Employees may be weak link in online security strategies

December 26, 2011 10:00
Online security has emerged as a top concern for corporate IT teams, and for good reason. But before looking to advanced technology to deliver a solution, it may be wiser to target lingering problems caused by the habits of their colleagues.

Online security has emerged as a top concern for corporate IT teams, and for good reason. But before looking to advanced technology to deliver a solution, it may be wiser to target lingering problems caused by the habits of their colleagues.

"In today's information security environment, there can be little doubt that the human element is the weakest link," explained CRN contributor Jeff Schmidt in his latest report. "Recent high-profile security compromises, including the RSA breach, started with targeted phishing - underscoring the vulnerability of human interaction in the cybersecurity chain."

While raising awareness of online security best practices is important, it rarely inspires lasting organizational change. Instead, Schmidt recommends taking concrete action, including behavioral research and procedural auditing. By highlighting gaps between policy and practice, IT managers could know, for example, whether implementing password manager software or a mandatory data backup schedule is a more pressing concern.

Aside from careless employee behavior, companies must also be aware of the possibility for malevolent insider hacking. According to eWeek, anything from trade secrets to financial reporting data could be at risk if administrators do not exercise the proper grade of access governance and monitoring.

Data Security

March 06, 2012 While everyday computer users may think their systems are secure, recent events serve as a warning that no ...

March 05, 2012 A majority of companies continue to fear the devastation online security breaches can inflict on their ...

March 05, 2012 One widely observed problem in a recent online security survey was the systematic weakness of passwords ...

March 02, 2012 Companies are apparently justified for feeling nervous regarding the increased scope of online security ...

March 02, 2012 When data becomes threatened, a timely response is critical. However, recent online security findings ...

March 01, 2012 The hacker group known as Swagg Security recently conducted a cyberattack against Apple's manufacturing ...

March 01, 2012 Users of an adult entertainment website were targeted during a high-profile online security breach that ...