Empiricism refers to things that we can perceive through our senses, allowing us to learn through experience. I believe the principle of empiricism would enhance the effectiveness of cybersecurity by allowing professionals to make decisions based on data (objective evidence). When you think about it, most organizations train their teams on how to prepare for attacks rather than waiting for one to occur. Empirical data collection and analysis can help identify emerging threats by recognizing patterns in data, such as the sharing of passwords or the failure to report phishing emails. This data helps cybersecurity professionals acknowledge the need for training in privacy use and identify phishing, ultimately guiding the development of new strategies to protect systems.