An online accountant talks cybersecurity

Issue 2/3 2023 Financial (Industry), Information Security

Osidon is a digital accounting company based in Pretoria. The company develops all its software itself and has also designed cybersecurity software, named Cybadev, to fill the risk gaps and keep clients secure. Hi-Tech Security Solutions spoke to CEO & founder, Hennie Ferreira, about passwords, cyber risks, and accounting.

The first question to ask is whether businesses are comfortable with an ‘online accountant’? Accounting data is obviously sensitive and you do not want to have just anyone accessing that information. Even when protecting access with a password, phishing attacks are common, and far too many people, falling for these schemes, are conned into sharing their passwords.

Ferreira believes that the authentication landscape will change dramatically over the next few years, as passwords are left behind in favour of multi-factor authentication (MFA). Passwords are something only the user knows (supposedly), but they can be shared or extracted from people quite easily. MFA hardens the access control, making sure authentication is more accurate and reliable before allowing anyone in.

He says MFA systems are based on multiple factors of authentication: ‘something you know’ (like a password), ‘who you are’ (determined by, for example, fingerprint or facial biometrics), and lastly it can include ‘what you have’ (like a token or a cell phone).

“The future of authentication is eliminating passwords and moving towards integrating biometrics in tandem with two-factor authentication,” Ferreira says. “This is where passkey comes into play. A national technology company consortium developed passkey, focusing on the integrated security measures mentioned above.”

“The movement to passkey is exciting and innovative. In the past, cell phones did not have the ability for biometric scanning, but with new technology, phones are more reliable, simple and safe. Business owners and CTOs are becoming more vigilant, and the more generally passkey becomes available, the more old-school passwords will fall away.”

Find out more about passkey authentication at https://fidoalliance.org/passkeys/.

While cybersecurity is a complex world in its own right, business users do not need to be ignorant of the challenges they face. He says the Open Worldwide Application Security Project (OWASP, https://owasp.org/), is a non-profit organisation that publishes many tools, resources and updates regarding how the technology world is changing.

An online accountant?

Moving past the authentication issue, Ferreira says cybercrime has not stopped the world from transitioning to the online world; and the pandemic was a significant catalyst for it – including an online accountant. “The pandemic created a necessity for services to be available digitally in the virtual world,” he adds. “Moreover, everything moving online opened people’s minds to the huge possibilities and even how much more effective a digital service can be.”

“From an Osidon financial services perspective, we take cybersecurity extremely seriously; so seriously that we established our own cybersecurity firm, Cybadev. By implementing a few techniques, we ensure online safety for all our customers, businesses and individuals.”

Some security protocols Osidon is built on include:

1. The company develops all its software on well-known, open-source frameworks. As a result, the security on the platforms is exceptional because these frameworks are constantly under scrutiny.

2. Osidon only uses infrastructure provided by AWS, Microsoft Azure, Google Cloud, or any other reputable major cloud provider. Providers like this will experience significant reputational damages if a cyber breach occurs.

3. The company understands that people are the biggest downfall of social engineering. For this reason, its staff receive training every month to create awareness of the latest industry updates. In addition, Osidon is based on next-generation technology and provides its team with secured devices to ensure no malicious software is on them.

4. And lastly, it also implements penetration testing techniques to ensure its systems are secure.

“So far, we have yet to see cybercrime hindering the adoption of our technology. However, cybercrime isn’t going to vanish, so adopters must be more aware and educated while embracing digital transformation.”

The cybersecurity product Cybadev was born from the cybersecurity need that arose when Osidon was developing its platform. “We couldn’t help but become obsessed with cybersecurity ourselves,” explains Ferreira. “So, after doing all the research and work to ensure Osidon is secure with our unique cybersecurity software, we decided to make it available to smaller companies in South Africa and even interested corporate companies.”

Ferreira says the solution tries to do everything: it’s antivirus and VPN to secure networks, and training awareness to everybody involved in the organisation. He says Cybadev is focused on putting something into the market that is genuinely secure and designed for smaller companies that cannot afford enterprise-grade solutions.

For more information, go to www.osidon.com or www.cybadev.com


Credit(s)




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

There is a SaaS for everything, but at what cost, especially to SMEs?
Editor's Choice Information Security Security Services & Risk Management
Relying on SaaS platforms presents significant cybersecurity risks as the number of providers in your landscape increases, expanding your attack surface. It is important to assess the strength of the SaaS providers in your chain.

Read more...
Addressing today’s mining challenges: cyber risks beyond IT
Editor's Choice Information Security Mining (Industry)
Despite the mining industry’s operational technology systems being vulnerable to cyberattacks, many decision-makers still see these threats as purely an IT issue, even though a breach could potentially disrupt mining operations.

Read more...
How to effectively share household devices
Smart Home Automation Information Security
Sharing electronic devices within a household is unavoidable. South African teens spend over eight hours per day online, making device sharing among family members commonplace. Fortunately, there are methods to guarantee safe usage for everyone.

Read more...
Challenges in SMME financing and support
News & Events Financial (Industry)
In a step towards empowering small, medium, and micro enterprises (SMMEs), a recent forum was held in KwaZulu-Natal aimed at developing and growing SMMEs through public-private collaboration.

Read more...
Innovation and security go hand in hand
Technews Publishing Facilities & Building Management Security Services & Risk Management
In a world where the demand for tech innovation is matched only by the acceleration of cybersecurity threats, businesses face the challenge of balancing new product development and robust security measures.

Read more...
Fortinet establishes new point-of-presence in South Africa
News & Events Information Security
Fortinet has announced the launch of a new dedicated point-of-presence (POP) in Isando, Johannesburg, to expand the reach and availability of Fortinet Unified SASE for customers across South Africa and southern African countries.

Read more...
New tools for investigation and robust infrastructure security
News & Events Information Security
Cybereason continues to enhance its security platform, with recent updates introducing improvements in file search operations, investigation query results, and cloud workload protection, providing more granular data and faster key artefact identification.

Read more...
SMART and secure estates in Cape Town
Technews Publishing Axis Communications SA Gallagher DeepAlert Nemtek Electric Fencing Products Editor's Choice
In February 2024, SMART Security Solutions emigrated to the Western Cape to host its first SMART Estate Security Conference in the region in many years. For the day, we took over the prestigious D’Aria Wine Estate.

Read more...
Integrated, mobile access control
SA Technologies Entry Pro Technews Publishing Access Control & Identity Management
SMART Security Solutions spoke to SA Technologies to learn more about what is happening in the estate access world and what the company offers the residential estate market.

Read more...
New ransomware using BitLocker to encrypt data
Technews Publishing Information Security Residential Estate (Industry)
Kaspersky has identified ransomware attacks using Microsoft’s BitLocker to attempt encryption of corporate files. It can detect specific Windows versions and enable BitLocker according to those versions.

Read more...