Read more … Changes to the Swiss VAT Act Effective 1 January 2025
Cybercrime: It Can Happen to Any Business
Cybercrime is on the rise, affecting businesses of every size. Small and medium-sized enterprises (SMEs) are often particularly vulnerable, making stronger cybersecurity measures more important than ever.
The assumption that cybercriminals focus exclusively on large corporations is a misconception. Their goal is not necessarily to target the wealthiest companies but rather to identify weaknesses in information systems. The less secure a system is, the easier it becomes to compromise. That is why every business should regularly assess its cyber risks and ensure that its IT infrastructure is properly protected.
Organisational Measures
Effective cybersecurity begins with a thorough risk assessment—a responsibility that starts at management level.
Based on this assessment, businesses can take targeted steps to eliminate vulnerabilities. It is essential that responsibilities for each measure are clearly defined, both internally and in cooperation with external service providers such as IT partners.
Employee awareness is equally important. Staff should receive regular training on topics including:
- Handling sensitive data securely
- Creating and managing strong passwords
- Access rights and user permissions
- Recognising and responding to suspicious activities, such as phishing emails
- Cybersecurity best practices when working remotely or from home
Technical Measures
No IT system can be made completely immune to cyberattacks. However, the stronger the technical safeguards, the lower the likelihood that cybercriminals will discover and exploit vulnerabilities.
Every business should review the following areas together with its IT partner and optimise them where necessary:
- Regular data backups
- Antivirus and malware protection
- Firewalls
- Timely hardware and software security updates
- Email filtering and spam protection
- Secure remote access
- Network segmentation for larger organisations
Protecting Your SME
Detailed guidance on implementing organisational and technical cybersecurity measures is available in the "Information Security for SMEs" guide published by the Swiss Federal Office for Cyber Security.