Cyber Security Cultural Change for SMEs

The war with cyber criminal scumbags wages on, and unfortunately the battle is still being lost by the good guys. Luckily we're yet to unleash our greatest arsenal in full. No, it's not AI, it's not tech, it's not process, it's people. People are the biggest target, and people therefore are the greatest asset if they know how to identify and respond to IT scams.

Toot toot here comes the deep fake paintrain!

The Scam

Picture this: The receptionist gets to work, and there's a voicemail from the IT Manager saying that cleaners are coming today to clean around the printers due to dust issues. Later in the day the cleaners arrive, they mention how the IT Manager organised for them to come in. The receptionist lets them into the secured area to start cleaning. They plant some devices onto the network, and boom you've now got IT criminals sitting on your network doing whatever they want, and you literally have no idea about it.

The benefits of cybercrime

Yeah I'm gonna go there. Doom and gloom is all we hear, the global economy is losing trillions, companies are getting hacked everywhere, people are losing their data and their identities, but there's always two sides to every story. I'm yet to see someone have a crack at this, so I figured why not?

So, lets drop the doom and gloom for a bit, and have a peek at the benefits of scumbags stealing our money and information:

Having Fun With Scammers, Again.

Scumbags in 2018

“Dear Michael, Congratulations! Web Safe Staff has been selected as one of the 10 Best Security companies list of 2018 in The Silicon Review magazine. Please read below for important details and next steps….. Cost is $1000.”

I'm Calling BS on the Cyber Security Skills Shortage!

I've been doing this cyber industry thing for a while now. Informally for 3 years, formally for a bit over a year. I've learnt a heck of a lot from some amazing people, and I'm exposed to amazing / scary ideas, news and content every single day. But the big focus in our industry is tech. I talk to recruiters, cyber tech companies, and companies with cyber security issues, and they talk tech.

Customising Cyber Security Culture

I recently met up with someone in the Information Privacy sector, and we had a great chat about how our two industries are so closely related and beneficial to one another. This person's company was already implementing cyber security awareness training, and was also starting on cultural change (i.e. keeping awareness front of mind for staff).

The Cyber Security Awareness Sales Cycle

cyber security sales lifecycle smallHere's a nice (actually it's pretty bad) flowchart of the cyber security awareness sales lifecycle. Where do you fit in this?

Objections on Price

Objections on price. Sometimes I get them, usually not. Odd considering I'm pretty damn cost effective! Some companies don't see the value in spending a grand or two to massively reduce their cyber risk profile.

