Awareness Training and Risk Assessment – The Human Error

95% of all security incidents involve human error. Ashley Schwartau of The Security Awareness Company says the two biggest mistakes a company can make are “assuming their employees know internal security policies” and “assuming their employees care enough to follow policy.”

Today, most organizations are required to follow some type of regulation. Almost all of us need to comply with PCI-DSS, but often that is combined with other regulations such as HIPAA. Employee security awareness and training in addition to vulnerable risk assessments reduces the time you need to satisfy all of the requirements necessary meet compliance goals, leading to significantly less time and money spent dealing with compliance and audits.

How do you Safeguard your data?

a) Have a Security plan
b) Educate and train users about security threats
c) Proactively monitor your IT network to root out exposed sensitive personally identifiable information(PII).

Organizations need to have a defense plan for each of the security layers that a cybercriminal can attack:

Physical layer – Set policies to ensure that only authorized personnel can access your devices)

Network layer – Set policies and procedures that only allow authorized employee devices, including BYODs (Bring Your Own Device), tablets, and laptops. Scan your network frequently to root out at risk data to decrease your vulnerable liabilities.

Human layer – Implement procedures to make your employees practice good password management and are aware and trained on security threats.
With the advancement of new variants and threats, every organization should create a “culture of security” where continual staff security training and vulnerability tests are conducted to create good security sense for every action your employee takes, therefore, mitigating any risk of data loss should a breach occur.

Related Articles:

RSS Cloud Services

  • Adobe Lightroom CC
    Lightroom is going after the consumer photo audience with this complete redesign of the pro photo workflow tool. It's slick and nimble, but pros will want more power, and amateurs may balk at the price.
  • Early Black Friday Deal: Udemy Online Courses Just $10
    Whether you want to learn a new language or program in one, there's something here for you.

RSS Security Watch

RSS Citrix

  • HDX Adaptive Transport and EDT: ICA’s New Default Transport Protocol (Part I) November 17, 2017
    This post was co-authored by Fernando Klurfan and Georgy Momchilov. As members of the Citrix HDX team, we’ve been wanting, for a long time, to write a blog post about HDX Adaptive Transport and Enlightened Data Transport (EDT) protocol; …  Related StoriesFINALLY! A Cloud Service That Gives You Visibility Into Your Virtual Apps, Desktops & UsersHTML5 […]
    Fernando Klurfan
  • The New Home for OctoBlu November 15, 2017
    In a recent blog post, we announced the closure of Octoblu.com. As part of that post, we mentioned we were reviewing options to make this technology available to the developer community. Below we are outlining the resources for …  Related StoriesThe Future of Octoblu and Citrix Workspace IoTDriving Digital Transformation with a Secure Digital WorkspaceIoT y […]
    Chris Matthieu

Latest Tweets

Pin It on Pinterest

Share This