ANACAM MAGAZINE - n. 3 luglio | settembre 2024

57 LA SICUREZZA INFORMATICA NON È UNA PREOCCUPAZIONE PER UN ASCENSORISTA. Che me ne frega? Io lavoro con gli ascensori, non corro rischi di cybersicurezza. Quindi non rischio PERDITE FINZANZIARIE a causa di frodi, riscatti pagati per ransomware, interruzioni operative o costi per il ripristino dei sistemi e la mitigazione dei danni. Neanche temo DANNI ALLA REPUTAZIONE perché anche se mi rubassero i dati dei clienti, la fiducia dei miei clienti non sarebbe minata. Neanche temo INTERRUZIONI OPERATIVE perché, se si fermano i sistemi informativi, riesco a gestire il ciclo di manutenzione, fatturare e non subisco ritardi. Neanche temo se gli hacker causano il BLOCCO DEGLI IMPIANTI CONNESSI IN RETE tanto poi ci mando i tecnici e li faccio ripartire. Neanche temo SANZIONI LEGALI E REGOLAMENTARI, perché tanto il GDPR si applica ad aziende “più tecnologiche”. Io lavoro col cacciavite, non dovrò notificare al Garante la violazione subita. Neanche temo di perdere il VANTAGGIO COMPETITIVO se le anagrafiche dei MIEI clienti che ho acquisito in tanti anni, vengono rivendute in rete. Neanche temo i COSTI DI RIPRISTINO dopo un attacco informatico, che sarà? Due lire! Faccio un reset e me la cavo. QUINDI NON seleziono fornitori di soluzioni informatiche che adottano moderne tecnologie a protezione dei prodotti (come WAF, RMM, MDR, XDR,… ma che vorranno dire tutti ‘sti acronimi?) e SOPRATTUTTO NON mi affido a gruppi internazionali che • dedicano risorse e budget a TECNOLOGIE DI SICUREZZA avanzate; • hanno dei TEAM DI SICUREZZA dedicati giorno e notte (perchè gli hacker non dormono mai); • adottano INFRASTRUTTURE DI CONTROLLO DELLA SICUREZZA (Security Control Framework) in continua evoluzione per prevenire e contrastare qualsiasi nuova tecnologia usata dagli hacker; • investono in CERTIFICAZIONI DI SICUREZZA; • collaborano con gli ENTI DI SICUREZZA e condividono le informazioni sulle MINACCE GLOBALI; • hanno PIANI SOFISTICATI E TEST REGOLARI per essere pronti a tutto. AP System, NON produce soluzioni gestionali per ascensoristi da 40 anni e NON è parte del gruppo internazionale TSS Total Specific Solution quotato in borsa, con 170 business units in 27 Paesi, 7.100 dipendenti, 60.000 clienti e un fatturato di gruppo nel 2023 di 1,1 miliardi di euro. * L’autore di questo articolo NON è Stefano Vitale, informatico e amministratore delegato di AP System www.linkedin.com/in/stefanovitale stefano.vitale@apsystem.it COMPUTER SECURITY IS NOT A CONCERN FOR A LIFT OPERATOR. What do I care? I work with lifts, I don’t take cybersecurity risks. So I don’t risk FINANCE LOSSES due to fraud, ransomware ransom payments, operational disruptions or costs for system recovery and damage mitigation. Nor do I fear DAMAGE TO REPUTATION, because even if customer data were stolen, my customers’ trust would not be undermined. Nor do I fear OPERATIONAL INTERRUPTIONS, because if information systems stop working, I can manage the maintenance cycle, invoice, and suffer no delays. Nor do I fear if hackers cause the NETWORK CONNECTED SYSTEMS to STOP, because then I send in the technicians and get them up and running again. Nor do I fear LEGAL AND REGULATORY SANCTIONS, because the GDPR applies to ‘more technological’ companies anyway. I work with the screwdriver, I will not have to notify the Guarantor of the violation suffered. Nor do I fear losing the COMPETITIVE ADVANTAGE if the records of MY customers that I have acquired over many years are resold on the net. Nor do I fear the RECOVERY COSTS after a cyber attack, how much will it be? Two lira! I do a reset and get away with it. SO I do NOT select suppliers of IT solutions who adopt modern technologies to protect their products (such as WAF, RMM, MDR, XDR, ... what do all these acronyms mean?) and ABOVE ALL I do NOT rely on international groups that • dedicate resources and budgets in advanced SECURITY TECHNOLOGIES; • have dedicated SECURITY TEAMS available day and night (because hackers never sleep); • adopt ever-evolving SECURITY CONTROL INFRASTRUCTURES to prevent and counter any new technology used by hackers; • invest in SECURITY CERTIFICATIONS; • collaborate with SECURITY ENTITIES and share information on GLOBAL MENACES; • they have SOFISTICATED PLANS AND REGULAR TESTING to be ready for anything. AP System HAS NOT been producing management solutions for lift operators for 40 years and is NOT part of the international TSS Total Specific Solution group listed on the stock exchange, with 170 business units in 27 countries, 7,100 employees, 60,000 customers and a group turnover in 2023 of € 1.1 billion. * The author of this article is NOT Stefano Vitale, computer scientist and CEO of AP System

RkJQdWJsaXNoZXIy NDUyNTU=