Page 29 - Gi flipbook August 2018
P. 29

cyber attacks? For example, an   curve and being equipped to    than the rule. The catalyst for change
                   attack that causes an operational   implement a successful cyber security   came from regulation, but successful
                   outage has much wider ranging   strategy requires good people in mid to   implementation only happened when
                   consequences.                  senior level cyber roles. Depending on   top-level management instilled the
                 ■  Modelling and quantifying cyber   the size of the company, this may be   culture of “we are all in this together”.
                   risk in this manner can help the   about training staff or recruiting   The culture coming from the top
                   board take a broader view, beyond   dedicated cyber roles. But, either way,   undoubtedly filters down to every
                   the technology, of how to focus   the key is not to do nothing. Use the   layer of the organisation. Can the
                   their security efforts.        best resources you have and start   same be done with cyber security to
                                                  equipping your team with the tools   help get ahead of the curve? The
                 COMPANY MISSION                  they need. Training the board is   regulation is coming and we do
                 Senior management must understand   important too. Having a board member   believe that the culture of
                 that cyber security is not merely a   trained to deal with mitigation plans   organisations will follow. In fact, the
                 technology challenge, but a business   and to react to cyber attacks is not   trend has already begun; in the same
                 challenge that can affect the core of   only good business sense, but sends a   report mentioned earlier, 57 per cent
                 the company’s mission. So-called ‘soft’   positive message throughout the   of respondents said their boards have
                 elements such as culture and talent   company, demonstrating that you take   a clear understanding of the potential
                 management are hugely important in   these security risks seriously.   impacts resulting from a loss of, or
                 terms of how a business takes this   In the government’s Cyber    disruption to, key information or data
                 challenge forward.               Governance Health Check Report 2017,   assets. This is the highest level since
                                                  more than two thirds of respondents   the survey began in 2013.
                 TALENT MANAGEMENT                (68 per cent) said their board had   We would conclude that if
                 Anyone reading this who is a parent   received no training in order to deal   companies continue to segregate
                 to a prospective university student   with a cyber incident within their   cyber security as the responsibility
                 should consider job market trends.   organisation.                of the IT department, they will fail
                 The cyber security industry has an                                in achieving an overall secure
                 unemployment rate of zero and the   CULTURE                       environment. Leadership needs
                 demand for certified cyber security   Corporate culture is an increasingly   to instill a culture of collaboration
                 professionals is growing at over 10   powerful tool to drive workforce   and drive the cyber security strategy
                 times the rate of the overall job   behaviour and ultimately impact the   at all levels. ■
                 market. This is resulting in a huge   organisation and industry as a whole.
                 skills gap across the global       A huge demonstration of where   ■ Lagoni is a technical services
                 marketplace – a great result if you are   board level ‘buy-in’ has driven industry   provider with over 10 years’
                 qualified cyber security whizz, not so   change is safety. Within the gas   operating experience in the energy
                 much if you are a growing company in   industry, safety first is commonplace   sector specialising in engineering,
                 need of a cyber security team.   – but it wasn’t always the case. Only   consultancy and software realization.
                   What’s this got to do with senior   within the last 50 years have   For more information visit
                 management? Staying ahead of the   accidents become the exception rather   www.lagoni.co.uk






                                                                                                               29


        CyberSecurityRisk.indd   2                                                                                19/07/2018   14:23
   24   25   26   27   28   29   30   31   32   33   34