itriskcarriere.nl

How to Fix a Dysfunctional Security Culture

Nieuws
09-07-2024
Stu Sjouwerman
There’s an old business saying that goes: “Culture eats strategy for breakfast,” that’s often attributed to Peter Drucker. While it is debatable whether he said it or not, the sentiment is clear—without a strong culture, organizations will be unable to execute on their strategies.

By Stu Sjouwerman, CEO KnowBe4

Culture underpins everything an organization does—and how it gets things done. While culture is a term often referred to the organization as a whole, there are also cultures (or subcultures) within organizations related to business practices—like security. At my company, we define a security culture as the ideas, customs, and social behaviors of a group that influence its security.

The Hallmarks of a Security Culture

Culture shifts over time. A positive security culture will grow from basic compliance to a sustainable and well-integrated one that drives secure behaviors and prevents breaches.

But cultures can also become toxic or dysfunctional, working at cross purposes with the desired values and goals of the organization.

[....]

Lees verder op: Security Week

Gerelateerde vacatures

Geïnteresseerd in een carrière bij organisaties in ditzelfde vakgebied? Bekijk hieronder de gerelateerde vacatures en vind de perfecte match voor jou!
Ministerie van Financiën
4.692 - 7.748
Senior
Den Haag
Als senior IT-auditor bij de Auditdienst Rijk onderzoek je complexe IT-omgevingen, beoordeel je de betrouwbaarheid van (financiële) informatiesystemen en adviseer je over IT-risicobeheersing, procesverbetering en auditrapportages.
Ministerie van Financiën
5.213 - 7.748
Medior, Senior
Den Haag
Als Auditmanager Digitale Weerbaarheid bij Auditdienst Rijk (ADR) initieer en coördineer je IT- en securityonderzoeken, coach je auditors, vertaal je technische bevindingen naar organisatie-impact en versterk je rijksbrede IT-auditprogrammering en...
Ministerie van Justitie en Veiligheid
Marktconform
Medior, Senior
Den Haag
Als CISO/CPO bij DJI bepaal je de visie en strategie voor informatiebeveiliging en privacy, ontwikkel en borg je beleid (AVG/Wjsg), stuur je regie op audits, monitoring en incidenten, en adviseer...
NN
Marktconform
Medior, Senior
Den Haag
As a IT Controls Expert for IT Control Standardisation and Automation Programme (Freelance) at NN, you drive the shift to automated, data-driven continuous monitoring, define KCIs and thresholds, harmonise ToD/ToE,...