<![CDATA[Blog]]> https://www.thesilvercloudbusiness.com/blog/rss Our Blog en Sat, 10 Oct 2026 08:17:36 +0000 Is your business ready for winter? https://www.thesilvercloudbusiness.com/blog/is-your-business-ready-for-winter https://www.thesilvercloudbusiness.com/blog/is-your-business-ready-for-winter <p>It is now the last quarter of 2026 which means that winter is rapidly approaching and with the arrival of winter, it sometimes brings extra challenges that we are not always expecting.</p> <p>Winter disruption rarely arrives as a single, manageable problem. Severe weather can close roads, delay deliveries and prevent staff from reaching the workplace. A local power cut may take systems offline, while a broadband outage can stop a cloud-dependent team in its tracks. If fuel becomes scarce or expensive at the same time, even routine operations can quickly become difficult.</p> <p>El Niño may add further uncertainty this winter, particularly through indirect effects on global food, energy and supply chains. However, its precise influence on UK weather is difficult to predict, and current national forecasts indicate that Great Britain should have sufficient electricity supply. The sensible response is not panic; it is proportionate preparation for the local outages, transport problems and supplier failures that can happen in any difficult winter.</p> <h2>Your winter business-readiness checklist</h2> <h3>1. Power and premises</h3> <ul> <li><strong>What would you do if the power went down for several hours—or several days?</strong></li> <li>Identify the systems that must remain available and how long their battery backup will last.</li> <li>Check whether uninterruptible power supplies are maintained and sized for essential equipment.</li> <li>Decide which services should be shut down safely during an extended outage.</li> <li>Confirm how staff will enter, secure or leave the building if alarms, access controls, lifts or lighting fail.</li> <li>Keep torches, charged power banks and printed emergency contacts available.</li> </ul> <h3>2. Internet, phones and access to systems</h3> <ul> <li><strong>What would you do if severe weather took down your internet connection?</strong></li> <li>Arrange a secondary connection, such as a different broadband provider or managed mobile failover.</li> <li>Test whether employees can work securely from another location or through mobile data.</li> <li>Make sure key phone numbers can be diverted and that customers can still reach you.</li> <li>Identify essential files or procedures that need secure offline access.</li> <li>Check that multi-factor authentication will still work if a staff member loses access to their usual device or mobile signal.</li> </ul> <h3>3. People and communications</h3> <ul> <li>Set clear rules for office closure, remote working and travel during warnings or dangerous conditions.</li> <li>Maintain an up-to-date contact list and agree how urgent messages will be sent if email is unavailable.</li> <li>Identify deputies for essential roles and avoid relying on one person for critical knowledge or approvals.</li> <li>Consider the needs of staff with caring responsibilities, disabilities or long journeys.</li> <li>Run a short exercise so everyone knows where to find the continuity plan and who makes decisions.</li> </ul> <h3>4. Suppliers, stock and deliveries</h3> <ul> <li><strong>What would you do if weather disrupted your supply chain?</strong></li> <li>Map the suppliers, couriers and components that your most important services depend upon.</li> <li>Ask critical suppliers about their own continuity plans and expected lead times.</li> <li>Qualify alternatives in advance rather than searching during a crisis.</li> <li>Review minimum stock levels for essential items, while avoiding unnecessary over-ordering.</li> <li>Agree how you will prioritise customers if stock, transport or staff capacity becomes limited.</li> </ul> <h3>5. Fuel, travel and logistics</h3> <ul> <li>Identify which journeys and deliveries are genuinely business-critical.</li> <li>Plan for fuel shortages, poor road conditions and public transport disruption.</li> <li>Allow key employees to work remotely where practical and safe.</li> <li>Make agreements with alternative couriers or local partners before demand peaks.</li> <li>Keep vehicles maintained and ensure drivers have clear escalation procedures.</li> </ul> <h3>6. Data, cyber security and recovery</h3> <ul> <li>Confirm that backups are automatic, protected and kept separately from live systems.</li> <li>Test restoring a file or system; a backup is only useful if recovery works.</li> <li>Keep devices patched and protected, including laptops used away from the office.</li> <li>Warn staff that criminals may exploit disruption with fake delivery, payment or emergency-support messages.</li> <li>Document how to report a cyber incident when normal channels are unavailable.</li> </ul> <h3>7. Customers, cash flow and insurance</h3> <ul> <li>Prepare website, social media and voicemail messages for closures or delays.</li> <li>Decide what service levels you can realistically maintain and communicate changes early.</li> <li>Review cash reserves and the effect of delayed sales, deliveries or customer payments.</li> <li>Check business interruption, equipment and premises insurance, including exclusions and notification requirements.</li> <li>Store policy details and claims contacts somewhere accessible during an outage.</li> </ul> <h2>Turn the checklist into a plan</h2> <p>Assign an owner to each action, set a completion date and record the workaround in plain language. Then test the plan with a simple scenario: the office has no power, the internet is unavailable and a key supplier cannot deliver for 48 hours. The exercise will quickly reveal hidden dependencies and outdated contact details.</p> <h2>What does this mean for your business?</h2> <p>Every organisation has different risks, but every organisation benefits from knowing how it will keep communicating, protect its data and continue serving customers when normal arrangements fail. The Silver Cloud Business can help you review your IT resilience, cloud services, communications, remote-working arrangements, backups and disaster-recovery plans—then turn any gaps into practical improvements.</p> <p><strong>Do not wait for disruption to test your plan.</strong> Call The Silver Cloud Business on <strong>01722 411999</strong> to discuss how prepared your business is for winter.</p> <p> </p> Wed, 07 Oct 2026 00:00:00 +0000 How to Protect Your Business from AI-Powered Cyberattacks https://www.thesilvercloudbusiness.com/blog/how-to-protect-your-business-from-ai-powered-cyberattacks https://www.thesilvercloudbusiness.com/blog/how-to-protect-your-business-from-ai-powered-cyberattacks <h2>A practical guide for business owners who want stronger security without creating unnecessary complexity</h2> <p>Artificial intelligence has not invented cybercrime, but it is making familiar attacks faster, cheaper and more convincing. Criminals can use AI to personalise phishing messages, imitate a trusted person’s voice or image, scan systems for weaknesses and automate large numbers of attacks. At the same time, businesses can expose themselves by adopting AI tools without controlling what data they receive or what systems they can access.</p> <p>There are further examples of AI breaching systems, with the latest high profile incident being the Australian Government Website being hacked by OpenAI who only notified the Australians <strong>three months</strong> after the security breach.</p> <p>The answer is not to avoid AI. It is to combine sound cyber-security basics with a few controls designed for AI-era risks. The following steps will give most organisations a strong starting point.</p> <h2>Make identity harder to steal</h2> <p>Require multi-factor authentication on email, cloud services, banking, remote access and administrator accounts. Where available, prefer phishing-resistant options such as passkeys or security keys. Give each person only the access needed for their role, remove dormant accounts promptly and keep administrator accounts separate from everyday work.</p> <h2>Verify money and access requests out of band</h2> <p>A convincing email, phone call or video meeting is no longer proof of identity. Set a written rule that supplier bank-detail changes, urgent payments, password resets and requests for sensitive data must be checked through a second, trusted channel. Staff should call a known number from company records rather than one supplied in the message. Use dual approval for high-value or unusual transactions.</p> <h2>Update staff training for AI-enabled scams</h2> <p>Old advice that focuses on spelling mistakes is no longer enough. Train people to question unexpected urgency, secrecy, changes in payment instructions, unusual sign-in prompts and requests to bypass normal processes—even when a message looks polished. Run short, regular exercises covering email phishing, text messages, QR codes and voice or video impersonation. Make reporting easy and reward quick escalation rather than blaming honest mistakes.</p> <h2>Patch, back up and monitor</h2> <p>AI can help attackers find exposed systems more quickly, so prompt patching matters. Keep an inventory of devices, software and cloud services; enable automatic updates where appropriate; and prioritise internet-facing systems. Maintain encrypted backups that are separated from the main network, test restoration regularly and protect backup administration with strong authentication. Turn on logging and alerts for unusual sign-ins, large downloads, new forwarding rules and privilege changes.</p> <h2>Put guardrails around business AI tools</h2> <p>Keep a register of approved AI services and define what employees may enter into them. Do not paste customer records, contracts, credentials, source code or commercially sensitive information into an unapproved public tool. Review suppliers’ security, data-retention, training-data and incident-notification terms. Disable unnecessary plug-ins and integrations, restrict an AI assistant’s permissions, and require human approval before it can send messages, change records, run code or trigger payments.</p> <h2>Test AI systems as if their inputs may be hostile</h2> <p>If your business uses AI to read emails, websites, documents or customer submissions, assume that external content may contain malicious instructions. Test for prompt injection, unsafe tool use and leakage of confidential data. Separate trusted instructions from untrusted content, validate outputs before action, log important AI activity and provide a reliable way to stop or override automated behaviour. If you train or fine-tune models, control who can alter training data and monitor for unexpected changes in results.</p> <h2>Prepare for the incident before it happens</h2> <p>Create a short incident-response plan that names decision-makers, technical contacts, legal and communications support, insurers and reporting routes. Include steps for isolating affected accounts or devices, preserving evidence, contacting customers and restoring operations. Practise a scenario involving a deepfake payment request or a compromised AI assistant, then fix any gaps the exercise reveals.</p> <p><strong>A 30-day action plan</strong></p> <ul> <li><strong>Week 1:</strong> List critical systems, data, suppliers and AI tools; name one person accountable for cyber risk.</li> <li><strong>Week 2:</strong> Enable strong multi-factor authentication, remove unused accounts and patch exposed systems.</li> <li><strong>Week 3:</strong> Introduce call-back checks and dual approval for sensitive changes; publish a simple AI-use policy.</li> <li><strong>Week 4:</strong> Test a backup restoration and run a short incident exercise with leadership, finance and IT.</li> </ul> <h2>What does this mean for your business?</h2> <p>There is no single product that can stop every AI-enabled attack. The strongest defence is layered: secure identities, disciplined approval processes, well-trained people, maintained technology, controlled AI use and a rehearsed response. Start with the highest-risk accounts and transactions, measure progress each month and treat cyber resilience as part of normal business management—not just an IT task.</p> <p>If you would like for information call The Silver Cloud Business on <strong>01722 411 999</strong> and we can help you build an AI resilience plan.</p> <p> </p> <p><strong>References and further guidance</strong></p> <ol> <li>UK National Cyber Security Centre, “<a title="AI and cyber security: what you need to know" href="https://www.ncsc.gov.uk/guidance/ai-and-cyber-security-what-you-need-to-know" target="_blank">AI and cyber security: what you need to know</a>”.</li> <li>UK Government and National Cyber Security Centre, “<a title="Cyber security guidance for business" href="https://www.gov.uk/government/collections/cyber-security-guidance-for-business" target="_blank">Cyber security guidance for business</a>”.</li> <li>Information Commissioner’s Office, “<a title="Five steps to protect your organisation" href="https://ico.org.uk/about-the-ico/media-centre/news-and-blogs/2026/05/five-steps-to-protect-your-organisation-from-ai-powered-cyber-threats/" target="_blank">Five steps to protect your organisation from AI-powered cyber threats</a>”.</li> <li>National Institute of Standards and Technology, “<a title="Artificial Intelligence Risk Management Framework" href="https://www.nist.gov/publications/artificial-intelligence-risk-management-framework-generative-artificial-intelligence" target="_blank">Artificial Intelligence Risk Management Framework: Generative Artificial Intelligence Profile</a>”</li> </ol> Tue, 29 Sep 2026 00:00:00 +0000 Do you know where your business data is? https://www.thesilvercloudbusiness.com/blog/do-you-know-where-your-business-data-is https://www.thesilvercloudbusiness.com/blog/do-you-know-where-your-business-data-is <p>A lot of people are using AI these days; some people are even using it to help them with their work, but are staff using AI in your business with your knowledge or are they using it under the radar?  As we covered in last week's article, a lot of AI models use data to train on, what if a member of staff is using your company data and it's inadvertently being used to train AI which in turn could aid your competitors or leak your business data?</p> <p>I'm going to go down memory lane, bear with me; a few years ago, we took a frantic call from a business that had suffered a serious data leak. Not because of a hacker. Not because of ransomware. Not because someone inside the company was trying to do harm.</p> <p>It happened because a well-meaning member of staff wanted to carry on working from home. To make that easier, they uploaded company data into their own free personal Dropbox account. The intention was helpful. The outcome was catastrophic.</p> <p>The data was now outside the company’s control, outside any proper business agreement, and outside the terms intended for that domestic service. Worse still, it was not protected to the standard the business needed. The result was a major data loss, reputational damage, and a very painful lesson: convenience can be dangerous when it bypasses proper controls.</p> <h2>The same risk has a new name: AI</h2> <p>Fast forward to today and the same pattern is happening again. This time, the tool is not personal cloud storage. It is artificial intelligence.</p> <p>Staff are using AI tools to write emails, analyse spreadsheets, summarise documents, create proposals, polish reports, draft HR content, troubleshoot technical issues and speed up everyday work. In many cases, they are doing it with good intentions. They want to be faster. They want to be more productive. They want to help the business.</p> <p>But if they are pasting customer information, contracts, financial data, internal processes, technical details, passwords, source code, sales figures or strategy documents into tools the business has not approved, then your confidential information may already be leaving the building.</p> <h2>Helpful does not always mean safe</h2> <p>The danger is that many employees do not realise what happens after they type or upload information into an AI platform. Some tools may store prompts. Some may use submitted data to improve or train their models. Some may be operated outside the UK. Some may have terms that are suitable for personal experimentation, but not for handling sensitive business data.</p> <p>The risk is not always malicious. In fact, that is what makes it so dangerous. Your team may believe they are doing the right thing, while accidentally exposing commercially sensitive information to a system the business has not assessed, secured or approved.</p> <p>Imagine a member of staff asking a free AI tool to summarise a confidential client proposal. Or to rewrite a disciplinary letter. Or to analyse a spreadsheet containing customer records. Or to explain a technical configuration that reveals how your systems are built. In each case, the employee is not trying to leak data. But the data may still be exposed.</p> <h2>Shadow AI is the new shadow IT</h2> <p>For years, businesses have worried about shadow IT: staff signing up for apps, storage services or software without telling the company. AI has made that problem bigger, faster and harder to see. It takes seconds to open an AI tool in a browser. It takes seconds to paste in confidential information. And once that data has gone in, you may have no easy way to get it back.</p> <p>That creates serious questions for business owners:</p> <ul> <li>Do you know which AI tools your staff are using?</li> <li>Do your staff know what information they must never enter into AI?</li> <li>Have you checked the terms, privacy settings and data handling policies of those tools?</li> <li>Do you have an AI usage policy that is actually understood by your team?</li> <li>Can you prove that client, employee and business data is being handled properly?</li> <li>Is your data being processed whilst maintaining GDPR compliance?</li> <li>Is your business data being used to train the AI model which exposes it to the public domain?</li> </ul> <p>If the answer is “no” or “I’m not sure”, then this is not a future problem. It is a current risk.</p> <h2>AI needs rules, not guesswork</h2> <p>AI can be incredibly useful. Used properly, it can improve productivity, reduce admin, speed up research and help teams work smarter. The answer is not necessarily to ban AI completely. A ban often drives the behaviour underground, where it becomes even harder to manage.</p> <p>The better approach is to put proper controls in place. Decide which tools are approved. Set clear rules on what can and cannot be entered. Train staff using real-world examples. Review supplier terms. Configure business-grade services correctly. Monitor for risky behaviour. Make AI part of your cyber security and data protection strategy, not an uncontrolled side project.</p> <p>Most importantly, make sure your people understand the issue. In the same way that uploading business data to a free personal storage account can create a serious data breach, pasting business data into the wrong AI tool can expose information you are legally, commercially and morally responsible for protecting.</p> <h2>Be careful, try not to be too helpful when using AI tools</h2> <p>Let me ask you a simple question. "<strong>Would you like to improve this tool to help others?</strong>"  This sounds like an innocent question, and most people, by their very nature would think "yes, I want to help this tool improve for others" so they select yes, <strong>BUT</strong> what this question actually means is " we need your permission to use all the data you upload to train the AI model and it could expose your data to the world".  If the question were worded as the latter explaining the data will be exposed to the world, then everyone would select no, this is why they are very careful with how they word the question.  Be warned.</p> <h2>What does this mean for your business</h2> <p>If your staff are using AI without your knowledge, your business may already have a data protection problem waiting to surface. The good news is that this can be managed with the right policies, tools, training and technical controls. As your MSP, we can help you understand where AI is being used, identify the risks, put sensible guardrails in place and make sure your team can benefit from AI without putting your business data at risk.</p> <p> </p> <p>At the very least you should have an AI usage policy for the business just so staff know the business stance on using AI.</p> <p>If you need help, call us on <strong>01722 411999</strong>.</p> Wed, 23 Sep 2026 00:00:00 +0000 Are You Using AI or is AI Using You https://www.thesilvercloudbusiness.com/blog/are-you-using-ai-or-is-ai-using-you https://www.thesilvercloudbusiness.com/blog/are-you-using-ai-or-is-ai-using-you <h1>Be Careful What You Share with AI - How to Keep Your Business Data Safe</h1> <h2>Artificial intelligence can be a powerful productivity tool, but careless use can create serious data protection and commercial risks.</h2> <p>AI tools are becoming part of everyday business life. They can help draft documents, summarise information, analyse data and speed up routine tasks. Used well, they can save time and improve decision-making. Used carelessly, however, they can expose confidential information, customer data, intellectual property and commercially sensitive material.</p> <p>Many people do not realise that some AI services may use prompts, uploaded files, chat history or user feedback to improve their systems, depending on the provider’s terms and settings. That means information entered into an AI tool could leave the control of your organisation and create risks around confidentiality, data protection and regulatory compliance. The UK Information Commissioner’s Office states that organisations using AI must consider accountability, transparency, security and data minimisation when personal data is involved.</p> <h2>Why this matters</h2> <p>Business data is valuable. It may include client records, staff information, contracts, pricing, designs, financial forecasts, legal advice, tender submissions or incident reports. If this information is copied into an AI tool without proper safeguards, it could be retained by a third party, accessed outside your approved environment, or used in ways your organisation did not intend.</p> <p>The risk is not only commercial. If personal data is involved, an accidental disclosure could place the business in breach of data protection obligations. Regulators expect organisations to understand what data they process, why they process it, who can access it and how it is protected. AI does not remove those responsibilities; it can make them more complex.</p> <h2>Common mistakes businesses make with AI</h2> <ul> <li>Pasting confidential emails, contracts or reports into public AI tools.</li> <li>Uploading spreadsheets containing personal, financial or client information.</li> <li>Assuming that every AI product has the same privacy and retention settings.</li> <li>Allowing staff to use unapproved AI tools without guidance or training.</li> <li>Failing to check whether AI-generated outputs contain inaccurate, biased or confidential information.</li> <li>Using AI outputs in regulated decisions without human review and proper records.</li> </ul> <h2>Tips to keep your data safe</h2> <ol> <li><strong>Do not enter sensitive information into public AI tools.</strong> Treat prompts like external disclosures unless you have checked the provider’s contractual terms, privacy settings and data retention policy.</li> <li><strong>Use approved business accounts only.</strong> Enterprise AI tools often provide stronger controls than free consumer versions, including administration, access management and data protection settings.</li> <li><strong>Classify your data before using AI.</strong> Decide what data is public, internal, confidential or highly restricted, and set clear rules on what can and cannot be used with AI systems.</li> <li><strong>Remove or mask personal and confidential details.</strong> Where possible, anonymise, pseudonymise or summarise information before asking an AI tool to process it.</li> <li><strong>Check supplier terms carefully.</strong> Understand whether your data may be retained, reviewed, used for model training, transferred internationally or shared with subcontractors.</li> <li><strong>Carry out a risk assessment.</strong> For higher-risk uses, especially where personal data is involved, consider a Data Protection Impact Assessment and document the safeguards you have put in place.</li> <li><strong>Train your staff.</strong> Make AI awareness part of your cyber security and data protection training so employees understand the practical risks.</li> <li><strong>Review AI outputs before use.</strong> AI can produce convincing but incorrect information, so human checking remains essential.</li> <li><strong>Create an AI use policy.</strong> Set out approved tools, permitted uses, prohibited data types, escalation points and review processes.</li> </ol> <h2>AI should support your business, not expose it</h2> <p>The answer is not to avoid AI altogether. The answer is to use it deliberately, safely and with the right controls. Businesses that put clear rules in place now will be better positioned to benefit from AI while protecting customers, staff, intellectual property and reputation.</p> <p>If you are unsure whether your current AI use is safe, now is the time to review it. Speak to your IT, compliance or data protection adviser, check your contracts and make sure your team knows what information must never be placed into an AI system.</p> <h2>How does this affect my business</h2> <p>Every business using AI needs to understand what data is being entered, where that data goes, and whether the tool is suitable for the information being processed. A simple review of your AI use, staff guidance and supplier settings can reduce the risk of data leakage, protect your commercial position and help demonstrate that you are taking compliance seriously.</p> <p>If you would like help reviewing how your business uses AI safely, contact us on <strong>01722 411 999</strong>.</p> <p> </p> Wed, 16 Sep 2026 00:00:00 +0000 Bye bye Microsoft Publisher, it was nice knowing you https://www.thesilvercloudbusiness.com/blog/bye-bye-microsoft-publisher-it-was-nice-knowing-you https://www.thesilvercloudbusiness.com/blog/bye-bye-microsoft-publisher-it-was-nice-knowing-you <h2>Microsoft Publisher is retiring in October 2026. Here is what your business needs to know—and what to do before your .pub files become difficult to access.</h2> <p>For decades, Microsoft Publisher has been the familiar choice for newsletters, leaflets, brochures, labels, business cards and other desktop-publishing jobs. It has been straightforward, flexible and included with many versions of Microsoft Office. But all good things must come to an end.</p> <p>Microsoft has confirmed that Publisher will reach end of life in October 2026. <strong>Microsoft 365 subscribers can use Publisher until 1 October 2026, but will no longer be able to access the application after that date.</strong> Support for the perpetual version of Publisher ends on <strong>13 October 2026</strong>, alongside Office LTSC 2021 and Office 2021. The safest business deadline is therefore 1 October 2026: complete your migration before then rather than relying on an unsupported installation.</p> <p>After retirement, Microsoft 365 subscribers will not be able to open or edit Publisher files in Publisher. Your .pub files will not simply disappear, but keeping them without a supported way to use them creates a serious accessibility and continuity risk—particularly when an old price list, template, certificate or marketing item suddenly needs updating.</p> <h2>Why businesses should act now</h2> <p>Publisher files are often scattered across laptops, servers, archived user folders, OneDrive, SharePoint and Teams-connected document libraries. Some may be obvious; others may sit untouched for years until they are urgently needed. Waiting until the last minute makes it harder to identify an owner, choose the right destination format and check that the converted output still looks correct.</p> <ul> <li>Publisher will no longer be included with Microsoft 365 after the retirement date.</li> <li>Unsupported software will not receive the protection or technical support expected by a modern business.</li> <li>Complex layouts, fonts and graphics may not convert perfectly without review.</li> <li>Historic documents may need preserving, while working templates need an editable replacement.</li> <li>A rushed migration can lead to missing files, broken layouts and lost business information.</li> </ul> <h2>How to prepare: a practical Publisher retirement checklist</h2> <ol> <li><strong>Find every .pub file.</strong> Search PCs, file servers, network shares, OneDrive, SharePoint, Teams libraries, backups and archive locations.</li> <li><strong>Assign an owner.</strong> Record which person or department understands the purpose of each file.</li> <li><strong>Classify the content.</strong> Mark each publication as active, reusable, historic, duplicate, obsolete or subject to a retention requirement.</li> <li><strong>Choose the destination.</strong> Decide whether the file should become a PDF, Word document, PowerPoint presentation or a design rebuilt in another supported application.</li> <li><strong>Back up the originals.</strong> Preserve an untouched copy of important .pub files and any linked images, logos or fonts before conversion.</li> <li><strong>Convert in manageable batches.</strong> Start with business-critical and regularly updated material rather than attempting everything at once.</li> <li><strong>Check the result.</strong> Compare pages, text flow, fonts, images, hyperlinks, margins, print settings and accessibility with the original.</li> <li><strong>Test the new workflow.</strong> Confirm that the content owner can edit, save, share and print the replacement without Publisher.</li> <li><strong>Stop creating new Publisher files.</strong> Move new work to a supported platform now so the backlog does not continue to grow.</li> <li><strong>Set a completion date before 1 October 2026.</strong> Leave time for exceptions, redesign work and user training.</li> </ol> <h2>Which application should replace Publisher?</h2> <h3>PDF—for finished documents that only need to be viewed, shared or printed</h3> <p>PDF is usually the best preservation format for completed publications because it maintains the visual appearance and is widely supported. It is not, however, a practical master format where text, prices, dates or images must continue to change.</p> <ul> <li>Open the publication in Publisher.</li> <li>Select <strong>File > Save As</strong> and choose a destination folder.</li> <li>Select <strong>PDF</strong> as the file type and save it.</li> <li>Open the PDF and compare it with the original, including every page.</li> <li>Use an appropriate quality setting for online distribution, office printing or commercial print.</li> </ul> <h3>Microsoft Word—for text-led documents that need future editing</h3> <p>Word is well suited to notices, forms, letters, simple newsletters, labels and documents where written content matters more than free-form page design. Microsoft’s suggested editable route is to convert the Publisher file to PDF and then open that PDF in Word. Expect to tidy complex layouts and check graphics carefully.</p> <ul> <li>Export the Publisher file as a PDF.</li> <li>Open Microsoft Word.</li> <li>Select <strong>File > Open</strong> and choose the PDF.</li> <li>Accept the prompt that Word will convert the PDF into an editable document.</li> <li>Review page breaks, columns, text boxes, images, fonts and spacing.</li> <li>Save the result as a .docx file and test printing and sharing.</li> </ul> <h3>Microsoft PowerPoint—for posters, signs, flyers and visual layouts</h3> <p>PowerPoint provides flexible placement of text and images and can be a practical replacement for single-page or slide-like content. Rather than trusting an automatic conversion, rebuild a clean reusable template and validate its physical page size before printing.</p> <ul> <li>Create a presentation with the required page orientation and dimensions.</li> <li>Copy the approved wording and source images from the original publication.</li> <li>Rebuild the layout using editable PowerPoint objects.</li> <li>Add branding to the template or slide master where appropriate.</li> <li>Export a PDF and run a test print before approving the replacement.</li> </ul> <h3>Microsoft Designer or a specialist publishing tool—for highly visual work</h3> <p>Modern design tools may suit social graphics, promotional artwork and quick branded content, while layout-critical catalogues, complex brochures and commercial-print projects may justify a specialist desktop-publishing application. Test representative files before committing, confirm licensing and data-handling requirements, and retain the original assets used to create each publication.</p> <h2>Do not confuse preservation with migration</h2> <p>A PDF may successfully preserve the appearance of an old brochure, but it does not automatically give you an easy-to-edit replacement for next year’s brochure. For every file, ask two questions: <strong>Do we only need to view this?</strong> and <strong>Will we need to edit or reuse it?</strong> The answer determines both the target format and the amount of rebuilding required.</p> <h2>What does this mean for my business?</h2> <p>Publisher’s retirement is not just a software change; it is a data-discovery and business-continuity project. If you do not know where your .pub files are stored, who owns them or which ones remain operationally important, now is the time to find out.</p> <p><strong>The Silver Cloud Business can help.</strong> We can search your data repositories—including suitable PCs, servers and Microsoft 365 storage—for Publisher files, help you understand what is there, prioritise business-critical content and plan a controlled move to a supported product before it is too late.</p> <p><strong>Call The Silver Cloud Business on 01722 411999</strong> to discuss a Publisher discovery and migration review. We can help you turn an approaching deadline into a planned, documented transition—without leaving important business content stranded in an obsolete format.</p> Thu, 03 Sep 2026 00:00:00 +0000 Preparing Your Business for AI: An AI Readiness Guide https://www.thesilvercloudbusiness.com/blog/preparing-your-business-for-ai-an-ai-readiness-guide https://www.thesilvercloudbusiness.com/blog/preparing-your-business-for-ai-an-ai-readiness-guide <h2>A practical approach to adopting AI securely, responsibly and successfully across your organisation</h2> <p>Artificial intelligence can help staff work faster, improve customer service and make better use of the information a business already holds. However, adopting AI for everyone is not simply a matter of buying licences and switching the technology on. AI can search, summarise and combine information at a speed and scale that exposes weaknesses in permissions, data governance and working practices that may previously have gone unnoticed.</p> <p>A successful AI programme therefore starts with the business, its people and its data. The objective should be to create a controlled environment in which approved tools deliver measurable value without exposing confidential information, personal data, intellectual property or client records.</p> <h2>1. Establish leadership, ownership and acceptable use</h2> <p>Nominate a senior owner for AI and create a small steering group involving business leadership, IT, information security, data protection and representatives from the teams that will use AI. Define which outcomes matter, such as reducing administration, improving response times or helping staff find information, and agree how success will be measured.</p> <ul> <li>Publish an AI acceptable-use policy covering approved services, permitted data, human review and prohibited activities.</li> <li>Create a simple approval process for new AI tools, browser extensions, agents, connectors and integrations.</li> <li>Define accountable owners for each use case and record its purpose, data sources, users, supplier and risk rating.</li> <li>Set clear rules for customer-facing content, automated decisions and any use involving personal or sensitive information.</li> </ul> <h2>2. Discover and classify the information AI could access</h2> <p>Build an information map covering Microsoft 365, line-of-business systems, shared drives, cloud storage, email, collaboration platforms and archives. Identify where personal data, commercially sensitive material, HR records, financial information, credentials and client data are stored. Assign owners and retention requirements, remove redundant data and introduce sensitivity labels where appropriate.</p> <p><strong>Why this matters:</strong> an AI assistant may make information dramatically easier to find, but it does not correct an unsafe permissions model. Content that was technically accessible but difficult to discover can become available through a straightforward natural-language request.</p> <h2>3. Review permissions and reduce oversharing</h2> <p>Carry out a structured permissions audit before connecting AI to business data. Review SharePoint sites, Teams, OneDrive, shared mailboxes, network folders and business applications. Pay particular attention to organisation-wide access, “anyone” links, the “Everyone except external users” group, inherited or broken permissions, guest access, stale accounts and sites without an active owner.</p> <ul> <li>Apply least privilege: staff should have access only to information required for their role.</li> <li>Replace broad sharing links with named users or controlled groups.</li> <li>Review privileged roles, service accounts and third-party application permissions.</li> <li>Remove obsolete content and access left behind by former employees, suppliers or completed projects.</li> <li>Introduce recurring access reviews rather than treating remediation as a one-off exercise.</li> </ul> <h2>4. Assess every AI supplier and service</h2> <p>Do not assume that a free or inexpensive AI service is suitable for business use. The commercial model may depend on retaining prompts, uploaded files or conversation history and using them to improve services or train models.</p> <p>Even where an opt-out exists, it may depend on the account type, settings or contract. Staff accepting consumer terms on behalf of themselves can unintentionally disclose company or client information outside approved controls.</p> <p>For each supplier, establish in writing:</p> <ul> <li>Whether prompts, outputs and uploaded data are used for model training or service improvement.</li> <li>Where data is processed and stored, how long it is retained and how it can be deleted or exported.</li> <li>Whether administrators can control accounts, sharing, connectors, agents and audit logs.</li> <li>Which subprocessors are involved and what contractual, privacy and security assurances apply.</li> <li>How the service handles encryption, incident notification, business continuity and account termination.</li> <li>Whether the intended use requires a data protection impact assessment, contractual review or client approval.</li> </ul> <h2>5. Find and control shadow AI</h2> <p>Shadow AI occurs when employees adopt AI tools, agents, meeting assistants, browser extensions or personal accounts without the knowledge or approval of the business. This may already be happening before a formal AI project begins.</p> <p>Risks include uncontrolled data transfer, excessive application permissions, poor authentication, unrecorded automated actions, intellectual-property leakage and suppliers that cannot meet the organisation’s legal or contractual obligations.</p> <ul> <li>Survey staff in a constructive, non-punitive way to understand what they use and why.</li> <li>Review sign-ins, enterprise applications, OAuth consent, browser extensions, network or cloud-security logs and expense claims.</li> <li>Maintain an approved AI catalogue and give staff a quick route for requesting alternatives.</li> <li>Block or restrict high-risk services where proportionate, while explaining the approved options.</li> <li>Revoke unknown integrations and investigate any exposure of confidential or personal information.</li> </ul> <h2>6. Put technical guardrails around approved AI</h2> <p>Use business-grade services under centrally managed accounts. Enforce multi-factor authentication, conditional access, least-privilege administration and controlled app consent. Apply data loss prevention, sensitivity labels, retention controls, audit logging and alerting. Limit agents and connectors to approved systems, credentials and scopes; test what information they can retrieve and what actions they can take.</p> <p>Treat an autonomous or semi-autonomous agent as a privileged digital worker. Give it a named owner, a defined purpose, the minimum data and permissions required, spending or transaction limits where relevant, complete logging, and a reliable method to stop or revoke it.</p> <h2>7. Start with controlled, valuable use cases</h2> <p>Select a small pilot group and begin with repeatable tasks that have clear value and manageable risk: drafting routine communications, summarising approved documents, finding internal procedures or assisting with meeting notes. Establish a baseline, define expected benefits and monitor quality, time saved, adoption, support demand and incidents.</p> <p>Require human verification of outputs. AI can produce inaccurate, incomplete or fabricated answers, and plausible wording should never be mistaken for evidence. High-impact decisions, legal or financial advice, customer commitments, security changes and publication of sensitive material should remain subject to competent human approval.</p> <h2>8. Train staff and create safe working habits</h2> <p>Training should cover more than prompting. Staff need to understand information classification, approved tools, privacy, copyright and intellectual property, hallucinations, bias, social engineering, secure sharing and how to report a mistake. Use role-based examples and provide reusable prompt patterns that avoid unnecessary personal or confidential data.</p> <h2>9. Prepare for incidents and ongoing assurance</h2> <p>Update incident-response procedures to include accidental prompt disclosure, unsafe output, compromised AI accounts, malicious integrations, agent misbehaviour and supplier incidents. Staff should know whom to contact and should preserve the relevant prompt, output, tool, account and time without redistributing sensitive content.</p> <p>Review the AI register, permissions, suppliers, logs, policies, training needs and business benefits regularly. Terms, features and risks change quickly, so approval should never be permanent by default.</p> <h2>What does this mean for your business</h2> <p>AI readiness is not about preventing innovation. It is about making sure the organisation understands its information, chooses trustworthy services and gives staff a safe, productive route to use them. Before deploying AI to all staff, your business should consider the following steps:</p> <ol> <li>Appoint an AI owner and agree the outcomes you want to achieve.</li> <li>Discover and classify the data your organisation holds.</li> <li>Audit file, folder, site, mailbox and application permissions.</li> <li>Identify any AI services, agents or extensions already being used.</li> <li>Create an approved-tools list and an AI acceptable-use policy.</li> <li>Review supplier terms, privacy, training, retention and data-location commitments.</li> <li>Implement identity, data-protection, logging and application-control guardrails.</li> <li>Pilot a small number of low-risk, high-value use cases.</li> <li>Train staff to use AI safely and verify its outputs.</li> <li>Measure value, review risk and improve controls continuously.</li> </ol> <p><strong>The Silver Cloud Business can help.</strong> Our AI Readiness service can assess your Microsoft 365 and / or server environment, review permissions and data exposure, help to identify shadow AI, evaluate proposed platforms, develop practical policies and create a phased roadmap for secure adoption.</p> <p><strong>Call us on 01722 411 999</strong> to discuss an AI Readiness Assessment and make sure your organisation is ready to gain the benefits of AI without exposing the data it depends on.</p> <p> </p> Wed, 02 Sep 2026 00:00:00 +0000