{"id":290,"date":"2024-11-17T22:15:08","date_gmt":"2024-11-17T22:15:08","guid":{"rendered":"https:\/\/sites.wp.odu.edu\/sanchez-emiliano\/?p=290"},"modified":"2024-11-17T22:15:08","modified_gmt":"2024-11-17T22:15:08","slug":"the-human-factor","status":"publish","type":"post","link":"https:\/\/sites.wp.odu.edu\/sanchez-emiliano\/2024\/11\/17\/the-human-factor\/","title":{"rendered":"The Human Factor"},"content":{"rendered":"\n<figure class=\"wp-block-image size-full is-resized\"><img loading=\"lazy\" decoding=\"async\" width=\"623\" height=\"267\" src=\"https:\/\/sites.wp.odu.edu\/sanchez-emiliano\/wp-content\/uploads\/sites\/37241\/2024\/11\/image.png\" alt=\"\" class=\"wp-image-293\" style=\"width:695px;height:auto\" srcset=\"https:\/\/sites.wp.odu.edu\/sanchez-emiliano\/wp-content\/uploads\/sites\/37241\/2024\/11\/image.png 623w, https:\/\/sites.wp.odu.edu\/sanchez-emiliano\/wp-content\/uploads\/sites\/37241\/2024\/11\/image-300x129.png 300w, https:\/\/sites.wp.odu.edu\/sanchez-emiliano\/wp-content\/uploads\/sites\/37241\/2024\/11\/image-600x257.png 600w\" sizes=\"(max-width: 623px) 100vw, 623px\" \/><\/figure>\n\n\n\n<p><strong>PEOPLE AND TECHNOLOGY<\/strong><br>The first stage of response in cybersecurity is always going to be the preparation. Those<br>who prepare will have the best outcome. That&#8217;s where the human factor comes into play.<br>The cybersecurity technologies are only as good as the humans who need to run, operate,<br>and program the technologies. Spending all of your budget on high end cybersecurity<br>technology and neglecting the training of your workforce causes a significant vulnerability.<br>Which brings up my first point, a good portion of your limited funding should be placed into<br>proper training.<br><\/p>\n\n\n\n<p><strong>PREPARATION IS KEY<\/strong><br>The company&#8217;s funds are very limited and you\u2019re put in charge of a cybersecurity team who<br>are in need of proper cybersecurity training and protocol. While the hardware may not be<br>as high end as you would like it to be it&#8217;s enough to get by. I think the best trade off is to<br>ensure the personnel have a great understanding in preparation for cyber attacks and how<br>to respond to them. As it is stated in the FISSEA NIST power point presentation, \u201c35% of<br>data breaches were attributed to human error or negligence (&#8220;Cyber Security The Human<br>Factor&#8221;).\u201d This proves rather than having ne tuned high end hardware it&#8217;s certainly the<br>human factor that should be the main investment and priority. Maintaining the basics for a<br>cybersecurity team can go a long way especially for saving the company budget. A well<br>trained team can handle the majority of cybersecurity threats regardless of technologies.<br>What matters is their knowledge on preparation and response. Starting a culture of<br>cybersecurity and an understanding throughout the organization can surely have a greater<br>impact. Cybersecurity is not just IT&#8217;s job, it&#8217;s everyone&#8217;s responsibility.<br><\/p>\n\n\n\n<p><strong>BASICS NOW UPGRADE LATER<\/strong><br>Saving the company budget for cybersecurity technologies later is the best plan of action<br>for the cybersecurity team and for the company whose enemies are becoming more<br>advanced in cyber attacks. Planning for the human in mind instead of the technology is the<br>most logically safe route to take. The cost of a data breach is extraordinarily high and<br>devastating to company value. According to the FISSEA NIST power point, \u201cThe estimated<br>costs of cyber attacks on organizations globally is 400 billion dollars (&#8220;Cyber Security The<br>Human Factor&#8221;).\u201d Allocating a majority of the budget into cybersecurity technologies<br>wouldn\u2019t be very smart if it only opens you up for increased volume of cyber threats with<br>minimal understanding on how to deter said threats. Which would indeed cost the<br>organization even more money they don\u2019t have forcing a bankruptcy.<br>The main priority of an organization whether you work in IT or not should certainly be the<br>education, awareness, and compliance of the people within the organization of cyber<br>attacks and the proper response. As the CISO I would surely invest in proper training and<br>education for the team and organization by building up the cybersecurity culture.<br><\/p>\n\n\n\n<p><strong>REFERENCE<\/strong><br>&#8220;Cyber Security The Human Factor.&#8221; CRSC.NIST.GOV,<br>csrc.nist.gov\/CSRC\/media\/Events\/FISSEA-30th-Annual-Conference\/documents\/FISSEA2017_<br>Witkowski_Benczik_Jarrin_Walker_Materials_Final.pdf. Accessed 10 Nov. 2024.<br><\/p>\n","protected":false},"excerpt":{"rendered":"<p>PEOPLE AND TECHNOLOGYThe first stage of response in cybersecurity is always going to be the preparation. Thosewho prepare will have the best outcome. That&#8217;s where the human factor comes into play.The cybersecurity technologies are only as good as the humans who need to run, operate,and program the technologies. Spending all of your budget on high&#8230; <\/p>\n<div class=\"link-more\"><a href=\"https:\/\/sites.wp.odu.edu\/sanchez-emiliano\/2024\/11\/17\/the-human-factor\/\">Read More<\/a><\/div>\n","protected":false},"author":29794,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":"","wds_primary_category":0},"categories":[1],"tags":[],"_links":{"self":[{"href":"https:\/\/sites.wp.odu.edu\/sanchez-emiliano\/wp-json\/wp\/v2\/posts\/290"}],"collection":[{"href":"https:\/\/sites.wp.odu.edu\/sanchez-emiliano\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/sites.wp.odu.edu\/sanchez-emiliano\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/sites.wp.odu.edu\/sanchez-emiliano\/wp-json\/wp\/v2\/users\/29794"}],"replies":[{"embeddable":true,"href":"https:\/\/sites.wp.odu.edu\/sanchez-emiliano\/wp-json\/wp\/v2\/comments?post=290"}],"version-history":[{"count":2,"href":"https:\/\/sites.wp.odu.edu\/sanchez-emiliano\/wp-json\/wp\/v2\/posts\/290\/revisions"}],"predecessor-version":[{"id":294,"href":"https:\/\/sites.wp.odu.edu\/sanchez-emiliano\/wp-json\/wp\/v2\/posts\/290\/revisions\/294"}],"wp:attachment":[{"href":"https:\/\/sites.wp.odu.edu\/sanchez-emiliano\/wp-json\/wp\/v2\/media?parent=290"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/sites.wp.odu.edu\/sanchez-emiliano\/wp-json\/wp\/v2\/categories?post=290"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/sites.wp.odu.edu\/sanchez-emiliano\/wp-json\/wp\/v2\/tags?post=290"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}