Cyber defence is not just about technology
Taking an integrated view of people, processes and technologies can help a company turn information risk into a business advantage
TODAY'S increasingly complex state of cyber risk is prompting organisations to question if they are truly resilient against cyber attacks. When evaluating their cyber defence, most organisations focus on the technologies they have in place and how their environment is secured using the best-of-breed solutions. Yet, recent well-publicised attacks on established organisations have demonstrated an important fact: building a technology fortress is just not enough to fully protect an organisation's valuable information assets.
Why is this so? Technology is a tool dependent on the people wielding it. Processes are also required to ensure that the solution remains effective even as cyber threats evolve rapidly.
What organisations should do is embrace a holistic approach. The maturity of a cyber defence system hinges not just on technology, but also on other factors such as leadership, people, information risk management, business continuity in a crisis, and compliance to regulations.