Home Office Security

Home | Windows Security | Email Security | Network-WiFi Security | Online Security | Backup Methods | Threats & Vulnerabilities | Passwords | Tools

Windows Basic Security

Windows comes by default, with a fair amount of security. However, there are a few goodies installed or configured on your computer that are used for marketing and other statistical purposes. A lot of people would consider this data gathering as an invasion of privacy. Below are a few simple methods that will help prepare for a system failure, preserve your privacy and reduce the chances of a cyber attack.

1. Create a System Restore Point

One of the many realms of security is restoration. Windows 10 gives you the ability to restore your system in case things go south during maintenance or an install that went wrong. If your computer crashes, you can restore your computer back to where it was when you created the restore point.
  1. In the search box on the taskbar, type "Create a restore point", and select it from the list of results.
  2. On the System Protection tab in System Properties, select Create.
  3. Type a description for the restore point, and then select Create, then OK.
  4. Click here to see how to restore from a restore point.
This basically takes a snapshot of your computer settings. If an event such as installing software or hardware causes a system failure, you can restore your settings from this snapshot.

Keep in mind that this does not take place of a backup.

Create a Restore Point

2. Verify the Users on your Windows Computer

By default, the account created when you first login is given Administrative (full access) rights to the computer. This can be dangerous in the event the account is compromised. It is recommended that you create a user account without Administrator access for daily use. The Administrator account should only be used when making modifications to the system or installing software. You don't want to be surfing the Internet using an account that has administrative rights to your computer. To view your accounts, follow the steps below.
  1. Right click Start and select Settings. Click on accounts.
  2. Click "Family & Other Users to see a List of local accounts.
  3. Click on a user to view or change the account type. Most accounts should be set to "Standard User".
Check local accounts

3. Turn off the Adware

By default, Microsoft OS comes with the ability to track your location and online behavior for marketing purposes. They collect your information and is used to sell advertising. This can be turned off within settings.
  1. Go to Start, then Settings.
  2. Click on the Privacy icon.
  3. Click on Location and then click the on-switch icon to turn location tracking off. This will turn off the tracking feature.
  4. In the Privacy settings, turn off the setting for "Let apps use advertising ID" and "make ads more interesting to you based on your activity".
  5. You can turn off Camera access but this may affect web-conferencing apps. Here you can select which apps can access your camera.
Turn Off the Adware

4. Passwords

Passwords seem like a simple thing but they are usually the weakest line of defense. Hackers have many tools that are used to guess your password. Make sure you follow the proper methods. Passwords are the keys to your castle.
  1. Use a complex password.
  2. Never use one password for all systems.
  3. Use a password vault.
  4. Use Multi-Factor Authentication when possible.
  5. Never share your passwords.
  6. More on passwords.

5. Enable Windows Anti-virus and Firewall.

Windows 10 comes with a pretty solid Anti-virus and Firewall component. As part of the Windows Defender Security you can modify these tools which by default are activated. Please note that it is recommended that you do not have two firewalls and/or Anti-Virus programs running as they can work against themselves. For instance, If you are using Windows Anti-virus, you should not also be running Norton Anti-virus. You can change or view the settings.
  1. In the search bar type "Control Panel", then click System and Security.
  2. Click "Windows Defender Firewall".
  3. Here you can view the status of your firewall.
  4. Click "Turn Windows Defender Firewall on or off" on the left panel if you need to change it.
Turn On your Firewall

6. Update your Apps and Drivers.

One of the easiest ways to protect your system is to make sure all of your drivers and software are up to date. As time goes by, attackers discover vulnerabilities in software. Once they are discovered, they are quickly published by the software companies to warn people. Unfortunately they are counting on users to update the software before attackers read and exploit the vulnerability. There is an automated process but for peace of mind, you can run this manually. Update drivers and software.

7. Operate under the principle of least privilege.

In most instances of malware infection, the malware can operate only using the privileges of the logged-in user. To minimize the impact of a malware infection, consider using a standard or restricted user account such as a non-administrator account for day-to-day activities. Only log in with an administrator account—which has full operating privileges on the system—when you need to install or remove software or change your computer’s system settings.