Introduction

The organisation is thriving, built from the ground up and with many loyal customers. It hasn’t been easy –surviving recessions, global pandemics and even world wars. Then one day, it all falls apart…

An employee logs in using their password – but it’s weak and easily guessed. Behind the scenes, the credentials are exploited and this unfolds into a catastrophic breach. Within hours, systems are encrypted, files vanish, operations grind to a halt. No coming back, despite over 150 years of service – more than 700 jobs are lost. 

This introduction is based on a security incident that impacts a long-established UK logistics firm. In this article we focus on the theme of access management – we reference a case study, provide general guidance and recommendations.

 

What is Access Management?

Access management relates to the control of who has access to organisational data, systems and services. The aim is to ensure only authorised people can access information, and that access is appropriate to the role. 

 

Relatable Case Study

  • Organisation: Knights of Old (UK-based logistics firm)
  • Incident: In 2023, the company suffered a catastrophic cyber security incident. The attackers gained access to internal systems using a weak, easily guessed employee password. They deployed ransomware, encrypted files, escalated privileges, and deleted critical backups – both local and cloud-based
  • Financial Implications: Business operations were unrecoverable. Despite having cyber insurance, the organisation could not withstand the financial and operational impact. The company went into administration and over 700 employees lost their jobs.
  • How it Links to Access Management:
    • Password strength and policy – data breaches can stem from a weak password. A strong password policy promoting unique passwords can help.
    • Multi-factor authentication (MFA) – Lack of MFA can allow attackers to exploit credentials using tactics such as brute force (password guessing) and credential stuffing (attempting exposed passwords from other systems and breached)
  • Source Information: https://www.bbc.co.uk/news/articles/cpvren4je77o

IT warning after hackers close 160-year-old firm

 

General Guidance

  • Use unique accounts and avoid sharing login capabilities
  • Enable multi-factor authentication (MFA) wherever possible – mandate for cloud services
  • Apply least privilege – only providing access that is necessary based on role
  • Regularly check and remove unused accounts 
  • Enable device locking mechanisms and sign-out of services when not being used

 

Recommended Actions

  1. Keep it simple and secure
  2. Use a risk assessment and your risk appetite to help drive the requirements for your organisation 
  3. Use unique and strong credentials – provide training / education to support
  4. Apply role-based access control – to restrict access based on requirements 
  5. Use MFA where possible – for an extra (but necessary) layer of security control 
  6. Use a separate administrative account – use a standard account for day to day activity
  7. Seek guidance and support from an IASME Certification Body and Certified Information System Security Professional (CISSP) – such as RB Consultancy Ltd

 

How We Help

At RB Consultancy Ltd, we support organisations by:

  • Providing templates, guidance and experience to support
  • Explaining what security measures are available and how they can help
  • Collaborating to implement controls to support the requirements
  • Assessing and issuing certifications – such as Cyber Essentials and Cyber Assurance
  • Contact us for consultancy and certification support

 

Conclusion

The devastating collapse of Knights of Old, helps highlight the importance of access management. A single weak password can be the difference between continued business success and closure. A lack of multi-factor authentication and poor access controls can allow attackers to halt operations and delete critical data. Encouraging strong / unique credentials, least privilege and regular account reviews can help avoid major security incidents. 

RB Consultancy Ltd helps organisations understand the importance of access management – we support the implementation of appropriate measures to help build cyber resilience. We are an IASME Certification Body and NCSC Assured Service Provider who provide services to empower and protect organisations. Holding CISSP and ISO 27001 lead implementer certification, you can Contact Us for assistance with cyber security resilience.

 

This blog is written by Remo Belisari, Managing Director of RB Consultancy Ltd. He is an experienced cyber security professional and cyber advisor. Remo holds certifications in CISSP, ISSAP, ISO 27001, Cyber Essentials, and IASME Cyber Assurance. He has many years of experience in IT and cybersecurity. He has supported organisations worldwide. His work includes helping a Fortune 500 company in the USA and over 100 organisations across the UK. The views in this blog are his own. They do not necessarily reflect the views of RB Consultancy Ltd, its clients, partners, or affiliates. The content is for general information only. 

 

Other articles you might find useful.

Cyber Security Consultancy: Incident Response

Cyber Security Consultancy: Incident Response

Incident response planning is the difference between a contained breach and a business-ending disaster. Using the 2014 Sony Pictures attack as a case study, we explain what incident response is, why it matters, and how to strengthen cyber resilience.

Read More »
Cyber Security Consultancy: Change Management

Cyber Security Consultancy: Change Management

Cyber Security Consultancy: Change Management A single change can bring multiple organisations to a standstill – the July 2024 CrowdStrike incident proved this, causing widespread outages across airlines, hospitals, and banks without any threat actors involved. Effective IT change management and business continuity planning require thorough testing, risk assessment, and rollback procedures before changes go […]

Read More »
Cyber Security Consultancy: Physical and Environmental Protection

Cyber Security Consultancy: Physical and Environmental Protection

Cyber Security Consultancy: Physical and Environmental Protection Cyber resilience goes beyond firewalls and passwords, physical security controls and environmental risk management are equally critical to protecting your organisation. Storm Dennis showed how flooding can destroy server rooms, backups, and operations in hours, highlighting why business continuity planning must account for real-world threats like fire, flood, […]

Read More »
Cyber Security Risk Management: Supply Chain Security & Building Resilience

Cyber Security Risk Management: Supply Chain Security & Building Resilience

Cyber Security Risk Management: Protecting Against Supply Chain Security Risks Effective cyber security risk management is not about eliminating every threat – it’s about understanding what could go wrong and putting appropriate measures in place to protect what matters most. The 2020 SolarWinds attack exposed critical supply chain security risks, with thousands of organisations compromised […]

Read More »
Cyber Security Consultancy: Policy and Data Protection

Cyber Security Consultancy: Policy and Data Protection

Introduction The team confirms that information security policies are good. Wireless networks are secure, endpoints are protected, and access rights are documented. But then it happens… Fraudulent activity is identified across customer accounts. Then the calls come. Many customers are impacted. Forensics teams are involved. A data breach is traced to an insecure wireless access […]

Read More »
Get started today

Ready to get certified and
reduce your cyber risk?

Book a free 30-minute discovery call with Remo. No sales pitch, no pressure — just a straightforward conversation about what you need and whether we are the right fit to help.

About RB Consultancy Ltd

Remo Belisari

Founder & Managing Director, RB Consultancy Ltd

Remo Belisari is a Chartered Cyber Security Professional with over a decade of experience advising organisations from start-ups to multinationals across the UK, Europe, Asia and the USA.

Through RB Consultancy Ltd he delivers high-quality, cost-effective and practical cyber security services that support compliance, strengthen resilience and enable business growth.

Remo holds the most respected certifications in the field and is personally involved in every client engagement, ensuring clear and valuable outcomes.

Personal Qualifications

Company Accreditations

Remo Belisari, founder of RB Consultancy
NCSC Assured Cyber Advisor (Cyber Essentials) Cyber Essentials Assessor Cyber Essentials Plus Assessor IASME Cyber Assurance Assessor Vulnerability Assessment Plus (VA+) Certified Defence Cyber Certification - Level 0 Assessor Defence Cyber Certification - Level 1 Assessor
RB Consultancy shield logo blue

RB Consultancy Ltd

Pioneer House, Pioneer Business Park,
North Road, Ellesmere Port, Cheshire,
CH65 1AD

NCSC Assured Service Provider
IASME Certification Body
Chartered (ChCSP) · CISSP · ISSAP