{"id":336,"date":"2024-12-07T19:42:47","date_gmt":"2024-12-07T19:42:47","guid":{"rendered":"https:\/\/sites.wp.odu.edu\/bach-niendoan\/?p=336"},"modified":"2024-12-07T19:42:59","modified_gmt":"2024-12-07T19:42:59","slug":"balancing-funds-between-training-and-cybersecurity-technologies","status":"publish","type":"post","link":"https:\/\/sites.wp.odu.edu\/bach-niendoan\/2024\/12\/07\/balancing-funds-between-training-and-cybersecurity-technologies\/","title":{"rendered":"Balancing funds between training and cybersecurity technologies"},"content":{"rendered":"\n<p>To ascertain materiality in the event of a breach, CISOs must pay closer attention to risk<br>assessments because of stricter requirements, such as the Security Exchange Commission&#8217;s<br>2023 cybersecurity disclosure guidelines. To determine a clearer monetary value for risk and to<br>quantify the impact of a breach beyond the High, Medium, and Low categories that many<br>businesses utilize, CISOs must collaborate even more closely with business executives. CISOs<br>who have depended on in-depth technical expertise and lack financial acumen will be at a<br>disadvantage in these settings.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Factoring humans into cybersecurity<\/h2>\n\n\n\n<p><strong><br><\/strong>In cybersecurity, end users and staff continue to be a major weakness and the main targets of<br>malevolent threat actors&#8217; attacks. Although it is crucial to recognize that people provide the<br>biggest threat to cybersecurity measures, many company executives must appropriately address<br>problems pertaining to human performance. The necessity for adequate training on the function<br>of human factors in cybersecurity is the reason behind the continuous worry about problems with<br>human performance (Yasar et al., 2023). Errors made possible by human interaction are largely<br>caused by a lack of security awareness combined with inexperience, carelessness, indifference,<br>malfeasance, and resistance. Because of the ever-changing nature of cybersecurity threats,<br>organizations must have countermeasures in place to prevent breaches, attacks, and incidents.<br>While ignoring human flaws and limits, most firms use technology to counteract cybersecurity<br>risks and attacks. Humans are an attack vector since most commercial entities must take into<br>consideration the human factor due to the growing technology hardening in cybersecurity (Yasar<br>et al., 2023).<br>An integral component of corporate security is security awareness. This includes educating staff<br>members about security guidelines and ensuring they stay updated on emerging dangers and<br>technologies. Users are less likely to engage in dangerous behavior when they are aware of the<br>hazards associated with their choices. For instance, phishing emails with harmful links are<br>regularly sent by attackers. Users may provide attackers with access to an organization&#8217;s network<br>if they click on these links or engage in other dangerous activities (Yasar et al., 2023). However,<br>users can prevent these attacks by receiving frequent training on common dangers and<br>upcoming threats. As human users are constantly being attacked through various social<br>engineering tactics, most funding should go towards human training and awareness as they\u2019re<br>both needed to safeguard organizations from imminent cyber threats that exist.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Funding cybersecurity technology<\/h2>\n\n\n\n<p>To lessen vulnerabilities, technical controls make use of hardware, software, and firmware. A<br>technological control is installed and configured by an administrator, after which it automatically<br>offers protection. Thus, cybersecurity technology should aid professionals in safeguarding<br>organizational assets and systems from cyber threats. Networks are monitored by intrusion<br>detection systems (IDSs), which issue alerts when they notice questionable activity on a system<br>or network. Intrusion prevention systems (IPSs) respond to ongoing attacks and stop them before<br>they can affect networks and systems (Palo Alto Networks).<br>Additional software that is installed on a machine, like a workstation or server, is known as a host based intrusion detection system (HIDS). It keeps an eye on each host, examines important<br>operating system files, and can identify possible threats. Any IDS&#8217;s main objective is to keep an<br>eye on traffic and notify administrators of any questionable conduct. It is important to emphasize<br>that a HIDS can assist in identifying harmful software (malware) that conventional antivirus<br>software may overlook (Palo Alto Networks). As a result, in addition to standard antivirus<br>software, many businesses install HIDS on each workstation as an additional layer of security. A<br>workstation HIDS will keep an eye on network traffic coming to the workstation, much like the<br>HIDS on a server does. Nevertheless, a HIDS can also keep an eye on local resources like<br>operating system files, log files, and certain apps (Palo Alto Networks).<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Conclusion<\/h2>\n\n\n\n<p><br>Since humans are dubbed the weakest link within cybersecurity, I would allocate most money to<br>training human users, as well as the employees. With regards to technology that aids<br>cybersecurity, it should aid human security professionals in defending against cyber threats.<br>Thus, cybersecurity technology will never replace human involvement until there is true artificial<br>intelligence. Humans must be understood for their strengths, as well as their limitations. To help<br>security professionals perform their jobs to their best abilities, technologies and training should<br>be invested in to allow users and professionals alike to better mitigate threats before they<br>materialize. Both security technologies and training, if utilize effectively, can reduce the chances<br>of security incidences and breaches.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">References<\/h2>\n\n\n\n<p><br>Palo Alto Networks. (n.d.). Ips. vs. IDS vs. firewall: What are the differences?. Palo Alto<br>Networks. https:\/\/www.paloaltonetworks.com\/cyberpedia\/firewall-vs-ids-vs-ips<br>Yasar, K., &amp; Pratt, M. K. (2023, October 12). What is Security Awareness Training?: Definition<br>from TechTarget. Search Security.<br>https:\/\/www.techtarget.com\/searchsecurity\/definition\/security-awareness-training<\/p>\n","protected":false},"excerpt":{"rendered":"<p>To ascertain materiality in the event of a breach, CISOs must pay closer attention to riskassessments because of stricter requirements, such as the Security Exchange Commission&#8217;s2023 cybersecurity disclosure guidelines. To determine a clearer monetary value for risk and toquantify the impact of a breach beyond the High, Medium, and Low categories that manybusinesses utilize, CISOs&#8230; <\/p>\n<div class=\"link-more\"><a href=\"https:\/\/sites.wp.odu.edu\/bach-niendoan\/2024\/12\/07\/balancing-funds-between-training-and-cybersecurity-technologies\/\">Read More<\/a><\/div>\n","protected":false},"author":29388,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":"","wds_primary_category":0},"categories":[1],"tags":[],"_links":{"self":[{"href":"https:\/\/sites.wp.odu.edu\/bach-niendoan\/wp-json\/wp\/v2\/posts\/336"}],"collection":[{"href":"https:\/\/sites.wp.odu.edu\/bach-niendoan\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/sites.wp.odu.edu\/bach-niendoan\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/sites.wp.odu.edu\/bach-niendoan\/wp-json\/wp\/v2\/users\/29388"}],"replies":[{"embeddable":true,"href":"https:\/\/sites.wp.odu.edu\/bach-niendoan\/wp-json\/wp\/v2\/comments?post=336"}],"version-history":[{"count":2,"href":"https:\/\/sites.wp.odu.edu\/bach-niendoan\/wp-json\/wp\/v2\/posts\/336\/revisions"}],"predecessor-version":[{"id":338,"href":"https:\/\/sites.wp.odu.edu\/bach-niendoan\/wp-json\/wp\/v2\/posts\/336\/revisions\/338"}],"wp:attachment":[{"href":"https:\/\/sites.wp.odu.edu\/bach-niendoan\/wp-json\/wp\/v2\/media?parent=336"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/sites.wp.odu.edu\/bach-niendoan\/wp-json\/wp\/v2\/categories?post=336"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/sites.wp.odu.edu\/bach-niendoan\/wp-json\/wp\/v2\/tags?post=336"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}