Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Sunday, 28 May, 2023
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Events
    • Most Inspiring Women in Cyber 2022
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Events
    • Most Inspiring Women in Cyber 2022
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

Employees are the biggest cybersecurity threat to businesses today

by The Gurus
April 14, 2016
in Editor's News
Share on FacebookShare on Twitter

WinMagic, Inc. marked its appearance at Cloud Security Expo yesterday with the release of a new study analysing the disconnect between end-user employees and IT managers.
Two simultaneous studies polled 1000 employees and 250 IT managers respectively from businesses across UK to discover the importance of IT and data security in the workplace. Rifts in perception versus reality between these two groups revealed habits and knowledge-gaps that compromise UK plc’s cybersecurity.
High-profile breaches have prompted action:
In the wake of high profile data breaches such as TalkTalk, employees and senior management are more aware of the importance of data security; and are taking action. Correspondingly, 44 percent of employees feel their organisation has placed greater emphasis on data security, and 60 percent of IT Managers admit to having taken action as a direct result of high-profile breaches.

  • The majority of employees (31%) describe themselves as the biggest IT security threat to their businesses, followed by hackers (30%)
  • Conversely, IT managers believe hackers represent the greatest threat (37%) followed by employees (24%) and a lack of rigid security policies (22%)
  • Overwhelmingly employees (92%) and IT managers (92%) agree that IT and data security is important to their business
  • A worrying 12 percent of employees suggest that they never received any training or communication on data and IT security despite 80 percent of IT managers claiming to communicate or train on the subject once a year or more

The call for democratised responsibility:
As employees become more aware of the impact of data breaches, and the need for IT security, they are developing a greater sense of responsibility for protecting company data. Despite a slim majority (41%) believing that the IT team remains mostly responsible for data security; over a third of employees (37%) believe that everyone is responsible for it. IT managers themselves, however, are least likely to apportion responsibility for security to those outside of the IT team with only 10 percent suggesting that IT Security is everyone’s responsibility.
Darin Welfare, Vice President and General Manager EMEA, WinMagic commented: “There is a clear disconnect between employees, who feel that they must share responsibility for security, and those currently seen as ‘in charge’ of this area. As employees bear witness to ever more high-profile contemporary data breaches, they are increasingly aware of their responsibility to share in data security. Businesses and IT managers who recognise and respond to this heightened level of awareness are going to ultimately see more success in implementing policies and systems to best effect.”
Feeling responsible doesn’t mean acting it:
Whilst 80 percent of employees believe methods they use to store company data are somewhat or wholly secure, IT managers remain unconvinced. They are most concerned with security, and the habits of employees, when it comes to storing company data on personal hardware or in cloud environments.

  • 25 percent of employees are actively storing work data on private cloud services, whilst 15 percent are using personal hardware
  • The majority of IT Managers (63%) state that they are concerned about employees storing company data on private cloud; on personal hardware this rises to 68 percent
  • Portable storage devices continue to be a preferred storage option for company data for 20 percent of employees; alongside company hardware (52%)
  • Few IT Managers believe their organisations’ data is completely secure in Private Cloud (13%) or Public Cloud (11%) environments, believing that weak passwords (34%) and users forgetting passwords (35%) represent the biggest security challenges here

Employees are up to twice as likely to take risks on work IT equipment then they are on their own devices but they aren’t alone in that habit. IT managers themselves admit to being even more likely to undertake risky data handling practices than regular employees.

  • Five percent of employees would be ‘very likely’ to open an email from an unknown sender on personal devices; jumping to ten percent on work equipment
  • Fourteen percent of employees would be ‘very likely’ to open e-mail attachments with unrecognised file extensions including .exe extensions on personal devices; jumping to 27 percent on work equipment. For IT managers it is a much more worrying 42 percent and 43 percent, respectively

Businesses are unwittingly assuming business and personal cyber risk 
As employees take more risks in handling data at work than at home so too are they likely to feel that personal data storage is more secure at work. When asked where they felt their personal data was most secure employees favoured work IT equipment (37%) over personal equipment (23%) or in the cloud (11%).
Darin Welfare, Vice President and General Manager EMEA, WinMagic continued: “Today’s employee is merging work and personal actions online more than ever before. In preferring work systems to their own, they are indicating a greater confidence in their employer security provisions, whilst forcing businesses to assume added risks associated with actions employees take in securing and managing personal data. The expectation that employer systems present a safer environment in which to take risks poses a notable threat to data security. As businesses seek to ensure a robust and secure infrastructure to secure critical data they need to look to enterprise key and encryption management to shield information against unauthorised access.”

FacebookTweetLinkedIn
ShareTweet
Previous Post

£442 billion potential loss in UK power sector cyber-attack

Next Post

New Facebook Video Scam Campaign Targets UK

Recent News

SnapDragon Monitoring scam advice

Tips to Protect Against Holiday and Airline Scams

May 25, 2023
Access Segmentation & Encryption Management from MyCena

New security model launched to eliminate 95% of cyber breaches

May 25, 2023
KnowBe4 Helps Organisations Battle QR Code Phishing Attacks With New Tool

KnowBe4 Helps Organisations Battle QR Code Phishing Attacks With New Tool

May 25, 2023
Purple Logo, capitalised letters: SALT.

Salt Security Uncovers API Security Flaws in Expo Framework, Issues have been Remediated

May 24, 2023

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2019 IT Security Guru - Website Managed by Calm Logic

  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Events
    • Most Inspiring Women in Cyber 2022
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2019 IT Security Guru - Website Managed by Calm Logic

This site uses functional cookies and external scripts to improve your experience.

Privacy settings

Privacy Settings / PENDING

This site uses functional cookies and external scripts to improve your experience. Which cookies and scripts are used and how they impact your visit is specified on the left. You may change your settings at any time. Your choices will not impact your visit.

NOTE: These settings will only apply to the browser and device you are currently using.

GDPR Compliance

Powered by Cookie Information