itriskcarriere.nl

How to Fix a Dysfunctional Security Culture

Nieuws
09-07-2024
Stu Sjouwerman
There’s an old business saying that goes: “Culture eats strategy for breakfast,” that’s often attributed to Peter Drucker. While it is debatable whether he said it or not, the sentiment is clear—without a strong culture, organizations will be unable to execute on their strategies.

By Stu Sjouwerman, CEO KnowBe4

Culture underpins everything an organization does—and how it gets things done. While culture is a term often referred to the organization as a whole, there are also cultures (or subcultures) within organizations related to business practices—like security. At my company, we define a security culture as the ideas, customs, and social behaviors of a group that influence its security.

The Hallmarks of a Security Culture

Culture shifts over time. A positive security culture will grow from basic compliance to a sustainable and well-integrated one that drives secure behaviors and prevents breaches.

But cultures can also become toxic or dysfunctional, working at cross purposes with the desired values and goals of the organization.

[....]

Lees verder op: Security Week

Gerelateerde vacatures

Geïnteresseerd in een carrière bij organisaties in ditzelfde vakgebied? Bekijk hieronder de gerelateerde vacatures en vind de perfecte match voor jou!
Rijksoverheid
4.691 - 6.907
Medior
Den Haag
Als CIO Adviseur Data en Privacy bij het NCSC adviseer je de leiding over data-, privacy- en cybersecurityontwikkelingen, schrijf je beleid en strategie, stuur je complexe dossiers aan en vertaal...
Assets Only
Marktconform
Medior
Nederland
Als (Senior) Consultant Information Security vertaal je wet- en regelgeving naar processen en controls voor audits. Je voert gapanalyses uit, implementeert IT-controlraamwerken en maakt organisaties audit-ready. Werk samen met diverse...
Triodos Bank
Marktconform
Medior
Driebergen-Rijsenburg
As a Information Security Officer at Triodos Bank, you assess security risks for apps and services, review ISO 27001/ISAE 3402/SOC 2 reports, manage vendor risk, embed security in projects, support...
Ministerie van Financiën
4.024 - 6.907
Medior, Senior
Den Haag
Als Cybersecurity & Networking specialist bij de Auditdienst Rijk analyseer en leid je onderzoeken naar digitale weerbaarheid: pentesten, red teaming, DigiD-assessments en IT-beveiligingsaudits. Je vertaalt bevindingen naar impact en handelingsperspectief.