Cookies help us display personalized product recommendations and ensure you have great shopping experience.

By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
SmartData CollectiveSmartData Collective
  • Analytics
    AnalyticsShow More
    predictive analytics risk management
    How Predictive Analytics Is Redefining Risk Management Across Industries
    7 Min Read
    data analytics and gold trading
    Data Analytics and the New Era of Gold Trading
    9 Min Read
    composable analytics
    How Composable Analytics Unlocks Modular Agility for Data Teams
    9 Min Read
    data mining to find the right poly bag makers
    Using Data Analytics to Choose the Best Poly Mailer Bags
    12 Min Read
    data analytics for pharmacy trends
    How Data Analytics Is Tracking Trends in the Pharmacy Industry
    5 Min Read
  • Big Data
  • BI
  • Exclusive
  • IT
  • Marketing
  • Software
Search
© 2008-25 SmartData Collective. All Rights Reserved.
Reading: The Biggest Threat to Cyber Security and What to Do About It
Share
Notification
Font ResizerAa
SmartData CollectiveSmartData Collective
Font ResizerAa
Search
  • About
  • Help
  • Privacy
Follow US
© 2008-23 SmartData Collective. All Rights Reserved.
SmartData Collective > Data Management > Best Practices > The Biggest Threat to Cyber Security and What to Do About It
Best PracticesCulture/LeadershipData ManagementJobsPolicy and GovernanceRisk Management

The Biggest Threat to Cyber Security and What to Do About It

jonsmithinsight
jonsmithinsight
5 Min Read
SHARE


Cyber SecurityThe high level of human error-induced risks does suggest that as measured by column inches most people are looking in the wrong place, writes Ashley Gatehouse.


Cyber SecurityThe high level of human error-induced risks does suggest that as measured by column inches most people are looking in the wrong place, writes Ashley Gatehouse.

Tech leaders have long been telling anybody who will listen that the biggest cyber security threat they face is not state-sponsored, geopolitical or clandestine. It is in fact much closer to home.

Take, as evidence, the latest research by IT Governance’s Boardroom Cyber Watch 2013 survey. Accordingly, 53 per cent of senior company executives said the main risk to corporate data and computer systems is from their own employees. A case of human error, carelessness or ignorance? In some cases it’s a combination of all three.

By comparison 27 per cent cited cyber criminals, 12 per cent state-sponsored cyber attackers and 8 per cent competitors as the biggest single security peril.

The report was published in the same week that NHS Surrey was fined £200,000 after a hard drive full of data was bought on eBay . The hard drive contained 3,000 patient files. Coincidence of timing? Those IT managers and directors that warn of the malign influence of the “accidental cyber criminal” think not. Here was just another case of serious data loss that had very little to do with hardened criminals or criminal states.

The survey is a useful antidote to the mainstream coverage of cyber security in the past weeks and months. That’s not to down play those forms of threat and the publication of the government’s cyber security strategy in February is evidence of how seriously the risks are taken. A quarter of the 260 respondents to the IT Governance survey said their company had come under a “concerted attack” over the last year. Another quarter (the same quarter?) admitted that fear of attack kept them awake at night.

Chloe Smith, minister with responsibility for cyber security (yes, there is such a role) told a recent Prospect roundtable debate: “I don’t think there has to be a trade-off between being skilful online and being able to deal with these threats. It should be the same thing.”

All this notwithstanding, the propensity of human error-induced risks does suggest that, as measured by column inches, most people are looking in the wrong place. The accidental cyber criminal may be a less interesting story but it is, for most organisations, a more significant one.

As we’ve noted before the answer to cyber security threats “is as much about policy and due diligence as it is about the underlying technology. And as always for the IT department it’s about managing expectations upwards.”

This is reflected in the comments of IT Governance CEO Alan Calder:
“Companies are not ignorant of the risks: 77% of bosses told us their organisation has a method for detecting and reporting attacks or incidents. However, in the boardroom, many companies still appear too removed from the action for directors to meet their governance obligations.”

Whether it is the role of the directors to ensure they are less “removed” or the IT department to keep them more involved is another question. A combination of the two would appear sensible; IT representation on the board even more so.

In that earlier post we suggested that if unwanted access was the biggest threat, then a couple of obvious stress points in modern computing architecture are co-location and mobility. For NHS Surrey the point of stress, according to the information commissioner’s office, was an ill-advised outsourcing deal.

“The result was that patients’ information was effectively being sold online. This breach is one of the most serious the ICO has witnessed and the penalty reflects the disturbing circumstances of the case,” said Stephen Eckersley, the ICO’s head of enforcement.

-Ashley Gatehouse

Share This Article
Facebook Pinterest LinkedIn
Share

Follow us on Facebook

Latest News

street address database
Why Data-Driven Companies Rely on Accurate Street Address Databases
Big Data Exclusive
predictive analytics risk management
How Predictive Analytics Is Redefining Risk Management Across Industries
Analytics Exclusive Predictive Analytics
data analytics and gold trading
Data Analytics and the New Era of Gold Trading
Analytics Big Data Exclusive
student learning AI
Advanced Degrees Still Matter in an AI-Driven Job Market
Artificial Intelligence Exclusive

Stay Connected

1.2kFollowersLike
33.7kFollowersFollow
222FollowersPin

You Might also Like

Big Data Blasphemy: Why Sample?

8 Min Read

Meeting the Business Technology Needs of Midsized Companies

4 Min Read

Living in the Cloud

4 Min Read
Image
AnalyticsBig DataData MiningJobsPredictive Analytics

More Than Just a Title: How to Identify a Data Scientist

5 Min Read

SmartData Collective is one of the largest & trusted community covering technical content about Big Data, BI, Cloud, Analytics, Artificial Intelligence, IoT & more.

AI chatbots
AI Chatbots Can Help Retailers Convert Live Broadcast Viewers into Sales!
Chatbots
giveaway chatbots
How To Get An Award Winning Giveaway Bot
Big Data Chatbots Exclusive

Quick Link

  • About
  • Contact
  • Privacy
Follow US
© 2008-25 SmartData Collective. All Rights Reserved.
Go to mobile version
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?