CybersecurityIntegrating Human Risk Scores into Mimecast's Security Framework

Integrating Human Risk Scores into Mimecast’s Security Framework

Key Takeaways

  • The cybersecurity industry’s primary vulnerability lies in the person behind the keyboard, with human error being a significant source of risk
  • Mimecast uses AI and behavior scoring to identify high-risk users and assign risk scores to individual users
  • The company focuses on behavior modification through nudges and micro-training to reduce risk
  • Archiving and auditing are critical in tools such as Slack, Teams, and Zoom
  • Investment in Asia-Pacific outside Australia and New Zealand is on the rise

Introduction to Cybersecurity Risks
The cybersecurity industry is structured around network, application, and data defenses, but the most vulnerable part of the system remains the person behind the keyboard. Despite the advancements in technology, human error continues to be a significant source of risk. The clicking of malicious links, misuse of credentials, and inadvertently leaking of sensitive data are just a few examples of how humans can compromise the security of an organization. According to Marc van Zadelhoff, CEO of Mimecast, human risk is accentuated now because agents are acting as humans with passwords, identity, and credentials, making it easier for them to act undetected. This highlights the need for a proactive stance in addressing human risk and reducing the likelihood of cyber attacks.

The Importance of Behavior Scoring
Mimecast has developed a system that collects behavioral signals from across its ecosystem and partner tools to identify which users pose the most risk. This information is then used to assign risk scores to individual users, much like a credit score for cybersecurity behavior. This approach allows organizations to identify high-risk users and take proactive measures to reduce the risk of cyber attacks. Van Zadelhoff noted that about 8% of users at a typical organization are causing 80% of the risk or damage, emphasizing the need for targeted interventions to address human risk. By using AI and behavior scoring, organizations can identify and mitigate potential security threats before they become incidents.

Behavior Modification through Nudges and Micro-Training
Mimecast’s approach to reducing risk is not just about identifying high-risk users but also about modifying their behavior through nudges and micro-training. The company believes that by providing users with targeted training and reminders, they can reduce the likelihood of human error and improve overall cybersecurity posture. This approach is critical in today’s digital landscape, where employees are increasingly using cloud-based tools such as Slack, Teams, and Zoom to collaborate and communicate. By providing users with the right training and resources, organizations can empower them to make better decisions and reduce the risk of cyber attacks.

The Need for Archiving and Auditing
Van Zadelhoff also emphasized the critical need for archiving and auditing in tools such as Slack, Teams, and Zoom. As employees increasingly use these tools to communicate and collaborate, it is essential to have a record of all interactions and activities. This not only helps to identify potential security threats but also provides a audit trail in case of an incident. Archiving and auditing are critical components of a comprehensive cybersecurity strategy, and organizations must prioritize these capabilities to ensure the security and integrity of their data.

Investment in Asia-Pacific
In addition to discussing Mimecast’s approach to cybersecurity, van Zadelhoff also talked about the company’s investment in Asia-Pacific outside Australia and New Zealand. The region is experiencing rapid growth, and organizations are increasingly looking to invest in cybersecurity solutions to protect their assets. Van Zadelhoff noted that Mimecast is committed to supporting this growth and is investing in the region to provide organizations with the cybersecurity solutions they need to succeed. This investment is critical, as the Asia-Pacific region is becoming an increasingly important hub for business and commerce, and cybersecurity will play a vital role in ensuring the security and integrity of this growth.

Conclusion
In conclusion, the cybersecurity industry’s primary vulnerability lies in the person behind the keyboard, and human error remains a significant source of risk. Mimecast’s approach to cybersecurity, which includes behavior scoring, nudges, and micro-training, is a critical step in addressing this risk. By providing users with targeted training and resources, organizations can empower them to make better decisions and reduce the risk of cyber attacks. Additionally, archiving and auditing are critical components of a comprehensive cybersecurity strategy, and organizations must prioritize these capabilities to ensure the security and integrity of their data. As the Asia-Pacific region continues to grow and evolve, investment in cybersecurity will be critical to ensuring the security and integrity of this growth.

- Advertisement -spot_img

More From UrbanEdge

Fake Job Recruiters’ Malware in Developer Coding Challenges

Cybercriminals are exploiting developer job hunts by embedding malware in coding challenges. These attacks are effective as they leverage routine aspects of the developer workflow. Fake recruiters promise unrealistic salaries while embedding malicious code, making vigilance crucial for job-seekers in the tech industry...

Business Data, Emails & Browsing History Theft by Malicious Chrome Extensions

Cybercriminals exploit Chrome extensions to access confidential business data, emails, and browsing history from millions of users. These malicious tools often disguise themselves as legitimate productivity extensions, putting unsuspecting users at risk. Discover how to identify threats and protect your sensitive information from stealthy cyber intrusions...

Valentine’s Day Cyber Threats & Risks: Protect Yourself

Valentine's Day creates a perfect storm for cybercriminals, with romance scams accounting for $697 million in losses and phishing attempts spiking by 28%. Protect yourself by employing security measures like two-factor authentication and understanding swift actions post-scam to minimize risk and financial damage...

PlayStation 2026 State of Play Games Reveals & Announcements

PlayStation's 2026 State of Play unveiled over 15 new titles, including a surprise God of War spin-off and a remake of the original trilogy. Fans thrilled over the John Wick game reveal featuring Keanu Reeves, with new IPs and third-party revivals like Castlevania also showcased...

Queensland Flood Alerts: Storms to End Extreme Heatwave

Queensland Flood Alerts: Storms to End Extreme Heatwave Projected Rainfall...

Queensland Flood Warning, Alerts & Weekend Forecast

Queensland braces for heavy rain and potential flooding as a low-pressure trough stalls over the state. With predicted rainfall of 100-300mm through Sunday, authorities urge preparedness. SE regions may face disruptions, extending the alert to northeast New South Wales. Prepare emergency kits and plans now...

Brisbane Flood Risk: Storms Predicted to End Heatwave

Brisbane residents brace for storms set to end the relentless heatwave. Expect heavy rainfall, with up to 150mm in some areas, increasing flood risks, especially in low-lying regions. Flash floods are possible, and temperatures could drop by 10 degrees. Prepare emergency kits and stay updated on weather developments...

Apple Zero-Day Fix: Sophisticated Attack Solution & Patch

Apple has urgently patched two zero-day vulnerabilities in WebKit used in highly complex attacks targeting specific individuals. Security experts emphasize immediate updates to protect against these threats, linked to advanced actors, possibly nation-states. The overlapping nature of these exploits suggests a coordinated effort...

Windows 11 Notepad Vulnerability: Silent File Execution via Markdown Links

A critical vulnerability in Windows 11 Notepad's Markdown feature allows remote code execution via malicious links, posing a serious risk to users. Microsoft has issued a patch, but immediate updates and extra defenses are essential to prevent exploitation and ensure secure computing environments...
- Advertisement -spot_img