• Call us today! (08) 7200 6080

Logo
  • Home
  • About
    • About Us
    • Team Members
  • Solutions
    • Moving to the Cloud
    • Enterprise Hosting
    • Offsite Backup
    • Office 365 & Azure
    • Voice & Hosted PBX
    • Domains & Web Hosting
    • Software Development
    • Mail Protection
    • Enterprise Connectivity
    • Cloud Storage
  • Case Study
  • Blog
  • Contact

How to Foster Secure Employee Behaviours and Manage Insider Risk

  • September 11 2024
  • admin
  • Internet, Tips

How to Foster Secure Employee Behaviours and Manage Insider Risk

Gartner has recently released an eBook titled “4 Ways to Achieve Secure Employee Behaviours: Manage Human Risk and Build a Security-Conscious Organisation.” This eBook highlights an alarming statistic: 82% of data breaches in 2022 were a direct result of employee behaviour. As cybersecurity threats grow more sophisticated, it’s clear that the human element remains one of the biggest vulnerabilities within any organization.

In this blog, we summarize key findings from Gartner’s eBook, focusing on how businesses can address insider risk and build a security-conscious culture.

You can download the full PDF from Gartner to explore more detailed insights.

Current Security Awareness Training Issues

Despite advanced security technologies and robust protocols, employee errors—whether unintentional or deliberate—are a primary cause of breaches. Simple mistakes, such as clicking on phishing links or mishandling sensitive information, remain widespread. In some cases, employees intentionally engage in risky behaviours for personal gain or other malicious reasons.

Gartner’s data reveals that:

  • 93% of enterprises use phishing simulations.
  • 92% employ training modules to boost security awareness.

Yet, despite these efforts, 69% of employees admitted to bypassing cybersecurity guidelines in the past year, and 65% opened emails from unknown sources. These figures suggest that while awareness is important, it is not sufficient to combat risky employee behaviour.

Gartner’s Four-Part Strategy – More Than Awareness

To address these challenges, Gartner proposes a new, human-centered approach to insider risk management. By understanding the factors that influence employee behaviour, organizations can foster a culture that prioritizes security. Here’s a breakdown of Gartner’s four-part strategy:

1. Rescope Security Programs

Traditional security programs often focus on compliance, but Gartner recommends shifting toward a strategy that emphasizes behavioural change. Organizations should redesign their security programs to include metrics and initiatives that build a security-conscious culture, ensuring that employees not only understand the rules but also internalize them.

2. Leverage the PIPE Framework

Gartner’s PIPE framework—standing for Practices, Influences, Platforms, and Enablers—serves as a foundation for developing a Security Behaviour and Culture Program. This model helps organizations create environments that encourage secure practices and reduce avoidable risks by aligning human behaviour with cybersecurity goals.

3. Integrate UX into Cybersecurity Controls

Employee behaviour often reflects frustration with security measures that are cumbersome or obstructive. By designing intuitive, user-friendly cybersecurity controls, organizations can reduce friction, improve compliance, and minimize the likelihood of employees bypassing these measures. Simplified processes mean fewer mistakes.

4. Design Role-Relevant Learning Experiences

A one-size-fits-all training program is often too generic to address specific security risks employees face. Gartner recommends tailoring cybersecurity training to reflect the real-world scenarios employees encounter in their roles. This customization not only makes the training more relevant and engaging but also highlights the consequences of poor security decisions in a way that resonates with each employee.

Building a Security-Conscious Culture

Insider risk is one of the most critical cybersecurity challenges facing businesses today. But with the right strategies, organizations can foster behavioural change and mitigate the risks associated with employee actions. By adopting Gartner’s human-centric approach, organizations can move beyond basic awareness training and create a security-conscious workforce that acts as a first line of defence against both accidental and deliberate threats.

At DataUP, through our partnership with Halodata and other key vendors, we are well-positioned to help you implement these behavioural change strategies within your organization. If you’re ready to build a security-conscious culture and reduce insider risk, reach out to us today to discuss tailored solutions.

For more IT and Cyber security news,

Follow DataUP on:

Facebook | Instagram | Twitter | LinkedIn

Previous Post
Cybersecurity Awareness Among Young Student
Next Post
Compliance, Privacy, and the Essential 8 Framework in Cybersecurity

22 Comments

Elinor204
September 11, 2024

https://cr-v.su/forums/index.php?autocom=gallery&req=si&img=4018

Reply
Breanna623
September 11, 2024

https://hrv-club.ru/forums/index.php?autocom=gallery&req=si&img=6909

Reply
Hugo2022
September 11, 2024

Good https://lc.cx/xjXBQT

Reply
Dana2387
September 11, 2024

https://hrv-club.ru/forums/index.php?autocom=gallery&req=si&img=7175

Reply
Elias157
September 11, 2024

https://vitz.ru/forums/index.php?autocom=gallery&req=si&img=5109

Reply
Colin1078
September 11, 2024

Good https://rb.gy/4gq2o4

Reply
Gareth2109
September 11, 2024

Good https://rb.gy/4gq2o4

Reply
Darren1525
September 11, 2024

Good https://rb.gy/4gq2o4

Reply
Kathryn1850
September 11, 2024

Awesome https://is.gd/N1ikS2

Reply
Campbell240
September 11, 2024

Good https://is.gd/N1ikS2

Reply
Holden3866
September 11, 2024

https://honda-fit.ru/forums/index.php?autocom=gallery&req=si&img=7288

Reply
Howard4847
September 11, 2024

http://toyota-porte.ru/forums/index.php?autocom=gallery&req=si&img=3376

Reply
Maxwell3981
September 11, 2024

Awesome https://is.gd/N1ikS2

Reply
Kelsey2466
September 11, 2024

Good https://is.gd/N1ikS2

Reply
Adelyn2321
September 11, 2024

Very good partnership https://shorturl.fm/68Y8V

Reply
Marissa2676
September 11, 2024

https://shorturl.fm/A5ni8

Reply
Riley598
September 11, 2024

https://shorturl.fm/68Y8V

Reply
Gerald3168
September 11, 2024

https://shorturl.fm/a0B2m

Reply
Dora490
September 11, 2024

https://shorturl.fm/m8ueY

Reply
Cecilia610
September 11, 2024

https://shorturl.fm/IPXDm

Reply
Colleen1116
September 11, 2024

Start sharing, start earning—become our affiliate today! https://shorturl.fm/3eJWv

Reply
Jesse1414
September 11, 2024

Promote our products and earn real money—apply today! https://shorturl.fm/gyvaL

Reply

Leave a Comment Cancel reply

Recent Posts

  • Office 365 and Azure: Transforming Your Business with DataUp
  • Is Your Mail Protected?
  • How Often Should You Change Your Password? – Why is it Important?
  • Why Data Backup Matters: The DataUp Approach
  • Tips for Cyber Security Awareness Month

Categories

  • AI 1
  • Cloud 35
  • E-mail 9
  • Internet 25
  • Solutions 46
  • Tips 45
  • Uncategorized 11
Shape
Logo

DataUP is a proudly Australian company with headquarters in Adelaide. It benefits from the collective expertise of its highly skilled team. With Data Centre locations around Australia, DataUP is able to offer flexible solutions to suit your needs

Subscribe Us

Contact Info

  • Level 3, 345 King William Street, Adelaide, SA, 5000
  • support@dataup.com.au
  • (08) 7200 6080

© 2021 Data UP (A.B.N. 733 8742 3628) All Rights Reserved

  • Privacy Policy
  • Disclaimer