Your people and your risks: Finding balance in the new normal
Explore how organisations can strengthen cyber security culture, manage people-side risk and support secure behaviours across remote, hybrid and changing work environments.
Your people matter more than ever. Is your security culture built for the new normal?
The shift to remote and hybrid working has put people at the centre of cyber risk. As organisations adapted to a COVID-impacted world, long-term resilience was challenged and new behavioural risks emerged, from phishing and smishing to home working, BYOD, cloud services, home printing, physical security and digital hygiene. This whitepaper explores how cyber security teams can respond when work, home and technology become more closely connected.
Drawing on insight from the CISO community and TSC's partner SASIG, this whitepaper sets out a practical framework to understand, engage and help your people. It explains how to get cyber security messages across to a dispersed workforce, keep everyone from the board to the front line engaged, and manage people-side risk in a normal that continues to evolve.
Essential reading for CISOs, security awareness leaders, HR teams, internal comunications teams and anyone responsible for building cyber resilience, security culture and safer employee behaviour in remote or hybrid working environments.
In this free eBook, you'll discover:
Build resilience around your people
TSC helps organisations identify and embed the security behaviours their workforce needs to reduce people-side cyber risk, strengthen resilience and build a measurable security culture across remote, hybrid and changing work environments.
View the whitepaper Book an eLearning demo
People-side cyber risk FAQ
What is people-side cyber risk?
People-side cyber risk refers to the security risks created by employee behaviour, working patterns, communication habits, stress, technology use and decision-making. In remote and hybrid environments, these risks can include phishing, insecure home working, shadow IT, poor digital hygiene, data hoarding and reduced reporting of suspicious activity.
Why does hybrid working affect cyber security culture?
Hybrid working changes how people communicate, collaborate and make security decisions. Without the cues, support and visibility of a shared workplace, employees may be less likely to ask for help, report suspicious messages or follow secure processes. This makes clear communication, board engagement, stakeholder involvement and practical support essential.
How can organisations reduce people-side cyber risk?
Organisations can reduce people-side cyber risk by listening to employees, designing controls around real working behaviours, improving security communications, supporting home and personal security, using focus groups and one-to-ones, encouraging reporting, engaging the board and measuring behaviour change over time.