Updated October 2026. Originally published April 3, 2024.
A reliable backup and recovery plan is what lets a business come back from ransomware, hardware failure or disaster. Ransomware was involved in 48% of all breaches in Verizon’s 2026 report, and small organizations are disproportionately affected (Verizon DBIR). CISA’s first recommendation for ransomware readiness is to maintain offline, encrypted backups of critical data and regularly test them (CISA).
Why rethink your backup strategy
Outdated methods fall short. Tape drives and USB drives are slow to restore, easy to forget and often fail when you need them. A drive left connected to the network can also be encrypted along with everything else.
Follow the 3-2-1 rule. Keep three copies of important data, on two different types of media, with one copy stored offsite (CISA). A hybrid approach, with fast on-premises backups plus a cloud copy, meets this standard and covers both local outages and site-wide disasters.
Make at least one copy immutable or offline. Many ransomware variants hunt for accessible backups, so CISA recommends keeping backups offline, and notes that some cloud providers offer immutable storage that protects data from being changed or deleted (CISA).
Encrypt everything. Modern backups should be encrypted in transit and at rest, so a stolen backup does not become a data breach of its own.
A backup is only as good as the restore
Having backups is not the same as being able to recover. Sophos found that recovery through backups fell to its lowest rate in six years, and 49% of victims paid the ransom to get their data back (Sophos). Verizon’s data shows the alternative is possible: 69% of ransomware victims did not pay, and the median payment still reached $139,875 (Verizon DBIR).
Test restores on a schedule. CISA advises regularly testing the availability and integrity of backups in a disaster recovery scenario (CISA).
Keep golden images. Maintain up-to-date templates of critical systems, with the operating system and key applications preconfigured, so servers can be rebuilt quickly (CISA).
Know your recovery targets. Decide how much data you can afford to lose and how long you can be down, then design backups to meet those numbers.
Weighing cost against value
A professional backup and recovery solution costs more up front than an external drive. The value is in business continuity: minimal downtime, intact data and the option to refuse a ransom demand. Starfish Computer combines on-premises hardware with cloud infrastructure so you can recover quickly from a single failed server or a complete site loss.
Protect your data with Starfish Computer
Do not wait for a disaster to find out whether your backups work. Contact Starfish Computer to review your current backup strategy, test a real restore and build a hybrid, encrypted and immutable plan that keeps your business recoverable.
Protect your business: start with an assessment
The question isn’t whether your business will face a cyber threat, but whether you’ll be ready when it does. Since 1994, Starfish Computer Corporation has helped businesses across Northeast Ohio:
Assess current security posture and risk
Plan a cybersecurity roadmap aligned to NIST CSF 2.0
Implement the right tools and processes for your size and budget
Train your team on today’s threats, including AI-driven scams
Support and improve your security over time
Call (440) 808-0468 or visit starfishcomputer.com to schedule a security assessment.
About the author
R.J. Arhar is President of Starfish Computer Corporation. He has more than 35 years of experience in IT, served as a consultant to the National Institutes of Health, led IT operations for an international security company with more than 8,000 users, and is the author of Attack or Defend – When is Enough Cybersecurity Enough?
This post provides general cybersecurity guidance. Requirements vary by industry and business. Statistics are current as of October 2026; consult Starfish Computer Corporation for a plan tailored to your risk profile.

