Skip to content
Cyber Security Firms

Defenses and Tools

Firewalls, multi-factor authentication, encryption, backups and password managers: what each one does, what it does not, and which ones you need.

11 resources

How to Create a Strong Password That Actually Holds Up
Beginner

How to Create a Strong Password That Actually Holds Up

Most password advice is a decade out of date. The rules that replaced it are shorter, easier to follow, and written down in a federal standard you can check.

14 min read
Two-Factor Authentication: How 2FA Works and Which to Use
Beginner

Two-Factor Authentication: How 2FA Works and Which to Use

A password is one secret, and secrets travel. Two-factor authentication adds a second proof that whoever stole the first one does not have, and which kind of second factor you pick matters more than anyone tells you.

14 min read
What Is a Firewall? How It Works and What It Misses
Beginner

What Is a Firewall? How It Works and What It Misses

A firewall decides which network traffic gets through and which does not. That is a narrower job than most people assume, and knowing exactly where the line falls is what tells you which other defenses you still need.

14 min read
What Is a Password Manager? How It Works and the Catch
Beginner

What Is a Password Manager? How It Works and the Catch

A password manager is an encrypted vault that invents a different password for every account and types it for you. The reason to use one is arithmetic, and the reasons not to are worth hearing before you commit.

20 min read
What Is Encryption? How It Works and the Two Types
Beginner

What Is Encryption? How It Works and the Two Types

Encryption is running on almost everything you touch, and the only decision that ever matters is who holds the key. Here is how it works, what the two types are for, and where it quietly stops protecting you.

13 min read
What Is a SOC? Inside a Security Operations Center
Intermediate

What Is a SOC? Inside a Security Operations Center

A security operations center is the team that answers the alert, not the software that raised it. The distinction decides almost everything about what one costs and whether yours works.

14 min read
What Is EDR? Endpoint Detection and Response Explained
Intermediate

What Is EDR? Endpoint Detection and Response Explained

An EDR agent watches every process that starts on a laptop or a server, keeps the record, and can cut the machine off the network. The part nobody sells you is that someone still has to read what it finds.

16 min read
What Is Penetration Testing? The Phases, Types and Limits
Intermediate

What Is Penetration Testing? The Phases, Types and Limits

A penetration test is an authorized attack on your own systems, run by someone you pay to succeed. What varies enormously is the scope, the skill and what you get back, which is why three quotes for the same request arrive at three prices.

13 min read
What Is SIEM? How Log Data Becomes a Security Alert
Intermediate

What Is SIEM? How Log Data Becomes a Security Alert

Every system you run is already writing down what it did. A SIEM is the product that reads all of it at once and tells you which three lines out of nine million belong together.

15 min read
What Is Vulnerability Scanning? Types and How It Works
Intermediate

What Is Vulnerability Scanning? Types and How It Works

A vulnerability scan tells you what is wrong with your systems in a few hours. Working out which of the four hundred findings an attacker would actually use is the part that decides whether the scan was worth running.

16 min read
What Is Zero Trust? The Principles, Pillars and Limits
Intermediate

What Is Zero Trust? The Principles, Pillars and Limits

Zero trust is a set of design principles, not a category of software, and the distance between those two things is where most security budgets go wrong. Here is what the model actually says, who defines it, and what it does not solve.

12 min read