海角大神

Modern field guide to security and privacy

The human point of better cybersecurity

Network protectors sometimes focus too much on protecting perimeters and not enough on thinking about the people inside their networks, says Forcepoint CEO Matt Moynahan

To really change the game in cybersecurity, Forcepoint CEO Matt Moynahan has a simple and direct prescription: start with people.

鈥淐ompanies and enterprises run on people, and until robots take over, people are at the heart of it,鈥 Mr. Moynahan, who has over 20 years of experience in senior roles at companies including Reciprocal, Symantec and Veracode, said. 鈥淲e haven鈥檛 really stepped back and said: 鈥楬ow do we secure the human element?鈥欌

Moynahan advocates that security executives start assuming the people inside their organizations are trying to steal or leak data 鈥斅爀ither maliciously or by accident.

鈥淎ssume that there are folks who are inside your organization that can steal things or that even good employees can be compromised. If you think like that, everyone is sort of an insider [threat] inside of your company,鈥 he said. 鈥淗ow do you protect intellectual property and critical data from getting out when that threats on the inside? It鈥檚 a very different mindset.鈥

What鈥檚 so different about this approach? The information security industry has historically looked at problems through the lens of technology, Moynahan said during an interview on the RSA Conference鈥檚 RSAC-TV in San Francisco.

First came antivirus software, which attempts 鈥渢o chase little pieces of code around the Internet鈥 by looking for tell-tale signatures of malicious code striking a network, explained Moynahan. Then came machine learning and automating the process of marking certain code as dangerous, which remains but a more rapid execution of the same paradigm, he said.

Business executives need to start thinking less about blocking bad things and start pondering about how to stop critical data from leaving the network. They need to think more about how employees do their jobs, and what software they use to interact with critical business data, he said.

鈥淗ow do you understand workforce anomalies and behavior?鈥 said Moynahan. 鈥淎nd, then look for things that are abnormal to that data set. It鈥檚 so fundamentally different than anti-virus and network infrastructure that try to look at all the events happening and then have that lead to a human.鈥 聽

You've read  of  free articles. Subscribe to continue.
Real news can be honest, hopeful, credible, constructive.
海角大神 was founded in 1908 to lift the standard of journalism and uplift humanity. We aim to 鈥渟peak the truth in love.鈥 Our goal is not to tell you what to think, but to give you the essential knowledge and understanding to come to your own intelligent conclusions. Join us in this mission by subscribing.
QR Code to The human point of better cybersecurity
Read this article in
/World/Passcode/2017/0223/The-human-point-of-better-cybersecurity
QR Code to Subscription page
Start your subscription today
/subscribe