Turn on MFA for email, train employees to pause on links/attachments, and verify payment-change requests outside of email.
Business checklist
Cyber Readiness Checklist
Cyber risk is not just a big-company problem. If your business uses email, online banking, customer data, vendor logins, payroll software, or card payments, a few simple habits can make a real difference.
Start here
What does your business rely on?
Choose anything that applies. Nothing is required. We’ll build a short readiness list based on the risks that usually matter most.
Your checklist
What to tighten first
Use a call-back process before changing bank details, wiring money, or paying a new vendor invoice.
Backups only help if they are current, protected, and tested. Make sure you can actually restore the files you need.
Remove old employee, vendor, and subcontractor access when someone leaves or no longer needs the system.
The “pause and verify” list
Three things worth double-checking every time
Payment changes
If someone emails new bank details, a new wire request, or a sudden invoice change, verify it with a known phone number before sending money.
Login prompts
If a link asks for your Microsoft, Google, bank, or payroll login, slow down. Go directly to the site instead of trusting the link.
Locked files or strange popups
If files look encrypted, systems behave strangely, or a ransom note appears, disconnect from the network and call for help before clicking around.
Not sure if your business has cyber coverage?
Send CanDo a note. We can help you check whether cyber is included, excluded, optional, or something worth quoting separately.
Toolkit