itriskcarriere.nl

How to Fix a Dysfunctional Security Culture

Nieuws
09-07-2024
Stu Sjouwerman
There’s an old business saying that goes: “Culture eats strategy for breakfast,” that’s often attributed to Peter Drucker. While it is debatable whether he said it or not, the sentiment is clear—without a strong culture, organizations will be unable to execute on their strategies.

By Stu Sjouwerman, CEO KnowBe4

Culture underpins everything an organization does—and how it gets things done. While culture is a term often referred to the organization as a whole, there are also cultures (or subcultures) within organizations related to business practices—like security. At my company, we define a security culture as the ideas, customs, and social behaviors of a group that influence its security.

The Hallmarks of a Security Culture

Culture shifts over time. A positive security culture will grow from basic compliance to a sustainable and well-integrated one that drives secure behaviors and prevents breaches.

But cultures can also become toxic or dysfunctional, working at cross purposes with the desired values and goals of the organization.

[....]

Lees verder op: Security Week

Gerelateerde vacatures

Geïnteresseerd in een carrière bij organisaties in ditzelfde vakgebied? Bekijk hieronder de gerelateerde vacatures en vind de perfecte match voor jou!
Allianz
Marktconform
Senior
Rotterdam
Als IT Governance, Risk & Compliance Manager bij Allianz bewaak je IT-governance en compliance, stem je beleid af op regelgeving, beheer je audits en escalaties, verbeter je het IT-risico- en...
BeFrank
550
Student
Amsterdam
Als Stagiair(e) Information Security Specialist bij BeFrank werk je in het Security Team aan monitoring van security events/incidenten, risk assessments, compliancechecks, procesverbetering & documentatie, awarenessupdates en een eigen security-opdracht.
Blue Sky Group
5.500 - 8.000
Senior, Medior
Amstelveen
Als IT Compliance Officer bij BSG identificeer, beoordeel en beheer je risico's om naleving van interne en externe regelgeving te waarborgen. Je ontwikkelt en implementeert risicobeheerstrategieën, onderhoudt het IT Control...
Ministerie van Defensie
5.863 - 7.575
Senior
Utrecht
Als Word Senior Cyber Adviseur - Cloud bij Defensie (COMMIT/JIVC) adviseer je CISO en stakeholders over cloudbeveiliging, risico’s en complexe cybervraagstukken, ontwikkel en implementeer integraal beleid, monitort incidenten/trends en rapporteert...