---
title: Does Your Business Stand a Chance Against Advanced Persistent Threats?
description: Don't let advanced persistent threats linger, undetected, on your network stealing sensitive, critical data before being discovered.
image: https://www.resilientiq.com/hubfs/Blog_Images/What-Every-Business-Needs-to-Stand-a-Chance-Against-Advanced-Persistent-Threats.jpg
---

[![NEW_ResilientLogoShadow_FINALwhite.png](https://www.resilientiq.com/hs-fs/hubfs/Resilient_Logos/NEW_ResilientLogoShadow_FINALwhite.png?width=1210&height=254&name=NEW_ResilientLogoShadow_FINALwhite.png "NEW_ResilientLogoShadow_FINALwhite.png")](http://resilientiq.com)

![Resilient-Advanced-Network-Solutions 4.jpg](https://www.resilientiq.com/hs-fs/hubfs/Blog_Images/Resilient-Advanced-Network-Solutions%204.jpg?width=1920&name=Resilient-Advanced-Network-Solutions%204.jpg "Resilient-Advanced-Network-Solutions 4.jpg")

# Networking Intelligence

November 21, 2016

# Does Your Business Stand a Chance Against Advanced Persistent Threats?

![authorIcon](http://www.sparkreaction.com/hubfs/Oceania%20Theme%202016/Images/authorIcon.png) By [Resilient Intelligent Networks](https://www.resilientiq.com/blog/author/resilient-intelligent-networks) ![topicIcon](http://www.sparkreaction.com/hubfs/Oceania%20Theme%202016/Images/topicIcon.png) [advanced persistent threats](https://www.resilientiq.com/blog/topic/advanced-persistent-threats), [security fabric](https://www.resilientiq.com/blog/topic/security-fabric)

[![What-Every-Business-Needs-to-Stand-a-Chance-Against-Advanced-Persistent-Threats.jpg](https://www.resilientiq.com/hubfs/Blog_Images/What-Every-Business-Needs-to-Stand-a-Chance-Against-Advanced-Persistent-Threats.jpg) ](https://www.resilientiq.com/blog/does-your-business-stand-a-chance-against-advanced-persistent-threats)

What do JPMorgan Chase, Target, Anthem and the U.S. Office of Personnel Management (OPM) have in common?

They all fell victim to advanced persistent threats (APTs) — sophisticated malware that lingered undetected on their networks, siphoning off reams of sensitive, critical data before being discovered.

APTs differ from traditional malware in that they target a specific victim, are coded to bypass that victim’s security controls and once inside, use stealth to evade detection, steal sensitive data and cover their tracks.

![What-Every-Business-Needs-to-Stand-a-Chance-Against-Advanced-Persistent-Threats.jpg](https://www.resilientiq.com/hs-fs/hubfs/Blog_Images/What-Every-Business-Needs-to-Stand-a-Chance-Against-Advanced-Persistent-Threats.jpg?width=541&height=220&name=What-Every-Business-Needs-to-Stand-a-Chance-Against-Advanced-Persistent-Threats.jpg)

They use a variety of advanced techniques, from [phishing](https://www.resilientiq.com/blog/5-phishing-scams-you-dont-want-workers-to-fall-for) and encrypted communications to kernel-level rootkits and [zero-day vulnerabilities](https://www.resilientiq.com/blog/common-sandbox-evasion-techniques) to slide past conventional security controls — making them exceptionally difficult to detect. Many times, victims don’t even know they were breached until they discover their sensitive information available for sale on the Internet. In fact, it can take [six months or more, on average](http://www.zdnet.com/article/businesses-take-over-six-months-to-detect-data-breaches/), for a breach to be detected.

To defend against APTs, organizations can’t rely on traditional signature-based security tools alone. Instead, they must:

- **Deploy layered security**: To increase the chances of detection, organizations need to layer on different controls, combining antivirus, IDS/IPS and SIEM systems with advanced behavior-based controls like next-generation firewalls and sandboxing. With programs for vulnerability/patch management, endpoint protection and authentication/ identity management, this approach ensures attacks that evade one control are stopped at the next, or at least slowed to the point where they can be detected.
- **Educate employees**: Employees can’t detect and deflect attacks if they don’t know the warning signs. Implementing a good security awareness program helps them identify possible phishing or social engineering scams and know how to report attacks so they can be stopped in their tracks.
- **Plan an incident response strategy**: Most experts agree it’s not if but when you’ll be breached, and that means companies need a solid incident response plan in place to recognize and shut down new attacks quickly, minimize damage and stop further leakage.

The idea is to slow attacks down, stop what you can and minimize the effects of a breach on brand and reputation.

**[You may also like: 6-Point Checklist For Cybersecurity Awareness Month >>](https://www.resilientiq.com/blog/6-point-checklist-for-cybersecurity-awareness-month)**

## What Is An Advanced Threat Protection Framework?

Our partner Fortinet knows the challenges today’s APTs present. It designed its Advanced Threat Protection (ATP) framework to provide the high degree of visibility and collaboration needed to protect, detect and mitigate even the most sophisticated APTs.

Fortinet weaves together signature- and behavior-based network and endpoint controls in a security fabric that enables each tool to  address its portion of network security and collaborate with other tools in the fabric.

It also uses advanced sandboxing to test and identify both known and zero-day threats, build new signatures and communicate those findings to all other tools in the fabric. Consequently, attacks that fly under the radar of a single security solution become amplified and detectable, by bringing together small reported anomalies to build a centralized, cohesive picture of attack.

With Fortinet’s ATP framework in place, you can ensure all security tools work in concert to provide end-to-end visibility, share intelligence and respond quickly to attacks, all while minimizing risk.

A Fortinet partner, Resilient can deliver an ATP framework as part of a cohesive security fabric platform. [Learn more](https://www.resilientiq.com/).

[![Fortinet Security Fabric](https://hubspot-no-cache-na2-prod.s3.amazonaws.com/cta/default/703198/9e412245-fe3a-48dd-a33f-59c25cf3527b.png)](https://hubspot-cta-redirect-na2-prod.s3.amazonaws.com/cta/redirect/703198/9e412245-fe3a-48dd-a33f-59c25cf3527b)

 SHARE THIS STORY [**](https://www.facebook.com/sharer/sharer.php?u=https://www.resilientiq.com/blog/does-your-business-stand-a-chance-against-advanced-persistent-threats&title=Does%20Your%20Business%20Stand%20a%20Chance%20Against%20Advanced%20Persistent%20Threats?&picture=http://cdn2.hubspot.net/hubfs/703198/Blog_Images/What-Every-Business-Needs-to-Stand-a-Chance-Against-Advanced-Persistent-Threats.jpg&description=Don't%20let%20advanced%20persistent%20threats%20linger,%20undetected,%20on%20your%20network%20stealing%20sensitive,%20critical%20data%20before%20being%20discovered.) | [**](https://twitter.com/intent/tweet?source=https://www.resilientiq.com/blog/does-your-business-stand-a-chance-against-advanced-persistent-threats&text=Does%20Your%20Business%20Stand%20a%20Chance%20Against%20Advanced%20Persistent%20Threats) | [**](http://www.linkedin.com/shareArticle?mini=true&url=https://www.resilientiq.com/blog/does-your-business-stand-a-chance-against-advanced-persistent-threats&title=Does%20Your%20Business%20Stand%20a%20Chance%20Against%20Advanced%20Persistent%20Threats?&summary=Don't%20let%20advanced%20persistent%20threats%20linger,%20undetected,%20on%20your%20network%20stealing%20sensitive,%20critical%20data%20before%20being%20discovered.)

[NEXT POST **](https://www.resilientiq.com/blog/6-cybersecurity-predictions-for-2017)

### Search



### Recent Posts

### Posts by Topic

- [network security (29)](https://www.resilientiq.com/blog/topic/network-security)
- [employee it policy (15)](https://www.resilientiq.com/blog/topic/employee-it-policy)
- [security fabric (13)](https://www.resilientiq.com/blog/topic/security-fabric)
- [ransomware (11)](https://www.resilientiq.com/blog/topic/ransomware)
- [acceptable use policy (8)](https://www.resilientiq.com/blog/topic/acceptable-use-policy)
- [cyber threat analysis (7)](https://www.resilientiq.com/blog/topic/cyber-threat-analysis)
- [IT Security in Education (6)](https://www.resilientiq.com/blog/topic/it-security-in-education)
- [malware (6)](https://www.resilientiq.com/blog/topic/malware)
- [IoT Security (5)](https://www.resilientiq.com/blog/topic/iot-security)
- [Patient data security (5)](https://www.resilientiq.com/blog/topic/patient-data-security)
- [Protecting Student Data (5)](https://www.resilientiq.com/blog/topic/protecting-student-data)
- [network vulnerability (5)](https://www.resilientiq.com/blog/topic/network-vulnerability)
- [wireless networking solutions (5)](https://www.resilientiq.com/blog/topic/wireless-networking-solutions)
- [Cyber Threat Assessment (4)](https://www.resilientiq.com/blog/topic/cyber-threat-assessment)
- [Digital Privacy in Schools (4)](https://www.resilientiq.com/blog/topic/digital-privacy-in-schools)
- [protecting your it network (4)](https://www.resilientiq.com/blog/topic/protecting-your-it-network)
- [DDoS Attacks (3)](https://www.resilientiq.com/blog/topic/ddos-attacks)
- [IT Security in Schools (3)](https://www.resilientiq.com/blog/topic/it-security-in-schools)
- [Protecting Employee Privacy (3)](https://www.resilientiq.com/blog/topic/protecting-employee-privacy)
- [advanced persistent threats (3)](https://www.resilientiq.com/blog/topic/advanced-persistent-threats)
- [cloud security (3)](https://www.resilientiq.com/blog/topic/cloud-security)
- [healthcare cyberattacks (3)](https://www.resilientiq.com/blog/topic/healthcare-cyberattacks)
- [network threats (3)](https://www.resilientiq.com/blog/topic/network-threats)
- [phishing (3)](https://www.resilientiq.com/blog/topic/phishing)
- [secured network services (3)](https://www.resilientiq.com/blog/topic/secured-network-services)
- [securing the healthcare enterprise (3)](https://www.resilientiq.com/blog/topic/securing-the-healthcare-enterprise)
- [traffic shaping (3)](https://www.resilientiq.com/blog/topic/traffic-shaping)
- [Control network traffic (2)](https://www.resilientiq.com/blog/topic/control-network-traffic)
- [Intent-based Security (2)](https://www.resilientiq.com/blog/topic/intent-based-security)
- [K-12 Technology Security (2)](https://www.resilientiq.com/blog/topic/k-12-technology-security)
- [app performance (2)](https://www.resilientiq.com/blog/topic/app-performance)
- [bandwidth management (2)](https://www.resilientiq.com/blog/topic/bandwidth-management)
- [byod policy (2)](https://www.resilientiq.com/blog/topic/byod-policy)
- [cloud (2)](https://www.resilientiq.com/blog/topic/cloud)
- [critical infrastructure threats (2)](https://www.resilientiq.com/blog/topic/critical-infrastructure-threats)
- [cyber secure campus (2)](https://www.resilientiq.com/blog/topic/cyber-secure-campus)
- [cybersecurity strategy (2)](https://www.resilientiq.com/blog/topic/cybersecurity-strategy)
- [mobile device security (2)](https://www.resilientiq.com/blog/topic/mobile-device-security)
- [network optimization (2)](https://www.resilientiq.com/blog/topic/network-optimization)
- [network security in higher education (2)](https://www.resilientiq.com/blog/topic/network-security-in-higher-education)
- [network technology (2)](https://www.resilientiq.com/blog/topic/network-technology)
- [network visibility (2)](https://www.resilientiq.com/blog/topic/network-visibility)
- [oil and gas industry (2)](https://www.resilientiq.com/blog/topic/oil-and-gas-industry)
- [ssl encryption (2)](https://www.resilientiq.com/blog/topic/ssl-encryption)
- [threat intelligence (2)](https://www.resilientiq.com/blog/topic/threat-intelligence)
- [unified threat management (UTM) (2)](https://www.resilientiq.com/blog/topic/unified-threat-management-utm)
- [wan optimization (2)](https://www.resilientiq.com/blog/topic/wan-optimization)
- [wireless LAN access security (2)](https://www.resilientiq.com/blog/topic/wireless-lan-access-security)
- [wireless network best practices (2)](https://www.resilientiq.com/blog/topic/wireless-network-best-practices)
- [802.11ac wave 2 (1)](https://www.resilientiq.com/blog/topic/802-11ac-wave-2)
- [Endpoint Protection (1)](https://www.resilientiq.com/blog/topic/endpoint-protection)
- [Endpoint Security (1)](https://www.resilientiq.com/blog/topic/endpoint-security)
- [IT Security in Government (1)](https://www.resilientiq.com/blog/topic/it-security-in-government)
- [Internal Segmentation Firewalls (1)](https://www.resilientiq.com/blog/topic/internal-segmentation-firewalls)
- [Network Technology Problem Solving (1)](https://www.resilientiq.com/blog/topic/network-technology-problem-solving)
- [Point of sale attacks (1)](https://www.resilientiq.com/blog/topic/point-of-sale-attacks)
- [Public sector IT networks (1)](https://www.resilientiq.com/blog/topic/public-sector-it-networks)
- [Software-defined networking (1)](https://www.resilientiq.com/blog/topic/software-defined-networking)
- [Threat detection (1)](https://www.resilientiq.com/blog/topic/threat-detection)
- [application security (1)](https://www.resilientiq.com/blog/topic/application-security)
- [business critical applications (1)](https://www.resilientiq.com/blog/topic/business-critical-applications)
- [critical learning applications (1)](https://www.resilientiq.com/blog/topic/critical-learning-applications)
- [cybersecurity (1)](https://www.resilientiq.com/blog/topic/cybersecurity)
- [cybersecurity technology (1)](https://www.resilientiq.com/blog/topic/cybersecurity-technology)
- [data protection (1)](https://www.resilientiq.com/blog/topic/data-protection)
- [digital learning (1)](https://www.resilientiq.com/blog/topic/digital-learning)
- [healthcare data security (1)](https://www.resilientiq.com/blog/topic/healthcare-data-security)
- [healthcare mobile networks (1)](https://www.resilientiq.com/blog/topic/healthcare-mobile-networks)
- [high performance network security (1)](https://www.resilientiq.com/blog/topic/high-performance-network-security)
- [higher education (1)](https://www.resilientiq.com/blog/topic/higher-education)
- [hybrid clouds (1)](https://www.resilientiq.com/blog/topic/hybrid-clouds)
- [hyperconnected (1)](https://www.resilientiq.com/blog/topic/hyperconnected)
- [indicators of compromise (1)](https://www.resilientiq.com/blog/topic/indicators-of-compromise)
- [it industry news (1)](https://www.resilientiq.com/blog/topic/it-industry-news)
- [network infrastructure (1)](https://www.resilientiq.com/blog/topic/network-infrastructure)
- [network intrusion (1)](https://www.resilientiq.com/blog/topic/network-intrusion)
- [networking terminology (1)](https://www.resilientiq.com/blog/topic/networking-terminology)
- [next-generation firewal (1)](https://www.resilientiq.com/blog/topic/next-generation-firewal)
- [ngfw (1)](https://www.resilientiq.com/blog/topic/ngfw)
- [reinforce network technology (1)](https://www.resilientiq.com/blog/topic/reinforce-network-technology)
- [retail data security (1)](https://www.resilientiq.com/blog/topic/retail-data-security)
- [sandbox solution (1)](https://www.resilientiq.com/blog/topic/sandbox-solution)
- [sdn (1)](https://www.resilientiq.com/blog/topic/sdn)
- [security operations (1)](https://www.resilientiq.com/blog/topic/security-operations)
- [shadow IT risks (1)](https://www.resilientiq.com/blog/topic/shadow-it-risks)
- [ssl inspection (1)](https://www.resilientiq.com/blog/topic/ssl-inspection)
- [ssl security (1)](https://www.resilientiq.com/blog/topic/ssl-security)
- [university campus cybersecurity (1)](https://www.resilientiq.com/blog/topic/university-campus-cybersecurity)
- [zero-day attacks (1)](https://www.resilientiq.com/blog/topic/zero-day-attacks)

[see all](https://www.resilientiq.com/blog/does-your-business-stand-a-chance-against-advanced-persistent-threats#)

### Subscribe to Blog

[![Resilient-Advanced-Networking-Solutions.png](https://www.resilientiq.com/hs-fs/hubfs/Resilient_Logos/Resilient-Advanced-Networking-Solutions.png?width=496&height=105&name=Resilient-Advanced-Networking-Solutions.png "Resilient-Advanced-Networking-Solutions.png")](http://resilientiq.com)

Contact

 2921 Country Club Road  
 Denton, Texas 76210  
 940-535-7500

#### Keep in Touch

### Subscribe to Our Blog

## [![social-1834007_960_720](https://www.resilientiq.com/hs-fs/hubfs/Social%20Media%20Icons/social-1834007_960_720.png?width=40&name=social-1834007_960_720.png "social-1834007_960_720")](https://www.facebook.com/ResilientIntelligentNetworks)[![social-1834011_1280](https://www.resilientiq.com/hs-fs/hubfs/Social%20Media%20Icons/social-1834011_1280.png?width=40&name=social-1834011_1280.png "social-1834011_1280")](https://www.linkedin.com/company/resilient-intelligent-networks)[![social-1834013_1280](https://www.resilientiq.com/hs-fs/hubfs/Social%20Media%20Icons/social-1834013_1280.png?width=40&name=social-1834013_1280.png "social-1834013_1280")](https://twitter.com/resilientiq)[![social-1834014_960_720](https://www.resilientiq.com/hs-fs/hubfs/Social%20Media%20Icons/social-1834014_960_720.png?width=40&name=social-1834014_960_720.png "social-1834014_960_720")](https://www.resilientiq.com/blog/rss.xml)[![](https://www.resilientiq.com/hs-fs/hubfs/Social%20Media%20Icons/social-1834016_960_720.png?width=40&name=social-1834016_960_720.png "social-1834016_960_720.png")](https://www.youtube.com/channel/UCIuShF1pL6Ekv2JTOnXuz-Q)

Search the Resilient Blog on Google