...

October Is Cybersecurity Awareness Month

Posted by: CMR September 15, 2026 No Comments

October is Cybersecurity Awareness Month. This month, the public and private sectors are encouraged to work together to raise awareness of the importance of cybersecurity. October 2026 marks the 23rd Cybersecurity Awareness Month. This event serves as a reminder that businesses must stay cybersecure to safeguard company data, protect customers’ personal information and ensure employee privacy.

How to Participate

This month (and every month), here are four strategies from the Cybersecurity and Infrastructure Security Agency (CISA) and the National Cybersecurity Alliance that businesses and their employees can use to stay cybersecure:

  1. Use strong passwords and password managers. Cybercriminals can often determine or guess simple passwords. Businesses should require employees to use strong passwords for all work-related accounts. Passwords should be at least 16 characters long, random and unique for each account. The use of password managers should also be encouraged or required. These easy-to-use programs store passwords and fill them in automatically when prompted.
  2. Implement multifactor authentication (MFA). MFA is a layered approach to securing data and applications. This tool requires a user to present two or more credentials to verify their identity for login. MFA enhances security because even if one credential is compromised, unauthorized users will be unable to meet the second authentication requirement and thus access the targeted physical space, computing device, network or database. Businesses should enable MFA on any site or service that offers it.
  3. Recognize and report phishing. Many cyberattacks result from a recipient of a phishing message accidentally downloading malware or giving sensitive information to a cybercriminal. Therefore, employees should know the signs of a phishing attack and be instructed not to click links or engage with phishing attempts. Instead, employees should recognize them by their use of alarming language or offers that are too good to be true. Phishing attempts should be reported using the appropriate IT protocols. If a business suspects it has been the victim of a phishing attack (or another type of cybercrime), it should immediately report the incident to its insurance partners and the appropriate government authorities. 
  4. Update software. Businesses should ensure their software programs stay up to date by installing security updates as soon as possible. These updates close security vulnerabilities and help limit potential avenues for cyberattacks.

For More Information

For more information on Cybersecurity Awareness Month, review CISA’s webpage for the observance. Contact us today for additional cybersecurity guidance and cyber insurance solutions.

Article Published By: Zywave, Inc.

Author: CMR