Skip to content

Challenges persist in maintaining security within organizations as their structures undergo transformation

In light of the ongoing shift towards remote work and increasing employee turnover, businesses now grapple with intensified data security issues, as suggested at the Mandiant Cyber Defense Summit's panel discussion.

Evolution of the internal security landscape within organizations encounters obstacles due to...
Evolution of the internal security landscape within organizations encounters obstacles due to corporate landscape transformations

Challenges persist in maintaining security within organizations as their structures undergo transformation

A recent study by Code 42 has revealed a significant increase in insider risk, often referred to as "The Great Resignation," leading to an unprecedented level of employee turnover. This trend has raised concerns among corporate stakeholders, particularly in understanding the risk calculus of their technology stacks, with the question "Are we a target?" being a primary concern.

To help companies address this issue, the Cybersecurity and Infrastructure Security Agency (CISA) has launched a new tool called the Insider Risk Mitigation Program Evaluation. This self-assessment tool enables organisations to evaluate their capabilities in managing insider threats and protecting against data theft or sabotage.

The tool's importance is underscored by recent events, such as the whistleblower case involving former Facebook employee Frances Haugen. Haugen testified that Facebook ignored known threats to children and amplified behaviour posing a national security threat, highlighting the potential consequences of poor insider risk management.

Gunnar Newquist, a client advisor at Strider, emphasises the importance of understanding and protecting intellectual property to prevent cybersecurity leaks involving nation-state operations. Meanwhile, Bob West, managing partner of West Strategy Group, suggests implementing identity access management tools to control employee access to sensitive data.

A panel of experts at the Mandiant Cyber Defense Summit discussed the increased insider risk for corporations due to the changing work environment, including remote work and employee turnover. Ron Bushar, senior vice president and CTO at Mandiant Government Solutions, suggests a subtle approach to monitor employee behaviour, warning them that their actions are being monitored.

However, it's important to note that there are currently no verifiable public statements or official reports from US companies specifically documenting an increased insider threat due to changing work environments - especially home office and higher employee turnover - or reporting a 61% increase in data loss incidents since the first quarter of 2021.

The Insider Risk Mitigation Program Evaluation tool is designed to help companies assess if they have the proper technology and processes in place to better manage insider threats. By using this tool, organisations can proactively limit the amount of risk they have from insider threats and remediate damage if exposed to data theft or sabotage. As the work environment continues to evolve, it's clear that insider risk mitigation will remain a critical concern for corporations.

Read also:

Latest