Week 8 - Mitigating Human Factor Risks Flashcards
1
Q
How can you use senior leadership?
A
Ensure senior leaders set the tone for cyber security.
ensure they don’t ignore security policies and processes
2
Q
How can you use Staff?
A
- ensure staff know their daily tasks and pressures
- ensure they are in including in security policy making
- ensure they are encouraged to report issues
- dont penalise mistakes, see them as a chance for improvement
3
Q
How should cyber security training be addressed?
A
- Understand and prioritise the cyber security knowledge and behaviours that individuals in your organisation need
- Highlight the benefits of training to your staff
- Deliver training in small, frequent chunks.
- Avoid using, the same training video used year after year
4
Q
What is an insider Threat?
A
individuals who are/were employed by the company but carry out malicious activities harming the company
5
Q
How to Mitigate Insider Threat?
A
- Train Employees to recognize risky behavior in their peers and report it to IT or HR.
- coordination between IT and HR, they can ensure access is revoked for terminated employees
- Technical controls analyze user activity, comparing it to past behavior to identify abnormalities.