cyber security

profileluckyqloo
w6d1...ml.docx

Please agree or disagree support your answer …. 100 min

The tools we have used in this class are wireshark (Network analyzer), Kali Linux (Peneteration Testing), PfSense (Firewall) and IDS tools like snort and some others. They are available on the internet at no cost. But in order to use them properly, skill,time and device are needed. Therefore, we still have indirect costs to use all these security tools. Having said that,they are more advantageous and useful to run the business effectively and to secure our data compare to the cost. So, why companies fail to implement them?

1.Failure to Understand the Role of Security Controls

According to data experts, companies fail at implementing security controls because they fail to understand the true threat against their data. The business leaders mostly consider data security as an IT problem instead of business problem as a result, they become reluctant to implement the basic security infrastructure (Lord, 2018). They fail to understand the danger of insider threat like employees, contractors, vendors and suppliers consequently they do not train them properly.

2. Failure to Align Security with Business Goals

When security teams make decisions in a vacuum without considering how their projects impact overall business goals and revenue, they are less effective, miss out on additional budget dollars, and position themselves as an operational expense rather than a business enabler. It all adds up to a less effective data security program (Lord, 2018). As a result the management becomes unwilling to allocate any budget for security. 3. Budgeting

Companies which haven't suffered from the results of a breach don't feel the importance of proactive threat analysis, defense, and recovery (Lord, 2018). Consequently, companies do not weigh their cyberesecurity budget and the cost if the breach happens. So, they fail to allocate the necessary budget to implement security controls and hire security professionals.

Lord, N. (2018, December 14). Data Security Experts Reveal the Biggest Mistakes Companies Make with Data & Information Security. Retrieved from https://digitalguardian.com/blog/data-security-experts-reveal-biggest-mistakes-companies-make-data-information-security