Continue in 2 seconds

Biggest internal threat to data security? Many IT professionals hold up a mirror

  • December 22 2017, 2:25am EST
More in

More than one third of IT professionals—35 percent—see themselves as the biggest internal security risk to networks within their organization, according to new research from Balabit, a provider of privileged access management and log management products.

IT professionals are still struggling to safeguard IT assets against the unpredictability of human behavior, the study said. While human resources and finance departments are the easiest target for social engineering, IT staff pose the biggest insider risk to networks, whether a result of accidental or intentional actions.

This is largely because IT staff often possess more expansive access rights than other users, the report said. This includes access to business-critical data through the IT systems they manage and control. This wide range of access makes them a prime target for cyber criminals, researchers concluded from the survey results.

Balabit surveyed 222 attendees at the Forum International de la Cybersécurité in France, RSA Conference, Infosecurity Europe London, and IDC Security Roadshows in CEE earlier this year. Those surveyed included IT executives and security professionals, auditors, CIOs and CISOs.

From a security analytics perspective, 47 percent of IT professionals considered the time and location of login the most important user information for spotting malicious activity. This was closely followed by private activities using corporate devices (41 percent) and biometrics identification characteristics, such as keystroke analytics (31 percent).

IT professionals are recognizing the importance of capabilities that can detect the growing threat from insiders and compromised privileged accounts, the report noted.

Register or login for access to this item and much more

All Information Management content is archived after seven days.

Community members receive:
  • All recent and archived articles
  • Conference offers and updates
  • A full menu of enewsletter options
  • Web seminars, white papers, ebooks

Don't have an account? Register for Free Unlimited Access

Bob Violino

Bob Violino

Bob Violino is a freelance technology and business writer who covers a variety of topics, including big data and analytics, cloud computing, information security and mobile technology.