Cyber Security Discussion 3

profiletejaswinidon
ManasaResponse.docx

Discussion_3

by  Manasa Edavalli  - Wednesday, January 22, 2020, 3:51 PM

 

Importance of security awareness within organizations:

In information security humans are the weakest link. This might sound like a buzzword but having a quick glimpse at few incident records such as target case or WannaCry massive attack will show even with best technology, human factor is not taken good care of the levels of the explosion to threat and impacts which happened subsequently. 

This is where security awareness program plays an important role. Awareness and conditioning are two ways which helps behavior modification. Conditioning in most cases can be seen as easier approach and most of the organizations will be happy with it as there will be set-of  rules to be blindly followed. 

On the other hand awareness requires knowledge and being conscious is very important. Users need to understand why the security for information is vital aspect. End of the day it is important to understand that main goal is to provide the security in greater level for the organization. 

> Benefits of information security awareness:

In order to have really effective information security. People from corporate world has to embrace the changes as it would be much simpler task, if people can understand and relate to expected behaviors and new controls.

Having security awareness users does not mean there will be no threats but it will really help to detect the incidents in less time and they will know how to report it. This might help in lowering the number of incidents and may reduce impact.

>> Information security awareness is required by law and including the above topics may help in lowering the number of incidents

>Federal information security management

>Health insurance portability and accountability

>State regulations

>Payment card data security standard

Every company should invest in security awareness program. According to 2016 study of cost data breach identified an average of 7% increase in total cost in data breaching. Companies which are effected will not only loose customer's trust but also they will have loss of business after the data breach. So awareness program will the factor which reduces the data breaching and it is really matter of hours for the training. 

References:

2016 Cost of Data Breach Study: United States /IBM