sb-au logo
Story image

Addressing cybersecurity transparency for stronger protection

20 Sep 2017

Security firm Aleron says that cybersecurity management is a complex problem and transparency can result in even more ambiguity.

Because every organisation uses different processes to security, this can result in inefficiencies and weaknesses, the company says.

If organisations are to stop attacks, they need to have clear views of the threats they face and the ability to develop risk mitigation strategies.

“Two things are happening every day: new cyberattacks are launched; and new tools and solutions to combat cyberattacks are introduced. The rapid pace at which the threat landscape is evolving makes it difficult for senior managers to know if the company’s investment in security is effective,” comments Aleron director Alex Morkos.

“On top of that, there is often disjointed communication between security teams and senior leaders. This is partially because highly-skilled cybersecurity professionals often lack sophisticated business communication skills.”

According to Aleron, there are five key challenges to achieving transparency:

•  Getting a clear picture of the cyber threats they face  •  Understanding if their investment in cybersecurity solutions is effective  •  Making well-informed cybersecurity decisions that meet the organisation’s overarching objectives  •  Accessing the skills and resources needed to effectively protect the organisation  •  Managing security governance and compliance.  “Cybersecurity is a boardroom problem, yet information about cyber risks is not delivered as transparently and as clearly as it could be to that senior level, thus hindering board members’ understanding and ability to respond appropriately. To combat this problem, organisations need to find a better way to communicate the risks internally and respond appropriately,” Morkos says.

Organisations should consider choosing systems that allow accurate and simple views of the current risks, as well as ones that detail which risks businesses should focus on.

The company says that organisations must invest in tools and systems that also help them understand security risks, self-asses and gain quick insights into their security options.

Compliance tools can also accelerate problem identification, saving businesses time and money before an attack strikes.

Story image
OT networks warned of vulnerabilities in CodeMeter software
Manufacturers using the Wibu-Systems CodeMeter third-party licence management solution are being urged to remain vigilant and to urgently update the solution to CodeMeter version 7.10.More
Story image
Exabeam and Code42 partner up to launch insider threat solution
The solution will give customers a fuller picture of their environment, and will leverage automated incident response to obstruct insider threat before data loss occurs.More
Story image
The importance of selecting a secure SD-WAN solution
It’s essential to adopt a secure SD-WAN solution to avoid the risks that an unsecured SD-WAN solution can introduce, writes Wavelink managing director Ilan Rubin.More
Story image
75% of IT execs 'worried' about being targeted in cyber-attack
A new report from ConnectWise has shed light on the widespread concern about cyber-attacks, with 91% of SMB executives considering a move to an MSP if it provided the 'right' solution.More
Story image
Yubico launches latest YubiKey with NFC & USB-C support
Yubico has released a new hardware authentication key, designed to provide security through both near-field communication (NFC) and USB-C connections and smart card support.More
Story image
Video: 10 Minute IT Jams - The benefits of converged cloud security
Today, Techday speaks to Forcepoint senior sales engineer and solutions architect Matthew Bant, who discusses the benefits of a converged cloud security model, and the pandemic's role in complicating the security stack in organisations around the world.More