HR News Update – Malicious insiders "biggest threat to security

HR News Update – Malicious insiders "biggest threat to security

A survey amongst 250 IT security professionals, conducted during this year’s Infosecurity Europe show, has revealed that 20 percent of organisations believe malicious insiders pose the biggest threat to their security. 

A further 44 percent suggest employee’s ignorance could also cause defences to crumble. Hardly surprising, then, that this audience firmly pointed the finger at ‘people’ (70 percent) as the most frequent point of failure in an organisation’s IT security, with 20 percent citing processes and just 9 percent at technology.The study, sponsored by AppRiver –  a leading provider of email messaging and Web security solutions, is a repeat of a survey first conducted amongst 110 IT security professionals attending RSA in San Francisco earlier this year. That study found that, while the UK suspect internal breaches, more than 61 percent of US professionals cite the biggest threat to their organisation’s security as cybercrime from external sources (compared to 35 percent in the UK) with only 33 percent suggesting the non-malicious insider as causing the most concern. Remarkably, just over 5 percent of US respondents blamed malicious insiders for breaches.

“Whilst the US blames external influences, the UK recognises it is their own people who can act as the weakest link in an organisation's IT security posture – with ignorance the overarching driver. While it’s hard to plan for ignorance, the combination of education and automation would certainly help mitigate most non-malicious threats especially as many IT professionals have faith in the technology they’re deploying,” said Troy Gill, senior security analyst of AppRiver. When asked to name the most dangerous threat to the security of their organisation, both UK and US professionals agree that malware, including email-borne and web-based threats, topped the list of most concerning threat vectors, followed by personally identifiable information (PII) and social engineering. Both are also in agreement that people are the weakest link in their system (UK 70 percent: US 71 percent), with processes next (20 percent:21 percent) and then technology (9 percent:7 percent).

Troy concludes, “We’ve seen a dramatic increase in phishing attacks since the beginning of this year, with many proving successful, which is a classic example of how an unsuspecting user can unwittingly put the organisation at risk. Educating users to these types of attack vector is just one element of effective remediation. Better still is to remove suspect electronic packages automatically from mailboxes, rather than allowing someone to open the message and detonate the contained device.” Given the recent Snowdon and NSA revelations, its perhaps a little surprising that both audiences still have faith in their governments with just 7 percent of UK respondents and 5 percent of US citing external threats from government as the biggest threat to their organisation’s security.

www.appriver.com.

Read more

Latest News

Read More

How to foster a culture of learning

27 November 2024

Newsletter

Receive the latest HR news and strategic content

Please note, as per the GDPR Legislation, we need to ensure you are ‘Opted In’ to receive updates from ‘theHRDIRECTOR’. We will NEVER sell, rent, share or give away your data to third parties. We only use it to send information about our products and updates within the HR space To see our Privacy Policy – click here

Latest HR Jobs

Human Resources Manager Cammell Laird This is a key HR role supporting leadership and managing day to day HR operations for our large Birkenhead based

Human Resources Manager Up to £42,000 per annum benefits (including 25 days annual leave and pension) Leatherhead, Surrey KT22 7TW. Rainbow Trust Children’s Charity is

University of Greenwich – HRSalary: £45,163 to £55,295 per annum, plus £5400 London weighting pro rata per annum

Universities UK – Human ResourcesSalary: £21,441 to £24,474 per annum pro rata, dependant on experience

Read the latest digital issue of theHRDIRECTOR for FREE

Read the latest digital issue of theHRDIRECTOR for FREE