Cyber Security
Practical cyber security for small businesses: website hardening, MFA, phishing and invoice fraud, backups and incident response.
This section covers practical cyber security for small businesses: website hardening, mfa, phishing and invoice fraud, backups and incident response. Articles are written for businesses in the US, UK and EU, with practical steps you can implement immediately.
What you'll find here
- →Step-by-step implementation guides
- →Checklists and practical templates
- →Actionable strategies you can apply directly
Content stats
- →3 published articles
- →Updated regularly with new content
- →Written by Anushka Dahanayake

Business Email Compromise and Invoice Fraud: How Small Businesses Stop It
A defensive guide to business email compromise and invoice fraud for small businesses: how the scams work at a high level, the red flags, the payment and email controls that stop them, and what to do in the first hours after a fraudulent transfer in the US, UK and EU.
Read article →

A Practical Incident Response Plan for Small Businesses (with Template)
How a 5 to 50 person business can plan for a cyber incident: who does what, the contact list to keep offline, a first-hour checklist, containment, evidence preservation, communication, recovery, breach-notification duties under GDPR, UK GDPR and US state laws, and a fill-in template.
Read article →

Passkeys and MFA for Small Teams: What to Choose and How to Roll It Out
A practical guide to multi-factor authentication for small businesses: SMS codes vs authenticator apps vs passkeys and security keys, which accounts to protect first, how to avoid lockouts with recovery codes and backup methods, and a phased rollout plan for a small team.
Read article →
