9

The Human Factor – Security Awareness and Training

We started by discussing how humans are often the weak links in our security models, then progressed to the promise of making them an integral part of our defense mechanisms. Throughout this book, we’ve touched on the idea of reducing the impact of the unpredictability of humans to strengthen our defense strategies. However, we haven’t explored practical procedures to realize that idea. Reflecting on large-scale breaches over the past decade, many such attacks began by exploiting this human factor. In some cases, it was through phishing to compromise an employee with extensive access, while in others, it was simply exploiting the security culture of a company.

In this modern digital age, we ...

Get The Complete Guide to Defense in Depth now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.