CyberNews from JustWorks – Issue #2

Keeping you up to date on the latest in tech and cyber. Feel free to forward to interested colleagues and acquaintances.


Cyber Gets Serious

Cybersecurity risk is the #1 concern for businesses large and small according to the 2021 Travelers Risk Index.

Our analysis of a cybersecurity questionnaire from Travelers Business Insurance shows responses are required for 56 requirements from the NIST 800-171 standard, including 40% classified as Advanced in the CMMC framework. Of those 39 require enhanced JustWorks management, and 17 require specific internal policies and processes.

It’s time to get serious about cyber. Every business needs a security plan and a continuity plan for I.T. — not just for insurance.

The SecureWorks add-on plan for JustWorks customers is now available with 4 service levels to suit your business needs. Let’s get a SecureWorks plan started for your business.

Making IT Security Simple | JustWorks
Making IT Security Simple | JustWorksjustworks.net
JustWorks does it again! We have been Making IT Simple for over 25 years and now we are making Cyber Security & Compliance simple too. SecureWorks is the new add-on service that turns a confusi…

Cooling IT

Keeping IT systems cool is no laughing matter. The recent heatwave in the UK caused systems at 2 major hospitals to literally melt down! They have been offline for over 2 weeks and porters are running around with test results on bits of paper, trying to find patients!

Good design, up-to-date equipment, and active monitoring are keys to preventing this kind of problem. That’s why these principles are baked (excuse the pun) into every JustWorks design.

What is “zero trust” ?

Techies love buzzwords and the term “zero trust” is the buzz of 2022. But what does it mean?

Zero trust refers to a way of organising computer systems in which no one and no devices are assumed to be trustworthy.

On a typical office network the PCs on everyone’s desks are assumed to be computers that have already been configured to meet the business’ security standards. So there are few, if any, limits placed on what they talk to or how they respond to other devices on the network.

In a “zero trust” environment every computer treats every other device as a stranger, until proven otherwise. This helps stop, or at least control, the spread of malicious code across a network.

The spread of ransomware in recent years means that very few networks are still configured to be “all trust” nowadays. Most are somewhere in the middle. If you still have to use a VPN to connect to your office, that’s probably because the office systems are too trusting and so they need to be more strongly protected (even though it makes life harder for users).

If you’d like to know how close to “zero trust” your business systems are, give us a call on 866-JUSTWOR to email info@justworks.net

CyberNews from JustWorks – Issue #1

Hello and welcome to the new newsletter from JustWorks.

We will keep you up to date on the latest cybersecurity and information technology developments. Just what you need to know, when you need to know it.

We will keep this simple (just like our services). If you have any questions or would like any futher information just reply to let us know.

In this edition: planning, zooming, and safety at home.

Do forward this on to anyone else you know that needs to keep up on the latest cybersecurity for business.


Ukraine, crypto, and cyber attacks

Russia’s aggression in Ukraine has coincided with a reduction in cyber attacks (and, tangentially, in crypto currency values).

Not what we expected.

Perhaps the “Fancy Bears” are distracted with trying to take down Ukraine’s IT systems and so there’s been less focus on attacking the rest of us? Just a guess, but in any case now is the time to review all the potential weak points in your cyber security plan.

They will be back, you can be sure of that!

If you haven’t got a cybersecurity plan: you don’t know how [in]secure you are. Get started on a plan now!

Zoomin’ IT

Covid made “zoom” a verb. Shorthand for online video meetings, “zoom” has become a household word. Now zoom can be your phone system too.

Building on the global infrastructure they put in to deliver high quality video, zoom have easily been able to add voice service that is just as clever at managing itself as the speed of your Internet connection changes second by second.

With direct, private peering with the world’s public telephone networks, zoom offers high levels of security for their phone service.

But, like everything else in the cloud: it’s only as secure as you configure it to be!

If (when) you do switch to an online phone system, get an expert in identity management to set it up properly.

Stay cybersafe at home too!

Cybersecurity doesn’t stop at the office door. Make sure your personal systems at home are protected too — you’re only as secure as your weakest point.

Get Sophos Home for all your home computers, especially the kids! Covers up to 10 computers for less than the cost of one fancy coffee a month.

Making IT Security Simple


JustWorks does it again! We have been Making IT Simple for over 25 years and now we are making Cyber Security & Compliance simple too. SecureWorks is the new add-on service that turns a confusing and complicated problem into a structured service that allows JustWorks customers to achieve the highest standards for the lowest cost. NIST/CMMC compliance programs typically cost tens or even hundreds of $000s, involve a bevy of consultants making life as complicated as possible, to justify absurdly high fees. Not JustWorks. We make Make IT Security Simple – and low cost!

Many JustWorks customers are finding that cyber-insurance and supply chain requirements are requiring more stringent security controls and that they need to report more formally on their compliance level. To meet these requirements we are launching a SecureWorks service add-on that can be tailored to the compliance objectives of your organization. (Brochure download)

SecureWorks includes 24x7x365 Security Operations Centre monitoring of your network, firewalls and computers with proactive investigations of any security threats. In order to meet the NIST 800-171/CMMC 3.0 Foundational cyber-security requirements we are offering JustWorks customers a specially priced package that helps you self-certify compliance with those requirements.

As part of the SecureWorks service we will meet with your team for regular Compliance Reviews to manage progress towards with your chosen objective. We provide an online portal through which we can jointly manage the development of your policies, the implementation of secure practices, and produce reports and plans to satisfy compliance status requests.

For JustWorks customers that add SecureWorks before end of 2022, we are offering 50% discount on the startup fees, and a free compliance review.

What’s included in SecureWorks:

  • Exclusive SecureWorks FrameWork : online CyberSecurity Compliance Management web portal
  • Multiple simultaneous compliance objectives across requirements and time frames
  • On demand reporting and production of:
    • System Security Plan
    • Security Incident Response Plan
    • IT Recovery & Continuity Plan
    • Plan of Action & Milestones (POA&M)
  • Event logging for incidents and reviews
  • NIST 800-171 Controls and CMMC 3.0 Practices matrix allowing selection of compliance level objectives for right now, and for development towards higher levels in the future
  • Compliance Reviews for joint progression of compliance
  • Policy directives and templates to speed up the development of company policies
  • 24x7x365 Security Operations Center (SOC) monitoring with proactive threat hunting*
  • Policy-based control of content across multiple cloud content repositories*

The normal JustWorks services provide the controls needed to comply with the CMMC 2.0 Foundational compliance level. SecureWorks adds structured implementation, progression and reporting capabilities to those services.

SecureWorks Multi-Compliance Dashboard

SecureWorks Advanced

For NIST 800-171 and CMMC 3.0 Advanced level compliance, SecureWorks Advanced packages can include security upgrades* to the various cloud services that are part of every modern business’ IT infrastructure. JustWorks cloud file service can be upgraded to include project folders, 100GB file size, mobile PDF editing, unlimited retention, automated permissions auditing, extra ransomware protection, workflows, and unusual behavior detection to guard against malware and intellectual property loss*. Compliance policies can be extended to include data stored on cloud services such as Office365 and Google Workspace as well as the servers in your office*. JustWorks cloud identity service can be upgraded to Adaptive Authentication* that makes company-wide adoption of Multi-Factor Authentication (MFA) responsive and effective.

Every business needs to be on a journey to better cyber security, and proving that can lower insurance costs and help you win new customers as part of a secure supply chain.

Call us today and let’s get started on a journey to better cyber security together. 408-369-7585.

* additional licensing required

Every Cloud Needs a Pilot

In 1996 we pioneered the managed services concept and helped create the Managed Services Provider model that so many others claim to be doing today, but while they were catching up we were driving ahead and recognizing that for some business the day was coming when racks of servers in their offices would be a thing of the past.

That day has arrived. Starting this year JustWorks is now delivering completely cloud-based I.T. infrastructure for businesses with no physical servers, no Active Directory™, and no worries!

Incredibly efficient, effective and simple cloud services that span the range from file services to directory to telephony and online meetings are now all available from JustWorks with 0 delay, $0 startup and 0 commitment. Everything works together, everything is secure, and everything is managed by your very own cloud pilot – it just works!

Navigating this new cloud world is not for the faint of heart, littered with the wreckage of failed vendors and integration turbulence. That’s why you need an experienced pilot who can navigate the skies with you every step of the way. We Make IT Simple. Just step on board for a fixed monthly fee per user and the next thing you know you’ll be relaxing in the comfort of your very own private jet through the clouds, answering your calls anywhere in the world, opening offices with just a WiFi access point, and onboarding new employees in minutes.

Contact us if you’re interesting in joining our growing list of cloud enabled customers.