Skip to content

Cyberview #2: Casino hacks, modern car data privacy, and ChatGPT

Welcome back to another episode of Cyberview! Explore latest developments in the world of tech and cybersecurity with Gerald Kasulis, Frida Kreitzer, and Carlos Salas.

In this episode, the Cyberview squad covers the hot topics that have been making waves recently – from X’s changing privacy policy, alarming revelations about data collection in the auto industry, OpenAI’s Enterprise offering, and the all-too-familiar tale of big business (in this case two of Vegas’ biggest casinos) falling foul to social engineering attacks.

Cyberattacks on MGM and Caesars Palace 

In recent months, two of Las Vegas’ biggest hotel-casinos, MGM Resorts and Caesars Entertainment, were battered by cyberattacks.

MGM Resorts faced broad system outages and service disruptions, affecting properties in Las Vegas and elsewhere. According to Vox, “a group known as Scattered Spider is believed to be responsible, and it reportedly used ransomware made by ALPHV, or BlackCat, a ransomware-as-a-service operation. The hackers are said to be especially good at “vishing,” or gaining access to systems through a convincing phone call.”

Caesars Entertainment stated that it experienced a similar social engineering attack, albeit on an outsourced IT support vendor. The resulting data breach caused many of its loyalty program members’ Social Security numbers and driver’s license numbers to be stolen, along with other personal data. Caesars paid roughly $15m of the $30m ransom, according to the Wall Street Journal. These attacks remind us again of the vulnerability of human error, the persistent “weak link of cybersecurity”.

Car Companies & Data: A Privacy Nightmare

A recent report from Mozilla has shed light on some alarming data collection practices among car manufacturers. The study of 25 car companies found each to collect more personal data than necessary for operating vehicles and maintaining customer relationships. In Mozilla’s words, “Cars are the worst product category we have ever reviewed for privacy.

This data covers not only driving habits and locations visited, but also sensitive details such as immigration status, weight, genetic information, and even facial expressions.

Cars are jam-packed full of sensors, microphones, cameras, connected devices, apps, and more – in short, a rich harvesting ground for data. This data is vulnerable to sale or share to third parties. Albert Fox Cahn’s remark, “Cars are wiretaps on wheels,” is ringing true.

X’s Latest Privacy Policy: Biometrics, Verification, and More

Elon Musk’s X recently rolled out some controversial changes. The app formerly known as Twitter stated that it “may collect and use your personal information” – employment, educational history, skills, job search activity, etc – “to recommend potential jobs for you, to share with potential employers when you apply for a job, to enable employers to find potential candidates, and to show you more relevant advertising.”

And there’s more. X has introduced a biometric verification system for paid users, based on government-issued IDs. Seemingly, this system will prevent impersonation and offers “prioritized support” to premium users. These users can opt to submit their government IDs and an image for verification, earning a badge (replacing the old “blue tick”) on their profile.

These changes are likely related to X’s recent moves into the job market space (look out, LinkedIn), and part of X’s broader plan to transform into an “everything app”. Also, training AIs.

OpenAI’s ChatGPT Enterprise: Protecting Business Data

Growing concerns about business data security (how much of our ChatGPT prompts are being used to train the next large language model?) have pushed OpenAI in a more B2B-friendly direction with the launch of ChatGPT Enterprise: “You own and control your business data in ChatGPT Enterprise. We do not train on your business data or conversations, and our models don’t learn from your usage.”

This move puts OpenAI in direct competition with its major backer, Microsoft, as both aim to attract business clients. What’s the connection? The Cyberview team delves into the details.

Stay tuned for the next episode of Cyberview.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About NordLayer
NordLayer is an adaptive network access security solution for modern businesses – from the world’s most trusted cybersecurity brand, Nord Security.

The web has become a chaotic space where safety and trust have been compromised by cybercrime and data protection issues. Therefore, our team has a global mission to shape a more trusted and peaceful online future for people everywhere.

Top 10 remote work destinations 2023: Global Remote Work Index insights unveiled

As the digital revolution continues to reshape the professional landscape, remote work has become more than just a trend—it’s a new reality.

With the boundaries of the traditional office blurring, the world has truly become a playground for the modern nomad. In 2023, new havens for remote workers are coming into the spotlight, offering a blend of connectivity, comfort, and cultural richness. 

Explore this year’s Top 10 remote work destinations, places where productivity meets adventure. Whether you’re a seasoned remote veteran or just starting your digital journey, these destinations promise to inspire and amaze you.

Key takeaways about GRWI

The Global Remote Work Index (GRWI) is a comprehensive ranking system that evaluates countries’ suitability and attractiveness for remote work. First, it was launched in 2022 by NordLayer, a secure remote network access solution provider.

This evaluation takes into account various factors across multiple dimensions. The index serves as a tool for remote workers, businesses, and policymakers seeking to understand the best global environments for remote work.

  • In 2023, NordLayer assessed 108 countries, up from 66 the previous year.

  • GRWI evaluates countries on four core dimensions: cyber safety, economic conditions, digital and physical infrastructure, and social safety.

  • The ranking was derived by examining countries through these four main dimensions. Each of them encompasses specific attributes (or sub-dimensions) that collectively measure the appeal of remote work:

    • Cyber safety: includes infrastructure, response ability, and legal provisions

    • Economic safety: factors in tourism appeal, English fluency, living costs, and healthcare quality

    • Digital and physical infrastructure: assess internet quality, cost, e-infrastructure, e-governance, and tangible infrastructure

    • Social safety: evaluates personal rights, inclusivity, and general safety

No. 10: Slovakia

A cyber safe haven in the remote work landscape

Slovakia shines brightly in the Global Remote Work Index, securing the 10th spot, making it a top choice for digital nomads and remote work enthusiasts.

Slovakia’s unparalleled performance in cyber safety, where it proudly claims the global lead. Slovakia isn’t just about virtual security, though. Its tourism appeal, sitting at a respectable 13th position, combined with a decent English proficiency ranking, makes it an enticing blend of work and leisure for global professionals.

However, every silver lining has a cloud, and Slovakia is no exception. While it excels in cyber achievements, the country’s digital and physical infrastructure needs attention, with rankings not reaching the Top 40.

Economically, the higher cost of living, ranking 54th, could make some remote workers think twice. Additionally, its healthcare system, positioned at 41st, leaves room for improvement. Internet quality and the e-government framework also trail behind, ranking 43rd and 58th, respectively, pointing towards the need for growth.

In summary, Slovakia’s remote work landscape is a blend of exceptional cyber fortitude and irresistible tourism allure, counterbalanced for improvement in digital infrastructure and living costs. While the country already offers a compelling proposition for remote work, it stands on the brink of realizing an even greater potential with focused enhancements. For remote work enthusiasts, Slovakia delivers both charm and a cyber-safe travel destination.

No. 9: Ireland

A mosaic of tradition, tech, and talent

Securing the 9th spot on the GRWI, Ireland offers a unique blend of historical depth and digital expertise, presenting remote workers with a vibrant experience.

Ireland’s exceptional English proficiency stands out, providing seamless communication for global remote workers. Coupled with its 8th rank in tourism attractiveness, the Emerald Isle is both a workspace and a cultural delight.

Economically, while the charm of its culture and language is clear, the high cost of living (88th) might give some pause. The healthcare system at 40th could benefit from enhancements.

Digitally, Ireland showcases considerable strength, particularly in legal measures for cyber safety, ranked 2nd. Its quick response capacity (8th) underscores this commitment. However, a 32nd rank in digital infrastructure points to areas of growth. The broader digital and infrastructure landscape has its highs, like physical infrastructure (14th), and areas needing attention, such as internet quality (39th).

Socially, Ireland’s 2nd rank in inclusiveness highlights its progressive stance, but areas like general safety (53rd) and personal rights (23rd) indicate room for improvement.

Overall, Ireland’s scenic beauty and tech orientation make it a promising hub for remote workers. Despite certain challenges, its potential and allure for the remote workforce remain strong.

No. 8: Lithuania

A cyber sanctuary in the heart of Europe

Lithuania, ranking 8th on the GRWI, seamlessly blends its history with digital proficiency. Its most notable accomplishment is in cyber safety, ranking 3rd globally, anchored by an exceptional cyber safety infrastructure (4th), quick response capacity (2nd), and unmatched legal measures (1st). This makes Lithuania a cyber-secure haven for remote workers.

On the economic safety front, its strong tourism appeal (10th) contrasts with challenges like the cost of living (62nd) and healthcare (58th). Yet, better than average English proficiency (21st) promises ease of communication for global professionals.

In digital and physical infrastructure (28th), Lithuania shows promise, particularly in internet affordability (20th) and e-infrastructure (24th), though areas like internet quality (32nd) need attention.

Socially, Lithuania ranks 23rd, emphasizing inclusiveness (22nd) but suggesting growth in personal rights (35th) and safety (28th).

Lithuania shines as a cyber sanctuary, merging tradition with innovation. Its GRWI rank indicates that it invites remote workers to join its forward-thinking journey.

No. 7: Estonia

Pioneering digital excellence in the remote work domain

Often praised for its digital advancements, Estonia appears high on the Global Remote Work Index.

Estonia cements its status as a sought-after remote work hub by making waves in the global context, ranking relatively high for its digital and physical infrastructure (26th) and holding 19th position in social safety. The country’s formidable strengths lie in its top-tier infrastructure (3rd), response capacity (1st), exceptional e-government systems (6th), and robust e-infrastructure (16th). Also, its impressive safety rank (13th) provides peace of mind for remote workers seeking a secure working environment.

However, no country is without its set of challenges. Estonia’s Achilles’ heel is its economic safety, lagging at the 40th spot. The country’s internet quality, ranked 45th, and a relatively high cost of living (71st) coupled with pricier internet services (32nd) might come as significant concerns.

Yet, Estonia’s commendable healthcare system, ranking 30th, and outstanding scores in personal rights, inclusiveness, English proficiency, and physical infrastructure provide enough allure to overshadow its weak points.

Estonia’s deep dive into digital transformation is evident through its e-Estonia Programme, a blueprint for evolving digital services and strengthening cyber resilience.

The country’s commitment to cyber preparedness, demonstrated by the 2018-2022 e-Estonia Cyber Security Programme, showcases its foresight and diligence. For remote work enthusiasts seeking a blend of digital innovation and societal harmony, Estonia is an intriguing prospect with a promise of continuous growth.

No. 6: Portugal

A rising star in the remote work universe

Portugal’s beautiful scenery and rich history are not its only attractions anymore, as it proudly secures the 6th spot on the GRWI.

Known for its pleasant weather and vibrant culture, Portugal now boasts an impressive cyber safety ranking at 18th. This achievement is largely due to its respectable response capacity, which stands out in the 4th position. Moreover, its cybersecurity legislation, ranked 8th, emphasizes the nation’s commitment to creating a safe digital workspace, although some areas still need enhancement.

When it comes to economic safety, Portugal ranks 8th, although prospective remote workers might need to budget wisely because of its somewhat elevated cost of living, sitting at 56th.

The tapestry of digital and physical infrastructure tells a mixed story; a respectable overall rank of 23rd is somewhat tainted by a lackluster e-infrastructure position (43rd). Yet, Portugal compensates with an impressive social safety rank, marking its place in the 7th position.

Portugal’s remote work landscape is a blend of sterling strengths and opportunities for growth. Its comprehensive legal framework addressing various cybersecurity aspects is noteworthy.

As Portugal continues to enhance its remote work ecosystem, it beckons digital nomads and professionals to experience a blend of traditional charm and modern connectivity.

No. 5: Sweden

A Nordic beacon for remote workers

Positioned comfortably at 5th on the GRWI, Sweden seeps a progressive charm, especially for remote workers.

Cyber safety in Sweden is notably robust (21st), and the country’s 4th place in response capacity shows a commitment to keeping digital workspaces secure. A closer gaze at the ranking reveals improvements in cybersecurity infrastructure (19th), an area Sweden has already begun to address with the inauguration of the National Cyber Security Center in 2021.

In terms of economic safety, Sweden boasts an impressive 7th rank. Yet, the cost of living stands as a hurdle at 79th, reminding remote workers of the premium associated with the Swedish lifestyle.

The narrative is brighter in digital and physical infrastructure, with Sweden securing its 9th-place. Yet, recent public events cast a shadow on the country’s otherwise luminous social safety score of 15th, plummeting the overall safety metric to 64th.

Sweden’s remote work landscape offers commendable strengths threaded with areas yearning for refinement. The country’s intricate cybersecurity laws, standing tall at 9th, manifest its holistic approach to safeguarding digital realms.

As Sweden keeps adapting and refining its strategies, it paints a compelling picture of a nation ready for a brighter remote work future, where tradition and innovation coexist.

No. 4: Spain

A sun-kissed jewel in the remote work crown

Nestled comfortably at the fourth position in the GRWI, Spain elegantly waltzes into the limelight this year. It’s not just for its enviable “warm and sunny” nature but for many other reasons that make it a remote work haven.

As the lone Southern European gem in the Top 5, Spain doesn’t merely rest on the laurels of its Mediterranean charm. Instead, its impressive rankings across key GRWI categories — be it cyber safety (11th), economic safety (9th), digital and physical infrastructure (13th), or social safety (16th) — show that it’s a harmonious blend of work and leisure.

Spain’s prowess in cybersecurity shines notably, with its laws coming in an impressive second spot, just behind Germany. Also, the country’s well-entrenched cybersecurity infrastructure (4th) is a testament to its digital fortitude. However, a nuanced look reveals a slight chink in the armor: while Spain’s cybersecurity infrastructure thrives, its response capacity at 11th suggests the private digital sector’s appeal might be stretching the public sector’s cybersecurity manpower thin.

Yet, while Spain has many advantages for prospective remote workers, those with a strong preference for English might find Spain’s proficiency in the language somewhat lacking. For those keen on honing their English skills without compromising on the remote work experience (or burning a hole in their pockets), destinations like Poland and Croatia might be good options.

Still, Spain’s magnetic mix of culture, cybersecurity, and beautiful coasts remains irresistible for many.

No. 3: Germany

The stalwart of Europe’s remote work landscape

Germany, synonymous with economic vigor and technological knowledge, proudly holds the third spot in the GRWI.

While it may have surrendered last year’s crown, its robust performance across various GRWI categories is undeniable. Excelling in cyber safety (4th)—with its legislation leading globally—and economic safety (6th), especially in healthcare (7th), Germany remains a beacon for remote professionals worldwide.

Its credentials don’t end there: a promising 13th rank in social safety and an impressive digital and physical infrastructure ranking, sweetened by the cherry on top—Germany’s unrivaled internet affordability (1st).

Diving deeper into the cybersecurity field, Germany shines particularly bright. Driven by its ground-breaking legislation, the German IT Security Act 2.0 of 2021, the country has fortified its digital borders like no other. This legislation, empowering the Federal Office of Information Security with enhanced capacities, touches on key aspects of cybersecurity—from Detection and Defense to Business Security and mobile network safeguards. Consequently, the nation’s cyberspace emerges as one of the safest and most vigilantly monitored.

However, staying in Germany might present a linguistic curveball for the newcomers. While Germans demonstrate decent fluency in English (11th), navigating the intricacies of legal and employment terrains might require a grasp of the German language.

The Netherlands and Ireland present enticing alternatives for those prioritizing English proficiency without compromising the GRWI standing. Conveniently accessible from Germany, these countries blend excellent English fluency with a high GRWI rank, making them excellent considerations for remote work fans.

No. 2: the Netherlands

A sterling blend of culture and connectivity

Glistening in the silver spot of the GRWI, the Netherlands is a harmonious blend of socio-cultural richness and top-notch infrastructure.

As the second-ranked country in the GRWI, the country basks in outstanding rankings, especially on the social safety front (2nd). This reflects the deep-rooted values of personal rights (3rd) and the inclusive ethos of the Dutch culture (6th). Pair this with its strong digital and physical infrastructure (8th), and you have a country that seamlessly weaves tradition with technology.

However, even as economic safety (11th) and cyber safety (17th) maintain a relatively decent standing, there’s a spot where the Netherlands seems to trip a bit: healthcare.

The Dutch healthcare system, ranked 16th, isn’t at the very top. For those looking for top-notch healthcare in their remote work destinations, choose Scandinavian countries like Sweden, Norway, and Denmark, which lead the way globally.

When it comes to the nuances of cyber safety, it’s crucial to put the Netherlands’ 17th rank in perspective. The Dutch National Cyber Security Centre (NCSC) is a tough fortification. Notably, it has earned a 3rd rank in cybercrime response capacity.

As a powerhouse of economic and digital life, the country faces quite a few cyber challenges. The cybersecurity infrastructure (11th) and legislation (9th) might have little catching up to do, but one cannot overlook the expansive challenges the country navigates as a digital frontrunner.

No. 1: Denmark

A balance of modernity and social cohesion

Glistening at the pinnacle of the GRWI, Denmark showcases progress and people-focused values.

Denmark is a top pick for remote work due to its strong digital and physical infrastructure (ranked 4th) and good social safety (ranked 6th). But as you wander the Danish streets or browse through their super-efficient e-governance portals, it’s not just the beautiful surroundings or the streamlined digital processes that captivate; it’s the ethos of social inclusiveness (6th) that sets the tone.

Yet, downfalls for remote workers in Denmark manifest as the high cost of living (94th) and the slightly pricier internet service (42nd). But the balance seems to tip in Denmark’s favor, thanks to its exceptional performance in internet quality (7th), e-infrastructure (7th), e-government (5th), and the crowning jewel—its healthcare system (3rd).

Going deeper into cyber safety, Denmark’s 13th position suggests there’s still room for growth to reach the top. While the absence of a singular, consolidated cybersecurity law might raise questions, Denmark compensates by weaving cybersecurity into many other legislations, creating a robust, though somewhat dispersed, framework. Despite these legal efforts, enhancing cybersecurity infrastructure and ramping up response capacity is still challenging.

The launch of the 2022 National Cyber and Information Security Strategy marks a new dawn. Designed to bolster cyber resilience, streamline management, foster public-private collaborations, and increase Denmark’s participation in the global cybersecurity dialogue, this strategy promises to pave the way for an even brighter, more secure digital future for the country.

Never stop exploring

The landscape of remote work continues to shift, and 2023’s top destinations highlighted by GRWI offer a fascinating blend of tradition, innovation, and unique opportunities for remote workers worldwide.

Each country in the list has its distinct advantages and areas for improvement, giving you diverse choices for digital nomads and remote professionals. As you chart your future work destinations, the GRWI is an invaluable guide, offering detailed insights and data-driven rankings. Interested in a deeper dive? Explore the Global Remote Work Index tool, where you can compare different countries and find the one suitable for your next remote work destination.

Here’s to new adventures and successful remote work experiences.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About NordLayer
NordLayer is an adaptive network access security solution for modern businesses – from the world’s most trusted cybersecurity brand, Nord Security.

The web has become a chaotic space where safety and trust have been compromised by cybercrime and data protection issues. Therefore, our team has a global mission to shape a more trusted and peaceful online future for people everywhere.

On the new era of work: a talk with Julia Hobsbawm, the author of ‘The Nowhere Office’

Step into a world where the traditional office is a relic of the past, and remote work has become the norm. The symphony of clinking coffee mugs and buzzing photocopiers has given way to the quiet hum of Zoom calls and the occasional barking dog in the background. It’s a world where the boundaries between work and life blur, and the office, once a physical space, now has transformed into a digital nowhere.

In this brave new world of work, Julia Hobsbawm stands out as a sage of the modern workplace. Her book, ‘The Nowhere Office,’ offers valuable insights on navigating this new way of working for leaders and employees. 

‘The Nowhere Office’, a term coined by Julia Hobsbawm, reflects a shift in the modern workplace. It shows that today’s workforce can adapt and be productive without traditional office constraints. It promotes flexibility and efficiency while still valuing physical spaces for collaboration and growth.

Julia Hobsbawm is a British award-winning writer, speaker, consultant, Bloomberg commentator, and columnist about the future of work. The author of the acclaimed book ‘The Nowhere Office,’ she was also the founder of the US-led Workforce Institute and now co-hosts the popular podcast ‘The Nowhere Office.’

To mark the launch of NordLayer’s Global Remote Work Index 2023 tool for exploring the best countries for remote work, join us in a conversation with Julia Hobsbawm as we explore the heart of ‘The Nowhere Office.’ Here, the future of work unfolds, and the old rules don’t apply anymore.

At a glance: insights from this interview

  • Remote work & productivity: remote work balances between isolation and collaboration. For some, it’s a choice for creativity; for others, it’s essential due to necessities like child care.

  • Evolving workplace dynamics & trends: daily office routines feel outdated. The rise of ‘The Nowhere Office’ and hybrid models highlight changing dynamics.

  • Technology & future of work: technology’s efficiency and scale are unparalleled. However, issues like privacy breaches and trust erosion can surface without ethical checks.

  • Leadership in a changing landscape: modern leaders should prioritize active listening. Decisions based only on shareholder demands or peer practices can become misaligned with ground realities.

Work engagement & well-being

NordLayer: How does remote work contribute to enhancing productivity and well-being? Can you also address the misconceptions surrounding well-being in the workplace?

Julia Hobsbawm: The topic of remote work is multifaceted, especially when discussing its impact on social connections and well-being. Critics of ‘the Nowhere Office‘ concept often highlight social isolation and loneliness, arguing for the advantages of full-time in-office engagement.

Remote work isn’t merely a case of isolation versus collaboration. Some individuals seek quiet, creative spaces away from office disturbances. Others have obligations like child care, which make remote work not just preferable but essential. Flexibility, or what I prefer to term as ‘movement flexibility,’ is more apt than ‘hybrid’ in describing this paradigm.

Well-being at work goes beyond the simplistic binaries. It encompasses what I label ‘social health’: how we connect with colleagues, build communities, and foster supportive systems. Physical and mental health rooted in nutrition, sleep, and other factors also play vital roles.

A pressing issue, often sidelined in discussions on workplace well-being, is the toxicity of certain environments. A toxic workplace is characterized by poor leadership, office politics, unmanageable deadlines, and inefficient systems.

Addressing these issues is vital instead of merely branding well-being initiatives as solutions without understanding their depth. In my view, the pandemic has highlighted people’s profound commitment to their work.

Around the globe, pride in one’s job isn’t restricted to specific roles or hierarchies. From Japan’s broad societal work ethic to individual aspirations, there’s a universal yearning to perform excellently. ‘The Nowhere Office’ is a call for change, seeking to cultivate environments that nurture pride, passion, and exceptional performance.

NordLayer: In your Bloomberg column, trends like “quiet quitting,” “great resignation,” and “career cushioning” emerge. Could you provide more insight into these concepts in the context of evolving workplace dynamics?

Julia Hobsbawm: Historically, and research backs this, companies founded before the year 2000 often have leadership resistant to new workplace methodologies. There’s a discernible pattern where such organizations, predominantly led by men from a certain age bracket, resist adapting to these shifts.

Tools like Zoom showcased during the pandemic that profound connections can be made remotely. It’s a testament to human adaptability that we can feel connected, even intimately, through digital mediums. Even professionals in psychotherapy have found virtual communication to be surprisingly effective.

The key lies in discerning when physical presence enhances productivity and when it doesn’t. Take multinational companies, for instance. Their diverse geographical operations don’t necessarily dilute company culture. There’s a need to dispense with traditional benchmarks when determining the necessity of physical presence in offices.

However, it’s essential to remember the power of in-person interactions. Just as diplomats highlight the importance of “smelling the room,” and gatherings ranging from global conferences to cultural festivities emphasize the value of personal interaction, businesses should recognize the essence of shared experiences.

The rigid expectation of daily office presence for the sake of visibility, water cooler conversations, or prolonged meetings seems outdated. The increasing acceptance ‘The Nowhere Office’ concept, with a trend toward hybrid models, underscores the shifting dynamics.

The widespread adoption of schedules where employees come in three days a week suggests that these ideas are gaining traction. I’m hopeful about this progressive change and the direction in which we’re headed.

Technology & future of work

NordLayer: In a nutshell, how do you see technology shaping the future of work in terms of opportunities and challenges?

Julia Hobsbawm: I think we’re moving generally into a hyper-surveillance culture. From the automation introduced by Henry Ford’s assembly line to today’s AI-driven applications, technological innovation is part and parcel of our evolution. However, the conundrum arises not from the technology itself but from its human applications and interpretations.

We’re at a pivotal point in history where technology offers unprecedented efficiency, convenience, and scale opportunities. Yet, without ethical guidelines, it can be misused, leading to issues such as breaches of privacy and the degradation of trust in professional relationships.

The challenge is striking a balance between embracing these advancements and respecting the human elements of work – autonomy, trust, and dignity.

We must recognize that while technology can provide tools to enhance our capabilities, the bonus lies in employing these tools ethically and humanely. It’s not about resisting technological change but channeling it in a manner that respects and uplifts human dignity and well-being. Our choices, priorities, and values in this tech-driven era are the true challenge.

Leadership in a changing landscape

NordLayer: Finally, what qualities must leaders develop in the changing work landscape, and how should leadership evolve in remote and hybrid environments?

Julia Hobsbawm: At the heart of the evolving work landscape, leaders need to embrace the role of an active listener. Making decisions based purely on shareholders’ demands, the practices of other companies, or unrealistic timelines can lead to strategies that are detached from the realities on the ground.

A discerning leader listens, synthesizes the information, and communicates horizontally and vertically within the organization. For instance, if feedback suggests a strategy will take longer due to post-pandemic employee lifestyle shifts, a leader acknowledges this and adjusts accordingly.

We are navigating a transitional period. While the past may have seemed more structured – everyone commuting and adhering to routine schedules – the current landscape is fluid. This transition has amplified our emotional intelligence as workers.

For leaders, it’s about fostering an environment of mutual learning and understanding among these varying generational viewpoints. While it’s undeniable that we’re in challenging and complex times, I remain cautiously optimistic. The path might be bumpy, but with adaptive leadership, better days lie ahead.

Thank you.

From zero to hero

If you have an office-based, hybrid, or even a 100% remote team – any way of working – have you considered making it more secure and fully enabled to achieve its real potential? Reach out to the NordLayer team and discover an easy and effective secure network access solution for your company.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About NordLayer
NordLayer is an adaptive network access security solution for modern businesses – from the world’s most trusted cybersecurity brand, Nord Security.

The web has become a chaotic space where safety and trust have been compromised by cybercrime and data protection issues. Therefore, our team has a global mission to shape a more trusted and peaceful online future for people everywhere.

NordLayer features in review: Cloud Firewall

There was a time when on-premises hardware took care of your company’s cybersecurity. Most workers heard there was some kind of firewall behind those server room doors but never got to see it. Now, these rooms are getting smaller, and there are fewer and fewer doors to open. 

Today, hardware-heavy businesses are steadily declining while the on-cloud sector goes the opposite way. This doesn’t come as a surprise, given that buying solutions from the vendor is cheaper and doesn’t require a significant IT workforce. Following the trend, we at NordLayer further expanded our cybersecurity feature selection with a Cloud Firewall.

While we already had options like ThreatBlock or Deep Packet Inspection Lite (DPI Lite) next to the VPN, Cloud Firewall will further strengthen your multi-layered network protection. Also, let’s not forget that a firewall is a must for Secure Access Service Edge (SASE) and Security Service Edge (SSE) frameworks.

Whether you’re moving to the cloud or looking for ways to strengthen your company’s cybersecurity, continue reading to learn how NordLayer’s Cloud Firewall can assist.

Cloud Firewall solution using NordLayer

NordLayer’s Cloud Firewall is very easy to deploy as it doesn’t require extra hardware that would also need constant supervision. That means you won’t have issues integrating it into your existing network and fitting the company’s infrastructure. In fact, the whole network access management process becomes streamlined and effortless.

As noted earlier, you can install a firewall on your hardware, choose a cloud-based option, such as NordLayer, or use both options. The Cloud solutions are also known as Firewalls as a Service (FWaaS). They require no local hardware—just a web-based Control Panel for controlling access to your data.

Benefits of Cloud Firewall VPN

NordLayer’s FWaaS can benefit you in many ways beyond firewall protection. Here are just some of the examples.

Granular network segmentation

The main benefit of NordLayer’s Cloud Firewall is granular network segmentation. It means you can choose which departments, teams, or employees can access particular in-house resources. This makes creating new workflows easier and existing business processes more secure.

Moreover, network segmentation reduces the attack surface inside the organization. It’s always easier to detect a possible threat in a subnet compared to the whole network.

Let’s also not forget about the increased performance. The bigger the network, the higher the risk of a slowdown. With network segmentation, you’ll avoid bandwidth throttling because one subnet’s load won’t affect the other.

Centralized security

The firewall is on the cloud, meaning it can easily protect both your office and remote workers. That means it works both for your cloud and on-premises environments. The same applies to enforcing policies on all endpoints.

Centralized security means that your IT admins have more control over network security. What’s more, they can customize security controls for each segment.

One control panel to rule them all

One of the main goals of NordLayer is simplicity and ease of use. That’s why we put all controls in one panel without cluttering it. Even if you’re not an IT expert, you’ll be able to create new rules, which will be automatically applied to anything added to the Gateway.

And in case there was a rule for one employee only, it will automatically become disabled if the worker is removed from a Team. However, if you decide to remove a Gateway or a dedicated server, you’ll have to turn off the firewall first.

Optimized maintenance

Cloud firewalls are easily updated, and the process can be automated. There’s no need to visit every office with a server to install the latest firmware updates and patches.

Increased speed

Traditional firewalls are not always ready to handle cloud applications and may require extra expenses for them to work. In contrast, NordLayer’s Cloud Firewall won’t become a choke point in your network.

And the best thing is you won’t be sacrificing security for the sake of performance. It’s always easier to avoid bandwidth throttling when you have your network segmented.

Flexible scaling

No need for extra hardware means your Cloud Firewall will expand together with your business. And this can happen without overly complicating the process.

A new department in your company? Simply add another rule for them. With NordLayer’s Cloud Firewall, you can focus on your business instead of worrying about its cybersecurity.

Additionally, it doesn’t matter what kind of work model your company uses. NordLayer fits in-house, cloud, and hybrid environments. So, if you’re planning to switch from one to another in the near future, you don’t need to worry about changing your firewall.

How does NordLayer’s FWaaS feature work?

NordLayer’s Cloud Firewall works a bit like a border guard, scanning incoming and outgoing data packets. It checks if you can pass the border into a specific country.

Just like a firewall examines the content of the data packet, the border guard inspects your ID to see if it’s really you and whether you’re on a list of allowed travelers. But how does that actually happen?

The first and most important step is configuring the firewall according to your business needs. That means creating rules defining who will access which resources and who will be blocked. A rule can be applied to the whole company or just one employee.

When it comes to traffic destinations, your Cloud Firewall can work with standalone IPs, IP lists, or entire subnets. These options give you the freedom to customize to your heart’s content.

Once you’re past this stage, the only thing left is enabling NordLayer’s Firewall, which in turn starts filtering data packets passing through the gateway.

Now, no matter your or your employee’s location, this Cloud Firewall will protect your company as the bouncer protects the nightclub by doing face control. He won’t let the dodgy-looking fellas in and won’t explain the reasons why. And you, as the club manager, can overrule the bouncer’s decision anytime.

You can also customize NordLayer’s Firewall to fit your company. No matter if your workplace is on-site, hybrid, or remote – you’ll still be getting top-notch threat prevention and access control.

What’s more, you don’t have to be an IT specialist to tweak your Cloud Firewall. You can apply different rules to your employees right in NordLayer’s Control Panel. No more financial data for Mark? Bam, it’s done. Sales team newbies need access to Salesforce? Bam, it’s done.

How to use NordLayer’s Cloud Firewall?

This section describes the key actions you can take with our FWaaS without needing an IT specialist. We’ll look at Default Firewall Action, creating new Firewall rules, and managing rule hierarchy. We also want to remind you that if you’re having trouble with any of the steps, contact our 24/7 customer support – they will be glad to help.

What is a Default Firewall Action?

Default Firewall Action controls what happens to the traffic when it does not meet any of the firewall rules defined by the organization. However, new employees who are yet to be assigned to a Team won’t see any Virtual Private Gateways, just the shared ones. This means neither firewall rules nor the Default Firewall Action applies to them.

There are two Default Firewall Actions available:

  • Allow. The firewall allows all network traffic by default unless a rule prohibits the traffic.

  • Deny. The firewall disallows all network traffic by default unless a rule permits the traffic.

This means you can’t have both actions active, just like the border guard can’t let and not let you through at the same time.

Creating new Cloud Firewall rules

Firewall rules are the backbone of the firewall itself. Without rules, the Cloud Firewall is basically not doing anything. So, your first step should be deciding on the exact policies and the resources or services you want to have controlled access.

5 1400x670

Creating a new rule starts with naming it, followed by choosing the traffic source. It can be any traffic from any Team or a specific Team or employee. When you have the traffic source set, you can determine the traffic destination.

Once again, it can be any network address or a custom one. You can choose from predefined addresses or a new entry.

Finally, you get to define network services such as protocols and ports. Each new rule is added to the top of the priority list. Rule priority can be adjusted by dragging and dropping separate rules.

NordLayer’s FWaaS statuses and rule hierarchy

As mentioned above, firewall rules have a hierarchy that helps control your network. So when a firewall sees that the traffic meets the criteria of a certain rule, it ignores the others with lower priority.

Every rule can have one of the three statuses – Enabled, Disabled, or Deleted. All are self-explanatory, but the latter status will change only when you apply the rule changes.

NordLayer’s FWaaS vs traditional firewall

Traditional firewall requires you to have the necessary hardware in your office. Then, you need IT managers to install the firewall, maintain it, and extend its coverage.

This can be a good option if you don’t have remote workers, including yourself. But that’s highly unlikely, isn’t it? In contrast, as the name implies, NordLayer’s Cloud Firewall is deployed in the cloud and efficiently protects your workforce around the world. Moreover, this helps to cut your cybersecurity costs.

Also, if you’re working with cloud-based services, there are no extra investments to protect the remote workforce. Since the firewall is virtual, it stands between the user and the service. If you had an on-premises firewall, a remote worker would need to backhaul the traffic to the hardware infrastructure first, which is neither easy nor practical.

Should you get NordLayer’s Cloud Firewall?

Gone are the days when cybercriminals would target only big corporations like Google or Amazon. According to IT Governance, more than 40% of data breaches and ransomware attacks hit SMBs, and over 50% of companies plan to increase cybersecurity spending (IBM). The most targeted industries are Manufacturing, Finance & insurance, and Professional business & consumer services.

In short, every company that uses the internet should get a solid firewall. And if at least one employee will work remotely, a cloud version is the easiest and cheapest path to enhanced cybersecurity. For that, we recommend NordLayer’s Cloud Firewall.

Our FWaaS gives you IaaS, PaaS, and SaaS app protection, granular access control, and secure packet filtering. It combines well with DNS filtering by category or our DPI capabilities. Managing and centralizing your network won’t be a trouble, and when your business is ready to scale, your Cloud Firewall will follow side-by-side.

FAQ

What is a cloud firewall?

A cloud firewall is a specialized security solution designed to restrict unauthorized access. Unlike traditional firewalls operating on-premises, cloud firewalls are situated and managed within the cloud. This modern firewall deployment approach is often called Firewall-as-a-Service (FWaaS).

What is the difference between a cloud firewall and FWaaS?

All Firewall-as-a-Service (FWaaS) are cloud firewalls, but not all cloud firewalls are FWaaS. Cloud firewall protects cloud-based resources by restricting unauthorized access. FWaaS delivers these capabilities as a managed service, eliminating the need for on-premises hardware or dedicated firewall appliances.

What is the difference between a cloud firewall and a hardware firewall?

A cloud firewall, such as NordLayer FWaaS, operates in a cloud environment, focusing on data-centric protection strategies. In contrast, a hardware firewall is a physical device that guards the perimeter of a local network, using both hardware and software to filter and monitor incoming and outgoing traffic.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About NordLayer
NordLayer is an adaptive network access security solution for modern businesses – from the world’s most trusted cybersecurity brand, Nord Security.

The web has become a chaotic space where safety and trust have been compromised by cybercrime and data protection issues. Therefore, our team has a global mission to shape a more trusted and peaceful online future for people everywhere.

The comprehensive guide to network security monitoring

Cybersecurity incidents are frequent and they impact organizations daily. While some data breaches are minor, others can result in substantial financial or data losses. This requires business managers to review their current setups to ensure all necessary precautions are taken. 

Network security monitoring is one of the key elements for protecting organizational assets. It’s a process that analyzes network devices and traffic for potential weaknesses and threats. Let’s dive deeper into network security monitoring’s importance, tools, and best practices.

Network security monitoring (NSM) definition

Network security monitoring (NSM) collects and analyzes data to detect and respond to security threats within a network. This process involves using monitoring software and other technologies to gain insights into traffic flow, encrypted traffic sessions, and other vital network performance metrics.

What is network security monitoring (NSM)?

NSM is a specialized approach to ensuring the safety and integrity of networks. It collects, analyzes, and escalates network data to respond effectively to security threats. Direct observation of the entire network helps understand the nature of security events as they occur and minimizes their negative impact.

This gives network administrators and security professionals visibility into current network activity in real-life applications. NSM helps identify security breaches, malicious traffic, and other potential threats by analyzing traffic patterns, log data, and system behaviors. Network administrators get instant notifications through automatic security alerts. However, the network monitoring tool is still helpless against zero-day exploits that cannot be prevented.

Key components of network security monitoring

In the current security landscape, ongoing network monitoring can give your organization higher visibility. Often, this is a much-needed boost to level the playing field—defending against threats without knowing they exist is much harder. Continuous network security monitoring is essential to a successful cybersecurity strategy.

However, constructing an effective continuous monitoring plan is far from straightforward. It involves various complex elements to be taken into account.

1. Determine which data needs to be secured

Given time, resource, and budget constraints, prioritization is vital. The key data and infrastructure must have appropriate security measures and monitoring software.

In a sense, security measures must match the specific risks and threats your organization is exposed to. Appropriate network monitoring tool helps to pave the way for more aligned controls.

2. Establish an amendment plan for security flaws

While continuous network security monitoring helps keep the pulse on the current situation, it needs to be complemented by other security measures and practices. Potential weak points should be closely monitored across the whole network, while sensitive information exchanges should happen over encrypted traffic sessions. However, it’s also necessary to have an action plan to address discovered weaknesses.

It’s a mutually beneficial relationship: monitoring provides the context and information needed to know how the incident response plan should be handled. This positively affects security and network performance, making it easier to address emerging threats.

3. Maintain constant endpoint surveillance

Modern organizations have embraced remote-friendly setups, so many endpoints can connect to internal networks. At the same time, endpoints need to be closely monitored as each can access confidential information. This applies to all desktops, servers, and similar devices (multi-factor authentication should also be encouraged).

If an employee unintentionally endangers the network, it’s important to pinpoint which endpoint was affected quickly. A timely reaction using monitoring software can help mitigate risks quickly. Conversely, prolonged malware presence heightens the risk of much bigger problems.

4. Recognize abnormal user behavior

Continuous network security monitoring provides much information on how users act. This helps to establish typical user patterns within your organization, especially focusing on their interaction with the network’s applications and data.

Normally, employees follow similar usage habits on a day-to-day basis. Hence, deviations from these norms can be indicative of security violations. Sensitive resources should be monitored even more attentively to prevent potential risks before they escalate into actual problems.

5. Perform third-party monitoring

Securing an internal network is paramount for an organization’s security. However, watching the third parties you work closely with is also important. Threats from third-party partners shouldn’t be underestimated—if they get breached, this may also cause danger to your systems.

Third-party vendor security also has strict vendor requirements in terms of compliance. This means that organizations’ security status, as well as compliance, will have to align with third-party partners, as well. Implementing various boundaries and access checks with monitoring software will help establish a functioning system for collaborating with third parties.

Primary use cases for network monitoring

Administrators consistently observe and manage the network’s performance and can avert potential issues and enhance security. Here are the primary use cases for network monitoring.

  1. Performance management. Network security monitoring tools are pivotal in supervising the performance of servers, routers, switches, and other network devices. These tools offer real-time insights into hardware status, bandwidth usage, and application functionality.  Performance management is essential for businesses to ensure their networks meet the demands of end-users and applications without any issues. It aids in identifying bottlenecks, latency issues, and overloaded devices that could adversely affect network performance.

  2. Security surveillance. Given the rise in cybersecurity threats, network monitoring has become instrumental in safeguarding organizational data. Network security monitoring tools track unauthorized access, potential breaches, and suspicious activities. In case of an anomaly, these systems instantly alert administrators, enabling them to implement necessary security protocols to protect sensitive information.

  3. Compliance and reporting. Many industries are subject to strict data protection and network security compliance standards. Network security monitoring tools help companies follow these regulations by providing detailed logs and network activity reports. These records are imperative for audit trails and demonstrating compliance with industry standards and legal mandates.

  4. Disaster recovery planning. Network security monitoring plays a significant role in developing and executing disaster recovery plans. Administrators can quickly respond to and recover from unexpected events, such as hardware failures or data breaches, by monitoring the network’s health and performance. The continuous collection of network data also supports effective strategies for future disaster mitigation and response system.

Best practices for effective monitoring

Simply having monitoring tools in place isn’t enough. The efficiency and effectiveness of monitoring depend largely on the strategies and practices you adopt. Following best practices is crucial to achieve optimal results. Here are some examples.

  • Set clear objectives. Identify the primary goals of your monitoring activities. Clear objectives guide the selection of monitoring tools and strategies, focusing your efforts on collecting data that supports decision-making and problem-solving.

  • Select appropriate tools. Numerous monitoring tools are available, each designed for specific use cases. Select tools that align with your objectives and are compatible with your system infrastructure. Opt for solutions offering customization, scalability, and user-friendly interfaces.

  • Configure alerts wisely. Effective alerting is central to timely issue identification and resolution. Configure alerts based on thresholds that indicate abnormal activity, but avoid setting them too sensitively to prevent alarm fatigue among your team.

  • Continuously update. As your operational environment evolves, so should your monitoring approach. Regularly review and adjust your strategy to accommodate new objectives, tools, and baseline metrics. This iterative process helps maintain monitoring effectiveness over time.

  • Train personnel. Equip your team with the necessary skills and knowledge to use monitoring tools effectively. Training should cover tool configuration, data interpretation, and response procedures, ensuring that everyone can participate in monitoring activities productively.

  • Document your monitoring practices. Documentation is a reference for your monitoring strategy, tools, and procedures. It is invaluable for training new team members and provides a framework for auditing and improving your monitoring practices over time.

  • Act on insights. Monitoring is not just about collecting data. It’s also about acting on the insights gained. Develop procedures for responding to alerts and anomalies and regularly analyze collected data to identify opportunities for improving operational efficiency.

Real-world benefits of network security monitoring

NSM brings several real-world benefits beyond the obvious advantage of guarding against cyber threats.

Protection against financial losses

The financial implications of a network breach can be staggering, ranging from immediate financial losses due to fraudulent activities to long-term reputational damage. With NSM, potential threats can be identified and mitigated before they escalate.

Regulatory compliance

Many industries are bound by regulations that mandate certain security standards, such as GDPR in Europe or HIPAA in the U.S. NSM supports compliance by continuously monitoring the network for security gaps that could lead to violations, thus avoiding legal penalties.

Cost efficiency

Proactive monitoring often proves less expensive in the long run than reactive measures taken after a breach. By investing in NSM, organizations can save on potential future costs associated with data breaches, litigation, and damage control.

Adaptability to evolving threats

As cyber threats continuously evolve, so does NSM. Modern NSM tools use artificial intelligence and machine learning to identify and adapt to new threats, ensuring that networks remain fortified against even the most modern cyber-attacks.

The increasing complexity of threats has made it essential to advance NSM developments. Even now, we can anticipate emerging trends in the near future.

  • Artificial intelligence and machine learning. Traditional threat detection methods rely on already-known attack patterns. However, AI and machine learning can predict new, unknown threats by analyzing the data at hand. With these technologies, security systems will be able to adapt and evolve with emerging threats, enabling quicker responses and reducing false positives.

  • Increased emphasis on Zero Trust architectures. The Zero Trust model operates on the principle that no user or system is trusted by default, regardless of whether they’re inside or outside the organization’s perimeter. As remote working and cloud-based services expand, implementing Zero Trust architectures will be paramount. This model will ensure continuous verification and validation of connections, making security more dynamic and less reliant on perimeter defenses.

Conclusion

NSM is an evolving field that plays a significant role in safeguarding an organization’s digital assets and increasing network visibility. As security threats rise, a robust NSM system can help to detect, prevent, and counteract them.

It is key to employ the best NSM practices, stay updated on future trends, and understand its applications. With these considerations, network administrators can get the most out of their network security monitoring efforts.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About NordLayer
NordLayer is an adaptive network access security solution for modern businesses – from the world’s most trusted cybersecurity brand, Nord Security.

The web has become a chaotic space where safety and trust have been compromised by cybercrime and data protection issues. Therefore, our team has a global mission to shape a more trusted and peaceful online future for people everywhere.