point, reviewing where you stand today and doing all you can to keep yourself

and your clients safe. Remember, it can be expensive to fail in these areas, as keeping

customer data secure is legally required.


Use quieter summer months (if such a thing exists!) to look at your tech set-up and

policies. You'll sleep better knowing you're in good cyber shape (or will be).


Ten Seconds To Glory


Your Cyber audit might take you a few hours, which is considerably longer than it’ll take

the Men’s sprint finalists to cover 100m on Sunday. And I’m happy to report I’ll be

there to see it!


I’ll spend the weekend in Paris soaking up the atmosphere and looking to see as many

events as possible in and around the city, especially the packed athletics schedule in

the State De France.


I’m hoping to see the remarkable balloon Olympic Flame in the Tuileries Garden plus

as many of the sights and sounds of Paris. It’ll be a fast and furious visit to the cité

d'amour but with more unforgettable sporting memories to look back on.


OK, that's it for this month. Enjoy the Olympics, and with luck, Team GB will return with

a healthy haul of medals to make us all proud.


All the best


Adam

A group of women are sitting at a long wooden table with laptops.
By Adam Nurbhai July 2, 2025
Discover 5 key benefits of co-working spaces for Manchester start-ups - from cost savings to community - and how Enso Accounting helps founders thrive.
March 10, 2025
Hi Everyone. Welcome to November 2024, which we enter on the back of the first Labour Budget in over 14 years. That’s why this newsletter is slightly behind the curve: I wanted to consider what impacts this fiscal event brings and how it might affect my clients. What a statement it was taking over an hour to present. It was long, detailed, radical, risky, and much-briefed to avoid the market-melting impacts of the Truss/Kwarteng budget. This meant macro impacts were marginal, with a few basis points on Gilts and temporary dips in the FTSE and the value of Sterling on international markets. Overall, it’s not too bad; we’ve seen much worse, but we must monitor these measures going forward. As the dust settled, we saw historic highs in taxation and higher borrowing levels via a fiscal rule change. But it was very much a statement of intent signalling the new government’s determination to stabilise and expand our indebted and tired economy after 14 years of Tory rule. Equally historic, it was the first Budget delivered by Rachel Reeves, the UK’s first female Chancellor. Underpinning it all was Labour’s vision for growth based on equality of opportunity, devolved power distribution, innovation, and green energy. As optimistic as the Budget seems in intent, like so much in life, it comes at a cost, and SMEs are now central to how the Chancellor will fund Labour’s economic mission. So here’s my summary and thoughts on the host of changes Reeves announced and what these might mean for you. Hold on to your hats!
March 10, 2025
How to Save Tax on Private School Fees Using a Family Trust – Especially as VAT on Fees Rises Private school fees in the UK are already a significant financial commitment, and with the planned introduction of VAT on private school fees, the cost is set to rise even further. However, with careful tax planning, families can reduce this burden and save up to £5,000 per child per year using a family trust. VAT on Private School Fees – What’s Changing? The UK government has announced plans to remove the VAT exemption on private school fees, meaning that fees could increase by 20%. For many families, this could add thousands of pounds per year to their education costs. For example: • A school charging £15,000 per year will see fees rise to £18,000 with VAT added. • A school charging £25,000 per year will rise to £30,000 under the new VAT regime. This increase makes tax-efficient planning even more critical for parents looking to mitigate costs.
March 10, 2025
Hi everyone. I hope this newsletter finds you in the finest of form. It’s February 2025, and the festive season is a distant memory. The new year is in full swing, and what a year it’s already been. “May you live in interesting times” is an English idiom often said to be a translation of an old Chinese curse. The irony lies in the notion of “interesting,” as it usually alludes to times typically marked by difficulty and turmoil. And ‘interesting times’ is possibly an understatement regarding the new incumbent of the White House. Whatever your thoughts on the greatness of this development or otherwise, let’s agree that the ‘interesting times’ arrived very quickly and will continue for quite some time. Well, at least four years, but the repercussions could be around for much longer. It’s early days, but we must consider what some of DT’s directives might mean for investors and UK SMEs. The US may be far from us, but its reach and, by extension, DT’s influence is practically unlimited. So, having a working knowledge of the issues is better than being blown around haplessly by the winds of fate. So, baton down the hatches, everyone; we’re in for a wild ride.
March 10, 2025
Happy New Year everyone. I hope your festivities passed as you hoped. Whether it was to either rest and recharge or become a social butterfly attending many parties and gatherings. However, it panned out for you; I hope you had a ‘good-un’! And now as 2025 dawns, it’s time to shake off the yuletide detritus, pack away the decorations and sell your unwanted presents on eBay! You might feel a little sad. It’s all over, you sigh. Don’t worry; that’s normal, but it’s time to trim our sails for the coming year and dive headlong into the promise of what’s to come. Many will commit to positively changing their lives at the start of the year. These so-called resolutions often founder within a few days. But don’t worry, that’s normal, too. You’re not alone in seeing these aspirations turn to dust as they rub against ‘real life’. But for those who follow through and keep to your commitments, I salute you. But maybe you could do the same exercise for your business. Every new year is brimming with opportunities for business growth, refreshed strategies, and new ideas, and always looking for opportunities to have a laugh along the way. As we know, the Trump administration is taking the reins in the US, which means the stage is set for an exciting ride for all of us. There’ll be opportunities and challenges galore. So, how can we get our business match fit for what’s to come? Here are some industry-tested pointers to help you take on the New Year and emerge as a winner. Let’s get into it!
A pile of christmas presents wrapped in red paper with bows.
By Adam Nurbhai December 16, 2024
Hi Everyone, Welcome to my final newsletter of 2024—and what a year it’s been! Reflecting on the past 12 months, it’s clear that 2024 has been a highly consequential year, even in an age when we’ve had quite a few once-in-a-generation events. It’s been a whirlwind for me, from attending thrilling sporting events like the Olympics to commenting on major financial shakeups and adding new services to the Enso brand . We saw the internet go down and an unexpected Oasis reunion (not to mention their remarkable ability to part me from my money). On the same note, we’ve had a change of government with all the financial ramifications of that democratic choice already playing out. On the business front, my predictions about AI transforming every aspect of our lives were spot on. This technology now influences how we engage with commerce, government, and entertainment. However, I see this technology making the management of your business finances increasingly insightful and responsive, which is precisely why I started Enso in 2018. Of course, we have the upcoming inauguration of an orange-tinged POTUS on January 20, 2025, which promises to bring even more twists to an already unpredictable landscape. But before we face 2025, let’s focus on the festive season. The holidays are an insane period for many of my client’s businesses. So, to help out and as a follow-up to the success of my TikTok gift list for 2023 , here are my prime picks for this Christmas. It might save you some time and effort, especially if you find gift buying a chore. You’re welcome!
Manchester Skyline
By Adam Nurbhai September 1, 2024
Oasis reunite for 2025 mega-gigs in Manchester, boosting the city’s culture, economy, and global status as a thriving hub for business and innovation
red london telephone booth with the london eye
By Adam Nurbhai July 10, 2024
Hi, everyone. My apologies for the late arrival of this newsletter. There's been a lot going on, and I decided to wait until the gennylec was over and see where we stand as the new government gets going. It's early days, but we're getting some indications of what's in the pipeline. There's plenty of commentary about expected moves from the new Cabinet for me to make some of my landmark predictions and comments about what the future holds for UK businesses. Of course, the result didn't surprise anyone, including the beleaguered Rishi Sunak or most of the Tory party. The only outstanding questions were about scale and impact. So now we know: It was a historic result for Labour. The Liberal Democrats, after Ed Davey's action-packed campaign, are relevant again. Finally, Reform has a few seats in The Commons, with Nigel Farage set to make his vociferous mark on the lower chamber for good or ill. We know there will be changes to the UK's financial landscape, and small business owners must pay close attention to what this means for them.  Let's break down the key points and how they might impact your business.
a light bulb in a speech bubble with a black background
By Adam Nurbhai June 10, 2024
Discover proven strategies to outperform business competitors by leveraging your USP, enhancing customer experience, and staying adaptable.
book with notes on it with black writing and blue highlights
By Adam Nurbhai May 1, 2024
Get your SME summer-ready with tips on holiday planning, seasonal staffing, cash flow, process upgrades & continuity to thrive through the busy months