spot_img

Date:

Share:

Staff happens: How high is the risk of a cyber incident in your organisation?

One of the core reasons why businesses remain vulnerable to cyberthreats is that they underestimate their risk or overestimate the strength of their existing defences. According to a recent Kaspersky survey entitled “Cybersecurity in the workplace: Employee knowledge and behaviour”, 48% of professionals surveyed in South Africa, whose work requires the use of computers, asses the risk of a cybersecurity incident happening to their company as quite possible.

Staff happens: How high is the risk of a cyber incident in your organisation?

Commenting on the probable consequences of a cybersecurity incident, 52,3% of employees surveyed in South Africa supposed that it might seriously affect the company. This understanding of risks comes not only from general cybersecurity awareness, but also from knowledge about cyber incidents in their organisations: 23,3% of local respondents acknowledged such incidents happened in the past 12-months, while an additional 17,8% said they have heard about these incidents from colleagues.

Organisations nowadays face a variety of cyberthreats ranging from phishing and business email compromise to ransomware and advanced persistent threats. In a lot of these attacks, the entry point into the organisation’s network is via a human mistake, and it is for that reason attackers actively employ social engineering techniques and AI tools to make their efforts more effective.

The survey shows that the majority of respondents understand that cybersecurity is an issue that should be considered by the IT department, while 11,8% also mentioned top level executives and 5,3% cited legal and financial employees as core groups within the business who should keep cybersecurity issues in mind. Only 36% of employees surveyed viewed cybersecurity as an issue that should be considered by all employees across the entire business.

“In today’s digital landscape, cybersecurity is a collective responsibility that extends beyond the IT department. Every employee should remain vigilant against evolving threats. Regular cybersecurity training, use of relevant IT solutions, well-defined policies and an incident response plan are essential pillars of organisational cyber resilience. When every team member is informed and prepared, the organisation stands stronger against cyber threats,” says Brandon Muller, Technical Expert for the MEA region at Kaspersky.

To help organisations strengthen their defenses, Kaspersky recommends the following:

  • Employee education and cybersecurity training is necessary as human error is a common cause for cybersecurity breaches. Solutions such as Kaspersky Automated Security Awareness Platform can help with practical cybersecurity skills such as recognising phishing emails and suspicious links.
  • Upskill cybersecurity teams with Kaspersky online trainings, and with Kaspersky Threat Intelligence. In addition, Kaspersky’s Digital Footprint Intelligence can help with monitoring external threats for companies’ assets, strengthening defense against credential leaks.
  • Implement robust monitoring and cybersecurity solutions, for example from the Kaspersky Next product line.
  • Set up offline backups that intruders cannot misuse, and make sure you can access them quickly in an emergency.
  • Implement security policies for employees, from password and software installation policies to network segmentation.
  • Foster a culture of security: encourage employees to report suspicious activity without fear of blame, reward proactive security behaviours to reinforce good habits, for example during phishing simulations.

spot_img
spot_img

━ More like this

AI is forcing banks to rebuild their entire cyber architecture

Artificial intelligence is forcing financial institutions to rethink the foundations of cybersecurity as increasingly sophisticated AI-generated fraud exposes the limitations of traditional security systems. While...

Tax season: the window criminals plan for, and compliance can’t close

The South African tax season is in everybody’s calendar, including cybercriminals. Every year, from July to October, millions of South Africans log into SARS...

Kaspersky warns of a new StrikeShark campaign targeting organisations in Asia, Latin America and Europe with advanced malware

Kaspersky Global Research and Analysis Team has announced the discovery of a new sophisticated malicious campaign – StrikeShark. The attackers targeted multiple organisations worldwide,...

Data sovereignty, cybersecurity, and automation: What’s on the mind of CIOs today

Beyond maintaining stable systems, chief information officers (CIOs) are increasingly responsible for enabling digital growth and protecting organisational data. That's on top of ensuring...

Kaspersky detected over 336 unique domains impersonating the official World Cup website

Kaspersky warns users to be careful with unofficial streaming and betting platforms to avoid losing money and personal data. The World Cup 2026 kicked off...
spot_img