A group is only ever as strong as its weakest link. That is why it is important for organisations to educate all their members on cybersecurity, from Intern to C-Suite. A recent social engineering attack, which resulted in a major Twitter hack on 15 July, exemplified just how crucial the human component in cybersecurity can be.
To discuss the Human Element in Cybersecurity, best practices and new approaches,the Charter of Trust Principle 6 Taskforce “Education” hosted a webinar on 28 July.
The session was moderated by Kai Hermsen, Global Coordinator for the Charter of Trust at Siemens AG and Principle 6 Taskforce Lead. He was joined by three of our Charter of Trust cybersecurity education experts:
- Daria Catalui, Group Information Security Education Manager, Allianz
- Bernardo Garcia, Education & Awareness Security Manager, Airbus
- Bernd Barban, Chief Information Security Officer, Atos Germany
The group addressed the issues of behavioural change, soft skills and basic hygiene in cybersecurity in the context of the four fundamental challenges faced by cybersecurity:
1) building a security culture,
2) driving for more diversity in the cybersecurity workforce,
3) expanding cybersecurity competences and activities, and
4) recognising that cybersecurity is a technological, organizational and societal challenge.
Their discussion highlighted the increased importance to educate and train users given the evolving threats and risks in a working-from-home setting.
New tools such as password managers and two-factor authentication (2FA) present one of the best ways to secure applications against hackers but panellists noted that use of these tools is still too infrequent.
In addition, organisations need to continuously upgrade the cyber security knowledge of their members. But to successfully upgrade the “Human Operating System”, cybersecurity should be more engaging and user-friendly, for example through gamification or microlearning.
Ultimately, organisations that motivate, collaborate, implement and enable are at the core of a successful corporate cybersecurity education strategy.
To hear the full discussion between our experts, make sure to check-out the recorded webinar above and stay tuned for more Charter of Trust webinars coming soon!