BusinessMirror

‘Go beyond tech to fight cyber attacks’

-

Companies must build a “human firewall” to combat internet-related security issues, as cybersecur­ity is also a people, and not just a technology, issue.

“people are our first line of defense. it is best to upskill their competence and capabiliti­es on cybersecur­ity and help them reduce the risk of security breaches,” said mhycke C. Gallego, advisory practice Leader of p&a Grant Thornton, one of the country’s leading audit and profession­al services firms.

in an increasing­ly digital world, making employees vigilant against real-life cybersecur­ity attacks demands more than just complying with informatio­n, technology and cyber security training requiremen­ts.

To strengthen the human firewall, the organizati­on should undergo a change management process “so people will be able to manage the shift brought about by digitaliza­tion, as well as understand its impact to the overall it governance process,” said Gallego, a certified risk and informatio­n systems control (CRISC) and risk management assurance (Crma) profession­al.

To enable firms to influence employee behavior and reduce informatio­n, technology and cyber security risk at every level of the organizati­on, p&a Grant Thornton introduced Vigil@nt Cybersecur­ity, an online service platform that helps businesses and organizati­ons design, implement, and monitor their internal cybersecur­ity awareness and training programs.

The company drew on its own years of experience in running informatio­n, technology, and cyber security learning and developmen­t sessions for its employees to come up with Vigil@nt Cybersecur­ity and offer it to clients and partner-organizati­ons.

“at p&a Grant Thornton, we are exposed to having conversati­ons with our clients’ board of directors, senior management, and those in operations as part of our regular work. This enables us to understand their needs at various levels and customize the delivery of cybersecur­ity learning programs,” said Gallego.

While p&a Grant Thornton is known more for its role as an auditor and business adviser, Gallego said it also conducts informatio­n, technology, and security audits to clients. “We have also been providing vulnerabil­ity assessment­s, penetratio­n testing, and technology security assessment and other reviews to our clients. This enables us to bring our wealth of experience, as well as tap from resources within Grant Thornton’s global network, in our interactio­n with clients.”

Newspapers in English

Newspapers from Philippines