{"id":1972,"date":"2017-10-06T10:03:14","date_gmt":"2017-10-06T14:03:14","guid":{"rendered":"https:\/\/solutionsreview.com\/identity-management\/?p=1972"},"modified":"2018-04-23T16:05:56","modified_gmt":"2018-04-23T20:05:56","slug":"why-data-and-people-are-the-first-line-of-defense-against-security-threats","status":"publish","type":"post","link":"https:\/\/solutionsreview.com\/identity-management\/why-data-and-people-are-the-first-line-of-defense-against-security-threats\/","title":{"rendered":"Why Data and People are the First Line of Defense Against Security Threats"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-1374\" src=\"https:\/\/solutionsreview.com\/identity-management\/files\/2016\/10\/security-265130_1280.jpg\" alt=\"\" width=\"800\" height=\"350\" srcset=\"https:\/\/solutionsreview.com\/identity-management\/files\/2016\/10\/security-265130_1280.jpg 800w, https:\/\/solutionsreview.com\/identity-management\/files\/2016\/10\/security-265130_1280-300x131.jpg 300w, https:\/\/solutionsreview.com\/identity-management\/files\/2016\/10\/security-265130_1280-768x336.jpg 768w, https:\/\/solutionsreview.com\/identity-management\/files\/2016\/10\/security-265130_1280-600x263.jpg 600w, https:\/\/solutionsreview.com\/identity-management\/files\/2016\/10\/security-265130_1280-180x79.jpg 180w, https:\/\/solutionsreview.com\/identity-management\/files\/2016\/10\/security-265130_1280-400x175.jpg 400w\" sizes=\"(max-width: 800px) 100vw, 800px\" \/><\/p>\n<p>By Isaac Kohen, <a href=\"https:\/\/www.teramind.co\/\" target=\"_blank\" rel=\"noopener\">Teramind<\/a><\/p>\n<p>October is National Cyber Security Awareness Month, which means that you\u2019re likely to see many alarming statistics regarding recent data breaches and evolving security threats. Such statistics may frighten and paralyze you, but try to stay focused on two basic components of cyber safety: data and people.<\/p>\n<br \/>Widget not in any sidebars<br \/>\n<h4>Focus on the Data First<\/h4>\n<p>Cyber security means protecting your data: financial records, personally identifiable information, personal health information, intellectual property, and other similar key data. But it\u2019s very hard to adequately protect this data if you don\u2019t have a complete understanding of where the data lives and who has access to the data.<\/p>\n<p>Take a data-first approach as you implement a plan to prevent security threats:<\/p>\n<ul>\n<li>Inventory and classify your data to determine the most valuable data and where this resides in the organization.<\/li>\n<li>Evaluate how key data comes into and out of the organization so you can determine which interfaces require heightened monitoring.<\/li>\n<li>Identify who has access to your most valuable data. These personnel are those who have access to the systems and interfaces you\u2019ve previously identified.<\/li>\n<li>Determine how much data is really necessary to hold and how long you must hold the data. Based on your inventory, are you gathering more information about customers or partners, for example, than you really need? Do you have data that could be purged from your systems?<\/li>\n<li>How are you deleting obsolete data? Do you have a secure process in place for both electronic and paper record destruction?<\/li>\n<\/ul>\n<h4>Manage the People Problem<\/h4>\n<p>Threats from the inside &#8211; whether due to negligence or malicious intent &#8211; are a leading cause of security breaches. On the opposite side of the \u2018people issue\u2019 is the shortage of security talent to help guard against insider threats.<\/p>\n<p>Over 80% of security professionals identify \u2018people\u2019 as the industry\u2019s biggest challenge compared to technology and processes, according to the results of the <a href=\"https:\/\/www.iisp.org\/imis15\/iisp\/About_Us\/IISP_Media\/iispv2\/About_us\/IISP.aspx?hkey=866b64e2-77f2-4159-9acd-134c01ae54cf\" target=\"_blank\" rel=\"noopener\">second annual survey<\/a> from The Institute of Information Security Professionals (IISP).<\/p>\n<p>Here are some questions to consider as you evaluate how your people interact with &#8211; and protect &#8211; your data:<\/p>\n<ul>\n<li>Are you using the principle of least privilege when granting access rights? Basically, you want to provide access to your users on a \u2018need to know\u2019 basis. For example, if a user is just entering leads into your CRM application, ensure he doesn\u2019t have admin-level access.<\/li>\n<li>Do you provide security awareness training for new hires, and do you provide ongoing refresher training? Security policy and security training are two key ways to combat against the negligent insider. Ensure you train all employees, including seasonal workers, temp workers, and contractors.<\/li>\n<li>Do you have the right people and skillsets to ensure information security? There is a shortage of skilled security personnel right now, and a recent Frost &amp; Sullivan report estimates the shortfall will be as much as 1.5 million skilled people by 2020. Whether inhouse or outsourced, you need to ensure the proper hiring budget &#8211; and ongoing training budget &#8211; for your IT team.<\/li>\n<li>Do your employees know how to safely use personal devices to connect to your data? Implement a bring your own device (BYOD) policy that covers what devices can be used, which data can be accessed, and how devices should be decommissioned.<\/li>\n<li>Do you have a way to monitor for suspicious behavior? Based on the data inventory you\u2019ve created, can you listen for suspicious activity around this data, such as downloading in bulk to a USB or cloud drive?<\/li>\n<li>Don\u2019t throw your hands up in the face of National Cyber Security Awareness Month coverage. Instead, focus on the real steps you can take around your data and your people.<\/li>\n<\/ul>\n<p><strong>About the author:<\/strong> Isaac Kohen is the founder and CEO of <a href=\"https:\/\/www.teramind.co\/\" target=\"_blank\" rel=\"noopener\">Teramind<\/a>, an employee monitoring and insider threat prevention platform that detects, records, and prevents, malicious user behavior. Isaac can be reached at ikohen@teramind.co.<\/p>\n<p><span style=\"font-weight: 400\"><br \/>Widget not in any sidebars<br \/>\u00a0<\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>By Isaac Kohen, Teramind October is National Cyber Security Awareness Month, which means that you\u2019re likely to see many alarming statistics regarding recent data breaches and evolving security threats. Such statistics may frighten and paralyze you, but try to stay focused on two basic components of cyber safety: data and people. Focus on the Data [&hellip;]<\/p>\n","protected":false},"author":24,"featured_media":1374,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[5],"tags":[561,189,124,560,562],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v23.5 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Data and People are the First Line of Defense Against Security Threats<\/title>\n<meta name=\"description\" content=\"Such statistics may frighten and paralyze you, but try to stay focused on two basic components of cyber safety: data and people. Security threats beware!\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/solutionsreview.com\/identity-management\/why-data-and-people-are-the-first-line-of-defense-against-security-threats\/\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Jeff Edwards\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/why-data-and-people-are-the-first-line-of-defense-against-security-threats\/\",\"url\":\"https:\/\/solutionsreview.com\/identity-management\/why-data-and-people-are-the-first-line-of-defense-against-security-threats\/\",\"name\":\"Data and People are the First Line of Defense Against Security Threats\",\"isPartOf\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/why-data-and-people-are-the-first-line-of-defense-against-security-threats\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/why-data-and-people-are-the-first-line-of-defense-against-security-threats\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/solutionsreview.com\/identity-management\/files\/2016\/10\/security-265130_1280.jpg\",\"datePublished\":\"2017-10-06T14:03:14+00:00\",\"dateModified\":\"2018-04-23T20:05:56+00:00\",\"author\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/3d31b4b6a777a91476a65c087be260e6\"},\"description\":\"Such statistics may frighten and paralyze you, but try to stay focused on two basic components of cyber safety: data and people. Security threats beware!\",\"breadcrumb\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/why-data-and-people-are-the-first-line-of-defense-against-security-threats\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/solutionsreview.com\/identity-management\/why-data-and-people-are-the-first-line-of-defense-against-security-threats\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/why-data-and-people-are-the-first-line-of-defense-against-security-threats\/#primaryimage\",\"url\":\"https:\/\/solutionsreview.com\/identity-management\/files\/2016\/10\/security-265130_1280.jpg\",\"contentUrl\":\"https:\/\/solutionsreview.com\/identity-management\/files\/2016\/10\/security-265130_1280.jpg\",\"width\":800,\"height\":350,\"caption\":\"Key Findings: The Second Google Plus Data Exposure\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/why-data-and-people-are-the-first-line-of-defense-against-security-threats\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/solutionsreview.com\/identity-management\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Why Data and People are the First Line of Defense Against Security Threats\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#website\",\"url\":\"https:\/\/solutionsreview.com\/identity-management\/\",\"name\":\"Best Identity Access Management (IAM) Software, Tools, Vendors, Solutions, &amp; Services\",\"description\":\"Identity Access Management (IAM) News, Best Practices and Buyer&#039;s Guide\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/solutionsreview.com\/identity-management\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/3d31b4b6a777a91476a65c087be260e6\",\"name\":\"Jeff Edwards\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/8471d2b63e0587b41d829ecc153ba8e7?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/8471d2b63e0587b41d829ecc153ba8e7?s=96&d=mm&r=g\",\"caption\":\"Jeff Edwards\"},\"description\":\"Jeff Edwards is an enterprise technology writer and analyst covering Identity Management, SIEM, Endpoint Protection, and Cybersecurity writ large. He holds a Bachelor of Arts Degree in Journalism from the University of Massachusetts Amherst, and previously worked as a reporter covering Boston City Hall.\",\"sameAs\":[\"https:\/\/solutionsreview.com\",\"https:\/\/x.com\/InfoSec_Review\"],\"url\":\"https:\/\/solutionsreview.com\/identity-management\/author\/jedwards\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Data and People are the First Line of Defense Against Security Threats","description":"Such statistics may frighten and paralyze you, but try to stay focused on two basic components of cyber safety: data and people. Security threats beware!","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/solutionsreview.com\/identity-management\/why-data-and-people-are-the-first-line-of-defense-against-security-threats\/","twitter_misc":{"Written by":"Jeff Edwards","Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/solutionsreview.com\/identity-management\/why-data-and-people-are-the-first-line-of-defense-against-security-threats\/","url":"https:\/\/solutionsreview.com\/identity-management\/why-data-and-people-are-the-first-line-of-defense-against-security-threats\/","name":"Data and People are the First Line of Defense Against Security Threats","isPartOf":{"@id":"https:\/\/solutionsreview.com\/identity-management\/#website"},"primaryImageOfPage":{"@id":"https:\/\/solutionsreview.com\/identity-management\/why-data-and-people-are-the-first-line-of-defense-against-security-threats\/#primaryimage"},"image":{"@id":"https:\/\/solutionsreview.com\/identity-management\/why-data-and-people-are-the-first-line-of-defense-against-security-threats\/#primaryimage"},"thumbnailUrl":"https:\/\/solutionsreview.com\/identity-management\/files\/2016\/10\/security-265130_1280.jpg","datePublished":"2017-10-06T14:03:14+00:00","dateModified":"2018-04-23T20:05:56+00:00","author":{"@id":"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/3d31b4b6a777a91476a65c087be260e6"},"description":"Such statistics may frighten and paralyze you, but try to stay focused on two basic components of cyber safety: data and people. Security threats beware!","breadcrumb":{"@id":"https:\/\/solutionsreview.com\/identity-management\/why-data-and-people-are-the-first-line-of-defense-against-security-threats\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/solutionsreview.com\/identity-management\/why-data-and-people-are-the-first-line-of-defense-against-security-threats\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/identity-management\/why-data-and-people-are-the-first-line-of-defense-against-security-threats\/#primaryimage","url":"https:\/\/solutionsreview.com\/identity-management\/files\/2016\/10\/security-265130_1280.jpg","contentUrl":"https:\/\/solutionsreview.com\/identity-management\/files\/2016\/10\/security-265130_1280.jpg","width":800,"height":350,"caption":"Key Findings: The Second Google Plus Data Exposure"},{"@type":"BreadcrumbList","@id":"https:\/\/solutionsreview.com\/identity-management\/why-data-and-people-are-the-first-line-of-defense-against-security-threats\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/solutionsreview.com\/identity-management\/"},{"@type":"ListItem","position":2,"name":"Why Data and People are the First Line of Defense Against Security Threats"}]},{"@type":"WebSite","@id":"https:\/\/solutionsreview.com\/identity-management\/#website","url":"https:\/\/solutionsreview.com\/identity-management\/","name":"Best Identity Access Management (IAM) Software, Tools, Vendors, Solutions, &amp; Services","description":"Identity Access Management (IAM) News, Best Practices and Buyer&#039;s Guide","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/solutionsreview.com\/identity-management\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/3d31b4b6a777a91476a65c087be260e6","name":"Jeff Edwards","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/8471d2b63e0587b41d829ecc153ba8e7?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/8471d2b63e0587b41d829ecc153ba8e7?s=96&d=mm&r=g","caption":"Jeff Edwards"},"description":"Jeff Edwards is an enterprise technology writer and analyst covering Identity Management, SIEM, Endpoint Protection, and Cybersecurity writ large. He holds a Bachelor of Arts Degree in Journalism from the University of Massachusetts Amherst, and previously worked as a reporter covering Boston City Hall.","sameAs":["https:\/\/solutionsreview.com","https:\/\/x.com\/InfoSec_Review"],"url":"https:\/\/solutionsreview.com\/identity-management\/author\/jedwards\/"}]}},"_links":{"self":[{"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/posts\/1972"}],"collection":[{"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/users\/24"}],"replies":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/comments?post=1972"}],"version-history":[{"count":0,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/posts\/1972\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/media\/1374"}],"wp:attachment":[{"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/media?parent=1972"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/categories?post=1972"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/tags?post=1972"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}