Intelligent CISO Issue 15 | Page 46

industry unlocked their security and privacy projects through a GDPR methodology to ensure that they are adequately future-proofed. What steps should businesses and organisations operating within the sector take to mitigate cyber-risks? JEFF OGDEN, GENERAL MANAGER – MIDDLE EAST AND INDIA, MIMECAST It is important that these organisations have the right measures in place to be able to face cybersecurity challenges and ensure they are resilient. Organisations need to have effective, layered security controls before, continuity during and automated recovery after an attack. It’s important to have a comprehensive cyber-resilience strategy in place, employ skilled cybersecurity employees, have a plan to keep email running and be able to recover data in the event of a 46 successful ransomware attack. Another important step would be to have effective and regular cybersecurity awareness training. Many hospitality staff members When criminals get their hands on customer information stored by a hotel group or similar, they can steal identities and open bank accounts, credit cards or loans in a victim’s name. are dealing with the personal data of their customers and so they need to be cyber aware. While most organisations offer some kind of training it’s often ineffective, boring or not provided often enough. Training needs to be engaging, delivered persistently and it needs to concentrate heavily on helping employees detect and avoid cyberattacks. HARISH CHIB, VICE PRESIDENT, MIDDLE EAST AND AFRICA, SOPHOS Companies need to re-think the traditional approach of ‘layered security’ and think more about ‘cybersecurity system’. With the latest Deep Learning technologies, new cybersecurity solutions can now take action faster than an IT manager predicting issues and stopping threats before they can enter an organisation’s network. u Issue 15 | www.intelligentciso.com