Advertisement

Technology: RDOS receives low security grade in wake of ransomware cyberattack

Following a ransomware cyberattack earlier this year, information technology consultants have recommended that the Regional District of Okanagan-Similkameen completely rebuild its technical infrastructure. File photo

The Regional District of Okanagan-Similkameen was woefully unprepared for a ransomware cyberattack that forced the local government to take down their systems for over a week earlier this year, according to a recent report from IT consultants.

Michael Rogers with TMC Consulting presented his findings to the regional district (RDOS) board at the Dec. 17 corporate services committee meeting.

“It’s not pretty,” Rogers said, echoing a statement from Bill Newell, CAO of the RDOS.

The consultants recommended completely rebuilding the RDOS technical infrastructure. The delay in restarting the regional district’s systems earlier this year was due to a lack of failover systems, or back-up servers and systems.

“When you were attacked, the fact that you didn’t have any capability for your critical systems to failover in some respects made the problem worse,” Rogers said.

Story continues below advertisement

The RDOS has also not had any external penetration tests, where ethical hackers try and hack into the system to point out problem areas. The report also outlined a lack of capability around security issues and the regional district’s response to breaches of security.

“Had you seen this before you actually had your cyberattack, you would heard us say you don’t have adequate security capabilities and you don’t have failover capabilities for your systems,” said Rogers.

“Unfortunately, you did have that event and I think you’ve all kind of seen and felt the effects of that.”

Click to play video: 'Some services restored after TransLink ransomware attack'
Some services restored after TransLink ransomware attack

The regional district’s geographic size, over 10,000 square kilometres, also contributes to some issues when it comes to information technology.

“You really don’t have adequate resources to support a network that is that vast,” Rogers said.

Story continues below advertisement

“When we look at your overall approach to connecting your locations, what we’ve observed there is you don’t really have a unified approach, so there’s different services in different locations and they all have their own way of connecting.

“You don’t have the ability to monitor and manage these components remotely, which is also an area of concern.”

The RDOS could better use its funds for telecommunications and is missing opportunities to reduce costs and improve service with more uniform systems, the consultant’s report found.

Click to play video: 'Cyber security experts say ransomware data breach in health care sector is a lesson for everyone'
Cyber security experts say ransomware data breach in health care sector is a lesson for everyone

While the regional district is awaiting a post-mortem report on the cyberattack, expected in early 2021, the consultants recommended completely rebuilding the district’s IT systems.

“What your IT department has done is they’ve kind of reactivated many of your systems just to get them running,” said Rogers.

Story continues below advertisement

“I don’t think that I would assess that and say ‘Well, you’ve rebuilt them.’ There’s a difference between rebuilding and improving and just getting them back up and running again.

“Obviously the most important is rebuilding your infrastructure. There are some immediate things that need to happen in 2021 to improve security and reliability. But on an ongoing basis, there will continue to be upgrades that you need to do in order to keep things secure and keep them reliable.”

Click to play video: 'Tips to protect your devices from ransomware malware'
Tips to protect your devices from ransomware malware

The regional district has received a wake-up call from both the cyberattack and the demands on technology arising from COVID-19, according to Karla Kozakevich, RDOS board chair.

“That ransomware attack, and COVID, has really kicked us in the butt and let us know that we need to improve our technology. We were really behind on it, frankly, so we are going to move forward with better technology and better security,” Kozakevich said.

Story continues below advertisement

She noted recent improvements to allow the regional district to livestream their meetings, an improvement which came about due to the ongoing pandemic, as a slight silver lining during a dismal year.

“With COVID, as much as it was a bad thing,” said Kozakevich. “I guess the good side of it was it forced us to get with the times.”

Click to play video: 'Saint John dealing with ransomware virus in weekend cyberattack'
Saint John dealing with ransomware virus in weekend cyberattack

Sponsored content

AdChoices