01.03.2019 Views

CDM-CYBER-DEFENSE-eMAGAZINE-March-2019

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Are the C-suite and security teams on the same page?<br />

By Matt Lock, Director of Sales Engineers at Varonis<br />

With every week seemingly bringing reports of another serious data breach hitting a high-profile<br />

organisation, and the EU GDPR ushering in strict new data security laws, cyber security has finally<br />

become a major priority for most companies. However, establishing a strong security strategy can<br />

still be a difficult prospect.<br />

One of the biggest challenges is aligning the various stakeholders in the business and bridging<br />

the gaps between their disparate priorities and perceptions. In particular, the two most important<br />

groups influencing the security of a company are the IT and security teams with direct experience<br />

in the field, and the C-suite making the overall budgetary and strategic decisions. If these two<br />

stakeholder groups are not on the same page, the company’s security strategy can become<br />

fragmented and ineffective. Our own research has found that the priorities for the C-Suite and<br />

IT/security teams can differ drastically in some cases.<br />

The biggest cybersecurity worries<br />

To begin, we wanted to gauge what kinds of cyber threats were causing the most concern, and<br />

immediately found that the C-Suite and IT/security teams were in firm agreement that data loss<br />

and data theft/exfiltration were the biggest worries. This supports the assertion in Europol’s<br />

Internet Organised Crime Threat Assessment (IOCTA) that data is the ‘lifeblood’ for almost all<br />

companies; it therefore follows that decisions around its protection, and management are of<br />

strategic importance.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!