Make certain that an idea of separation of obligations is carried out and rational access controls and account lockout/disabling controls are in place. Physically secure your servers and also your products. Maintain them in a secure location, and don't grant typical usage of this space or spot. Make sure https://www.researchgate.net/publication/365308473_Development_of_Cyber_Attack_Model_for_Private_Network