Intelligent CISO Issue 39 | Page 64

Firstly and possibly most obviously , cybersecurity starts with understanding the risks . the cybersecurity initiative throughout the organisation .
BUSINESS SURVEILLANCE
Embedding cybersecurity into your operations , from design to manufacturing , from delivery and commissioning to maintenance and operating , takes the enterprise – everyone , everywhere – to understand and accept their own responsibility for cybersecurity . In particular , this means bringing IT and OT together so they can help the entire organisation – not just an area , a function or individual team – be as secure as possible .
Establishing this ‘ we ’ culture helps to connect the dots across the enterprise , fill gaps and maintain always-on vigilance . This change starts from the top . Employees and vendors , at any level of seniority , need to be aware of and complaint with security policies . This ‘ all-in ’ approach is what will garner more thorough and consistent commitment to

Firstly and possibly most obviously , cybersecurity starts with understanding the risks . the cybersecurity initiative throughout the organisation .

Understanding your assets
Many cyberattacks are successful because employees have caused unintended errors . It is important that staff are aware of , and vigilant against , cyberthreats . This doesn ’ t just mean blanket , company-wide training on how to spot a phishing email , but also establishing the specific threats associated with the assets under an employee ’ s care . These could include specific protocols around the use of passwords , policies around Wi-Fi
64 www . intelligentciso . com