Insider Threats

INSIDER THREATS:

“Enemies within” – knowingly or unknowingly –  are closely associated with exploitation of vulnerabilities or threats inside an organization. Generally, there are intentional insider threat actors and unintentional insider threat actors. However, both contribute to the ever evolving risks affecting all critical infrastructure in the public and private sectors.

Insider threats actors can be described according to their motives and mission.

Malicious insiders: These are employees or partners who have trustworthy access to organizational data but decide to use them for personal gain.

Insider agents: These are seen as another grade of malicious insiders who were intentionally recruited by external parties with mission to spy, alter, tamper with or steal valuable data from the organization

Disgruntled employees: This group belong to emotional attackers who seek to harm their organizations in revenge for some kind or perceived wrong done to them.

Carless workers: They belong to group of unintentional insider threat actors but are employees or partners who neglect or ignore their organization cybersecurity hygiene and policy, thereby aiding the attackers with their act of negligence and carelessness.

Third party: Contractors or Vendors who have inside information concerning the organization data and computer system but misuse their access to classified information and compromise the security of the sensitive data.

Cybersecurity awareness programs based on mission and mitigation of Insider threat actor’s activities are best remedy to help organizations intervene before an individual or group with privileged access or an understanding of the organization makes a mistake or commits a harmful act that will cause severe data breach.

Data protection is very vital!

Thanks


Engr. Chikwado .F. Okeke
Cybersecurity Professional
https://possibond.com.
+234(0)8127944123