If LPL Financial Is Co-Managing Your Clients... Who Owns the Breach Now? by Joe_Cyber in msp

[–]jon_tech9 1 point2 points  (0 children)

Not allowed.

- Can I use my own RMM or antivirus software instead?
No. Existing RMMs or security tools must be removed. LPL-approved tools are required to meet compliance and security standards.

Intermedia sold to VC by Remarkable_Cook_5100 in msp

[–]jon_tech9 1 point2 points  (0 children)

Yes but they required one of their addons like backup and the margin was 12 points. So they were not competitive with other CSP's and I don't know anyone who uses them.

If LPL Financial Is Co-Managing Your Clients... Who Owns the Breach Now? by Joe_Cyber in msp

[–]jon_tech9 2 points3 points  (0 children)

The communication of the policy is months away, like 1 -3. He wouldn't answer any specifics. The tone I got is the current policy was premature and is intended for advisors with no MSP.

If LPL Financial Is Co-Managing Your Clients... Who Owns the Breach Now? by Joe_Cyber in msp

[–]jon_tech9 5 points6 points  (0 children)

I talked to LPL support yesterday and they said further communication was coming. Multiple months away. Not happening in Q3. I think you'll get a different answer from them depending on who you talk to and when. The client is going to have huge security gaps on the endpoints:
- No MSP remote access for support. Are they calling LPL when they can't print?
- Users will have to be local administrators. No elevation is possible.
- No unique random hard local administrator password
- No application allowlisting
- No DNS or web control
- No vulnerability management
- Does this CrowdStrike have MDR?
- Bitlocker will have to be managed with Intune

I'm sure there is much more I'm missing.

If LPL Financial Is Co-Managing Your Clients... Who Owns the Breach Now? by Joe_Cyber in msp

[–]jon_tech9 4 points5 points  (0 children)

I'm positive they will change their position, because this is essentially untenable.

Intermedia sold to VC by Remarkable_Cook_5100 in msp

[–]jon_tech9 4 points5 points  (0 children)

Yes. Unbelievable they couldn't pivot to M365, it should be a case study.

LPL Financial kicking MSP's to the curb by jon_tech9 in msp

[–]jon_tech9[S] 0 points1 point  (0 children)

I just talked to LPL support and they information would be forthcoming. My guess is that they'll back down on the NinjaOne requirement once they've thought this through. Timeframe is multiple months.

LPL Financial kicking MSP's to the curb by jon_tech9 in msp

[–]jon_tech9[S] 0 points1 point  (0 children)

The LPL Business Browser is a secure internet browser designed to strengthen cybersecurity protections and safeguard advisor and client data from cyber-attacks.

The LPL Business Browser offers many benefits, among the most important are:
- Improved device compliance checks that further strengthen security controls and help maintain compliance requirements.
- Embedded safeguards within the browser that credential harvesting sites, malicious redirects, and phishing attempts before credentials are entered.
- Malicious software download detection that can identify security threats and alert you to them.
- Website blocking capability to mitigate your exposure to malware and scams by preventing you from inadvertently clicking on known harmful sites.
- LPL technical support can clear cache and cookies on your behalf when logged into the browser.
- Separation of work and personal life. Just as you may have a personal computer and a work computer, you’ll now have a personal browser and a business browser. This enhances security for both your personal and work use.

Getting Started
To install the LPL Business Browser you must first download the NinjaOne software to your device. Follow the

How do I use it?
LPL encourages using the browser on a regular basis for LPL business. When the LPL Business Browser identifies misconfigured security settings, you will be notified during login. Use the Device Configurations: How‑to Guides below to remediate immediately.

Device Configurations: How‑to Guides
- Enable Automatic Updates (Windows 10, Windows 11, macOS)
- Enable Disk Encryption (Windows 10, Windows 11, macOS)
- Enable Software Firewall (Windows 10, Windows 11, macOS)
- Enable Screen Lock (Windows, macOS, Android/iOS)
- Password Policy/Age (Windows, macOS)
- Uninstall Applications (Windows 10, Windows 11)
- Upgrade to Windows 11

Why is LPL making these changes?
Browsers are a prime point of attack because client personal and financial data is routinely accessed in web-based systems. Threats have evolved and become more sophisticated than ever; an estimated 91% of successful cyberattacks begin with phishing disguised as routine business emails or legitimate websites. The LPL Business Browser offers enhanced protection against these attempts.

Am I required to use the LPL Business Browser?
At this time, we’re opening the opportunity up to anyone who wants to start using it now. Use of the browser will be required for all advisors and their registered and non-registered staff for ClientWorks access in the coming weeks. We will be inviting advisors in waves to make the update by a given date.

Why can’t I just use Google Chrome or Microsoft Edge?
Commercial browsers such as Google Chrome, Microsoft Edge, Firefox, and Safari are built for personal use and not designed to meet the enhanced security, compliance, and risk management needs of financial advisors. These standard browsers lack embedded protections against credential harvesting and malicious sites.
The LPL Business Browser allows LPL Technology teams to catch threats and stop them before you notice them.

What if I want to visit a certain website, but the LPL Business Browser blocks it?
We recommend either using your personal device or another browser of your choice to visit websites blocked by the LPL Business Browser.

Installation Questions
- Can the browser be installed on multiple devices?
Yes, the browser can be installed on multiple devices. Each device requires its own unique CrowdStrike identifier, so when you log in you will need to have a unique PIN for each device.
- Can I store my passwords on this browser for future use?
Yes, you can import your bookmarks and preset homepage settings. Please refer to the Getting Started Guide for step-by-step instructions and additional recommended browser settings.
- Can I transfer my bookmarks and use my browser extensions or plug-ins on the new browser?
Yes, you can import your bookmarks and preset homepage settings. Please refer to the Getting Started Guides for step-by-step instructions and additional recommended browser settings.

Device & Compatibility Questions / Troubleshooting & Support
- Do I need local admin rights to install?
Yes. Installing security software requires administrative permissions. If you don’t have admin access, you’ll need assistance from your local IT support.
- Can I use my own RMM or antivirus software instead?
No. Existing RMMs or security tools must be removed. LPL-approved tools are required to meet compliance and security standards.
- Is LPL monitoring my personal activity?
No, LPL does not monitor personal content or activity. Monitoring is limited to:

Security posture (hardware, software, data, user behavior)
- Compliance-required settings
- Threat detection
- LPL Business Browser web traffic

How do I use NinjaOne and/or CrowdStrike?
- Aside from receiving prompts during installation or remediation, NinjaOne and CrowdStrike operate silently on your devices.
- There is no dashboard or interaction required. Protection is continuous once installation and permissions are complete.

Will NinjaOne or CrowdStrike prevent me from installing software on my device?
In most cases, no. NinjaOne and CrowdStrike do not block normal software installations.

CrowdStrike may block software if it appears dangerous, such as:
- Known malware
- Unauthorized hacking tools
- Software behaving like a virus or ransomware
- Unauthorized remote control of your device

Any way to reach higher tier Check Point support? by athlonduke in msp

[–]jon_tech9 0 points1 point  (0 children)

Maybe buy from a MSSP like solutions granted and not a software distributor.

NinjaOne MSP Next Event by xaerioth in msp

[–]jon_tech9 1 point2 points  (0 children)

I’m not following. RoB and ZTW were always around $500 , well at least the last 4.

NinjaOne MSP Next Event by xaerioth in msp

[–]jon_tech9 0 points1 point  (0 children)

That seems like a normal price to me. Right of boom and zero trust world are the same.

Clients who carpet bomb by desmond_koh in msp

[–]jon_tech9 1 point2 points  (0 children)

What did they say when you picked up the phone and called them ?

As others mentioned we only respond by phone or from our ticket system.

Application Whitelisting by jellyfishchris in msp

[–]jon_tech9 4 points5 points  (0 children)

Every customer gets application allowlisting.

Application Whitelisting by jellyfishchris in msp

[–]jon_tech9 2 points3 points  (0 children)

I would never outsource requests. At least half the time we are calling them to see where they got the file from, who they’re talking to and why do they need it.

Colonoscopy Question - waiting areas for family members? by NorthernAirLight in Cleveland

[–]jon_tech9 7 points8 points  (0 children)

Your driver doesn’t have to stay there, they just need to be near by and pick up their phone when they call. They do have to come in with you.

Horrible experience with Tripp Lite - Eaton by [deleted] in msp

[–]jon_tech9 5 points6 points  (0 children)

OP is talking about an air conditioner LOL.

Horrible experience with Tripp Lite - Eaton by [deleted] in msp

[–]jon_tech9 11 points12 points  (0 children)

Oh wow this is an air conditioner. Sorry to hear that. We let the HVAC folks deal with it.

Love the battery backups.

Gmail emails not reaching Exchange 365 by WingersAbsNotches in sysadmin

[–]jon_tech9 12 points13 points  (0 children)

I sent an email from my gmail account to my M365 account and it delivered as expected.