By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
DailynewsegyptDailynewsegypt
  • Home
  • Business
    BusinessShow More
    Popular video-sharing app TikTok was granted by the U.S. government a 15-day extension to reach a deal with U.S. buyers, a federal court filing showed Friday. This means the deadline for ByteDance, TikTok's Chinese parent company, to reach a deal with Oracle and Walmart has been extended from Nov. 12 to Nov. 27, according to the U.S. District Court for the District of Columbia.
    TikTok updates its community guidelines
    March 23, 2023
    IFC to invest in Mediterrania Capital Partners’ fund to support African mid-cap businesses
    IFC to invest in Mediterrania Capital Partners’ fund to support African mid-cap businesses
    March 23, 2023
    Sukari gold mine’s production reaches 5.2 million ounces with $7.5bn revenues in February 2023
    Sukari gold mine’s production reaches 5.2 million ounces with $7.5bn revenues in February 2023
    March 23, 2023
    EFG Hermes records EGP 11bn revenue in FY22
    EFG Hermes records EGP 11bn revenue in FY22
    March 23, 2023
    Egyptian Environment Minister discusses cooperation with WFP representative in Cairo 
    Egyptian Environment Minister discusses cooperation with WFP representative in Cairo 
    March 23, 2023
  • Politics
    PoliticsShow More
    Egypt's Health Minister discuss bilateral cooperation with an Italian delegation 
    Egypt’s Health Minister discuss bilateral cooperation with an Italian delegation 
    March 23, 2023
    Egypt’s foreign minister phones Algerian counterpart over boosting ties
    Egypt’s foreign minister phones Algerian counterpart over boosting ties
    March 22, 2023
    Turkish President  Recep Tayyip Erdoğan and Egypt President Abdel-Fattah Al-Sisi met in Doha
    Opinion| Türkiye and Egypt: For better times with many opportunities
    March 22, 2023
    Drought caused 43,000 deaths in Somalia in 2022: UN
    Drought caused 43,000 deaths in Somalia in 2022: UN 
    March 22, 2023
    Opinion| The Chinese dragon occupies America's place in the Middle East
    Opinion| The Chinese dragon occupies America’s place in the Middle East
    March 22, 2023
  • Interviews
    InterviewsShow More
    Government should help Egyptian arts revive its pioneering role: Omar Abdel Aziz
    Government should help Egyptian arts revive its pioneering role: Omar Abdel Aziz
    March 15, 2023
    Interconnected healthcare systems in Africa require political will from North African leaders: Amref official
    Interconnected healthcare systems in Africa require political will from North African leaders: Amref official
    March 12, 2023
    EGX ready for government’s IPOs programme: Chairperson
    EGX ready for government’s IPOs programme: Chairperson
    February 15, 2023
    British International Investment invests $4.5bn in 700 businesses across Africa: Sherine Shohdy
    February 15, 2023
    Valeo has invested around €0.5bn in Egypt over the past 10 years: CEO
    Valeo has invested around €0.5bn in Egypt over the past 10 years: CEO
    December 27, 2022
  • Culture
  • Opinion
  • Sports
  • Lifestyle
Reading: Opinion| 5 factors that form how security awareness training programmes are developing
Share
Notification
Latest News
Popular video-sharing app TikTok was granted by the U.S. government a 15-day extension to reach a deal with U.S. buyers, a federal court filing showed Friday. This means the deadline for ByteDance, TikTok's Chinese parent company, to reach a deal with Oracle and Walmart has been extended from Nov. 12 to Nov. 27, according to the U.S. District Court for the District of Columbia.
TikTok updates its community guidelines
Business
Strong representation of women in TV series of Ramadan 2023
Strong representation of women in TV series of Ramadan 2023
Culture Cinema
IFC to invest in Mediterrania Capital Partners’ fund to support African mid-cap businesses
IFC to invest in Mediterrania Capital Partners’ fund to support African mid-cap businesses
Business
Sukari gold mine’s production reaches 5.2 million ounces with $7.5bn revenues in February 2023
Sukari gold mine’s production reaches 5.2 million ounces with $7.5bn revenues in February 2023
Business
EFG Hermes records EGP 11bn revenue in FY22
EFG Hermes records EGP 11bn revenue in FY22
Business
Aa
Aa
DailynewsegyptDailynewsegypt
  • Home
  • Business
  • Politics
  • Interviews
  • Culture
  • Opinion
  • Sports
  • Lifestyle
  • Home
  • Business
  • Politics
  • Interviews
  • Culture
  • Opinion
  • Sports
  • Lifestyle
Have an existing account? Sign In
Follow US
  • Advertise
© 2023 DNE News. All Rights Reserved.
Dailynewsegypt > Blog > Opinion > Opinion| 5 factors that form how security awareness training programmes are developing
Opinion

Opinion| 5 factors that form how security awareness training programmes are developing

Daily News Egypt
Last updated: 2021/01/20 at 9:12 AM
By Daily News Egypt 9 Min Read
Share
Amir Kanaan, Managing Director for the Middle East, Turkey and Africa at Kaspersky Lab
SHARE

Among the wide range of reasons that cause cybersecurity incidents, inappropriate use of IT resources by employees remains a challenge for businesses. In 2019, half (52% enterprise, 50% SMBs) of companies faced a data breach because of this, as revealed in a Kaspersky survey of IT decision makers.

Contents
Training will include tips for going online in your spare timeCourse duration, required cybersecurity skills regulatedNew cyberattack scenarios are comingSecurity awareness training will be more personalised

Quite surprisingly, companies experienced this almost as often as their devices being infected with malicious software.

This shows that businesses need to explain to their employees how to recognise ‘dangerous’ situations and ensure they know how to react appropriately. Security awareness training programmes are designed to teach important cybersecurity hygiene.

To make sure courses deliver the desired results, they should meet modern learners’ requirements and the current trends in corporate education. Numerous factors have contributed to the evolution of security awareness training, be it development of new technologies or changes in corporate culture. In this article, we describe five trends that determine what corporate cybersecurity education will look like.

Training will include tips for going online in your spare time

Organisations have been long exploring the opportunities of remote working, and the novel coronavirus (COVID-19) pandemic has helped to fasten this process. Some companies have decided to allow staff to work remotely even after the COVID-19 lockdown measures are over.

Soon, many people will find their living room couch will become their common workplace, rather than an office desk and chair. However, this does blur the boundaries between work and personal life. For instance, users may not be as conscious about using work devices to enjoy personal activities and vice versa.

First of all, this change will be reflected in the training course agenda. It will become necessary for employees to be taught rules on how to behave securely in general, not just specifically at work. Also, security awareness courses should cover the use of personal devices and accounts for work purposes and explain how personal and business resources can be interconnected.

Additionally, this tendency can be applied to prompt employees to learn cybersecurity basics. Some companies use scaremongering to motivate employees to learn. For instance, they warn staff they will lose bonuses, or will even be fired, if they cause a data breach (in fact, 26% enterprises and 24% SMBs did so).

Unfortunately, fear does not work as a long term solution to effectively motivate people. It is like throwing a person who cannot swim into the water. He or she may reach shore after struggling, but it is highly unlikely they will then love swimming.

Instead, a company can position a security awareness course as an opportunity to learn useful information that can be applied during employees’ spare time as well. For example, a person who has been told how to identify phishing attempts at work will be less likely to enter credit card details when they receive an email from fraudsters in their personal mailbox.

Course duration, required cybersecurity skills regulated

Today, many governments and industry requirements make it necessary for organisations to have security awareness training in place. The Health Insurance Portability and Accountability Act (HIPAA) makes it an obligation for businesses to “implement a security awareness and training programme for all members of its workforce (including management)”. And according to GDPR, a data protection officer is responsible for “awareness-raising and training of staff involved in processing operations”.

Nonetheless, most of the regulators today do not enforce a specific course format or duration.

In practice, businesses do what they can to fulfil these requirements and often implement any training available to say they are compliant but with little substance.

The statistics above showed that this approach does not bring the required results. That is why we think that the regulations in industries, where cyberattacks are more critical for business, will become more detailed and stricter. For example, there may be requirements on the minimum time spent on security training or formal competence matrixes for non-security specialists.

We expect that in this case, companies will have to reconsider their approach to how training is carried out. And for employees, the perception will change from the course being a mere formality to a beneficial and valued way to gain the skills required for the job market.

New cyberattack scenarios are coming

Cybercriminals always develop more sophisticated ways to conduct their attacks. Here is an extraordinary example: last autumn, researchers revealed that fraudsters impersonated a CEO of a German company by mimicking their voice deep-fake, and forced an employee to transfer €220,000.

Now, security awareness training advises employees who have received a suspicious letter to call and ask the addressee if they really requested this. But unfortunately, this advice will not be of help in this case.

We cannot say for sure if this sort of attack will be common, but this case demonstrates that security awareness training agendas should be reviewed regularly. So, future basic cybersecurity courses will include topics and recommendations that we cannot even foresee now.

But even now, effective training should not only make people remember a number of certain rules, but also develop vigilance and pattern recognition skills. As a result, when employees face a new threat, they will be able to recognise that something is wrong and apply the rule to this specific situation. Corporate education will resemble massive open online courses

If you have taken an online course during the coronavirus lockdown, you are not alone, as many online learning platforms saw an increase in registrations. And learning was considered as an activity done in people’s free time before the quarantine.

Even in 2016, 74% of adults in the US participated in at least one educational activity because it was of personal interest to them. This illustrates the tendency that people want to engage with life-long learning and now continue to gain new knowledge after they have graduated from school or university.

How will it affect corporate learning and development and security awareness training in particular? People who regularly attend courses and see the different approaches to education will likely have more specific requirements for corporate training. If online Spanish classes can be viewed from a mobile device whenever the user prefers, or online course on Artificial Intelligence (AI) or biostatistics can explain difficult matters in simple words, why should corporate training note be the same? So, to fulfil these requirements, security awareness courses will change both in terms of content and form of delivery.

Security awareness training will be more personalised

The amount of information produced and consumed by people is growing, and no doubt you are accustomed to this message. Maybe, you feel irritated that an article wastes your time as it repeats facts you already know. And employees who are taught information that is already familiar to them, while there are plenty of other things they have to learn and remember, may feel the same.

Therefore, security awareness training will become more tailored. These courses will take into account not just the skills and rules that are relevant and new for a role – good training should automatically be adjusted to a particular employee’s level of knowledge, pace of learning and their individual learning preferences. This will ensure employees are not burdened with irrelevant information and can instead spend more time focusing on the skills they do not already have.

 

By Amir Kanaan, Managing Director for the Middle East, Turkey and Africa at Kaspersky Lab

You Might Also Like

Opinion| Türkiye and Egypt: For better times with many opportunities

Opinion| The Chinese dragon occupies America’s place in the Middle East

Beyond GDP: Changing how we measure progress is key to tackling a world in crisis

Climate change: farmers in Ghana can’t predict rainfall anymore, changing how they work

Kenzaburō Ōe: a writer of real humanity and the real Japan

TAGGED: cybersecurity, Kaspersky Lab, programmes, security
Share this Article
Facebook Twitter Email Print
Previous Article Anode-free zinc battery prototype produced that could someday store renewable energy Anode-free zinc battery prototype produced that could someday store renewable energy
Next Article The illusion of American democracy Opinion| The illusion of American democracy
Ad image

Stay Connected

Facebook Like
Twitter Follow
Instagram Follow
Youtube Subscribe

Latest News

Popular video-sharing app TikTok was granted by the U.S. government a 15-day extension to reach a deal with U.S. buyers, a federal court filing showed Friday. This means the deadline for ByteDance, TikTok's Chinese parent company, to reach a deal with Oracle and Walmart has been extended from Nov. 12 to Nov. 27, according to the U.S. District Court for the District of Columbia.
TikTok updates its community guidelines
Business
Strong representation of women in TV series of Ramadan 2023
Strong representation of women in TV series of Ramadan 2023
Culture Cinema
IFC to invest in Mediterrania Capital Partners’ fund to support African mid-cap businesses
IFC to invest in Mediterrania Capital Partners’ fund to support African mid-cap businesses
Business
Sukari gold mine’s production reaches 5.2 million ounces with $7.5bn revenues in February 2023
Sukari gold mine’s production reaches 5.2 million ounces with $7.5bn revenues in February 2023
Business
//
Egypt’s only independent daily newspaper in English. Discuss the country’s latest with the paper’s reporters, editors, and other readers.

Quick Link

  • Home
  • Business
  • Politics
  • Interviews
  • Culture
  • Opinion
  • Sports
  • Lifestyle

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

© 2023 DNE News. All Rights Reserved.

Join Us!

Subscribe to our newsletter and never miss our latest news, podcasts etc..

Zero spam, Unsubscribe at any time.

Removed from reading list

Undo
Welcome Back!

Sign in to your account

Lost your password?